@sydseter

20 Followers
49 Following
97 Posts

Co-leader for OWASP Cornucopia and co-creator of Cornucopia Mobile App Edition, an , AppSec Pokémon, application security engineer, developer, architect and DevOps practitioner.
https://cornucopia.owasp.org

If you like what we do for open source, visit our code repository https://github.com/OWASP/cornucopia and give us a star ⭐

🌈 «Difference is of the essence of humanity» – John Hume

OWAP Cornucopiahttps://cornucopia.owasp.org
Copihttps://copi.owasp.org
In #OWASP #WrongSecrets we started using AI for generating challenges as an experiment. The results might be staggering ;-). Checkout https://github.com/OWASP/wrongsecrets/pull/2089 for more details! #AI #LLM #Cursor and please give the repo a 🌟 if you like it or learned from it!
We just had our 5th minor release in one year. Just wait for what comes next. This is what we have done over the last 13 months. If you like what we do for open source, visit our code repository https://github.com/OWASP/cornucopia and give us a star ⭐️

Are you letting the AI do the threat modeling for you?

Don't let the machines take over the world! Threat model using "Elevation of MLSec" on copi.owasp.org instead. Our survival depends on it!

At copi.owasp.org you can now play Elevation of MLSec to threat model your AI models.

Read more about the latest release of OWASP Cornucopia 2.3: https://dev.to/owasp/threat-modeling-your-ai-models-using-ai-29e1

Created by Elias Brattli Sørensen and designed by Jorun Kristin Bremseth at Kantega.

#genai #openai #ai #threatmodeling #appsec

If you think that technical debt is scary, wait until you get to see your sec debt. Don't let the hacker penetrate your doors and locks. Start with continuous threat modeling at copi.owasp.org

How? Read all about it and how to threat model the cloud at: https://dev.to/owasp/no-need-to-fear-the-clouds-play-owasp-cumulus-d6g

#owasp #techdebt #threatmodeling #games #cloud

The clouds can be a scary place. All these machines that simply aren't yours. Do you know how you can secure your cloud infrastructure?
OWASP Cumulus is an easy way to help your DevOps teams with just that. Play it at https://copi.owasp.org

Read more: https://dev.to/owasp/no-need-to-fear-the-clouds-play-owasp-cumulus-d6g

Thanks goes to Christoph Niehoff, OWASP Cumulus, Toby Irvine,
@rewtd and the
@owasp for bringing Copi to life and making playing security card games online possible!

#owasp #appsec #threatmodeling #games #cloud

How do you get started with continuous threat modeling using gamification?

For threat modeling AI, start here: https://dev.to/owasp/threat-modeling-your-ai-models-using-ai-29e1#how-to-play-elevation-of-mlsec
For threat modeling the cloud, start here: https://dev.to/owasp/no-need-to-fear-the-clouds-play-owasp-cumulus-d6g#how-to-play-owasp-cumulus

#owasp #cloud #ai #threatmodeling #games

How do you get started with continuous threat modeling using gamification?

For threat modeling AI, start here: https://dev.to/owasp/threat-modeling-your-ai-models-using-ai-29e1#how-to-play-elevation-of-mlsec
For threat modeling the cloud, start here: https://dev.to/owasp/no-need-to-fear-the-clouds-play-owasp-cumulus-d6g#how-to-play-owasp-cumulus

#owasp #cloud #ai #threatmodeling #games

And if you are serious about doing continuous threat modeling, I recommend Izar Tarandach's and Matthew Coles's book "Threat Modeling: A Practical Guide for Development Teams": https://www.amazon.com/Threat-Modeling-Identification-Avoidance-Secure/dp/1492056553
Amazon.com

If you think that technical debt is scary, wait until you get to see your sec debt. Don't let the hacker penetrate your doors and locks. Start with continuous threat modeling at copi.owasp.org

How? Read all about it and how to threat model the cloud at: https://dev.to/owasp/no-need-to-fear-the-clouds-play-owasp-cumulus-d6g

#owasp #techdebt #threatmodeling #games #cloud

The clouds can be a scary place. All these machines that simply aren't yours. Do you know how you can secure your cloud infrastructure?
OWASP Cumulus is an easy way to help your DevOps teams with just that. Play it at https://copi.owasp.org

Read more: https://dev.to/owasp/no-need-to-fear-the-clouds-play-owasp-cumulus-d6g

Thanks goes to Christoph Niehoff, OWASP Cumulus, Toby Irvine,
@rewtd and the
@owasp for bringing Copi to life and making playing security card games online possible!

#owasp #appsec #threatmodeling #games #cloud