Instigate change. Start a new collaborative Blog Group

Create group
Blogs
Pavlo Farb

NFC and digital wallets: magic has security risks

NFC devices provide users with another pair of wings to fly over daily routines, as they enable quick and easy contactless mobile payments and the use of e-tickets, mobile digital wallets, keycards, e...

28 Mar 2023
Digital Banking
Pavlo Farb

Security audit of smart contracts: verifying DeFi

Once deployed, a lot of smart contracts cannot be easily changed. So, it would be wise to take a close look at potential weaknesses, exploits, and built-in mitigations when it’s not too late for chang...

13 Dec 2022
DeFi
Pavlo Farb

Application security in cryptocurrency ecosystem

You can often hear from me and my colleagues security engineers about the defense in depth approach to protecting the user data. Does this mean putting as many tools and security controls in your code...

07 Jun 2022
Fintech
Pavlo Farb

Field level encryption and apps’ re-engineering

One of the most common concerns security engineers hear sounds like “field level encryption is awesome, but alas we can not afford it because we will need to completely rewrite the code and encryption...

04 May 2022
Fintech
Pavlo Farb

Building data security in a cloud

Switching from traditional software engineering to building modern cloud apps requires multiple changes on several levels, with data-related security often mistakenly pushed to the margins. But in fac...

12 Apr 2022
Fintech
Pavlo Farb

Dousing the dependency hell in fintech apps

One of the most important things you can do to make your fintech apps more secure is to let your developer team go beyond coding and get involved in security design and security operations including d...

05 Apr 2022
Fintech
Pavlo Farb

Cryptocurrency wallets security

Data security is an extremely complex industry. Even the most cutting edge applications, like blockchain and cryptocurrency wallets, are subject to “boring” data security threats. Especially because i...

22 Mar 2022
Cryptocurrency Insights
Pavlo Farb

Data security in fintech: from TLS to ALE

Recently, after reading a great engineering blog post on OCSP and CRL verifiers in Go, and after further discussion in the community, I’ve got an insight that made me really gloomy. Mass of projects ...

21 Feb 2022
Fintech
Pavlo Farb

Pragmatic POV on data protection regulations

In fintech, user’s data protection is among the top priorities requested by regulations, but surprisingly they are mapped onto real-world risks. As a data security engineer, I can say that while it m...

18 Oct 2021
Fintech
Pavlo Farb

4 data security tips when you lift and shift

Check if you take these security points into consideration before you migrate to the cloud. While you move your infrastructure into the cloud (“lift and shift”), your security assumptions also go thr...

27 Sep 2021
Fintech
Pavlo Farb

Store data encrypted and search encrypted data

How to keep your data encrypted and still be able to securely search over it, without constraining the app architecture? In data security, we say “you should try searchable encryption!” Let’s shine a ...

13 Sep 2021
Fintech
Pavlo Farb

Cloud security and fintech: 4 things to consider

Check this list while planning a new business and putting your fintech app in the cloud. By noting these arguments you can avoid risky misconceptions of trusting too much responsibility to cloud provi...

23 Aug 2021
Digital Banking Trends

Now hiring