Category: Technology



In this talk, Andreas advocates for protecting and expanding access to universal basic finance, explains why the question of how cryptocurrencies should be regulated is a distraction, and that eradicating cash will not affect the most powerful bad actors, who operate with banking licenses. He also declares that those who develop the surveillance infrastructure have exhibited moral bankruptcy and should face a period of scrutiny over their ethical integrity. CLARIFICATION: At 16:50, I say that women in Saudi Arabia can't own property and bank accounts. They can, but it is relatively very restricted. To buy or sell property often requires the support of multiple men, male claims on property are held in higher regard than those of women, and they can use a bank account as long as they have permission from their male guardian. They have only recently been encouraged to pursue home ownership themselves. EVENT: This talk was delivered on June 12th 2019 at the CryptoCompare Digital Asset Summit in London, England SPEAKER: Andreas M. Antonopoulos is a technologist and serial entrepreneur who has become one of the most well-known and respected figures in Bitcoin. He is the author of “Mastering Bitcoin,” “The Internet of Money" series, and "Mastering Ethereum." PUBLICATION PERMISSIONS: Original video was published with the Creative Commons Attribution license (reuse allowed). ATTRIBUTION CREDITS: Original video source: https://www.youtube.com/watch?v=Pkgo05Hdnfg https://www.youtube.com/watch?v=aDjww6VAKM8



Watch this amazing talk by Walmik Deshpande on how to create awesome dance and electronic music with Scribbletune, which is a Node.js module that helps you construct musical ideas with JavaScript String & Array functions and export them as MIDI files. EVENT: SF Node 2019 SPEAKER: Walmik Deshpande PUBLICATION PERMISSIONS: SF Node and Walmik provided Coding Tech with their permissions to publish this talk. ATTRIBUTION CREDITS: SF Node YouTube channel: https://www.youtube.com/channel/UCbWHWaCKZqIm5pE5hSD7KFw https://www.youtube.com/watch?v=G1bRi4El0iw



The premise of this session is how to build an application security program with a budget of $0. The session explores the OWASP universe, and how different open-source projects are connected together as foundational pieces of an application security program.
OWASP is famous for the top 10, but many do not understand the depth and breadth of the different projects. The projects are explained with a focus on how to implement each within a successful program. This talk is more than just a catalog of the OWASP projects. It is also a practitioner’s guide on how to implement the OWASP projects within an AppSec program. The projects are explained and broken into different phases to delineate between the improvements for a new program versus an established program that is adding new capabilities. The first group of projects is training / awareness and program definition. These projects focus on high-level knowledge, methodology, and training for the application security program. This group includes OWASP Top 10, OWASP Proactive Controls, Software Assurance Maturity Model, and training apps (Juice Shop, DevSlop, and WebGoat). The process for raising awareness with knowledge / training and building out a program are discussed. The second group is builder or developer. These focus on requirements, code review, best practices, development libraries, and building software without known vulnerabilities. This group includes Security RAT, ASVS, cheat sheets, threat modeling, Java encoder, and Dependency Checker. The end-to-end world of the developer is explored, from requirements through writing code. The third group is breaker or tester. This group focuses on testing guidance/process and tools, including the testing guide, Offensive Web Testing Framework (OWTF), and ZAP. The testing approach and touch points are discussed, as well as a high-level survey of the tools.
The final group is the defender. These include tools that can be used to protect the application from attackers on the Internet, both at the edge and within the application. This group includes ModSecurity and AppSensor. All of these tools work together to form the basis of an application security program with a budget of $0 except for the people resources to implement, and I’ll discuss what is required from the human resources to make a program such as this successful. EVENT: OWASP AppSec EU 2018 SPEAKER: Chris Romeo PUBLICATION PERMISSIONS: Original video was published with the Creative Commons Attribution license (reuse allowed). ATTRIBUTION CREDITS: Original video source: https://www.youtube.com/watch?v=5RmHQKeXgk4 https://www.youtube.com/watch?v=JxZr5-biOY0