The latest edition of the SheHacksPurple Nerd-a-licious newsletter is out! This month, sponsored by Palo Alto Networks, we cover:
https://newsletter.shehackspurple.ca/p/shehackspurple-november-2025

* The NEW OWASP Top Ten!
* Darknet Diaries episode 'Tanya'
* Why we need to start giving significantly more specific security advice
* That Software Supply Chain is Bigger and Scarier Than We Realize
* Upcoming free webinars and other live events
* How to say no (and why it's so darn hard!)
* The Self-propagating worm found in marketplaces for Visual Studio Code extensions
* Malicious packages in npm evade dependency detection through invisible URLs

And more! With fun pics from #OWASPGlobalAppSec!

Adam Shostack is kicking off day 2 of #owaspglobalappsec with a conversation on the limits of risk. 🥳
I'm doing a book signing (free books!) at the Smithy booth at #owaspglobalappsec, at 3:00 pm this afternoon! Come join me in the vendor area for books, stickers and conversations!
Daniel Miessler is kicking off #owaspglobalappsec with a talk about where everyone's career is going with the changes from AI. @danielmiessler @owasp
Come see my talk with Neil Smithline about the new OWASP Top Ten, at #owaspglobalappsec, at 10:15 this morning!

I'm giving a 1-Day paid, live Training at OWASP Global AppSec in Washington DC, November 5th, 2025: API Security: Hands-On Secure API Design & Hardening

Learn more here! https://twp.ai/4iqTJw

#OWASP #OWASPGLOBALAPPSEC

Level up your pentesting skills with Dawid Czagan at OWASP Global AppSec US 2025 Nov 3-7 in Washington, D.C.!

Prepare to challenge yourself, connect with fellow security professionals, and jumpstart your AppSec journey before the main conference begins!

👉 Register today: https://owasp.glueup.com/event/131624/register/

#OWASP #AppSec #Pentesting #CybersecurityTraining #HandsOnLearning #Infosec #WashingtonDC #OWASPGlobalAppSec #FullStackPentesting

🚨 Register now for OWASP Global AppSec US 2025, coming up next month!

https://owasp.glueup.com/event/131624/register/

Kick off your cybersecurity journey before the main conference with 3 days of hands-on training, designed to give you practical skills, expert guidance, and lifetime access to lab resources.

#OWASP #AppSec #CybersecurityTraining #HandsOnLearning #Pentesting #AIandSecurity #Infosec #WashingtonDC #Cybersecurity #OWASPGlobalAppSec

Join Dawid Czagan for a 3-day immersive pentesting training at OWASP Global AppSec US 2025 in Washington, D.C.!

Don’t miss this chance to train with one of the field’s leading experts before the main conference. Connect, challenge yourself, and get ready for the ultimate application security experience.

👉 Register now: https://owasp.glueup.com/event/131624/register/

#OWASP #AppSec #CybersecurityTraining #Pentesting #HandsOnLearning #Cybersecurity #Infosec #WashingtonDC #OWASPGlobalAppSec #FullStackPentesting

Exciting news! 🎉 I’ve published my slides for “Security Champions Worst Practices” from my talk at #OWASP Global #AppSec in Barcelona! You can grab the PDF, watch a recording, and see fun photos on my blog. #owaspglobalappsec #securitychampions

https://twp.ai/4iqYEx