InfoQ Homepage Security Content on InfoQ
-
Anastasiia Voitova on Cryptography and the Design of Cryptographic Libraries
In this podcast Wes Reisz talks to Anastasiia Voitova about cryptography, how to design libraries to be usable by developers, and designing cryptographic libraries. We’ll also discuss her talk from the recent QCon New York, , called “Making Security Usable”.
-
Guy Podjarny on OSS Security, Serverless, and the Equifax Hack
In this podcast Wes talks to Guy Podjarny. They discuss the Equifax hack and the things we can learn from it, some of the security problems in serverless architectures, the kind of things attackers look for in serverless platforms, and wrap up with security hygiene best practices that developers should follow.
-
Security Considerations and the State of Microservices with Sam Newman
Wesley Reisz talks with Sam Newman about microservices. They explore the current state of the art with regards to the architectural style and corresponding tooling and deployment platforms. They then discuss how microservices increase the surface area of where sensitive information can be read or manipulated, but also have the potential to create systems that are more secure.
Resources
How to Implement Zero Trust API Security
Level up security - Learn best practice for implementing a Zero Trust approach for APIs.
JWT Security Best Practices
Best practices for protecting your APIs from attacks and maintaining a high level of security of applications. Learn more.
CIAM vs IAM: What's the Difference?
Explore IAM and CIAM in terms of business requirements, behaviors, security and how they can work together. Learn more.
Curity Identity Server - Community Edition
Take the pain out of implementing OAuth and OpenID Connect, manage API access, secure apps and websites. Free to use.