{"podcast":{"title":"Application Security Weekly (Audio)","slug":"application-security-weekly-audio-436682","podcast_index_feed_id":436682,"rss_url":"https://aswaudio.libsyn.com/rss","website_url":"https://securityweekly.com/asw","image_url":"https://static.libsyn.com/p/assets/0/a/1/5/0a15d1d27c1a4bbc27a2322813b393ee/ASW_Cover_1920x1920-20240930-x3a3ohx73b.png","author":"Security Weekly Productions","episode_count":398,"summary":"About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.","last_synced_at":null,"page_url":"https://stenobird.com/podcast/application-security-weekly-audio-436682"},"episode":{"title":"Why Basic Security Practices Still Work - Rob Allen - ASW #382","slug":"why-basic-security-practices-still-work-rob-allen-asw-382","published_at":"2026-05-12T09:00:00+00:00","page_url":"https://stenobird.com/podcast/application-security-weekly-audio-436682/why-basic-security-practices-still-work-rob-allen-asw-382","show_page_url":"https://stenobird.com/podcast/application-security-weekly-audio-436682","url":"https://aswaudio.libsyn.com/why-basic-security-practices-still-work-rob-allen-asw-382","audio_url":"https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/aswaudio/ASW_382_1--0607d16c-744a-4074-8b49-626778dc1cc8--audio-converted--cd868376-73bc-4c3e-86f0-ad244b4b12e6.mp3?dest-id=626765","summary":"If you have to ditch your entire appsec strategy because you expect 2026 to bring more vulns more quickly, then you probably didn't have a good strategy in the first place. Rob Allen shares how the mentality of \"assume breach\" doesn't have to be a defeatist attitude and can instead be a way to change a catastrophic breach into a more contained one. We also talk about proactive security and what an \"avoid breach\" attitude could look like, including how to apply the macro lessons of default deny and network isolation to writing secure code. Resources https://www.threatlocker.com/blog/the-claude-mythos-preview-proves-now-is-the-time-for-zero-trust?utm source=cyber risk alliance&amp;utm medium=sponsor&amp;utm campaign=claude mythos asw q2 26&amp;utm content=claude mythos asw-&amp;utm_term=podcast https://www.threatlocker.com/capabilities/zero-trust-network-access?utm source=cyber risk alliance&amp;utm medium=sponsor&amp;utm campaign=ztna q2 26&amp;utm content=ztna-&amp;utm_term=podcast https://www.threatlocker.com/capabilities/zero-trust-cloud-access?utm source=cyber risk alliance&amp;utm medium=sponsor&amp;utm campaign=ztca q2 26&amp;utm content=ztca-&amp;utm_term=podcast This segment is sponsored by ThreatLocker. Visit https://securityweekly.com/threatlocker to learn more about them! Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-382","meta_description":"If you have to ditch your entire appsec strategy because you expect 2026 to bring more vulns more quickly, then you probably didn't have a good strategy i…","key_points":[],"chapters":[],"topics":[],"duration_seconds":4313,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/application-security-weekly-audio-436682/episodes/why-basic-security-practices-still-work-rob-allen-asw-382/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/application-security-weekly-audio-436682/why-basic-security-practices-still-work-rob-allen-asw-382.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}