Session

OWASP Top 10: Year in Review — The Issues Actually Getting Exploited

You've sat through the OWASP Top 10 walkthrough. You know the categories. What you probably don't know is which of those categories are actually burning real companies down right now — and which ones eat years of engineering attention while attackers ignore them entirely.

This talk flips the OWASP formula. Instead of starting from the spec, we start from the incidents: the breaches, the CVEs, and the post-mortems from the last twelve months. We map what attackers actually exploited back onto the Top 10 framework, and the picture that emerges is surprising — and far more useful than the textbook.


A data-driven, year-in-review picture of what attackers actually did, mapped to concrete fixes you can adopt in a week — so your team stops spending security effort on what the spec preaches and starts fixing what the wild proves.

Gunnard Engebreth

Engineering manager and Architect

Blue Ridge, Georgia, United States

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top