ekp “if you are free, you need to free somebody else. If you have some power, then your job is to empower somebody else.”
― Toni Morrison
Another take away, in addition to web applications, growing threat from growth of Internet of Things (#IoT). Security not keeping up.
Recommend reading from the session, IBM X-Force Threats Reports: www-935.ibm.com/services/us/is….
Need to include security early in the process, as with traditional defect avoidance, need to find/address security concerns ahead of time.
Black-box (hacker in a box) and white-box (code review) testing, necessary, but not sufficient.
“Web Apps must accept arbitrary data”, thus: “Can’t get to application security by saying ‘input validation’” - so glad to hear voiced
attended Web Application Security presentation at #WiCyS2015 presented by Chris Carlson.
WiCySconference 5:30pm, Technical Presentation, Web Application Security: Getting and Staying Ahead of Hackers [Salons F-H]
Missing @tennesseetech Charter Day, instead at the @WiCiSConference #SoManyTnTechActivities
nicolibrarian “Silos create internal competition for resources and prestige. Results in hoarding of information and resources…” totalbackoffice.com/business-desig…
@damirapon @HeforShe includes some great student volunteers from @tennesseetech.
forgot to charge phone last night. :( #ConferenceFail