Erik Costlow17 articles
Three years after Log4Shell caused a significant security issue, we still struggle with insecure dependencies and injection problems. In this podcast, we’ll discuss how developers can secure their code. I talked with three authors who posted a security and code …
- Brian Vermeer,
- Erik Costlow,
- Frank Delporte,
- Jonathan Vila
-
Java: Where the Wild Code Isn’t
In the last several years, the OpenJDK community has made Java significantly safer for users and developers while at the same time making it easier to design, build, and run applications quickly.
Java users should incorporate several practices to take full benefit from the defenses of the modern JRE.
- Erik Costlow
-
Trash Pandas Love Enterprise Java Garbage Code
If raccoons were software engineers, they would feel at home inside many enterprise systems. These systems are often full of unused and dead code.
-
Improve DevOps Productivity with Azul Intelligence Cloud for Any JVM
Intelligence Cloud works with any JVM from any vendor or distribution to slash time from tasks across an enterprise’s entire Java estate.
- Erik Costlow
-
Foojay Podcast #17: Execute Java Code with TornadoVM on CPUs, GPUs, and FPGAs
TornadoVM is a programming and execution framework for offloading and running JVM applications on multi-core CPUs, GPUs, and FPGAs.
- Erik Costlow,
- Frank Delporte,
- Jakob Jenkov,
- Thanos Stratikopoulos
-
Java Security: Log4J, the SecurityManager, and Funding
A demonstration of log4j exploits, which defenses people tried, and which worked. A look at open source funding models, subscriptions, and bug bounty programs to see why it’s sometimes hard to donate.
-
Moving Security into the JVM
With Azul Vulnerability Detection, running the software and getting security insight become the same action.
- Erik Costlow
-
Foojay Podcast #7: Security in Java, what do we need to know and how to keep our applications secure?
We invited Java security experts to dive into the fascinating world of secure coding and detecting vulnerabilities in your Java applications!
- Brian Vermeer,
- Erik Costlow,
- Frank Delporte
-
Foojay Podcast #5: OpenJDK 19 Discussion Panel
It’s September 20th, OpenJDK 19 has been released. In this podcast, we discuss the new features and the changes that this release brings.
- Deepu K Sasidharan,
- Erik Costlow,
- Frank Delporte,
- Miro Wengner
-
Santa Claus Issues YuleLog4J Advisory
Christmas revelers and elves are urged to patch their fireplaces, as a Remote Combustion Effect (RCE) vulnerability has been discovered in the traditional holiday YuleLog4J. YuleLog4J is one of the most popular holiday celebrations, appearing in approximately 64% of fireplaces …
- Erik Costlow
-
Log4j2 Isn’t Killing Java
Java developers typically choose from several logging systems or facades. Many of these logging frameworks have grown to work together over the years.
- Erik Costlow