5/15 (Wed.) 15:45 - 16:15 7F 702

Security Code Review - How to Systematically Detect Security Issues

In this talk, we will explore the core concepts and goals of Security Code Review and share how Synology systematically detects security issues. We will introduce the technical details of Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST), including text search, semantic search, code analysis tools and fuzz testing.

We hope that these examples will help the audience to have a more intuitive understanding of the testing techniques, and at the same time enhance the audience's knowledge of code security, so that they can utilize what they have learned to more effectively protect the security of their products and services.

Steven Lin
SPEAKER
Product Developer, Security Incident Response Team
Synology

TOPIC / TRACK
Product Security Forum

LOCATION
Taipei Nangang Exhibition Center, Hall 2
7F 702

LEVEL
Intermediate Intermediate sessions focus on cybersecurity architecture, tools, and practical applications, ideal for professionals with a basic understanding of cybersecurity.

SESSION TYPE
Breakout Session

LANGUAGE
Chinese

SUBTOPIC
Application Security Testing
Software Security
PSIRT