Talk type: Talk

SAST outside and inside

  • Talk in Russian
Presentation pdf

We'll talk about security, vulnerabilities, and also dive into more detail on where SAST belongs here. How is CWE different from CVE? Why is MISRA needed? What is OWASP? What do SQLI and XSS have in common? How do SAST solutions detect various security problems? What technologies are used for this? How does taint analysis work?

During the session, Sergey will answer all these questions, not forgetting to show how it all looks in practice.

  • #sast
  • #security
  • #staticcheck

Speakers

Invited experts

Talks