The Application Security Podcast

Erik Cabetas -- Cracking Codes on Screen and in Contests: An Expert's View on Hacking, Vulnerabilities, and the Evolution of Cybersecurity Language

• Chris Romeo • Season 11 • Episode 3

Use Left/Right to seek, Home/End to jump to start or end. Hold shift to jump forward or backward.

0:00 | 51:12

Erik Cabetas joins Robert and Chris for a thought-provoking discussion about modern software security. They talk about the current state of vulnerabilities, the role of memory-safe languages in AppSec, and why IncludeSec takes a highly systematic approach to security assessments and bans OWASP language. Along the way, Erik shares his entry into cybersecurity and his experience consulting about hacking for TV shows and movies. The conversation doesn't end before they peek into threat modeling, software engineering architecture, and the nuances of running security programs. Eric Cabetas has more than two decades of experience in InfoSec. His previous posts include senior roles at Ernst Young, Fortify Software, and theladders.

Connect with Erik Cabetas:
→ Security Engineering by Ross Anderson
→ IncludeSec

Mentioned in this episode:
→ Security Engineering by Ross Anderson
→ IncludeSec
→ New School Of Information Security 9780132800280
→ DEF CON
→ OWASP Top Ten
→ Rust
→ Go
→ OpenSSF
→ RSA Conference

Follow the Application Security Podcast:
➜ Home
➜ X
➜ LinkedIn
➜ YouTube
➜ Instagram
➜ Facebook

Chapters:
00:00 Introduction
01:32 Security Origin Story
04:28 Winning DEF CON CTF
08:36 Hollywood Hacking Consultant
15:05 The Current State of Vulnerabilities
26:45 Memory Safe Languages
35:19 Banning OWASP Language?
41:26 Lighting Round

People on this episode

Podcasts we love

Check out these other fine podcasts recommended by us, not an algorithm.

The Security Table Artwork

The Security Table

Izar Tarandach, Matt Coles, and Chris Romeo