YoVDO

How Segment Proactively Protects Customer's API Keys

Offered By: Security BSides San Francisco via YouTube

Tags

Security BSides Courses Software Development Courses Cybersecurity Courses

Course Description

Overview

Explore a conference talk from BSidesSF 2023 that delves into Segment's proactive approach to protecting customer API keys. Learn about the often-overlooked security risks associated with API keys, including the thousands of secrets leaked daily on GitHub. Discover how these leaked keys can potentially perform the same actions as authorized users, posing significant threats to organizational security. Gain insights into Segment's innovative strategies for safeguarding user API keys, moving beyond traditional security measures like app hardening, suspicious session tracking, and phishing investigation. This 26-minute presentation by Sal Olivares offers valuable knowledge for security professionals looking to enhance their API key protection protocols and mitigate associated risks.

Syllabus

BSidesSF 2023 - How Segment proactively protects customer’s API keys (Sal Olivares)


Taught by

Security BSides San Francisco

Related Courses

Early Detection through Deception
YouTube
Hack for Show, Report for Dough - Brian King
YouTube
Blue Teamin on a Budget of Zero - Kyle Bubp
YouTube
Windows Event Logs - Zero to Hero
YouTube
Weaponizing Splunk - Using Blue Team Tools for Evil
YouTube