OWASP® Foundation Profile Banner
OWASP® Foundation Profile
OWASP® Foundation

@owasp

207,374
Followers
516
Following
3,320
Media
11,780
Statuses

We improve the security of apps with community-led open source projects, 260 local chapters, and tens of thousands of members worldwide. Famous for OWASP Top 10

Global
Joined August 2008
Don't wanna be here? Send us removal request.
@owasp
OWASP® Foundation
4 years
It gives me great pleasure to announce the release of the OWASP Foundation API Security Top 10 - 2019 edition. Thank you Inon Shkedy, Paulo Silva, and David Sopas for many MANY hours of work. Download the full publication from here:
9
341
554
@owasp
OWASP® Foundation
6 years
Women in Application Security come to @AppSecEU ! We are offering unique talks and many opportunities to get together and share ideas and experiences. London is the place to be 2-6 July 2018! Join Us! @owasp
10
113
414
@owasp
OWASP® Foundation
4 years
The OWASP Foundation will be holding a #Virtual #AppSec Days on April 27-29th. Visit our website to see the variety of #trainings we are offering, and reserve your spot today!
Tweet media one
8
149
342
@owasp
OWASP® Foundation
4 years
Improve your #Appsec skills for a great price! Visit our website today to register or learn more about OWASP Virtual Appsec Days and the 11 online training courses being offered.
Tweet media one
0
69
216
@owasp
OWASP® Foundation
4 years
The OWASP Foundation would like to welcome GitLab as a Corporate Member.
Tweet media one
1
70
204
@owasp
OWASP® Foundation
3 years
Join Ben Sadeghipour @NahamSec for Introduction to Web Application Hacking & Bug Bounty on Nov. 8-10. Participants are given hands-on experience by learning each vulnerability category & completing a series of challenges. #cybersecurity #bugbounty #appsec
Tweet media one
3
33
196
@owasp
OWASP® Foundation
3 years
Ever wonder how to get started with "bug bounties"? Join us on March 15 for our free, live Lightning Conference to learn how! Hosted by OWASP presented by @stokfredrik STÖK
5
48
179
@owasp
OWASP® Foundation
5 years
The OWASP Top Ten IoT 2018 has been released! Congrats to @DanielMiessler @scriptingxss and everyone who has contributed to the project.
@DanielMiessler
ᴅᴀɴɪᴇʟ ᴍɪᴇssʟᴇʀ 🧠📚✍️🗣️👥
5 years
We're elated to announce the release of the OWASP IoT Top 10 for 2018 !!! This release focuses on simplicity and usability, with a list that combines the top issues facing manufacturers, enterprises, and consumers. #iot #infosec
9
266
445
0
95
174
@owasp
OWASP® Foundation
3 years
OWASP and @WeHackPurple are pleased to announce their partnership. OWASP members now have free access to We Hack Purple's AppSec Fundamentals course, valued at $495. Thank you so much to @shehackspurple & the We Hack Purple team!
4
60
158
@owasp
OWASP® Foundation
2 years
⭕In 48 HOURS ⭕ - BEGINNERS JOIN US! @Farah_Hawaa will be on @Owasp_DevSlop for an introduction to some authentication flows in OAuth 2.0 followed by a demo of some common bug types that can be found in them. 🔗 Sponsored by @AppSecEngineer 🤓
Tweet media one
1
23
156
@owasp
OWASP® Foundation
4 years
**FREE TRAINING ** You can request a free non-transferable seat for this training only via email to outreach @owasp .org. Telling us briefly why you would like to join will increase your chances of getting one of the limited seats in this training!
Tweet media one
2
71
151
@owasp
OWASP® Foundation
5 years
Every website has vulnerabilities. What are yours? #GetSmart learn mitigation techniques at OWASP Global AppSec in DC and Amsterdam #SecuredMyApp
2
37
149
@owasp
OWASP® Foundation
4 years
Learn about #Android & #IoT app security by improving your mobile security testing kung-fu with @7aSecurity . This #AppSecDays course is ideal for #Penetration #Testers , #Mobile #Developers and everybody interested in #mobile #app #security .
Tweet media one
0
47
137
@owasp
OWASP® Foundation
5 years
The Application Security Verification Standard 4.0 was released at @nullcon ! There are a huge number of improvements that make it the best ever @OWASP_ASVS ! Get the new release here
0
82
132
@owasp
OWASP® Foundation
4 years
OWASP Foundation will be holding a #Virtual #AppSec Days on April 27-29th. Registration will open on MONDAY, April 6-- stay tuned for more information!
Tweet media one
3
71
132
@owasp
OWASP® Foundation
7 years
The videos from AppSec Europe are now available!
1
101
128
@owasp
OWASP® Foundation
5 years
#Defenders , #Builders , and #Breakers all in one big tent. OWASP Global AppSec in DC and Amsterdam #SecuredMyApp
3
19
119
@owasp
OWASP® Foundation
3 years
Interested in learning about Hacking API's? 🔓 Join #OWASP and featured speaker Katie Paxton-Fear as she presents Hacking API's for Beginners on May 12 at our live virtual Lightning Conference 🐝 #hacking #api #appsec #security
Tweet media one
0
42
125
@owasp
OWASP® Foundation
2 years
Nuclei ( @pdnuclei ) is a community-powered scanner that can scan for almost every web-based vulnerability. How does it work and how can you tailor it to your needs? Join this session with @PinkDraconian to find out. RSVP🔗: Sponsor✨ @datadoghq
Tweet media one
1
29
125
@owasp
OWASP® Foundation
3 years
Next on @Owasp_DevSlop , Vickie Li will go through the basics of how to review your code for vulnerabilities and some tactics for performing an effective security code review. Join us live for a chance to win a membership for @BugBountyHunt3r ! 🔗
Tweet media one
0
27
123
@owasp
OWASP® Foundation
6 years
Great Training is what you will get @AppSecEU ! Here is just one of the training workshops being offered: Attacking & Defending Soap and Rest - Based Web Services by Juiraj Somorovsk! @OWASP - we are all about training!
Tweet media one
0
21
105
@owasp
OWASP® Foundation
5 years
#DiversityProud It's unacceptable that only 11% of cybersecurity pros are women or minorities. We are working to change that with nearly $35,000 in diversity grants for new faces to attend OWASP Global AppSec Amsterdam and DC …
12
59
116
@owasp
OWASP® Foundation
4 years
Giving back to the AppSec community during a #pandemic is how we roll. Virtual AppSec Days $FREE conference and two-days of discounted online training #giveback
0
19
95
@owasp
OWASP® Foundation
2 years
⚡ NEW SHOW ⚡ Shubs ( @infosec_au ) joins @Owasp_DevSlop for a deeper dive into subdomain takeovers, and related attacks. Join us as we explore how these attacks work, and tools and methods to prevent them 💪 RSVP: Sponsor: @AppSecEngineer
Tweet media one
0
13
95
@owasp
OWASP® Foundation
3 years
Interested in learning how to turn your bugbounty hobby into a career? Join us for our free, live Lightning Conference that will teach you how! Hosted by OWASP presented by @stokfredrik STÖK
1
17
92
@owasp
OWASP® Foundation
4 years
Get ready for OWASP Chapters All Day, Coming weekend with 25 Chapters 24 Hours. Streaming live at Mark your calendar. #OWASP #ChaptersAllDay #giveback #community
Tweet media one
2
74
92
@owasp
OWASP® Foundation
1 year
Congratulations
Tweet media one
1
12
94
@owasp
OWASP® Foundation
5 years
Another article on OWASP API Security Project:
0
36
88
@owasp
OWASP® Foundation
4 years
OWASP excited to announce the new release of WSTG v4.1
1
54
91
@owasp
OWASP® Foundation
6 years
Great news! We just launched our first report for the OWASP Serverless Top 10 project. Thank everyone who participated in the project and made it possible with special thanks to our project sponsor, @ProtegoLabs . Get the report and join us:
0
41
85
@owasp
OWASP® Foundation
2 years
Welcome the 2022 OWASP Global Board of Directors Vandana Verma - Chair Grant Ongers - Vice Chair Glenn ten Cate - Treasurer Avi Douglen - Secretary Bil Corry - Member at Large Joubin Jabbari - Member at Large Martin Knobloch - Member at Large
Tweet media one
5
26
86
@owasp
OWASP® Foundation
4 years
OWASP would like to announce a new release for the Flagship project DefectDojo. The latest release is 1.6.0 and comes with numerous new features, bug fixes and improvements include importing from 77 different security tools. More info at
1
39
82
@owasp
OWASP® Foundation
2 years
NEXT WEEK on @Owasp_DevSlop : @Farah_Hawaa !🎊 Farah is joining the show for an introduction to some authentication flows in OAuth 2.0 followed by a demo of a few common bug types that can be found in them! 🔗 Episode sponsored by @AppSecEngineer
Tweet media one
1
12
83
@owasp
OWASP® Foundation
2 years
If you are attending Black Hat USA 2022, visit us at the OWASP Booth - BTT1. #BHUSA
Tweet media one
4
11
78
@owasp
OWASP® Foundation
4 years
. @manicode 's highly intensive and interactive #AppSecDays workshop provides essential application security training for web application and API developers. Reserve your spot today.
Tweet media one
1
21
77
@owasp
OWASP® Foundation
5 years
Really cool! @BiaSciLab stopped our @defcon booth today. Girls can certainly hack!
Tweet media one
4
9
76
@owasp
OWASP® Foundation
4 years
Bring your application #security #program from zero to hero with this 1/2 day course taught by @shehackspurple . Participants will learn; planning, scaling, and measuring your AppSec program. Learn more about this course and register today #AppSecDays
Tweet media one
2
22
76
@owasp
OWASP® Foundation
5 years
We are excited to announce the first #OWASP #Serverless Top 10 call for data. Help us better understand serverless applications risks. We need you! And don’t miss out the Serverless Top 10 talk on #OWASP #GlobalAppSec @OWASP_IL
0
47
73
@owasp
OWASP® Foundation
3 years
New Year, new events! Join our global community for our first Lightning Conference on March 15th and understand how to make a career out of Bug Bounties! Featured speaker STÖK will guide you on tools, skills, and avoiding pitfalls. Register today!
3
19
69
@owasp
OWASP® Foundation
4 years
This interactive online #AppSecDays course will teach #security #professionals how to use #data #science techniques to quickly manipulate and analyze security data @cgivre . Register today
Tweet media one
1
14
63
@owasp
OWASP® Foundation
23 days
20 years ago today, the OWASP Foundation was formed as a non-profit organization. Here's to the next two decades of cybersecurity, and beyond! Your donations help make our mission possible:
Tweet media one
1
18
68
@owasp
OWASP® Foundation
6 years
We have been accepted to the Google Summer of Code! View our Ideas List and share to the interested students you know. #GSOC #OpenSource
2
35
65
@owasp
OWASP® Foundation
3 years
🌟 Thank you to everyone who contributed to making our 20th Anniversary event a huge success! We look forward to continuing working with you and "Securing the Next 20 Years". #owasp
Tweet media one
0
20
64
@owasp
OWASP® Foundation
6 years
Thank You to @netflix @salesforce and @Uber for their generous support of the @appsecusa scholarship fund! We now have 27 women coming to @appsecusa on scholarship!! @owasp
4
26
64
@owasp
OWASP® Foundation
4 years
Hello Everyone, OWASP Chapters All Day is live! Tune in to the channel : #owasp #owaspchapters #security #community
3
45
63
@owasp
OWASP® Foundation
4 years
The #OWASP Chapters are hosting Virtual Chapters All Day on 06th of June, 2020. Subscribe to the channel where all the talks will be live streamed by the chapters 24 Hours, 24 Chapters and 48 Talks Stay Tuned for more updates. @owasp #ChaptersAllDay
Tweet media one
0
44
60
@owasp
OWASP® Foundation
3 years
Today's session "Finding Security Vulnerabilities through Code Review - The OWASP way" by @mgreiler starts in 50 minutes. Join us Live on the @Owasp_DevSlop Show. 🎫
Tweet media one
0
19
61
@owasp
OWASP® Foundation
5 years
We are happy to announce the @OWASP #ModSecurity @CoreRuleSet version 3.1 featuring a complete new group of rules against #Java injection attacks and much more. #CRS3
Tweet media one
0
45
61
@owasp
OWASP® Foundation
2 years
. @Owasp_DevSlop could not be more excited about the next episode! @Njuchi_ will join our hosts to discuss Kubernetes Security. Save your spot and join us LIVE for a live stream with a few surprises🔗 Episode sponsor @datadoghq
Tweet media one
2
17
59
@owasp
OWASP® Foundation
4 years
During @fcerullo 's #AppSec #training , participants will be able to identify the top 5 critical vulnerabilities in #web #applications , understand how #exploitation works & more. Visit to register for this course or to learn more about this online event.
Tweet media one
0
16
56
@owasp
OWASP® Foundation
2 years
Don’t forget to join us and @PentesterLab CEO, Louis Nyffenegger, for a no-holds-barred look at JWTs and how they can be exploited to bypass your authentication systems. @Owasp_DevSlop RSVP🔗: Episode sponsor✨: @datadoghq
Tweet media one
0
11
60
@owasp
OWASP® Foundation
4 years
This course is a 100% hands-on deep dive into the #OWASP Mobile #Security Testing Guide and relevant items of the OWASP #Mobile #Application #Security #Verification Standard, so this course covers and goes beyond the OWASP Mobile Top Ten. @7aSecurity
Tweet media one
0
25
55
@owasp
OWASP® Foundation
5 years
Did someone say "Day Passes?" Yes, someone did. Save over 50% off at OWASP Global AppSec DC when you take a single day pass compared to the Full Conference price.
1
11
54
@owasp
OWASP® Foundation
3 years
IN 1 HOUR! @InsiderPhD will be on the @Owasp_DevSlop show. She's joining us to talk about one of her favorite bugs, IDORs (A4)! Join us and participate to the giveaway sponsored by @PentesterLab ! 💻YouTube:
Tweet media one
2
9
56
@owasp
OWASP® Foundation
4 years
Following recent developments relating to COVID-19, the OWASP Foundation has made the difficult decision to postpone the Global AppSec Dublin Conference to February 15-19, 2021.
2
39
59
@owasp
OWASP® Foundation
6 years
Are you looking for a paid internship to that will allow you to dive deeply into a coding problem with an mentor? Join OWASP as we partner with Google for the Google summer of code. Applications close 3/26
2
52
55
@owasp
OWASP® Foundation
2 years
Nuclei ( @pdnuclei ) is a community-powered scanner that can scan for almost every web-based vulnerability. How does it work and how can you tailor it to your needs? Join @Owasp_DevSlop and @PinkDraconian to find out. RSVP🔗: Sponsor✨ @datadoghq
Tweet media one
0
12
58
@owasp
OWASP® Foundation
3 years
Almost exactly 1 year after her first speaking opportunity on @Owasp_DevSlop , @InsiderPhD will join us again to talk to us about one of her favourite bugs, IDORs (A4)! Thank you @PentesterLab for sponsoring the show! 📅Save the date:
Tweet media one
0
7
58
@owasp
OWASP® Foundation
2 years
In this show, we’ll talk to Louis Nyffenegger ( @snyff ) about attacking JWT implementation flaws, to help you assess and build secure JWT implementations. 🔗 Episode sponsor✨: Datadog
Tweet media one
0
7
56
@owasp
OWASP® Foundation
7 years
We're proud to announce that the OWASP Global YouTube channel is now at over 12,500 subscribers! Use this link to subscribe yourself or share around:
0
26
56
@owasp
OWASP® Foundation
6 years
@owasp at BSides!! Thank You to the Awesome volunteers!
Tweet media one
1
7
55
@owasp
OWASP® Foundation
6 years
BlackHat USA 2018 Las Vegas OWASP
Tweet media one
0
13
53
@owasp
OWASP® Foundation
1 month
No joke, we did have a data breach in late March involving the resumes of our earliest members. Rest assured, all current membership data remains secure. We recognize the unfortunate irony here, and are determined to make it our last breach. Details here:
Tweet media one
3
24
54
@owasp
OWASP® Foundation
4 years
This #AppSecDays training will be filled with #demos designed from real-world #attacks to help understand all there is to attack and #secure such #applications @bondijois .
Tweet media one
1
20
51
@owasp
OWASP® Foundation
4 years
DevOps for CISO is an online course being offered for a better understanding in: Agile and DevOps basics, , deployment, and operations, Agile threat modeling, Patch management in DevOps environments and much more. Join @Dave_von_S and register today.
Tweet media one
1
19
55
@owasp
OWASP® Foundation
2 years
Check out OWASP ZAP's newest blog post:
Tweet media one
0
17
54
@owasp
OWASP® Foundation
5 years
Global AppSec Amsterdam recordings are now available on #globalappsec
2
46
53
@owasp
OWASP® Foundation
2 years
800+ RSVPs 🔴Join us in 1 hour with our guest, @PentesterLab CEO, Louis ( @snyff ) who will be walking through attacking JWTs with us, so you can build better authentication. @Owasp_DevSlop Twitch🔗: Episode sponsor: @datadoghq
Tweet media one
1
17
50
@owasp
OWASP® Foundation
9 months
A new open-source tool allows testing the efficacy of WAF solutions in real-world conditions using millions of web requests. Refer to our corporate supporter @openappsec GitHub page for more details. #waf #websecurity #apisecurity #DevOps #DevSecOps
1
15
53
@owasp
OWASP® Foundation
3 years
Celebrate with OWASP at our 20th Anniversary Event! For 24-hours beginning at 3amET we will be running 4 tracks with 5 keynote speakers, guest speakers and sponsors. Don't miss the opportunity to register for FREE!
Tweet media one
1
27
54
@owasp
OWASP® Foundation
3 years
We are closing in on a record 4500 OWASP members! We'd really like to hit 5,000. To help us get there, the 4500th member will receive an OWASP 20th Anniversary Shirt or Hoodie and an OWASP membership pin - if it happens today. Please join!
Tweet media one
3
24
51
@owasp
OWASP® Foundation
6 years
OWASP is community the community is OWASP! Can’t wait until we gather together again to learn from talks, to share from experiences and to have some Fun!!
Tweet media one
0
16
51
@owasp
OWASP® Foundation
7 years
More Shout out to @InfosecN00bs who found and discloused a vulnerability on our platform! Welcome to the community N00bs! #n00bsec
1
9
49
@owasp
OWASP® Foundation
4 years
Have you been tasked with reviewing too much code in too little of time? This #AppSecDays course with @sethlaw & @cktricky addresses these common challenges in modern #secure #code review. Reserve your spot now.
Tweet media one
0
13
47
@owasp
OWASP® Foundation
3 years
GET EXCITED! Only 1 HOUR before @vickieli7 goes through the basics of how to review your code for vulnerabilities on @Owasp_DevSlop . Let's hunt some bugs in source code and get a chance to win a subscription to @BugBountyHunt3r and more ! 🔗
Tweet media one
0
10
51
@owasp
OWASP® Foundation
3 years
🔴 1 HOUR before @Owasp_DevSlop with @urlichsanais ! Join us for a discussion about #Kubernetes , how it changes our processes around deploying software, its benefits, and how to get started. We're also giving away a @kodekloud1 subscription. YouTube:
Tweet media one
2
13
51
@owasp
OWASP® Foundation
4 years
Save the Date: Global AppSec Dublin 2020 (formerly AppSec EU) June 15-19, 2020 at Convention Center in Dublin URL:
3
28
50
@owasp
OWASP® Foundation
4 years
Andrew van der Stock named OWASP Executive Director
6
16
48
@owasp
OWASP® Foundation
9 years
A new ambitious project - OWASP Secure Configuration Guide! http://t.co/mdWHHt0TfF
4
48
50
@owasp
OWASP® Foundation
6 years
OWASP Foundation has been granted 10 project slots for GSoC 2018! Congratulations @owasp ! #OWASP #AppSecUSA #AppSecEU
Tweet media one
0
18
48
@owasp
OWASP® Foundation
3 years
Check out this line-up of speakers! Hear them talk at the #OWASP 20th Anniversary event beginning at 3am EDT on Friday, Sept. 24 as we celebrate our past 20 years and look forward to "Securing the Next 20 Years".
Tweet media one
0
20
47
@owasp
OWASP® Foundation
7 years
OWASP is looking for volunteers to review projects! Are you interested in joining the team?
0
49
47
@owasp
OWASP® Foundation
9 years
OWASP Mobile Security Testing Guide is coming soon...!! Download alpha version: Send feedback to milan @owasp .org.!!
3
73
48
@owasp
OWASP® Foundation
5 years
Happy International Woman's Day From OWASP and WIA
Tweet media one
1
11
48
@owasp
OWASP® Foundation
4 months
After serving as its steward for over a decade, @Trustwave has agreed to transfer the reins of the renowned open-source web application firewall (WAF) engine, ModSecurity, to the Open Worldwide Application Security Project (OWASP). Read more at
2
20
47
@owasp
OWASP® Foundation
3 years
We are really close to a record 4000 members! Take advantage of our two year membership drive to help @owasp do our mission, as well as access great membership benefits, including member discounts at all our paid events! Membership can pay itself off :)
0
10
47
@owasp
OWASP® Foundation
6 years
OWASP LATAM Tour 2018 México fue un gran éxito y tanto las diapositivas como las grabaciones de las charlas ya están disponibles oficialmente en el nuevo canal de Youtube de OWASP LATAM
0
31
46
@owasp
OWASP® Foundation
3 years
1
11
47
@owasp
OWASP® Foundation
4 years
We would especially like to thank all of our trainers who participated in OWASP Virtual #AppSecDays April 2020 @cgivre , @bondijois , @manicode , @Dave_von_S , @salecharohit , @7aSecurity , @sebadele , @sethlaw , @cktricky , @gr4ybeard , @fcerullo & @shehackspurple
0
9
41
@owasp
OWASP® Foundation
8 years
V3.0.0 represents >2.5 yrs of effort w/ nearly 1000 commits; it supports new rules, development strategies, and underlying technology.
@ChrFolini
Christian Folini / @[email protected]
8 years
The #CRS3 team is happy to announce the release of @OWASP @ModSecurity Core Rule Set v3.0.0. Please retweet.
1
46
33
2
58
44
@owasp
OWASP® Foundation
5 years
#Attacking #Android and #iOS apps by Example, is a hands-on practical 3-day training course at #GlobalAppSec #Amsterdam that will allow attendees to gain skills that can be applied to #mobile #security #assessments immediately. Reserve your spot today.
Tweet media one
0
55
46
@owasp
OWASP® Foundation
2 years
If you at Black Hat USA, don't forget to stop by the OWASP Booth - BTT1 and say hello to Andrew and Harold. #BHUSA #BlackHat
Tweet media one
3
5
45
@owasp
OWASP® Foundation
3 years
Don't miss part 2 of How to Analyze Code for Vulnerabilities on @Owasp_DevSlop ! @tuxology & @vickieli7 will demonstrate how to use open-sourced code analysis tool Joern to make code analysis more efficient! RSVP: Sponsor: @ShiftLeftInc
Tweet media one
1
15
45
@owasp
OWASP® Foundation
28 days
Many #developers assume that the libraries have done things right, but that trust is too often misplaced. There are cases where even if you as a developer have done everything right in your code, the application is still vulnerable to #SQL injection.
Tweet media one
2
21
45
@owasp
OWASP® Foundation
5 years
The #OWASP #Docker Top 10 is a #defender project. Don't miss out on the important Do's and Dont's to more advanced controls which could help you to make your environment almost bullet proof at #GlobalAppSec Amsterdam.
Tweet media one
0
17
43