39 min

Apr 6, 2021 – Security for developers Apple Treats

    • Technology

In our fifth episode we talk on Application Security and, of course, about privacy.
What are our expectations of WWDC21? What iOS 14.5 brings to users and developers? Apple rejects apps using privacy-unfriendly SDKs, China apps use their own fingerprinting approachs.
Of course, we couldn't avoid discussing Facebook and leak of 526M accounts. We also talk on new threats for developers and basic things to start with, if you're interested in increasing app's security.

Further reading and watching:
Apple Platform Security: https://support.apple.com/guide/security/welcome/web
OWASP Mobile Security Testing Guide: https://github.com/OWASP/owasp-mstg
OWASP Mobile Application Security Verification Standard: https://github.com/OWASP/owasp-masvs

Workbook for "Security data management for app devs": https://github.com/vixentael/security-data-management-for-app-devs-workshop
Mobile Notts 2021 talk: End-to-end encrypted doesn't mean secure: https://www.youtube.com/watch?v=CqsrA4eeGSs

Our guest:
- Anastasiia Voitova, Head of Customer Solutions, Security Software engineer at Cossack Labs, https://twitter.com/vixentael

In our fifth episode we talk on Application Security and, of course, about privacy.
What are our expectations of WWDC21? What iOS 14.5 brings to users and developers? Apple rejects apps using privacy-unfriendly SDKs, China apps use their own fingerprinting approachs.
Of course, we couldn't avoid discussing Facebook and leak of 526M accounts. We also talk on new threats for developers and basic things to start with, if you're interested in increasing app's security.

Further reading and watching:
Apple Platform Security: https://support.apple.com/guide/security/welcome/web
OWASP Mobile Security Testing Guide: https://github.com/OWASP/owasp-mstg
OWASP Mobile Application Security Verification Standard: https://github.com/OWASP/owasp-masvs

Workbook for "Security data management for app devs": https://github.com/vixentael/security-data-management-for-app-devs-workshop
Mobile Notts 2021 talk: End-to-end encrypted doesn't mean secure: https://www.youtube.com/watch?v=CqsrA4eeGSs

Our guest:
- Anastasiia Voitova, Head of Customer Solutions, Security Software engineer at Cossack Labs, https://twitter.com/vixentael

39 min

Top Podcasts In Technology

No Priors: Artificial Intelligence | Technology | Startups
Conviction | Pod People
All-In with Chamath, Jason, Sacks & Friedberg
All-In Podcast, LLC
Lex Fridman Podcast
Lex Fridman
Acquired
Ben Gilbert and David Rosenthal
Hard Fork
The New York Times
This Week in XR Podcast
Charlie Fink Productions