Skip to content
HeyJared

Absolute AppSec

A weekly podcast of all things application security related. Hosted by Ken Johnson and Seth Law.

Podcast · By Ken Johnson and Seth Law · American English · Official site

Indexed episodes, last 90 days
9
Latest publication
Sep 15, 2026
Audience
Checking…
Earliest in this view
Jul 7, 2026

Latest episodes

  1. Episode · Sep 15, 2026

    Episode 334 - w/ Ryan Lloyd - Mobile Application Security (opens the original)

    Episode notes

    Read excerpt

    In episode 334 of Absolute AppSec, hosts Ken Johnson and Seth Law interview Ryan Lloyd, Chief Product Officer at GuardSquare, to explore mobile application security and product management strategy. Lloyd details GuardSquare's evolution from the open-source Java optimizer ProGuard—which introduced basic name obfuscation—into a commercial suite offering multi-layered code hardening, control flow flattening, encryption, and automated runtime application self-protection (RASP) to detect dynamic tamp

  2. Episode · Sep 8, 2026

    Episode 333 - LLM Patching Flaws, AI Code Regressions, Bug Bounty Economy (opens the original)

    Episode notes

    Read excerpt

    Sponsored by GuardSquare (guardsquare.com), the discussion of Episode 333 opens with an analysis of a 1Password academic paper evaluating how frontier LLMs perform at autonomous vulnerability patching. The research indicates that LLMs successfully generate functional, side-effect-free patches only 26% of the time, often introducing new security flaws, breaking application behavior, or hallucinating fixes due to a lack of environmental context and "correctness collapse". The hosts critique the in

  3. Episode · Sep 1, 2026

    Episode 332 - AI SDLC, Call for Cyber Defense, Rumor as the Exploit (opens the original)

    Episode notes

    Read excerpt

    In episode 332, the discussion focuses on how artificial intelligence is reshaping the Software Development Lifecycle (SDLC). The episode analyzes Anthropic's blog post regarding an "AI-native SDLC," evaluating its vision of replacing traditional development bottlenecks with AI workflows. The commentary critiques Anthropic's reliance on simple Markdown files for tracking development decisions, noting that replacing deterministic tools with probabilistic LLMs in core SDLC processes introduces sig

  4. Episode · Aug 25, 2026

    Episode 331 - Being "Mythos" Ready, CRLF-Powered De-sync Attacks (opens the original)

    Episode notes

    Read excerpt

    Sponsored by Guardsquare (guardsquare.com), Episode 331 focuses heavily on the growing role of AI agents in application security and how organizations should build and defend against agentic systems. Ken and Seth argue that effective AI security systems should combine deterministic tooling with the probabilistic reasoning of LLMs rather than handing an entire security workflow to a model. Deterministic steps can map repositories, identify dependencies, reconstruct code relationships, and narrow

  5. Episode · Aug 18, 2026

    Episode 330 - w/ Jeevan Singh - Vulnerability Jail (opens the original)

    Episode notes

    Read excerpt

    In this special episode of Absolute AppSec, we cover a topic which started as a solution proposed by Rippling Security's Jeevan Singh: Vulnerability Jail. As Jeevan describes it: "In this new AI world, we have seen many more vulnerabilities, and we struggled to get Engineering to fix them all in a timely fashion. This changed when we created Vulnerability Jail. If any vulnerability goes over SLA, your team is placed in Jail, preventing them from merging PRs into the main/default branches. We imp

Publishing over time

Last 90 days. Choose a month to open its work.

Recurring subjects

Named in the text we hold. One piece can cover several.

Audience

No verified audience measurement yet.

About this data

Counts cover the work we have indexed. Tone needs enough text and a confident classification. Excerpts and episode notes are not full articles or transcripts.

Identity or attribution wrong? Suggest a correction.

See coverage about Absolute AppSec