Prohibitively Expensive – ASW #109
Full Audio
View Show IndexSegments
1. How to Prevent Account Takeover Attacks – John Chirhart – ASW #109
Attackers are using methods such as password spraying and credential theft to commit fraud against websites at an alarming rate. Automated bots are aiding the attacker to conduct these operations at scale. Your defensive strategy should include a mechanism to determine if a session is being controlled by a real user or a bot. How can we best accomplish this without creating too much friction between the real users and your web applications?
To learn more about Google Cloud and reCAPTCHA, visit: https://securityweekly.com/recaptcha To register for our upcoming webcast with Google Cloud: https://attendee.gotowebinar.com/register/886342018982842384?source=ASW
Announcements
Don't forget to check out our library of on-demand webcasts & technical trainings at securityweekly.com/ondemand.
Don't miss any of your favorite Security Weekly content! Visit https://securityweekly.com/subscribe to subscribe to any of our podcast feeds and have all new episodes downloaded right to your phone! You can also join our mailing list, Discord server, and follow us on social media & our streaming platforms!
Guest
John is an Engineer on Google Cloud Security’s User Protection Services (UPS) Team. He specializes in developing capabilities and solutions to detect and mitigate automated attacks against web applications and infrastructure. John first joined Google as part of Chronicle, a Google Moonshot Factory Graduate. He’s an information security and compliance veteran with 18+ years of experience.
Hosts
2. Apps Are the New Endpoint – Catherine Chambers – ASW #109
Apps are everywhere. Increasingly apps are the main entry point for daily services such as banking, home security or even unlocking a car. But mobile devices are untrustworthy: a place where hackers can reverse engineer apps, tamper with them, and steal the secrets they hold. As apps become the new endpoints, it’s high time to reconsider their security. In this webcast Catherine Chambers, Senior product manager, will discuss why Security needs to be on your app’s feature list.
To learn more about Irdeto, visit: https://securityweekly.com/irdeto
Announcements
Don't forget to check out our library of on-demand webcasts & technical trainings at securityweekly.com/ondemand.
Join us at InfoSecWorld 2020 - June 22nd-24th now a fully virtual event! Security Weekly listeners save 15% off the InfoSec World Main Conference or World Pass! Visit securityweekly.com/ISW2020, click the register button to register with our discount code!
Guest
Since 2011 Catherine has been helping to architect Irdeto’s security solutions for web, mobile and embedded systems. She sometimes posts videos for Irdeto on the subject of reverse engineering under the name Cloakware®? Cate. Prior to joining Irdeto, Catherine worked for many years as a lead programmer in fast-paced startups. Her experience spans the range from coding in assembler to cloud computing. Catherine holds a Master’s degree in Mathematics from Queen’s University.