Nick Aleks and Dolev Farhi -- GraphQL Security
GraphQL gives clients remarkable flexibility, but that same flexibility can expose authorization gaps, denial-of-service paths, and unexpected routes to sensitive data.
Listen to the episodeGuest
Dolev Farhi is a security engineer and author with extensive experience leading security engineering teams in complex environments in the fintech and cybersecurity industries. He has been a principal security engineer at Wealthsimple, is one of the founders of DEF CON Toronto (DC416), and researches vulnerabilities in IoT devices, builds CTF challenges, and contributes exploits to Exploit-DB.
GraphQL gives clients remarkable flexibility, but that same flexibility can expose authorization gaps, denial-of-service paths, and unexpected routes to sensitive data.
Listen to the episode