> Markdown version of [/@liran-tal](https://www.wearedevelopers.com/@liran-tal). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Liran Tal Developer advocate at Snyk focused on web security and TypeScript vulnerabilities. ## About Liran Tal breaks code to show developers how to fix it. He leads developer advocacy at Snyk, where his work focuses on the reality of runtime threats versus the perceived safety of modern web development tools. As a GitHub Star, he helps developers navigate everyday vulnerabilities like XSS and CSRF. His sessions dive into the mechanics of HTTP parameter pollution and the limits of TypeScript typing, using hands-on examples of prototype pollution to highlight why standard test cases are not actual security guardrails. ## Past Sessions ### World Congress 2025 路 July 9, 2025 Berlin, Germany - [0Day at Day Zero Security Quiz](https://www.wearedevelopers.com/events/world-congress-2025/sessions/477-0day-at-day-zero) 路 30 min - [Friend or Foe? TypeScript Security Fallacies](https://www.wearedevelopers.com/videos/1424-friend-or-foe-typescript-security-fallacies) 路 30 min 路 馃帴 Watch recording ## Videos - [Friend or Foe? TypeScript Security Fallacies](https://www.wearedevelopers.com/videos/1424-friend-or-foe-typescript-security-fallacies) 路 Liran Tal ## WeAreDevelopers LIVE - [Exploring AI: Opportunities and Risks in Development](https://www.wearedevelopers.com/videos/1267-exploring-ai-opportunities-and-risks-in-development) 路 Angie Jones, Kent C Dobbs, Liran Tal, Chris Heilmann - [Can Machines Dream of Secure Code? Emerging AI Security Risks in LLM-driven Developer Tools](https://www.wearedevelopers.com/videos/1217-can-machines-dream-of-secure-code-emerging-ai-security-risks-in-llm-driven-developer-tools) 路 Liran Tal ## Links - [X](https://twitter.com/liran_tal) - [LinkedIn](https://www.linkedin.com/in/talliran/)