Eventsize

Practical Cybersecurity for Vibe-Coded Apps Cover

注目
Practical Cybersecurity for Vibe-Coded Apps

Aigility Digital Logo

Aigility Digital

96 フォロワー

日時

Sat, 24 一月 2026, 09:00 AM - 12:00 PM

GMT +8.00

カレンダーに追加

Download App

会場の場所

Full address only visible to attendees

Bandar Puteri, 47100, Puchong, Selangor, Malaysia

地図を見る

このイベントについて

Workshop Overview

You have now built your MVP, what's next?

Modern app development has never been faster. With AI-assisted coding, Supabase, Expo, Firebase, and low-code tools, many teams can ship a working product in days — sometimes hours.

However, speed often comes at the cost of security awareness.

This community workshop is designed for founders, indie hackers, and developers building vibe-coded projects who want to understand practical cybersecurity risks and realistic prevention strategies — without enterprise complexity or fear-based messaging.

The focus is on shared learning, real scenarios, and defensive patterns that are appropriate for MVPs and early-stage products.


Why This Session Matters

Most early-stage applications are not “hacked” in sophisticated ways.
Instead, they are quietly abused through:

  • Hotlinking and asset scraping
  • Bot traffic draining storage and egress
  • Over-exposed APIs and mismanaged secrets
  • Public URLs assumed to be “safe enough”

These issues often surface only after usage increases — typically as unexpected downtime or rising cloud costs.

This session aims to help builders recognize these risks early and apply lightweight but effective protections.


Topics We Will Cover

1. Hotlinking and Bandwidth Abuse

  • How hotlinking works and why it is commonly overlooked
  • Real examples of storage and egress abuse
  • Practical mitigation using signed URLs, headers, and CDN controls

2. Securing the Frontend–Backend Communication Path

  • What it means when your Supabase or backend URL is public
  • What attackers can realistically do with that information
  • How to introduce a secured request layer without slowing development
  • Common architectural patterns for web and mobile apps

3. API Secrets and Key Management

  • Why “not exposing it on the frontend” is often insufficient
  • How secrets are extracted from apps in practice
  • Safer approaches to handling API keys in modern stacks

4. Obfuscation: Purpose and Limitations

  • What obfuscation does and does not protect
  • When obfuscation is appropriate for frontend and mobile apps
  • How to use obfuscation as a supporting measure, not a primary defense

Additional Areas of Discussion (Time Permitting)

Depending on participant interest, we may also explore:

  • Bot abuse and automated traffic patterns
  • Rate limiting as both a security and cost-control mechanism
  • Signed URLs and expiring access strategies
  • Mobile application security realities
  • Establishing a reasonable security baseline for MVPs

Who This Workshop Is For

  • Founders preparing to launch or scale an MVP
  • Developers using Supabase, and AI-assisted tools
  • Indie hackers and small teams seeking practical safeguards
  • Anyone who wants to avoid preventable security-related costs

No prior cybersecurity background is required.


What You Will Take Away

Participants will leave with:

  • A clearer understanding of common attack vectors targeting early-stage apps
  • Practical steps to reduce risk without over-engineering
  • A security mindset focused on risk reduction and sustainability, not perfection

This session is intended to be informative, open, and discussion-friendly, encouraging participants to learn from real examples and from one another.

地図を見る

Full address only visible to attendees.

Bandar Puteri, 47100, Puchong, Selangor, Malaysia

イベント主催者

Aigility Digital Logo

Aigility Digital

96 フォロワー

AI Community

Malaysiaの他の科学・技術イベント

Coding in the Age of AI Cover

Coding in the Age of AI

15 一月 @ WORQ KL Gateway

Build Apps in 8 Hours Entirely with A.I. Cover

Build Apps in 8 Hours Entirely with A.I.

17 一月 @ M World Hotel Petaling Jaya

ESG: From Manual Chaos To Automated Clarity (Penang Seminar) Cover

ESG: From Manual Chaos To Automated Clarity (Penang Seminar)

22 一月 @ Ygl Convergence Berhad - ERP Industry 4.0 Malaysia Penang

を選択

イベントチケットを販売開始

イベントを企画していますか?支払い回収、自動リマインダー送信、チェックインの自動化が可能です。以下より登録してください:

Eventsizeは、世界中のイベント検索とオンラインチケット販売プラットフォームです。都市のイベントを簡単に見つけ、自分のイベントのチケットを販売するためのすべてのツールが揃っています。

© 2026 Eventsize. 無断転載を禁ず.