Missed one of my past conference talks? Let’s fix that.
I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.
“XSS Deep Dive” https://twp.ai/4invfx
Missed one of my past conference talks? Let’s fix that.
I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.
“XSS Deep Dive” https://twp.ai/4invfx
Are you attending Def Con? If so, please consider registering (and attending!) my 2-hour, live, "Building Better Security Champions Workshop" with Stanley Harris of Katilyst! It's in the #OWASP Community room, and you need a #DefCon ticket to go.
https://twp.ai/4ipZlQ @owasp
I'm giving a 1-Day paid, live Training at OWASP Global AppSec in Washington DC, November 5th, 2025: API Security: Hands-On Secure API Design & Hardening
Learn more here! https://twp.ai/4inzTH
Missed one of my past conference talks? Let’s fix that.
I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.
“DevSecOps with OWASP DevSlop” https://twp.ai/4iofNZ
Are you attending Def Con? If so, please consider registering (and attending!) my 2-hour, live, "Building Better Security Champions Workshop" with Stanley Harris of Katilyst! It's in the #OWASP Community room, and you need a #DefCon ticket to go.
https://twp.ai/4io5bX @owasp
Ready to go beyond academic theory and into real-world AI security testing?
Join Jason Haddix on November 4–5 at OWASP Global AppSec USA 2025 for a 2-day, hands-on training: Attacking AI.
This intermediate-level course is packed with case studies, real methodologies, and tactics drawn from Arcanum’s cutting-edge AI assessments.
I'm giving a paid workshop on the #OWASP #APISecurity Top Ten with AntiSyphon training on September 19th, with a ranging pay scale. Check it out here:
Are you attending Def Con? If so, please consider registering (and attending!) my 2-hour, live, "Building Better Security Champions Workshop" with Stanley Harris of Katilyst! It's in the #OWASP Community room, and you need a #DefCon ticket to go.
https://twp.ai/4io5Ya @owasp
Exciting news! I’ve published my slides for “Security Champions Worst Practices” from my talk at #OWASP Global #AppSec in Barcelona! You can grab the PDF, watch a recording, and see fun photos on my blog. #owaspglobalappsec #securitychampions
I'm giving a 1-Day paid, live Training at OWASP Global AppSec in Washington DC, November 5th, 2025: API Security: Hands-On Secure API Design & Hardening
Learn more here! https://twp.ai/4io3BD
AI Meets AppSec: Are You Ready?
Join OWASP Boston as we host Jerry Hoff, security industry leader and lifetime OWASP member, for a thought-provoking talk:
Jerry will dive into how AI is reshaping vulnerabilities, risk models, and what that means for modern security teams. When: July 9th 2025
Doors: 6:30 PM | Talk: 7:00 PM
Fuel Up: Free pizza & soda
RSVP by: July 7th
Register here: https://www.meetup.com/owaspboston/events/308633206
I'm giving a paid workshop on the #OWASP #APISecurity Top Ten with AntiSyphon training on September 19th, with a ranging pay scale. Check it out here:
Missed one of my past conference talks? Let’s fix that.
I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.
“Who Hurt You? Earning the trust of developers” https://twp.ai/4ioWHd
Missed one of my past conference talks? Let’s fix that.
I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.
“XSS Deep Dive” https://twp.ai/4in9ro
July OWASP Boston Chapter Meetup Alert!
Join us for an eye-opening talk by longtime OWASP member Jerry Hoff: “The AI AppSec Nightmare.”
July 9th 2025
Doors: 6:30 PM | Talk: 7:00 PM
Pizza & soda provided!
Jerry will dive into how AI-powered attackers are reshaping security as we know it — and what AppSec teams must do to keep up. Don’t miss this forward-looking session from a true industry veteran! Register here: https://www.meetup.com/owaspboston/events/308633206
Wann ist eine #KI eigentlich zuverlässig? Bei der tagtäglichen #AI-Nutzung stellen sich zahllose Fragen rund um Datenschutz, ethische Aspekte, Zuverlässigkeit und regulatorische Anforderungen.
Das Open Worldwide Application Security Project (#OWASP) hat sich als Nonprofit-Organisation nun genau dieser Fragen angenommen und einen #Leitfaden zur Bewertung von KI-#Risiken entwickelt, mit dem möglichst viele Einsatzszenarien abgedeckt werden sollen:
https://github.com/OWASP/www-project-ai-testing-guide/blob/main/Document/README.md #cybersecurity
July OWASP Meetup Alert!
Join us for an eye-opening talk by longtime OWASP member Jerry Hoff: “The AI AppSec Nightmare.”
July 9th 2025
Doors: 6:30 PM | Talk: 7:00 PM
Pizza & soda provided!
Jerry will dive into how AI-powered attackers are reshaping security as we know it — and what AppSec teams must do to keep up. Don’t miss this forward-looking session from a true industry veteran! Register here: https://www.meetup.com/owaspboston/events/308633206
Missed one of my past conference talks? Let’s fix that.
I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.
“DevSecOps with OWASP DevSlop” https://twp.ai/4in9rP
Exciting news! I’ve published my slides for “Security Champions Worst Practices” from my talk at #OWASP Global #AppSec in Barcelona! You can grab the PDF, watch a recording, and see fun photos on my blog. #owaspglobalappsec #securitychampions
Using a content security policy with static assets in Blazor .NET 10