Analysis
Application Security
The OWASP Top 10 Explained for Working Engineers
What each OWASP Top 10 category actually covers, one concrete example of the flaw, the control that fixes it, and what the list deliberately leaves out.
11 min read
Domains
Secure development practices, vulnerability classes, code review and application-layer defensive controls.
What each OWASP Top 10 category actually covers, one concrete example of the flaw, the control that fixes it, and what the list deliberately leaves out.
Threat analysis and defensive guidance, sent when there is something worth saying. No vendor pitches.