Podcast Episodes
Back to Search
Public Money, Public Containers (god2026)
Moderne digitale Verwaltungsinfrastrukturen setzen auf eine containerbasierte Infrastruktur. Doch woher stammen die sicheren Container-Images? Derzei…
1 week, 2 days ago
Race Against The Workflows: Stealing GitHub Tokens from Docker Images (god2026)
CI/CD pipelines have become prime targets for supply chain attacks, enabling persistent compromise of distribution builds and secrets. In the GitHub …
1 week, 2 days ago
New OWASP Kubernetes Top 10 in Action and Explained (god2026)
Kubernetes is the backbone of modern applications with a very fast development cycle. To address new threats the OWASP Kubernetes Top 10 received a m…
1 week, 2 days ago
How to Hack "Read-Only" SQL MCP Servers Online (Fast) (god2026)
Chat Bots und AI Agents werden immer mehr produktiv eingesetzt. Oft sollen diese mit einer SQL Datenbank interagieren können. Wenn lediglich Daten ge…
1 week, 2 days ago
How To Fuzz for Logic Bugs? Building Effective Oracles - A Case Study on Site Isolation Bypass Bugs (god2026)
Due to the rise of memory-safe languages like Rust, attention shifts towards logic bugs, which do not arise from insecure memory accesses. Identifyin…
1 week, 2 days ago
OWASP AISVS: Bringing Order to AI Security Chaos (god2026)
Artificial intelligence is becoming a core building block of modern applications, yet the way we secure software has not kept pace with the unique pr…
1 week, 2 days ago
Zeit für OAuth 2.1 - Security Best Practices als neuer Standard (god2026)
Implementieren Sie OAuth noch nach einem Spec von 2012? Dann ist Ihre Anwendung vermutlich unsicher! OAuth 2.0 hat sich in 13 Jahren durch ein Labyri…
1 week, 2 days ago
What LLMs Can Do in Pentesting and Code Security (god2026)
Large language models are starting to change both sides of application security: offensive work such as black-box penetration testing, and defensive …
1 week, 2 days ago
CRA effizient und nachhaltig umsetzen (god2026)
Der Cyber Resilience Act (CRA) stellt Sicherheitsanforderungen an Hersteller und Anbieter von Produkten mit digitalen Elementen. Viele Unternehmen ha…
1 week, 2 days ago
Indirect Prompt Injection in the Wild: An Empirical Study of Prevalence, Techniques, and Objectives (god2026)
As LLMs are increasingly integrated into systems that browse, retrieve, summarize, and act on web content, webpages have become an untrusted input ve…
1 week, 2 days ago