Lessons from MongoBleed, CWE Top 25, and Secure Coding Benchmarks - ASW #366 episode artwork

EPISODE · Jan 20, 2026 · 44 MIN

Lessons from MongoBleed, CWE Top 25, and Secure Coding Benchmarks - ASW #366

from Application Security Weekly (Audio)

MongoBleed and a recent OWASP CRS bypass show how parsing problems remain a source of security flaws regardless of programming language. We talk with Kalyani Pawar about how these problems rank against the Top 25 CWEs for 2025 and what it means for relying on LLMs to generate code. Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-366

NOW PLAYING

Lessons from MongoBleed, CWE Top 25, and Secure Coding Benchmarks - ASW #366

0:00 44:05

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Frequently Asked Questions

How long is this episode of Application Security Weekly (Audio)?

This episode is 44 minutes long.

When was this Application Security Weekly (Audio) episode published?

This episode was published on January 20, 2026.

What is this episode about?

MongoBleed and a recent OWASP CRS bypass show how parsing problems remain a source of security flaws regardless of programming language. We talk with Kalyani Pawar about how these problems rank against the Top 25 CWEs for 2025 and what it means for...

Can I download this Application Security Weekly (Audio) episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!