Go offline with the Player FM app!
262 - Michael Lubas, Founder of Paraxial.io
Manage episode 497030471 series 2543897
In this episode I talk with Michael Lubas, founder of Paraxial, a software security product for Ruby on Rails applications. We discuss his background in both development and penetration testing, and his recent creation of GemShop - a deliberately vulnerable Rails 8 e-commerce application designed to teach developers about web security through hands-on experience. Michael explains common attack vectors like credential stuffing, the legal complexities around security research, and why developers are actually very interested in security despite stereotypes. We also cover his experience at Rails World and how Paraxial helps Rails developers get started with security.
Chapters
1. Introduction and Newsletter Promotion (00:00:00)
2. Meet Michael Lubas from Paraxial (00:03:29)
3. GemShop: Learning Security Through Practice (00:05:02)
4. Credential Stuffing and Attack Motivations (00:13:29)
5. Cybercrime Legality and Cross-Border Hacking (00:19:12)
6. Testing Security Controls Effectively (00:27:13)
7. Rails World Conference Experience (00:34:33)
8. Practical Security for Developers (00:39:07)
9. Closing Thoughts and Resources (00:44:32)
267 episodes
Manage episode 497030471 series 2543897
In this episode I talk with Michael Lubas, founder of Paraxial, a software security product for Ruby on Rails applications. We discuss his background in both development and penetration testing, and his recent creation of GemShop - a deliberately vulnerable Rails 8 e-commerce application designed to teach developers about web security through hands-on experience. Michael explains common attack vectors like credential stuffing, the legal complexities around security research, and why developers are actually very interested in security despite stereotypes. We also cover his experience at Rails World and how Paraxial helps Rails developers get started with security.
Chapters
1. Introduction and Newsletter Promotion (00:00:00)
2. Meet Michael Lubas from Paraxial (00:03:29)
3. GemShop: Learning Security Through Practice (00:05:02)
4. Credential Stuffing and Attack Motivations (00:13:29)
5. Cybercrime Legality and Cross-Border Hacking (00:19:12)
6. Testing Security Controls Effectively (00:27:13)
7. Rails World Conference Experience (00:34:33)
8. Practical Security for Developers (00:39:07)
9. Closing Thoughts and Resources (00:44:32)
267 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.