Learn some new skills at OWASP BASC

Tony Quadros will be conducting a hands on workshop on writing custom static analysis rules

Check out more at www.basconf.org

#appsec #basconf #basc2026 #owasp

If you havent already grab your ticket to the only application security conference in New England. Keynote by Canada's first lady of security, talks by world's experts, upskill with intense workshops and grab some raffle prizes. Buy your ticket at www.basconf.org — ticket refunded at check-in! 2 days left!

#appsec #basconf #owasp #basc2026

Blog: ZAP Updates for March:
https://www.zaproxy.org/blog/2026-04-03-zap-updates-march-2026/
ZAP was started 9.5 MILLION times .. and we announced significant collaborations with other open source projects
#zaproxy #appsec
ZAP Updates - March 2026

ZAP was started nearly 9.5 million times in March, published integrations with 3 other open source projects, and released the first of many AI related features.

ZAP
260402 rootshell.online

YouTube
Whitespots Portal and ISO 27001 Certification
📄 New article is out! 🚀 See how our clients are leveraging Whitespots Portal to sail through audits, and secure ISO 27001 certification on their first attempt.
https://whitespots.io/blog/success-story-iso-27001
#ISO27001 #vulnerabilitymanagement #AppSec
Whitespots Portal and ISO 27001 Certification - Blog - Whitespots.io

📄 New article is out! 🚀 See how our clients are leveraging Whitespots Portal to sail through audits, and secure ISO 27001 certification on their first attempt.

Whitespots.io

Dive into the world of SBOMs at OWASP BASC

Kelli Schwalm will speak on how to tell if your SBOM is wrong.

Check out more at www.basconf.org

#owasp #appsec #basconf #basc2026

AI risks are evolving fast and OWASP's GenAI Security Project is keeping pace—new red-teaming taxonomy, 200+ mapped solutions, and updated guidance for AppSec teams. https://jpmellojr.blogspot.com/2026/04/genai-security-project-ramps-up.html. #AppSec #GenAI #OWASP #AISecurity
New Update: Integrating @anchore with Azure DevOps. ⚡️
Whether you're using distributed analysis to keep data local or centralized analysis for full malware scanning, this updated guide walks you through the YAML and configuration steps you need.
Check it out: https://anchore.com/blog/anchore-azure-devops/
#CICD #Azure #Docker #AppSec
Integrating Anchore Security Scanning into Your Azure DevOps Pipeline | Anchore

With a few lines of yaml, add security to your Azure DevOps pipeline to keep non-compliant containers from reaching production environments.

Anchore

🚨 Keynote Speaker Alert! 🚨

We’re excited to welcome @HannahFoxwell, Co-founder of BIMP, to Global AppSec Vienna!
Her talk dives into AI-driven developer velocity, what works, what doesn’t, and how to stay secure at speed. Don’t miss it!

https://owasp.glueup.com/event/owasp-global-appsec-eu-2026-vienna-austria-162243/keynote-speakers.html

#AI #DevOps #AppSec

We often talk about supply chain risk like it only means foreign hardware, malware, or compromised vendors.

But it also includes ordinary dependencies.

SDKs. Hosted scripts. Embedded web content. Push vendors. Analytics platforms. Remote code paths.

When government ships an app, those choices carry more weight because public trust is attached to them.

#CyberSecurity #SupplyChainSecurity #AppSec #SecurityArchitecture