Posts by Farshad Abasi

Agile, DevOps, and the Threat Modeling Disconnect: Bridging the Gap with Developer Insights 
In 2008, my journey into application security and threat modeling began when I joined HSBC’s Global Software Development Centre as…
AutoGQL: The Ultimate GraphQL Plugin for Burp’s Active Scanner
Have you ever stared at a GraphQL request, wishing Burp’s Active Scanner just ‘got’ where to put its payloads? Well,…
Cross-Site Scripting – An eXceSSive Discussion about XSS
Cross-site scripting (XSS) is a security concern that has persisted for over two decades in the world of application security.…
Forward Security Receives $150,000 of NRC IRAP Funding to Further Develop its Eureka DevSecOps Platform
Forward Security Inc., a North American company with offices in Vancouver, Toronto, and Austin, TX, specializing in application & cloud…
Blockchain and Its Impact on Information Security’s CIA-Triad
What is the CIA Triad? Before we get into the details of how blockchain can improve information security, let’s talk…
Embedding Security Into Software During Development 
Security has traditionally been focused at the infrastructure level, particularly at the edge of the network where traffic flows across…
Application Security for Busy Tech Execs

We have created this series to help busy technology executives like you navigate through the cloudy and often poorly understood field of application security and array of options out there. In this series we will discuss some of the key pillars of application security in 1-2 min video capsules to save you time and help make the best decision.

SAST, SCA, DAST, IAST, RASP: What They Are and How You Can Automate Application Security
Application security is an ongoing challenge throughout the entire software development life cycle (SDLC). Today, more and more development teams…
Forward Security is now an AWS Select Consulting Partner
Forward Security Inc., a North American company with offices in Vancouver, Toronto and Austin, TX specializing in application & cloud security consulting,…
Security Implications of AI-assisted coding
Security Implications of AI-assisted Coding
GitHub quietly announced the technical preview for their new Copilot feature recently. Copilot is an AI-assisted pair programming tool that can be used in VS Code…