< newsroom >

Latest news and articles of Davide Danelon

Davide Danelon is the Founder & CEO of BeDefended, with many years of experience and numerous industry certifications across offensive and defensive security. His work spans application security, cloud security, secure development and the security of AI/LLM-based applications, and he regularly shares research, talks and practical guidance on these topics.

  • :/ News

    Secure Coding with AI: Why AI-Generated Code Needs a Security Discipline

    AI writes more of our code every year, yet studies show nearly half ships insecure. Learn how secure coding with AI works in practice.

    READ MORE
  • :/ Conferences

    Webinar about the Security of AI-generated code

    Discover the risks of AI-generated code! We’ll uncover common vulnerabilities, explore practical examples, and share tips to create safer code using AI. Learn how to harness AI’s potential while minimizing risks.

    READ MORE
  • :/ Conferences

    Webinar on Proactive Strategies for Early Detection of Vulnerabilities

    In this enlightening talk, we’ll uncover why Secure Code Review is a cornerstone of modern software security practices and how it fundamentally reshapes the game rules in safeguarding applications. Through a blend of real-world examples, case studies, myths, and legends, we’ll explore how Secure Code Review serves as a proactive shield, enabling the detection of vulnerabilities that may otherwise evade detection through traditional penetration tests.

    READ MORE
  • :/ Conferences

    Webinar about Secure Code Review

    Learn why it is critical to conduct a Secure Code Review and how this advanced practice redefines the rules of the game in application protection.

    READ MORE
  • :/ Conferences

    BeDefended on stage at HackInBo 2018

    Davide Danelon will talk next 27th October at HackInBo Winter Edition 2018 about CORS (In)Security.

    READ MORE
  • :/ News

    The Complete Guide to CORS (In)Security

    A complete guide to Cross-Origin Resource Sharing (in)security: how CORS works, how misconfigurations are exploited and how to configure it securely.

    READ MORE
  • :/ News

    Avoid Tapjacking on Cordova apps

    How to prevent tapjacking attacks on Cordova hybrid applications. TapjackingProtectionPlugin open source Cordova plugin.

    READ MORE
  • :/ News

    When brute force prevention can turn in DoS

    Account lockout could be a solution worse than the problem. Some practical advices to protect an app without introducing DoS.

    READ MORE
  • :/ News

    Implementing secure CORS on Tomcat

    When trusting default configuration leads to security issues. What are CORS misconfigurations and how to exploit them.

    READ MORE