Advertisement Β· 728 Γ— 90
#
Hashtag
#OWASPLondon
Advertisement Β· 728 Γ— 90
Vesta Admin Takeover - Exploiting reduced seed entropy in bash $RANDOM  - Adrian Tiron
Vesta Admin Takeover - Exploiting reduced seed entropy in bash $RANDOM - Adrian Tiron "Vesta CP Admin Takeover - Exploiting reduced seed entropy in bash $RANDOM" - Adrian Tiron Vesta is a lightweight, web-based control panel that simplifies Linux server management, appealing to users seeking an intuitive alternative to traditional platforms like cPanel and Plesk. This presentation w

Many thanks to Adrian Tiron for presenting his talk: "Vesta Admin Takeover - Exploiting reduced seed entropy in bash $RANDOM" at our Feb 26th meetup!

The video recording of the talk is now available on the #OWASPLondon YouTube Channel [PLEASE SUBSCRIBE!]
πŸ‘‡

1 0 0 0
North Korea: The Great Recruitment Firewall - Mariya Hristova
North Korea: The Great Recruitment Firewall - Mariya Hristova North Korean spies are lurking everywhere, but especially in the hiring pipeline. Disguised as the perfect candidate to try and snag a technical /cyber security position in a company where they can espionage away! Recruitment is the first point of contact for all candidates so in this talk I will g

Many thanks to Mariya Hristova for presenting her talk: "North Korea: The Great Recruitment Firewall" at our Feb 26th meetup.

The video recording of the talk is now available to watch πŸ“· on the #OWASPLondon YouTube Channel [PLEASE SUBSCRIBE!]
πŸ‘‡

0 0 0 0
Securing AI Agents: Identity Strategies for Safe API Access - Gary Archer
Securing AI Agents: Identity Strategies for Safe API Access - Gary Archer Securing AI Agents: Identity Strategies for Safe API Access - Gary Archer As organizations adopt AI-driven tools and workflows, new security challenges arise around how AI agents securely access APIs. In this session, Gary explores how best practices for connecting AI agents to APIs are evolving, a

Many thanks to Gary Archer for presenting his talk: "Securing AI Agents: Identity Strategies for Safe API Access" at our Feb 26th meetup.

The video recording of the talk is available to watch πŸ“· on the #OWASPLondon YouTube Channel [PLEASE SUBSCRIBE!]:
πŸ‘‡

0 0 0 0
Race Against The Workflows: Stealing GitHub Tokens from Docker Images - GaΓ«tan Ferry
Race Against The Workflows: Stealing GitHub Tokens from Docker Images - GaΓ«tan Ferry YouTube video by OWASP London

Many thanks to GaΓ«tan Ferry for presenting his talk: "Race Against The Workflows: Stealing #GitHub Tokens from #Docker Images" at our meetup last week.

The video recording of the talk is available to watch πŸ“· on the #OWASPLondon YouTube Channel [PLEASE SUBSCRIBE!]:
πŸ‘‡
www.youtube.com/watch?v=abDW...

1 0 0 0
Securing the SDLC: From Container Images to AI Agents - Tharinda Basnayake
Securing the SDLC: From Container Images to AI Agents - Tharinda Basnayake YouTube video by OWASP London

Many thanks to Tharinda Basnayake for presenting his talk: "Securing the SDLC: From Container Images to AI Agents" at our last week's meetup.

The video recording of the talk is available to watch πŸ“Ί on the #OWASPLondon YouTube Channel:
πŸ‘‡
www.youtube.com/watch?v=yYEf...

0 0 0 0
DNS Based OSINT Techniques for Product and Service Discovery - Rishi C
DNS Based OSINT Techniques for Product and Service Discovery - Rishi C YouTube video by OWASP London

Many thanks to Rishi C (@rxerium.com) for presenting his talk: "DNS Based #OSINT Techniques for Product and Service Discovery" at our meetup last week.

The video recording of the talk is available to watch πŸ“Ί on the #OWASPLondon YouTube Channel [PLEASE SUBSCRIBE!]:
πŸ‘‡
www.youtube.com/watch?v=lGO3...

2 3 0 0
Post image

Time for @owasplondon.bsky.social!!

#OWASPLondon @owasp.org @securestep9.bsky.social

4 2 0 0
Securing Vibe Coding: Addressing the Security Challenges of AI-Generated Code - Sonya Moisset
Securing Vibe Coding: Addressing the Security Challenges of AI-Generated Code - Sonya Moisset "Securing Vibe Coding: Addressing the Security Challenges of AI-Generated Code" - Sonya Moisset As AI coding tools become embedded in daily development, they bring a new wave of productivity, and new security risks. In this session Sonya breaks down the security implications of Vibe Coding and shar

Many thanks @sonyamoisset.bsky.social for presenting the talk: "Securing Vibe Coding: Addressing the Security Challenges of AI-Generated Code" at the #OWASP London Chapter Meetup last Friday!

The recording πŸ“ΊοΈ is on the #OWASPLondon YouTube Channel:
πŸ‘‡οΈ

3 1 0 0

If you missed @shehackspurple.bsky.social 's talk "30 Tips for Secure #JavaScript" at the @owasplondon.bsky.social meetup last week - you can watch the recording on the #OWASPLondon YouTube channel [please subscribe!]:

3 2 0 0
30 Tips for Secure JavaScript - Tanya Janca
30 Tips for Secure JavaScript - Tanya Janca "30 Tips for Secure JavaScript" - Tanya Janca In this talk, we will cover 30 tips for writing more secure JavaScript, emphasizing what to do, what NOT to do, and utilizing open-source tooling to enhance security. JavaScript is not only the most popular web programming language, but it also faces se

Many thanks to @shehackspurple.bsky.social for presenting her talk: "30 Tips for Secure JavaScript" at the #OWASP London Chapter Meetup last Friday!

The video recording of the talk is now available to watch πŸ“ΊοΈ on the #OWASPLondon YouTube Channel
πŸ‘‡οΈ

2 0 0 1
Deep Dive into the OWASP Top 10 for Agentic AI Applications - John Sotiropoulos
Deep Dive into the OWASP Top 10 for Agentic AI Applications - John Sotiropoulos "Deep Dive into the OWASP Top 10 for Agentic Applications" - John Sotiropoulos Join John Sotiropoulos from the OWASP GenAI Security Project's Agentic Security Initiative (ASI) for an in-depth look at the upcoming OWASP Top 10 for Agentic Applications. This session will explore the key risks and mit

Many thanks to John Sotiropoulos (@JohnSotiro) for presenting a talk on the #OWASP Top 10 for Agentic #AI Applications at the #OWASP London Chapter meetup last week!

The video recording is now available to watch on the #OWASPLondon YouTube channel πŸ“Ί:
πŸ‘‡

1 0 0 0
AI Agents Gone Rogue? Hackbots, AI Agents and TheFuture of the AI AttackSurface - Katie Paxton Fear
AI Agents Gone Rogue? Hackbots, AI Agents and TheFuture of the AI AttackSurface - Katie Paxton Fear APOLOGIES FOR SOME AUDIO ISSUES(ECHO) IN THE VIDEO "AI Agents Gone Rogue? Building, Defending and Attacking AI Agents" - Dr Katie Paxton Fear Welcome to the AI era: LLMs are dead, long live agentic AI! But uhh what is agentic AI anyway? Well for a lot of the sci fi loving nerds out there it's basi

Many thanks to Dr Katie Paxton-Fear (@InsiderPhD) for presenting her talk "AI Agents gone Rogue" at the #OWASP London Chapter meetup last week!

The video recording of the talk is now available to watch on the #OWASPLondon YouTube channel πŸ“Ί:
πŸ‘‡

1 0 0 0
Post image Post image

owasp london meetup
owasp gen #ai red team app
#owasplondon

2 0 0 0
aon

aon

aon

aon

pizza

pizza

owasp london meetup #owasplondon

1 1 0 0
Server-Side Cross-Site Scripting - Balazs Bucsay
Server-Side Cross-Site Scripting - Balazs Bucsay YouTube video by OWASP London

Many thanks to Balazs Bucsay for presenting his talk "Server-Side Cross-Site Scripting" #XSS at the #OWASPLondon Chapter meetup last week!

The video recording of the talk is now available to watch on our YouTube channel πŸ“Ί [PLEASE SUBSCRIBE!]:
πŸ‘‡
youtu.be/UNoUEBNhRjE

3 3 0 0
Securing the Software Supply Chain in the Age of AI, Malware, and Compliance - Matthew Brady
Securing the Software Supply Chain in the Age of AI, Malware, and Compliance - Matthew Brady YouTube video by OWASP London

Many thanks to Matthew Brady for presenting his talk "Securing the Software Supply Chain in the Age of AI, Malware, and Compliance" at the #OWASPLondon Chapter meetup last week!

The video recording of the talk is now available on our YouTube channel πŸ“Ί [PLEASE SUBSCRIBE!]:
πŸ‘‡
youtu.be/LWdBkbcvMco

5 2 0 0
You Secured Your Code Dependencies, Is That Enough? - Anant Shrivastava
You Secured Your Code Dependencies, Is That Enough? - Anant Shrivastava YouTube video by OWASP London

Many thanks to @anantshri.info for presenting his talk:"You Secured Your Code Dependencies, Is That Enough?" at the #OWASPLondon Chapter meetup last week.
The video recording of the talk is now available to watch πŸ“Ί on our YouTube channel (please subscribe!):
πŸ‘‡
youtu.be/b4hghhSYqqM?...

3 5 0 0
AI Second – Threat Centric Agentic Approach on Vulnerabilities - Francesco Cipollone
AI Second – Threat Centric Agentic Approach on Vulnerabilities - Francesco Cipollone YouTube video by OWASP London

Many thanks to Francesco Cipollone (@franksec42) for presenting his talk: "AI-Second Threat Centric Agentic Approach on Vulnerabilities" at the #OWASPLondon Chapter meetup last week.
The video recording of the talk is now available to watch πŸ“Ί on our YouTube channel:
πŸ‘‡
youtu.be/mHFKG9KLybk

2 2 0 0
Using LLMs To Accelerate Threat Detection - Richard Finlay Tweed
Using LLMs To Accelerate Threat Detection - Richard Finlay Tweed "Using LLMs To Accelerate Threat Detection" - Richard Finlay Tweed Inventing good detections is hard, using them with your SIEM (Security information and event management system) is even harder. That's where Large Language Models (LLMs) come in. This talk will describe how to use your existing runb

Many thanks to Richard Finlay Tweed for presenting his talk: "Using LLMs To Accelerate Threat Detection" at the #OWASP London Chapter meetup last week!

The recording of the talk is now available on #OWASPLondon YouTube πŸ“Ί channel (please SUBSCRIBE!):
πŸ‘‡
www.youtube.com/watc...

1 1 0 0
Introducing the OWASP SocialOSINTLM Project - Brenden Miller
Introducing the OWASP SocialOSINTLM Project - Brenden Miller SocialOSINTLM Project: Fusing Multi-Platform Data with Advanced Language & Vision Models SocialOSINTLM is a powerful Python-based tool designed for Open Source Intelligence (OSINT) gathering and analysis. It aggregates and analyzes user activity across multiple social media platforms, including Twi

Many thanks to Brenden Miller for presenting his talk: "Introducing the OWASP SocialOSINTLM Project" at the OWASP London Chapter meetup last week!

The recording of the talk is now available on #OWASPLondon YouTube πŸ“Ί channel:
πŸ‘‡
www.youtube.com/watc...

1 0 0 0
Attacks on Open Source Supply Chains: How Hackers Poison the Well - Henrik Plate
Attacks on Open Source Supply Chains: How Hackers Poison the Well - Henrik Plate Attacks on Open Source Supply Chains: How Hackers Poison the Well - Henrik Plate The ubiquitous use of open source during software development makes it an interesting and valuable target for software supply chain attacks, where attackers inject malicious code in upstream open source projects such t

Many thanks to @HenrikPlate for presenting his talk: "Attacks on Open Source Supply Chains: How Hackers Poison the Well" at the OWASP London Chapter meetup last week!

The recording of the talk is now available on #OWASPLondon YouTube πŸ“Ί channel:
πŸ‘‡
www.youtube.com/watc...

2 2 0 0
Preview
OWASP London Chapter Meetup, Mon, May 19, 2025, 6:00 PM | Meetup **This event is kindly hosted by Civo Tech Junction and sponsored by Endor Labs . There is limited seating available for in-person attendees. Registration required.** **Thi

The next @owasplondon.bsky.social Chapter meetup will take place on Monday May 19th 2025 at Civo Tech Junction sponsored by @endorlabs.bsky.social
#OWASPLondon
#OWASP

Register to attend here: πŸ‘‡
www.meetup.com/owasp...

1 1 0 0
Semantic OWASP: Leveraging GenAI and Graphs to Customise and Scale Security Knowledge - Dinis Cruz
Semantic OWASP: Leveraging GenAI and Graphs to Customise and Scale Security Knowledge - Dinis Cruz YouTube video by OWASP London

Many thanks to Dinis Cruz for presenting his talk: "Semantic OWASP: Leveraging GenAI and Graphs to Customise and Scale Security Knowledge" at the #OWASP London Chapter meetup last week!
#diniscruz

The recording of the talk is now available on #OWASPLondon YouTube πŸ“Ί channel:
πŸ‘‡
youtu.be/XH-qcK2yu6I

1 2 0 0
Securing Apps and APIs in Production - John Wood & Aurelien Svevi
Securing Apps and APIs in Production - John Wood & Aurelien Svevi YouTube video by OWASP London

Many thanks to John Wood and Aurelien Svevi for presenting their talk: "Securing Apps and APIs in Production" at the OWASP London Chapter meetup last week!

The recording of the talk is now available on #OWASPLondon YouTube πŸ“Ί channel [PLEASE SUBSCRIBE!]:
πŸ‘‡
www.youtube.com/watch?v=udc7...

1 2 0 0
Post image Post image Post image

OWASP london chapter meetup
@owasplondon.bsky.social #owasplondon @securestep9.bsky.social @all_sec_geek @kerberosmansour #devops #devsecops #ukcyberweek @contrastsecurity.bsky.social
semantic graphs

0 0 0 0
Post image Post image

OWASP london chapter meetup
@owasplondon.bsky.social #owasplondon @securestep9.bsky.social @all_sec_geek @kerberosmansour #devops #devsecops #ukcyberweek @contrastsecurity.bsky.social
#ai #genai #appsec
@diniscruz.bsky.social

4 1 0 0
Post image Post image

OWASP london chapter meetup
@owasplondon.bsky.social #owasplondon @securestep9.bsky.social @all_sec_geek @kerberosmansour #devops #devsecops #ukcyberweek @contrastsecurity.bsky.social
@diniscruz.bsky.social
@swardley.bsky.social #wardleygraphs #appsec

3 3 0 0
Post image

OWASP london chapter meetup
@owasplondon.bsky.social #owasplondon @securestep9.bsky.social @all_sec_geek @kerberosmansour #devops #devsecops #ukcyberweek @contrastsecurity.bsky.social
@opencre @opencreative.bsky.social

2 2 0 0
Post image

OWASP london chapter meetup
@owasplondon.bsky.social #owasplondon @securestep9.bsky.social @all_sec_geek @kerberosmansour #devops #devsecops #ukcyberweek @contrastsecurity.bsky.social
#ai #genai #appsec

2 1 0 0
Post image

OWASP london chapter meetup
@owasplondon.bsky.social #owasplondon @securestep9.bsky.social @all_sec_geek @kerberosmansour #devops #devsecops #ukcyberweek @contrastsecurity.bsky.social
#ai #genai #llms

2 1 0 0