What is OWASP Top 10 | How to Prevent against OWASP Top 10 Risks | Strengthening Web Applications

แชร์
ฝัง
  • เผยแพร่เมื่อ 4 ส.ค. 2024
  • The Open Worldwide Application Security Project is an online community that produces freely available articles, methodologies, documentation, tools, and technologies in the field of web application security. OWASP provides free and open resources. It is run by a non-profit organization called the OWASP Foundation. In this session, we will discuss the OWASP top 10 risks and how to protect your web applications from them. OWASP stands for Open Source Foundation for Application Security .
    Session Slides can be downloaded from this link.
    bit.ly/owasp_slides
    Here is Session breakdown into small Chapters .
    00:00 - 03:18 Sneak Peak of the video
    03:19 - 06:33 Session Agenda and introduction to OWASP Top 10
    06:34 - 15:31 A01:2021-Broken Access Control
    15:32 - 18:36 A02:2021-Cyptographic Failures
    18:37 - 23:02 A03:2021-Injection
    23:03 - 27:15 A04:2021-Insecure Design
    27:16 - 30:12 A05:2021-Security Misconfiguration
    30:13 - 34:57 A06:2021-Vulnerable and Outdated Components
    34:58 - 37:33 A07:2021-Identification and Authentication Failures
    37:34 - 40:03 A08:2021-Software and Data Integrity Failures
    40:04 - 42:35 A09:2021-Security Logging and Monitoring Failures
    42:36 - 46:49 A10:2021-Server-Side Request Forgery (SSRF)
    47:01 - 55:38 Question and Answers Session
    Here is trainer profile .
    Nooruddin Surani (CISA) is an experienced software industry professional with over 20 years of experience serving banks and mortgage companies in the US and Pakistan. Currently he is working as the COO of Awesome Technologies, Inc. Throughout his career, Noor has delivered professional training courses to a range of prominent firms, including PepsiCo, Coca-Cola Beverages, Bayer AG, Engro Group, PSO, PPL, UBL, EBM, SilkBank, IBP, PSTD, and AKU, among others.
    LinkedIn: / noorsurani
    #owasptop10 #owasp #webapplicationsecurity
    About GISPP
    ===========
    It is an effort by GISPP (Global Information Security Society for Professionals of Pakistan) .GISPP was initiated in 2016 by a group of Pakistani Information Security professionals living and working in Saudi Arabia. You can follow us on our social media links mentioned on our Channel Page .
    #GISPP #GisppAcademy #GisppTraining #Cybersecurity #Informationsecurity

ความคิดเห็น • 3