A Deceptive Dependabot, Insecure JWT, CISA Wants HBOMs, OpenSSF's Critical Projects - ASW #257 episode artwork

EPISODE · Oct 3, 2023 · 39 MIN

A Deceptive Dependabot, Insecure JWT, CISA Wants HBOMs, OpenSSF's Critical Projects - ASW #257

from Application Security Weekly (Video)

Attackers impersonate Dependabot commits, an alg of "none" plagues a JWT, CISA calls for hardware bills of materials, OpenSSF lists its critical projects, Exim (finally! maybe?) has some patches, bug bounties and open source projects, and more! Show Notes: https://securityweekly.com/asw-257

Episode metadata supplied by the publisher feed · Published Oct 3, 2023

Embed this episode

NOW PLAYING

A Deceptive Dependabot, Insecure JWT, CISA Wants HBOMs, OpenSSF's Critical Projects - ASW #257

0:00 39:57

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Application Security Weekly (Video)?

This episode is 39 minutes long.

When was this Application Security Weekly (Video) episode published?

This episode was published on October 3, 2023.

Can I download this Application Security Weekly (Video) episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!