Elixir Mentor

Michael Lubas on Evolving Elixir Security

In this episode of the Elixir Mentor Podcast, I welcome back Michael Lubas, founder of Paraxial.io, where he's building comprehensive security tooling specifically designed for the Elixir ecosystem. We explore how AI-generated code is impacting application security and why traditional scanning tools aren't catching critical vulnerabilities.

Michael shares his experience with the most common security mistakes in Elixir projects, including binary deserialization exploits that can lead to remote code execution. We discuss how Phoenix 1.8's improved security documentation helps developers, the rise of organized ransomware attacks, and why security scanning is more crucial than ever with AI-assisted development becoming mainstream.

Our conversation covers the challenges of enterprise security tooling, the differences between Rails and Elixir security patterns, and how Paraxial 3.0 is addressing the unique needs of Elixir developers. Michael explains why most enterprise security tools fail developers and how Paraxial takes a developer-first approach to vulnerability detection and remediation.

We also discuss the future of AI in software development, identity verification challenges in an age of deepfakes, and the evolving hiring landscape for developers. This conversation provides essential context for anyone building production Elixir applications or concerned about security in the age of AI-generated code.

Resources Mentioned:
- Paraxial.io Security Platform: https://paraxial.io/
- Phoenix Security Documentation: https://hexdocs.pm/phoenix/security.html

Connect with Michael Lubas:
- X/Twitter: https://x.com/paraxialio
- LinkedIn: https://www.linkedin.com/in/michaellubas/

SUPPORT ELIXIR MENTOR
- Elixir Mentor: https://elixirmentor.com