Silver Bullet

Show 032 – An Interview with Jeremiah Grossman

Jeremiah Grossman

The 32nd episode of The Silver Bullet Security Podcast features founder and Chief Technology Officer of WhiteHat Security, Jeremiah Grossman. Gary and Jeremiah discuss clickjacking, cross-site request forgery, why 50% of web problems can’t be discovered reliably automatically, and which conferences Jeremiah most enjoyed on his 2008 world tour.

« Show 031 – An Interview … Show 033 – An Interview … »
  • http://www.cigital.com/justiceleague/2008/11/14/web-application-security-versus-software-security/ Justice League » Blog Archive » Web application security versus software security

    [...] Episode 32 of the Silver Bullet Security Podcast features a chat with Web security guru Jeremiah Grossman. Among other things, we talk about the relationship between Web app security and software security. [...]

  • http://www.cigital.com/~gem gem

    My interview with Jeremiah prompted me to write a column about the relationship between Web app security and software security. The result is here:

    http://www.informit.com/articles/article.aspx?p=1309290

    gem

  • http://www.mikeandrews.com/2008/11/24/automated-security-testing-and-its-limitations/ Automated security testing and its limitations | Mike Andrews

    [...] at the level where they can be used to find even most of the issues in an application.  Myself and others don’t think it will ever get that far.  For that reason, I don’t think we can [...]

  • http://www.sensepost.com/blog/ mh

    Re: the carry over of traditional timing attacks to web applications, checkout our 2007 paper/ppt from BlacHat-USA [It's all about the Timing] ((http://www.sensepost.com/research/squeeza) or (http://www.sensepost.com/research_conferences.html))