{"podcast":{"title":"Application Security Weekly (Audio)","slug":"application-security-weekly-audio-436682","podcast_index_feed_id":436682,"rss_url":"https://aswaudio.libsyn.com/rss","website_url":"https://securityweekly.com/asw","image_url":"https://static.libsyn.com/p/assets/0/a/1/5/0a15d1d27c1a4bbc27a2322813b393ee/ASW_Cover_1920x1920-20240930-x3a3ohx73b.png","author":"Security Weekly Productions","episode_count":405,"summary":"About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.","last_synced_at":"2026-07-14T18:20:04.472781+00:00","page_url":"https://stenobird.com/podcast/application-security-weekly-audio-436682"},"episode":{"title":"Defense-in-depth strategies for securing mobile applications - Ryan Lloyd - ASW #390","slug":"defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390","published_at":"2026-07-07T09:00:00+00:00","page_url":"https://stenobird.com/podcast/application-security-weekly-audio-436682/defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390","show_page_url":"https://stenobird.com/podcast/application-security-weekly-audio-436682","url":"https://aswaudio.libsyn.com/defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390","audio_url":"https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_390_1--4b0e21d2-3c69-44d3-be69-a71716049e47--audio-converted--588e1185-e8ad-46c1-8e0a-daee242b1d64.mp3?dest-id=626765","summary":"Mobile applications have unique risks and threat models compared to server-side applications and infrastructure. Consequently, they need different strategies to ensure their business logic and workflows well secured. We'll dive into some of these defense-in-depth strategies and why they are important to mobile applications. Securing workflows goes beyond input validation and pattern matching suspicious payloads; it requires detailed attention to state machines, edge cases, and collecting signals to evaluate trust. Segment Resources: https://hubs.la/Q04jLKj70 https://mas.owasp.org/MASTG/0x04c-Tampering-and-Reverse-Engineering/ https://owasp.org/API-Security/editions/2023/en/0x00-header/ This segment is sponsored by Guardsquare. Visit https://securityweekly.com/guardsquare to learn more about them! Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-390","meta_description":"Mobile applications have unique risks and threat models compared to server-side applications and infrastructure. Consequently, they need different strateg…","key_points":[],"chapters":[],"topics":[],"duration_seconds":2873,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/application-security-weekly-audio-436682/episodes/defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/application-security-weekly-audio-436682/defense-in-depth-strategies-for-securing-mobile-applications-ryan-lloyd-asw-390.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}