Talk comments

Dave Buchanan at 11:04 on 10 Mar 2018

Well presented, speaker demonstrated expert level knowledge. Loved the example walk through.

Alex Barrett at 11:04 on 10 Mar 2018

There was a lot of great content, some technical difficulties, and it felt a little rushed. I with the presenter had 2 hours.

Thanks for the great talk. I made me realize I need to start testing our application with 5.7 ASAP even if it's only to get the `sys` schema.

Great talk. His knowledge of API security shined.

Riley Major at 10:54 on 10 Mar 2018

Speaker seemingly rushed through some general information and spent most of the time quickly walking through some code which used a particular encryption management mechanism (JOSE/JWT), but without sufficient background for me to understand its use.

it was extremely slow, I didn't feel that the questions asked to the audience had any relevance to contribute to the presentation. Also, at the beginning the speaker spent too much time explaining "history" before the current tools that could be used. I'd suggest to do the presentation more focused on the tools and their purposes rather than personal experiences and history and to do the application faster so more content and details can be included and considered.

Brian Fenton at 10:53 on 10 Mar 2018

Really thorough overview of API security threats and mitigations, with recommendations. A lot of heavy code near the end that would be good to have for later reference as samples (may be available, didn't look yet). Confident, knowledgeable speaker.

Undoubtedly the best session so far. Nicely made presentation, lots to learn and great to see a live demo! I ran into the GROUP BY error pretty recently (partly due to my bad/lazy habit of using stacks) and I agree 100% that disabling the mode isn't the correct way. I guess it depends on how many queries need to be changed throughout the code.

Wow! I wish I could have private lessons from this guy! Awesome lecture and really good examples.

Anonymous at 10:51 on 10 Mar 2018

Lots of great info with code examples. The Github example project is especially nice.