Skip to content

OWASP Canberra Kicks off

By glitchdata Team 2 min read

Ionize_logo1Ionize_logo1The Open Web Application Security Project (OWASP) has opened a chapter in Canberra. Kicked off by Andrew Muller of Ionize, OWASP brings to Canberra expertise in web application security. It also brings the small community of security professionals to meet, discuss and engage in the crucial business of securing applications.

OWASP Canberra is committed to monthly meetings, and the occasional “special” meeting. See you there!

OWASP has a project called ‘The OWASP top ten project‘ which list the top 10 security threats for web-based applications.

OWASP Current Top Twelve Threats

  • Cross-Site Scripting (XSS)
  • Malicious File execution
  • Insecure Direct Object References
  • Cross-site Request Forgery (spoofing)
  • Information Leakage and Improper Error Handling (I’m guilty)
  • Injections Flaws
  • Broken authentication and session management
  • Insecure cryptographic storage
  • Transport Layer Protection (TLP)
  • Failure to secure URL access (I’m guilty)
  • Security Misconfiguration
  • Unvalidated Redirects and Forwards

Ok, which ones are you guilty of?

More news

News 3 min read

Your Account Is Yours, and So Are the Numbers

A new Insights page reports your downloads, likes, progress and quiz results, with CSV exports of all of it. Alongside it: account settings, a forgotten-password link that actually exists, and a notification when an admin reviews your work.

News 2 min read

One Search Box, and a JSON API for Everything Public

Search now covers datasets, models, courses, guides and news from a single box. Everything a signed-out visitor can read is also available as JSON, with no key and nothing to sign up for — plus RSS feeds and a sitemap.

News 2 min read

Quizzes, Certificates and Reviews for Every Course

Lessons can now end with a quiz you have to pass to finish them, courses issue a shareable certificate when you reach the end, and the learners who took a course can say what it was worth.