Ramona is a Developer Advocate at Auth0. With a background in software engineering and quality assurance, she bridges the gap between testers and developers and fosters trust in identity topics. Ramona is also a Google Developer Expert in Web Technologies, a Women Techmaker, and a Cypress Ambassador.
AI-powered development tools are excellent for helping us deliver code more quickly. However, I've noticed that these tools can also introduce subtle security issues that might even impress Skynet. In this session, I will discuss real-world examples where AI assistants have inadvertently worked against developers, highlighting cases of data leaks, supply chain attacks and all the like.
A cryptic videotape haunting its viewers, a shape-shifting entity haunting a research station, or an astronaut unknowingly carrying an alien onto a spaceship, do these scenarios sound familiar? These horror movie plots share similarities with creepy scenarios in web security you have already encountered. In a horror movie, a team should never split up, so please join me in countering the horrors of injection, broken access control and others!
In this session, we will debug the accessibility issues of a real React login component live, similar to traversing Portal’s test chambers: Using an actual screen reader, we'll show how minor improvements, can transform a complex test chamber into a smooth user experience. In addition, we will zoom in onto the WCAG to see how they talk about “Accessible Authentication”. The cake might be a lie, but accessibility doesn't have to be!