DEV Community

# owasp

Discussions related to the OWASP Foundation, its projects, and Top 10 lists.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
AI Security: The OWASP Top 10 LLM Risks Every Developer Should Know

AI Security: The OWASP Top 10 LLM Risks Every Developer Should Know

1
Comments
18 min read
How I Built a Full-Stack Security Audit Skill for Claude Code

How I Built a Full-Stack Security Audit Skill for Claude Code

Comments
6 min read
OWASP Top 10 for Agentic Applications 2026: What Every Claude Code User Needs to Know

OWASP Top 10 for Agentic Applications 2026: What Every Claude Code User Needs to Know

3
Comments 1
11 min read
API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

Comments
20 min read
API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

API Security in 2026: The Attack Surface Your Pentest Is Probably Missing

Comments
20 min read
🔐 OWASP Top 10 in AWS: A Practical Security Series for Builders

🔐 OWASP Top 10 in AWS: A Practical Security Series for Builders

Comments
2 min read
OWASP Top 10 Explained: Real-World Vulnerabilities & How to Fix Them

OWASP Top 10 Explained: Real-World Vulnerabilities & How to Fix Them

Comments
4 min read
78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

78% of Production AI Systems Score F on Prompt Defense — Data from 1,646 Leaked System Prompts

Comments
7 min read
OWASP Top 10 – A05: Security Misconfiguration (Remediation Perspective)

OWASP Top 10 – A05: Security Misconfiguration (Remediation Perspective)

3
Comments
3 min read
Suas APIs EstĂŁo Abertas? Os 5 Erros Fatais do OWASP API Top 10

Suas APIs EstĂŁo Abertas? Os 5 Erros Fatais do OWASP API Top 10

Comments
2 min read
OWASP Just Ranked Agent Identity Abuse as the #3 Risk in Agentic AI. Here Is Why.

OWASP Just Ranked Agent Identity Abuse as the #3 Risk in Agentic AI. Here Is Why.

Comments
3 min read
Authorization Is Not Enforcement: Execution Integrity in Agentic Systems

Authorization Is Not Enforcement: Execution Integrity in Agentic Systems

2
Comments 1
6 min read
The OWASP MCP Top 10: Why Your AI Agents Are Vulnerable

The OWASP MCP Top 10: Why Your AI Agents Are Vulnerable

1
Comments
5 min read
OWASP Top 10 for LLM Applications 2025 — Plain English Explanation with Real Examples

OWASP Top 10 for LLM Applications 2025 — Plain English Explanation with Real Examples

Comments 1
7 min read
I Found Buried Treasure in a Bug-Hunting Tool — My Road to GSoC 2026 with OWASP BLT

I Found Buried Treasure in a Bug-Hunting Tool — My Road to GSoC 2026 with OWASP BLT

2
Comments
5 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.