Summary
tl;dr sec is a popular, free weekly cybersecurity newsletter curated by Clint Gibler that summarizes the best application security (AppSec), cloud security, and actionable research. Designed for busy security professionals, it focuses on high-value, practical tools, and techniques rather than news-cycle hype, reaching over 90,000 readers.
Key features of the newsletter include:
- Content Focus: Covers topics such as software supply chain security, AI-powered bug hunting, cloud-native detection engineering, and API security.
- Structure: Summarizes conference talks, technical blog posts, and new open-source tools to help professionals improve their workflows.
- Goal: The newsletter aims to act as a “too long; didn’t read” (TL;DR) for the security industry, highlighting essential information in a 7-minute read.
- Target Audience: Security engineers, application security specialists, and CISOs.
The newsletter is published every Thursday and is widely regarded as a high-density, technical resource.
OnAir Post: tl;dr sec
News
AI is helping developers ship faster than ever. How can security keep up?
I’m stoked for my upcoming chat with my friend Travis McPeak, Security Lead at Cursor, about how security engineers can use coding agents to become even more leveraged.
Cursor has been one of the fastest growing and shipping AI-forward companies right now, so I thought it’d be great to hear from someone on the front lines.
I’ve actually known Travis and been a fan of his work for years, when he was doing cool stuff as the AppSec engineering manager at Netflix, then Head of Product Security at Databricks, then co-founder of Resourcely.
We’ll discuss in the webinar:
- How modern coding agents change what projects are feasible for security engineers.
- The impact of coding agents on secure defaults and building a “paved road.”
- Using AI to rapidly ramp up on new code bases and tech domains.
- Automating cloud security.
- Building (and owning in production) security controls, without hurting developer experience.
- Getting broad and continuous visibility into security-relevant code changes.
- Where AI is headed, and what it means for you and your role.
We’ll leave plenty of time for questions, so you can ask Travis and I about whatever is most immediately pressing and useful to you.
When: (next week) February 19th, 10am PST.
Hope to see you there!
