✨ Happy New Year! ✨
A new year begins, and a special celebration awaits. Join us in 2026 as we mark our 25th Anniversary together 🎉
#appsec #newyear #owasp #25thanniversary #cybersecurity #community
✨ Happy New Year! ✨
A new year begins, and a special celebration awaits. Join us in 2026 as we mark our 25th Anniversary together 🎉
#appsec #newyear #owasp #25thanniversary #cybersecurity #community
What's your favorite #OWASP project besides the Top Ten? No top ten lists! What ELSE? They do so much. #talkappsectome
PS Happy holidays.
⚠️ Khuyến nghị bảo mật! eslint-plugin-secure-coding vừa ra mắt:
✨ 75 luật an ninh cho JavaScript/TypeScript
⚡ Cài đặt 60s: npm install eslint-plugin-secure-coding
🛡️ Phủ sóng OWASP, phát hiện lỗi nghiêm trọng:
- Thông tin xác thực mã cứng (CWE-798)
- Hàm eval() nguy hiểm (CWE-95)
🔧 Tùy chọn cấu hình linh hoạt: Recommended, Strict, OWASP Top 10
🚀 Tích hợp CI/CD & tự động sửa lỗi
#BảoMật #Security #WebDevelopment #DevSecOps #JavaScript #ESLint #OWASP #Frontend #LapTrinhViên
ht
If you want to comply with dependency reporting requirements (⇒ SBOM: Software Bill of Materials) for a program of any kind, this is now very easy with #Guix:
https://www.draketo.de/software/bsi-grundschutz#CON.8.A8-sbom-guix
TLDR: guix graph --backend=cyclonedx-json <package-name> gives you an SBOM.
To do that for your own packages, even if they are not in the distro, write a guix.scm (instructions and links in the article).
It works across languages and to arbitrary depth.
Broken object-level auth, SSRF, missing rate limits — Java APIs fail in predictable ways. This step-by-step guide by @mezoCode maps each #OWASP #API flaw to a working #Java solution.
Essential read for secure backends: https://javapro.io/2025/11/12/mastering-api-security-in-java-owasp-best-practices/
#Development #Findings
OWASP Top 10 (2025) · The most critical web application security risks https://ilo.im/16909c
_____
#OWASP #Community #Survey #Security #WebApps #Server #DevOps #WebDev #Frontend #Backend
Become a vendor at New England's leading application security conference. Since its start in 2012, OWASP BASC has consistently welcomed at least 150 attendees.
Sponsoring this event offers a remarkable chance to engage with top experts in application security and to expand your visibility within the OWASP Community in New England and beyond. For more information, please check out our sponsorship kit at www.basconf.org
Seize the opportunity to speak at the leading application security conference in New England!
This is a unique chance to deliver your insights to fellow professionals and impart your knowledge. Our participants are eager to gain fresh insights, and you could be the one to enlighten them.
Submit your presentation or workshop today at https://www.basconf.org