Code Review & Architecture Fundamentals - Initial Release & More
Luke Rogerson code review & architecture training promotion discord
Lots of news below! ogSec is thrilled to announce the release of our first batch of courses in the Code Review & Architecture Fundamentals series! Drawing on years of experience in reviewing complex web applications and SaaS solutions, this series is crafted for individuals looking to elevate their skills in app security testing and code review. Our initial set of courses provides the essential groundwork for preparing and conducting effective assessments.
Systemic Bugs in Third Party Developed Code
Luke Rogerson software development training report writing client communication sdlc
It’s been a few weeks since we launched our report writing training course “The Art of Report Writing” and since then we’ve had some great conversations with folks on their challenges around reporting and client communication. One conversation that stood out was around a client using a third-party developer for several products. When a testing team assessed each product over a year it became apparent that not only were the vulnerabilities similar from product to product, but many instances of the same vulnerability were also present, indicating a systemic issue with both the code and the development team’s practices.