Cyber security is a process, not a destination to arrive at. Openness and transparency builds trust. Good simple cyber security solutions are open and transparent. Cyber Security is a complex field. Without digital security, your privacy is at risk. Keep it simple. Keep learning.
-
What the Halting Problem Means for Python Security
Python code plays a central role in modern computing, yet Python applications are not immune to cybersecurity threats. Consequently, security has become a critical concern for both users and developers…
-
Simplicity by Design: Why Python Code Audit Favours Plain HTML Reporting
Python plays a central role in modern computing, yet Python applications are not immune to cybersecurity threats. As a result, security has become a critical concern for developers and users…
-
Rethinking Python Asserts in SAST: Insights from T-DOSE 2026
Recently I was at the great FOSS conference T-DOSE to learn new tech things and meet great open-minded people. After my talk about Python Code Audit. I had a very…
-
Simplifying the Stack: Start Security Testing in the Browser
Cyber security disasters still happen every day. Being security-aware is crucial, but it is not enough. So never trust, always verify! To make security validation simple, testing applications before use…
-
Security By Design: The Shortcut to Smarter, Safer Systems
No business is too small to attract cybercriminals. In fact, small and medium-sized businesses (SMBs) are often more appealing targets for ransomware than large, established enterprises. Limited resources, combined with…
-
Simplifying Python Security: A Local-First Approach with WASM
Python code plays a central role in modern computing, yet Python applications are not immune to cybersecurity threats. Consequently, security has become a critical concern for both users and developers…
-
Open Security News – March 2026
While security testing is crucial for protection, identifying security defects in Python-based software requires specialised knowledge. Most security testers lack the in-depth training on Python-specific nuances that is essential for…
-
Static Application Security Testing (SAST): Simplicity Matters
I have worked on delivering large-scale IT systems for more than 25 years. I spent my early years as an engineer, and for the last 20 years, I have worked…
-
Detection of malware or security weaknesses?
Almost all software is under attack today, yet many organisations remain unprepared in their defence. Every day, news emerges of computer systems being breached, frequently through vulnerabilities within the software…
-
Python Security Showdown: Which Tool Actually Protects Your Code?
On an almost daily basis, I see new Static Application Security Testing (SAST) tools emerging. Nearly all of these new solutions are powered by LLMs and offered exclusively as SaaS…
-
Can We Trust AI to Secure Our Python Code?
I love new technology. I also advocate for Free and Open Machine Learning/AI. I think FOSS AI/ML is crucial for everyone. See FOSS AI/ML Guide.
-
Defence in Depth in Python Security: Why Using Multiple SAST Tools Matters
Defence in depth is a core security principle that relies on multiple, independent security controls. If one fails, others detect or mitigate the threat. In Python Static Application Security Testing…
-
A Data-Driven Analysis of PyCon Talks on security
According to many statistics, Python is the number-one programming language in use today, largely due to the rise of AI and machine learning research, data analysis, and related applications. However,…
-
The 2026 Python SAST Shortlist: What’s Actually Worth Using?
Static Application Security Testing (SAST) tools are essential, including when creating or using Python programs. From a security-by-design perspective, ensuring that applications have no weaknesses that can be easily converted…
