Coffee With Developers • Jun 2, 2025

What The Hack is Web App Sec?

Jackie

As AI accelerates code generation, are you accidentally scaling classic vulnerabilities? Learn how to integrate automated checks and build a zero-trust developer workflow.

Pause
Mute Enter Fullscreen
#1 about 3 min

Making application security accessible for developers

Relatable storytelling helps bridge disciplines and motivates developers to care about application security.

#2 about 2 min

Bridging operations, organizations, and security engineering

Security encompasses people and organizations beyond just technology, requiring specialized roles that developers cannot easily balance alone.

#3 about 3 min

Categorizing developer and consumer facing security threats

While technical and consumer threats differ in nature, establishing trust across all interactions requires factoring security into processes from the start.

#4 about 4 min

Balancing business value with proactive security investments

Organizations increasingly recognize that investing early in software security reduces costly data breaches and provides a competitive advantage.

#5 about 2 min

Mitigating common vulnerabilities through targeted code reviews

Implementing routine security workshops and focused code reviews significantly reduces the occurrence of easily preventable vulnerabilities like SQL injections.

#6 about 5 min

Evaluating artificial intelligence for code generation and vulnerabilities

AI assistants accelerate development but can introduce subtle security flaws, increasing the overall volume of application attacks.

#7 about 3 min

Distributing security ownership across the product team

Securing an application is a collaborative effort that requires frontend developers and designers to actively participate rather than relying solely on specialists.

#8 about 4 min

Integrating static security analysis into deployment workflows

Running static analysis tools via git hooks and promoting open communication about knowledge gaps builds a stronger security culture.

#9 about 3 min

Treating untrusted user input as a core security habit

Questioning the origin and intent of all data parameters builds a critical security mindset that prevents common application exploits.

Matching moments

2:30 min

Bridging the gap between developers and security tools

Bozidar Spirovski Bozidar Spirovski +1 · Coffee With Developers

4:58 min

Scaling security teams through developer advocates

Tanya Janca · World Congress 2021

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

4:35 min

Improving developer education with realistic security training environments

Joseph Katsioloudes Joseph Katsioloudes · World Congress 2025

2:05 min

Making security a foundational feature in software development

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers