DEV Community

#owasp

Discussions related to the OWASP Foundation, its projects, and Top 10 lists.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
agent-ledger: a security and audit plugin for Hermes Agent, scored against the OWASP Agentic Top 10

agent-ledger: a security and audit plugin for Hermes Agent, scored against the OWASP Agentic Top 10

Comments
4 min read
Defending Against OWASP Top 10 API Security Vulnerabilities in Modern Backend Services

Defending Against OWASP Top 10 API Security Vulnerabilities in Modern Backend Services

Comments
8 min read
OWASP Top 10 for Agentic Applications: what it asks you to record, and who should sign it

OWASP Top 10 for Agentic Applications: what it asks you to record, and who should sign it

Comments
7 min read
Authorization at the Object Level: Testing for BOLA Before Someone Else Does

Authorization at the Object Level: Testing for BOLA Before Someone Else Does

Comments
4 min read
OWASP Top 10 CI/CD Security Risks Explained: Why Credential Hygiene Decides the Outcome

OWASP Top 10 CI/CD Security Risks Explained: Why Credential Hygiene Decides the Outcome

Comments
11 min read
API Security: The Attack Surface That Grows Without a Firewall

API Security: The Attack Surface That Grows Without a Firewall

Comments
2 min read
Day 6 — API Security — এই ভুলগুলো করলে production-এ কাঁদতে হবে

Day 6 — API Security — এই ভুলগুলো করলে production-এ কাঁদতে হবে

Comments
3 min read
OWASP A09 & A10: Seeing the Problem, Surviving the Failure

OWASP A09 & A10: Seeing the Problem, Surviving the Failure

1
Comments
9 min read
How to Red-Team Your LLM App in One Afternoon (Without a Single Harmful Prompt)

How to Red-Team Your LLM App in One Afternoon (Without a Single Harmful Prompt)

Comments
6 min read
OWASP A07 & A08: Trusting Identity, Trusting Integrity

OWASP A07 & A08: Trusting Identity, Trusting Integrity

1
Comments
7 min read
OWASP A05 & A06: When Injection and Insecure Design Meet an Incomplete Application

OWASP A05 & A06: When Injection and Insecure Design Meet an Incomplete Application

1
Comments
8 min read
OWASP A03 & A04: Understanding Software Supply Chain and Cryptographic Failures

OWASP A03 & A04: Understanding Software Supply Chain and Cryptographic Failures

1
Comments
4 min read
Build to Break: Your Guide to Cybersecurity at Hacktoberfest HackDay x OWASP JIS Univerity

Build to Break: Your Guide to Cybersecurity at Hacktoberfest HackDay x OWASP JIS Univerity

7
Comments 2
5 min read
OWASP A01 and A02: Broken Access Control and Security Misconfiguration

OWASP A01 and A02: Broken Access Control and Security Misconfiguration

5
Comments 1
3 min read
OWASP Top 10: The Web's Most Critical Security Risks

OWASP Top 10: The Web's Most Critical Security Risks

Comments
17 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.