Exploring the Risks of Python in Applications and How to Protect Your Applications from Them
Developers are embracing Python programming language in growing numbers. It is the most studied language among developers and is used for myriad applications. As a dynamic programming language (as opposed to Java and C that are static languages), variable type is not determined in the application until runtime. For application security to accurately and effectively do its job, Python code must be evaluated in runtime. But this is not possible with legacy AppSec approaches such as static application security testing (SAST) and dynamic application security testing (DAST). A different approach using instrumentation that embeds security within software is needed. In this podcast, three members from Contrast Security discuss how interactive application security testing (IAST) tests applications in runtime is the answer: Trish Reilly, Product Marketing Manager for Contrast Assess, Subhash Arja, Head of Product for Contrast Assess, and Justin Leo, Technical Product Manager for Contrast Assess.