YoVDO

Everything-as-Code: Pushing the Boundaries of SAST

Offered By: OWASP Foundation via YouTube

Tags

Application Security Courses Bicep Courses Blockchain Development Courses Solidity Courses Infrastructure as Code Courses Threat Modeling Courses Smart Contracts Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the evolving landscape of Static Application Security Testing (SAST) in this 45-minute conference talk from OWASP Foundation. Delve into the challenges and opportunities presented by the "everything as code" era, examining how traditional SAST approaches must adapt to analyze infrastructure-as-code, smart contracts, and other emerging code paradigms. Learn about the limitations of current SAST techniques when applied to declarative languages like Bicep and blockchain-oriented languages like Solidity. Gain insights into new analysis algorithms, such as constant propagation, and understand how threat models differ across various coding domains. Discover the future directions of SAST solutions and acquire valuable knowledge to evaluate and implement more comprehensive application security testing strategies in an increasingly diverse coding ecosystem.

Syllabus

Everything-as-Code: Pushing the boundaries of SAST


Taught by

OWASP Foundation

Related Courses

Accelerate Software Delivery using DevOps
Microsoft via edX
Infrastructure as Code
Microsoft via edX
App Deployment, Debugging, and Performance
Google Cloud via Coursera
Introduction to DevOps and Site Reliability Engineering
Linux Foundation via edX
Configuration Management and the Cloud
Google via Coursera