✨ Happy New Year! ✨
A new year begins, and a special celebration awaits. Join us in 2026 as we mark our 25th Anniversary together 🎉

#appsec #newyear #owasp #25thanniversary #cybersecurity #community

What's your favorite #OWASP project besides the Top Ten? No top ten lists! What ELSE? They do so much. #talkappsectome 

PS Happy holidays.

⚠️ Khuyến nghị bảo mật! eslint-plugin-secure-coding vừa ra mắt:
✨ 75 luật an ninh cho JavaScript/TypeScript
⚡ Cài đặt 60s: npm install eslint-plugin-secure-coding
🛡️ Phủ sóng OWASP, phát hiện lỗi nghiêm trọng:
- Thông tin xác thực mã cứng (CWE-798)
- Hàm eval() nguy hiểm (CWE-95)
🔧 Tùy chọn cấu hình linh hoạt: Recommended, Strict, OWASP Top 10
🚀 Tích hợp CI/CD & tự động sửa lỗi

#BảoMật #Security #WebDevelopment #DevSecOps #JavaScript #ESLint #OWASP #Frontend #LapTrinhViên

ht

AppSec pros!
Join London OWASP Training Days 2026
📍 King’s College London | Feb 25–27
✅ API Security
✅ AI Threat Modeling
✅ Privacy Engineering
✅ Web, Mobile & IoT Hacking Labs
✅ And more
Hands-on. Practical. Led by the best.
🎟️ https://owasp.glueup.com/event/london-owasp-training-days-2026-162538/
#OWASP #AppSec #Cybersecurity

If you want to comply with dependency reporting requirements (⇒ SBOM: Software Bill of Materials) for a program of any kind, this is now very easy with #Guix:

https://www.draketo.de/software/bsi-grundschutz#CON.8.A8-sbom-guix

TLDR: guix graph --backend=cyclonedx-json <package-name> gives you an SBOM.

To do that for your own packages, even if they are not in the distro, write a guix.scm (instructions and links in the article).

It works across languages and to arbitrary depth.

#software #owasp #security #gnu #FreeSoftware #programming

Broken object-level auth, SSRF, missing rate limits — Java APIs fail in predictable ways. This step-by-step guide by @mezoCode maps each #OWASP #API flaw to a working #Java solution.

Essential read for secure backends: https://javapro.io/2025/11/12/mastering-api-security-in-java-owasp-best-practices/

@owasp #OWASPTop10 #APIsecurity

Dream of speaking at OWASP? Join our FREE session, “So You Want to Be an OWASP Speaker!” Learn to nail your CfPs, deliver epic talks, and own the stage. Curiosity required, lifelines optional!
https://owasp.glueup.com/event/so-you-want-to-be-an-owasp-speaker-virtual-event-163522/

#OWASP #AppSec #upskill #publicspeaking #cybersecurity

#Development #Findings
OWASP Top 10 (2025) · The most critical web application security risks https://ilo.im/16909c

_____
#OWASP #Community #Survey #Security #WebApps #Server #DevOps #WebDev #Frontend #Backend

OWASP Top 10:2025

OWASP Top 10:2025

Become a vendor at New England's leading application security conference. Since its start in 2012, OWASP BASC has consistently welcomed at least 150 attendees.

Sponsoring this event offers a remarkable chance to engage with top experts in application security and to expand your visibility within the OWASP Community in New England and beyond. For more information, please check out our sponsorship kit at www.basconf.org

#appsec #owasp #basc2026 #basc #applicationsecurity

Seize the opportunity to speak at the leading application security conference in New England!

This is a unique chance to deliver your insights to fellow professionals and impart your knowledge. Our participants are eager to gain fresh insights, and you could be the one to enlighten them.

Submit your presentation or workshop today at https://www.basconf.org

#appsec #owasp #basc2026 #applicationsecurity