<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Security on webtechie.be</title>
    <link>https://webtechie.be/tags/security/</link>
    <description>Recent content in Security on webtechie.be</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Mon, 11 May 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://webtechie.be/tags/security/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Is Your Java App Actually Secure, Or Does It Just Look That Way?</title>
      <link>https://webtechie.be/podcasts/2026/2026-05-11-foojay-podcast-95-java-security-zombie-dependencies/</link>
      <pubDate>Mon, 11 May 2026 00:00:00 +0000</pubDate>
      <guid>https://webtechie.be/podcasts/2026/2026-05-11-foojay-podcast-95-java-security-zombie-dependencies/</guid>
      <description>&lt;p&gt;Your Java app passes the build, the tests are green, and the dashboard looks fine. But are the libraries underneath still maintained, or are they quietly collecting vulnerabilities? In this episode we dig into &amp;ldquo;zombie dependencies&amp;rdquo;, the CVE process, and the small habits that make a real difference. I host &lt;strong&gt;Steve Poole&lt;/strong&gt; and &lt;strong&gt;David Welch&lt;/strong&gt; from HeroDevs for Foojay Podcast #95.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Foojay Podcast #63: How do we keep our Java applications up to date and secure?</title>
      <link>https://webtechie.be/podcasts/2024/2024-12-16-foojay-podcast-63-java-updates-security/</link>
      <pubDate>Mon, 16 Dec 2024 00:00:00 +0000</pubDate>
      <guid>https://webtechie.be/podcasts/2024/2024-12-16-foojay-podcast-63-java-updates-security/</guid>
      <description>&lt;p&gt;Most teams want to run a current Java version, yet many production systems stay stuck on old releases and outdated dependencies. Management priorities, legacy code, and fear of breaking things all pull in the same direction. In this Foojay Podcast #63, we sit down with &lt;strong&gt;Gerrit Grunwald&lt;/strong&gt;, &lt;strong&gt;Jonathan Schneider&lt;/strong&gt;, &lt;strong&gt;Martijn Dashorst&lt;/strong&gt;, &lt;strong&gt;Carl Wanting&lt;/strong&gt;, &lt;strong&gt;Charl Fasching&lt;/strong&gt;, and &lt;strong&gt;Johan Janssen&lt;/strong&gt; to talk about how we keep Java applications current and secure.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Foojay Podcast #58: How Java Developers Can Secure Their Code</title>
      <link>https://webtechie.be/podcasts/2024/2024-09-30-foojay-podcast-58-secure-java-code/</link>
      <pubDate>Mon, 30 Sep 2024 00:00:00 +0000</pubDate>
      <guid>https://webtechie.be/podcasts/2024/2024-09-30-foojay-podcast-58-secure-java-code/</guid>
      <description>&lt;p&gt;Three years after Log4Shell shook the Java world, the same class of problems keeps showing up in production code. Outdated dependencies, SQL injection, deserialization bugs, and forgotten dead code still bite teams that thought they were safe. In this conversation, we dig into the habits and tools that help developers ship safer Java. I host the episode with &lt;strong&gt;Brian Vermeer&lt;/strong&gt;, and we talk with &lt;strong&gt;Jonathan Vila&lt;/strong&gt; and &lt;strong&gt;Erik Costlow&lt;/strong&gt; in Foojay Podcast #58.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Foojay Podcast #50: JCON Report, Part 2 - Maven, Software Security, Code Quality</title>
      <link>https://webtechie.be/podcasts/2024/2024-05-27-foojay-podcast-50-jcon-maven-security-code-quality/</link>
      <pubDate>Mon, 27 May 2024 00:00:00 +0000</pubDate>
      <guid>https://webtechie.be/podcasts/2024/2024-05-27-foojay-podcast-50-jcon-maven-security-code-quality/</guid>
      <description>&lt;p&gt;A broken build pipeline or a sneaky transitive dependency can derail a Java project for days. The talks at JCON kept coming back to the same question. How do we keep our code readable, our dependencies safe, and our releases boring? In this second part of our JCON report, we sit down with &lt;strong&gt;Karl Heinz Marbaise&lt;/strong&gt;, &lt;strong&gt;Steve Poole&lt;/strong&gt;, &lt;strong&gt;Miro Wengner&lt;/strong&gt;, &lt;strong&gt;Marit van Dijk&lt;/strong&gt;, and &lt;strong&gt;Hinse ter Schuur&lt;/strong&gt; for Foojay Podcast #50.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Foojay Podcast #7: Security in Java, what do we need to know and how to keep our applications secure?</title>
      <link>https://webtechie.be/podcasts/2022/2022-11-21-foojay-podcast-7-security-java-vulnerabilities/</link>
      <pubDate>Mon, 21 Nov 2022 00:00:00 +0000</pubDate>
      <guid>https://webtechie.be/podcasts/2022/2022-11-21-foojay-podcast-7-security-java-vulnerabilities/</guid>
      <description>&lt;p&gt;Every Java application carries a stack of dependencies, and any one of them can hide a vulnerability that puts your users at risk. Knowing how to spot weak spots, harden code, and pick safer libraries matters for anyone shipping JVM software. In this Foojay Podcast #7, host &lt;strong&gt;Erik Costlow&lt;/strong&gt; sits down with &lt;strong&gt;Steve Poole&lt;/strong&gt;, &lt;strong&gt;Brian Vermeer&lt;/strong&gt;, and &lt;strong&gt;Anastasiia Voitova&lt;/strong&gt; to dig into what Java developers need to know to keep applications secure.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
