Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by Jason Swett. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Jason Swett or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.
Player FM - Podcast App
Go offline with the Player FM app!

262 - Michael Lubas, Founder of Paraxial.io

45:28
 
Share
 

Manage episode 497030471 series 2543897
Content provided by Jason Swett. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Jason Swett or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

In this episode I talk with Michael Lubas, founder of Paraxial, a software security product for Ruby on Rails applications. We discuss his background in both development and penetration testing, and his recent creation of GemShop - a deliberately vulnerable Rails 8 e-commerce application designed to teach developers about web security through hands-on experience. Michael explains common attack vectors like credential stuffing, the legal complexities around security research, and why developers are actually very interested in security despite stereotypes. We also cover his experience at Rails World and how Paraxial helps Rails developers get started with security.

  continue reading

Chapters

1. Introduction and Newsletter Promotion (00:00:00)

2. Meet Michael Lubas from Paraxial (00:03:29)

3. GemShop: Learning Security Through Practice (00:05:02)

4. Credential Stuffing and Attack Motivations (00:13:29)

5. Cybercrime Legality and Cross-Border Hacking (00:19:12)

6. Testing Security Controls Effectively (00:27:13)

7. Rails World Conference Experience (00:34:33)

8. Practical Security for Developers (00:39:07)

9. Closing Thoughts and Resources (00:44:32)

267 episodes

Artwork
iconShare
 
Manage episode 497030471 series 2543897
Content provided by Jason Swett. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Jason Swett or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

In this episode I talk with Michael Lubas, founder of Paraxial, a software security product for Ruby on Rails applications. We discuss his background in both development and penetration testing, and his recent creation of GemShop - a deliberately vulnerable Rails 8 e-commerce application designed to teach developers about web security through hands-on experience. Michael explains common attack vectors like credential stuffing, the legal complexities around security research, and why developers are actually very interested in security despite stereotypes. We also cover his experience at Rails World and how Paraxial helps Rails developers get started with security.

  continue reading

Chapters

1. Introduction and Newsletter Promotion (00:00:00)

2. Meet Michael Lubas from Paraxial (00:03:29)

3. GemShop: Learning Security Through Practice (00:05:02)

4. Credential Stuffing and Attack Motivations (00:13:29)

5. Cybercrime Legality and Cross-Border Hacking (00:19:12)

6. Testing Security Controls Effectively (00:27:13)

7. Rails World Conference Experience (00:34:33)

8. Practical Security for Developers (00:39:07)

9. Closing Thoughts and Resources (00:44:32)

267 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play