Zum Hauptinhalt springen
Echtzeit-Radar & Feeds
Alle RSS Feeds ➔
👥 Community & Social
Sicherheitslücken (CVE)USN-8487-2: curl regression(28.09.2026 um 22:29 Uhr)
•••••
Sichere ProgrammierungVisualize your data live to reveal the multidimensional truth..(29.09.2026 um 01:11 Uhr)
••
Sichere ProgrammierungI Used Hindsight to Remember What Humans Approved(29.09.2026 um 01:14 Uhr)
•
Sichere ProgrammierungAI Integrated Webcam Assistant(29.09.2026 um 01:14 Uhr)
••
Sicherheitslücken (CVE)USN-8487-2: curl regression(28.09.2026 um 22:29 Uhr)
•••••
Sichere ProgrammierungVisualize your data live to reveal the multidimensional truth..(29.09.2026 um 01:11 Uhr)
••
Sichere ProgrammierungI Used Hindsight to Remember What Humans Approved(29.09.2026 um 01:14 Uhr)
•
Sichere ProgrammierungAI Integrated Webcam Assistant(29.09.2026 um 01:14 Uhr)
••
Intelligence View
⚡ tsecurity.de Intelligence

SecTor 2025 | Hacking Policy for the Public Good

YouTube-Video: Author: Black Hat - Bewertung: 3x - Views:24 What happens when a security professional tries to help a government fix its insecure software?…

0
↗ Quelle (youtube.com)
Reagiere als Erste:r — dein Feedback zählt!

Author: Black Hat - Bewertung: 3x - Views:24

What happens when a security professional tries to help a government fix its insecure software?



In this talk, I'll share my story: from writing a secure coding policy and offering it to the Canadian government, lobbying elected officials, contacting agencies like CRA about their poor security practices—and being met with silence, deflection, or outright dismissal.



I didn't stop there. I wrote public letters, went on podcasts, published on Risky Biz, and even got interviewed by CBC. But the institutions in charge of protecting our data? Either silence or "No comment, because security."



This isn't just a rant—it's a roadmap. I'll show you the secure coding guideline I created (free to reuse), explain why governments need public-facing AppSec policies, and outline how we can push for secure-by-default practices as citizens, hackers, and builders.



Because secure code isn't just for dev teams—it's for democracy, privacy, and public safety.



Let's make it law. Let's make it public.



By:

Tanya Janca | CEO and Secure Coding Trainer, She Hacks Purple Consulting



Presentation Materials Available at:

https://blackhat.com/sector/2025/briefings/schedule/?#secure-code-is-critical-infrastructure-hacking-policy-for-the-public-good-47030

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten SecTor 2025 | Hacking Policy for the Public Good

Thematisch verwandte Begriffe: SecTor, 2025, Hacking, Policy · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

💬 Kommentare werden geladen…
Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-101916 | @grpc/grpc-js implements the core functionality of gRPC purely in JavaS…
Advisory →
tsecurity.de Icon
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag