Had a bit of an unproductive meeting today and so I give you: (When to consider) Security?
to the tune of “It wasn’t me”
(Chorus)
Logging in to the Server? (Security)
Doing coding in the corner? (Security)
Should you have it in the contract? (Security)
Connecting things to the network? (Security)
SAST came in and it caught me red-handed
Code including IDOR
Picture this, there was some log forging
And a case of BOLA
How could I forget that I had
Hardcoded in my ID
All those people that are logging in, well
Now they all seem like me
(Chorus)
Logging in to the Server? (-> Security)
Doing coding in the corner? (-> Security)
Should you have it in the contract? (-> Security)
Connecting things to the network? (-> Security)
#CyberSecurity #infosec