Defense-in-depth strategies for securing mobile applications - Ryan Lloyd - ASW #390

Defense-in-depth strategies for securing mobile applications - Ryan Lloyd - ASW #390

Author: Security Weekly Productions July 7, 2026 Duration: 47:53

Mobile applications have unique risks and threat models compared to server-side applications and infrastructure. Consequently, they need different strategies to ensure their business logic and workflows well secured. We'll dive into some of these defense-in-depth strategies and why they are important to mobile applications. Securing workflows goes beyond input validation and pattern matching suspicious payloads; it requires detailed attention to state machines, edge cases, and collecting signals to evaluate trust.

Segment Resources:

This segment is sponsored by Guardsquare. Visit https://securityweekly.com/guardsquare to learn more about them!

Show Notes: https://securityweekly.com/asw-390


Dive into the ever-evolving world of digital defense with the Security Weekly Podcast Network (Video). Produced by Security Weekly Productions, this network isn't a single perspective but a comprehensive hub where different facets of cybersecurity come into focus through distinct, dedicated shows. You'll find episodes from series like Application Security Weekly, Business Security Weekly, Paul's Security Weekly, Enterprise Security Weekly, and Security Weekly News, all curated in one feed. This structure means that whether you're analyzing code, shaping corporate policy, or managing infrastructure, there's relevant content for you. The discussions move beyond headlines, offering practical analysis and expert insights that help make sense of complex threats and solutions. By blending technology deep dives with timely news commentary, this video podcast provides a multi-dimensional view of the field, suitable for professionals who need to stay informed and enthusiasts curious about how security shapes our digital lives. It’s a consistent resource for anyone looking to understand not just what is happening in cybersecurity, but why it matters and how to respond.
Author: Language: English Episodes: 50

Security Weekly Podcast Network (Video)
Podcast Episodes
Hacking All The Devices, with AI? - Rob Allen - PSW #941 [not-audio_url] [/not-audio_url]

Duration: 2:06:01
Rob Allen from ThreatLocker joins us to discuss securing agentic AI with zero-trust controls, least privilege, and access controls to limit what agents can access and do. This segment is sponsored by ThreatLocker. Visit…
Applying Zero Trust Principles to Agents - Kieran Human - ASW #397 [not-audio_url] [/not-audio_url]

Duration: 1:06:40
Sandboxing, least privilege, and monitoring are well-established controls in terms of the defenses they provide against unexpected and unauthorized actions. But being well-established in theory doesn't always translate t…
Rejoice In The Nostalgia - PSW #940 [not-audio_url] [/not-audio_url]

Duration: 2:08:22
In the security news this week: Cursor opens your repo, the repo opens you If you want the good model I'm going to need to see your ID Flock's a Flocking mess Defender was supposed to be the chosen one Side stepping Secu…