Trust, but verify - Never Trust Your Code: Bugs, CDNs & Leaky Abstractions episode artwork

EPISODE · Jul 16, 2024 · 50 MIN

Trust, but verify - Never Trust Your Code: Bugs, CDNs & Leaky Abstractions

from SEEK Bytes · host SEEK

Your tests are green, coverage is high, dependencies are “secure”… so why does production still feel like a house of cards? In this episode of SEEK Bytes, Raph, Will and Elliott dig into trust in tech – from subtle JavaScript bugs and leaky abstractions to CDN attacks and noisy security reports – and why a healthy dose of skepticism is one of the most powerful tools an IT pro can have. In this episode, we explore: • How trust can be broken at every layer – from third-party CDNs like polyfill.js injecting malicious scripts, to chatbots pulling in compromised resources, to noisy vulnerability reports that burn out open source maintainers. • Why abstractions are powerful… and treacherous – what “leaky abstractions” really mean in practice, how unknown-unknowns derail estimates, and why learning just one layer deeper (query plans, caches, orchestration platforms) can save you from nasty surprises in production. • How to adopt a healthy “trust, but verify” mindset – treating tests and coverage as signals not guarantees, double-checking rollouts, reading docs and source instead of relying on hearsay, and staying just skeptical enough to catch the next Heartbleed-class bug before it bites you. Whether you’re in software engineering, QA, security, SRE, data, platform, or IT leadership, this episode will sharpen your instincts about what (and who) to trust in your stack – and how to balance healthy paranoia with getting real work shipped. Whether you’re in software engineering, QA, security, SRE, data, platform, or IT leadership, this episode will sharpen your instincts about what (and who) to trust in your stack – and how to balance healthy paranoia with getting real work shipped. 🔔 Follow the SEEK Bytes podcast so you never miss a new episode Resources: • https://www.bleepingcomputer.com/news/security/dev-rejects-cve-severity-makes-his-github-repo-read-only/ • https://lab.wallarm.com/polyfill-io-supply-chain-attack-malicious-javascript-injection-puts-over-100k-websites-at-risk/ • https://carbon-steel.github.io/jekyll/update/2024/06/19/abstractions.html

NOW PLAYING

Trust, but verify - Never Trust Your Code: Bugs, CDNs & Leaky Abstractions

0:00 50:18

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

SPADE: The Podcast Paul Anthony Henderson Jr SPADE: The Podcast stands as a beacon of hope and understanding, addressing critical mental health challenges within the African American community. SPADE (Suicide, Post-Traumatic Stress Disorder, Anxiety, Depression, and Epilepsy) seeks to shine a light on topics often stigmatized and misunderstood. Our mission is to break the silence surrounding these issues, encouraging open dialogue and fostering a culture of support and education. By providing meaningful resources and sharing powerful stories, we aim to empower individuals to confront these challenges head-on and build pathways toward healing. Mental health is a crucial but often overlooked subject in the African American community. It’s time to dismantle the barriers of shame and stigma, ensuring everyone feels safe to speak their truth and seek the help they need. This podcast is more than just a platform—it’s a movement to spark change, spread awareness, and inspire action within families, friendships, and communities. Focus on Nutrition and Nutrition Science ReachMD Ever-increasing evidence points to the importance of nutrition in preventing and managing disease. Through a thorough examination of metabolic and physiological responses of the body to diet and nutrition, we seek to highlight current topics, research and best practices in this field. The Johnny Vedmore Show TNT News Johnny Vedmore follows the tentacles of the new world beast. Especially during an election year, it’s vital we know who are the allies and associate of those who officially represent us.The show will look at the associations of those in the news, from Palestine to Ukraine, from Westminster to the White House, marrying deep research with current affairs.It will analyse the current news with deep context, informing the viewers of the little known allegiances of those who seek power and influence over our lives.The guests will help define and explain the many tentacles of the Establishment Octopus.

Frequently Asked Questions

How long is this episode of SEEK Bytes?

This episode is 50 minutes long.

When was this SEEK Bytes episode published?

This episode was published on July 16, 2024.

What is this episode about?

Your tests are green, coverage is high, dependencies are “secure”… so why does production still feel like a house of cards? In this episode of SEEK Bytes, Raph, Will and Elliott dig into trust in tech – from subtle JavaScript bugs and leaky...

Can I download this SEEK Bytes episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!