Powered by RND
PodcastsTechnologyThe Stack Overflow Podcast
Listen to The Stack Overflow Podcast in the App
Listen to The Stack Overflow Podcast in the App
(524)(250,057)
Save favourites
Alarm
Sleep timer

The Stack Overflow Podcast

Podcast The Stack Overflow Podcast
The Stack Overflow Podcast
For more than a dozen years, the Stack Overflow Podcast has been exploring what it means to be a software developer and how the art and practice of programming ...

Available Episodes

5 of 761
  • What security teams need to understand about developers
    NightVision offers web and API security testing tools built to integrate with developers’ established workflows. NightVision identifies issues by precise area(s) of code, so devs don’t have to chase down and validate vulnerability reports, a process that eats up precious engineering resources. Get started with their docs.Connect with Kinnaird on LinkedIn. Stack Overflow user Cecil Curry earned a Populist badge with their exceptionally thoughtful answer to In Python how can one tell if a module comes from a C extension?.Some great excerpts from this episode:“From the program side, I would say if you're running a security program or you're starting from day one, there's a danger with security people and being the security person who's out of touch or doesn't know what the life of a developer is like. And you don't want to be that person. And that's not how you have actual business impact, right? So you got to embed with teams, threat model, and then do some preventative security testing, right? Testing things before it gets into production, not just relying on having a bug bounty program.”“With code scanning, you're looking for potentially insecure patterns in the code, but with dynamic testing, you're actually testing the live application. So we're sending HTTP traffic to the application, sending malicious payloads in forms or in query parameters, et cetera, to try to elicit a response or to send something to an attacker controlled server. And so using this, we're able to. Not just have theoretical vulnerabilities, but exploitable vulnerabilities. I mean, how many times have you looked at something in GitHub security alerts and thought, yeah, that's not real. That's not exploitable. Right. So we're trying to avoid that and have higher quality touch points with developers. So when they look at something, they say, okay, that's exploitable. You showed me how. And you traced it back to code.”
    --------  
    22:27
  • From bugs to performance to perfection: pushing code quality in mobile apps
    Instabug helps developers monitor, prioritize, and debug performance and stability issues throughout the mobile app development lifecycle. Get started with their docs.Connect with Kenny on LinkedIn. Stack Overflow user itoctopus earned a Populist badge by explaining how to Break huge URLs so they don't overflow.Some great excerpts from today’s episode: On why they built a lean, mean SDK: “Nowadays mobile developers spend a lot of time thinking about SDK bloat and how much they're taxing their app’s performance just from the SDKs they’re including. We spent a lot of time and a lot of effort making sure that our SDK has very minimal performance impact. You can't do this without any performance impact, but making sure that it has really minimal performance impact as an SDK itself. A lot of that has to do with the way in which, from years of experience, we capture the information and offload certain information to storage for when we have network connectivity bandwidth later so that we're not constantly eating network.”On the future of self-fixing code and mobile app development: “Our belief is that the place where we're going to see this kind of auto fixing of code, auto healing of code, it's probably going to be mobile first. So we're invested heavily in seeing that reality. You can think of it as straightforward as crashes, for example. There's a known set of crash error codes. And so there's a known set of crash behaviors. So it's pretty easy for us. And that was what our smart resolve 1.0 was to get to, Hey, this is generally how you should solve these types of crashes. Our 1.0 version is not giving you code suggestions, but it's at least giving you known best practices from places like Stack Overflow and others that have content about how to solve these types of problems.”On using AI models to spot UI issues: “We think that there are a lot less deterministic ways to spot a frustration signal. So the thing we're working on is, on device models for your users’ behavior that will allow our SDK to capture a frustration signal that nobody else has. Maybe today when I opened my banking app, I usually look at page one and then do a transfer, check out my balance, and now I'm doing this weird swiping behavior because something's not working well. A model could spot that. It wouldn't be reported as a bug, but a model could spot that.”
    --------  
    24:57
  • Even high-quality code can lead to tech debt
    Tabnine is an AI code assistant that offers AI tools for code generation, testing, and code review.Eran was previously a researcher at IBM, where he worked on IBM Watson. Connect with Eran on LinkedIn.Stack Overflow user Anders earned a Populist badge with their first-class answer to How to detect the current screen resolution?.
    --------  
    28:38
  • Your docs are your infrastructure
    Fabrizio is now the lead documentation engineer Tinybird, a data platform for user-facing analytics. Get started with their docs or explore their blog.Find Fabrizio’s blog here. Some reading suggestions:What docs as code really meansHow I'm using AI as a technical writerWhy I became a Documentation Engineer (and what that even means)Find Fabrizio on LinkedIn or GitHub.
    --------  
    22:56
  • The app that fights for your data privacy rights
    Sukhi is a senior product manager for Permission Slip by Consumer Reports, an app to help people exercise their digital data privacy rights.Consumer Reports is a nonprofit organization with a long history of protecting consumers’ rights and advocating for changes that make them safer.Connect with Sukhi on LinkedIn or via her website. Shoutout to Stack Overflow user Martijn Pieters, who’s earned over a million reputation by delivering wisdom to questions like Runtime of python's if substring in string.
    --------  
    25:50

More Technology podcasts

About The Stack Overflow Podcast

For more than a dozen years, the Stack Overflow Podcast has been exploring what it means to be a software developer and how the art and practice of programming is changing our world. From Rails to React, from Java to Node.js, join the Stack home team for conversations with fascinating guests to help you understand how technology is made and where it’s headed.
Podcast website

Listen to The Stack Overflow Podcast, Better Offline and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features
Social
v7.0.0 | © 2007-2024 radio.de GmbH
Generated: 12/12/2024 - 7:51:46 PM