DEV Community

# appsec

Application security topics beyond the web, including mobile and desktop applications.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Two "Medium" Findings That Chain Into Full Infrastructure Compromise

Two "Medium" Findings That Chain Into Full Infrastructure Compromise

Comments
4 min read
Is Learning Manual Vulnerability Scanning a Waste of Time in 2026?

Is Learning Manual Vulnerability Scanning a Waste of Time in 2026?

Comments
5 min read
Week 6 Quiz - Audit Crypto Bugs in Web Apps

Week 6 Quiz - Audit Crypto Bugs in Web Apps

1
Comments
69 min read
What We Learned Securing a SaaS Product with Automated DAST

What We Learned Securing a SaaS Product with Automated DAST

3
Comments
5 min read
Week 6 Scripting Challenge: Build a TLS Certificate Security Validator

Week 6 Scripting Challenge: Build a TLS Certificate Security Validator

Comments
46 min read
Why Modern AppSec Needs Location-Aware Security Testing

Why Modern AppSec Needs Location-Aware Security Testing

Comments
4 min read
🧭 Dominando el OWASP Top 10 (Edición 2025): El Plano de Seguridad para la Próxima Generación

🧭 Dominando el OWASP Top 10 (Edición 2025): El Plano de Seguridad para la Próxima Generación

Comments
4 min read
Fundamentos de AppSec: Protegiendo el Corazón de tus Aplicaciones

Fundamentos de AppSec: Protegiendo el Corazón de tus Aplicaciones

Comments
4 min read
🔐 AppSec desde los Protocolos: Cómo HTTP, Cookies y CORS Definen tu Superficie de Ataque

🔐 AppSec desde los Protocolos: Cómo HTTP, Cookies y CORS Definen tu Superficie de Ataque

Comments
3 min read
I launched an automated App & API security platform. What would make you rely on it continuously?

I launched an automated App & API security platform. What would make you rely on it continuously?

Comments
1 min read
Secure file upload validation in .NET: A layered approach

Secure file upload validation in .NET: A layered approach

1
Comments
8 min read
Week 4 Scripting Exercise: Analyze HTTP Response Headers

Week 4 Scripting Exercise: Analyze HTTP Response Headers

Comments 1
9 min read
VPN Log Analyzer: Detect Brute Force, Session Hijacking & Credential Stuffing (100 Tests) 🔐

VPN Log Analyzer: Detect Brute Force, Session Hijacking & Credential Stuffing (100 Tests) 🔐

Comments
8 min read
SQL Injection Audit Challenge Week 1

SQL Injection Audit Challenge Week 1

Comments
27 min read
OWASP Top Ten 2025 Quiz 2 Week 1 (51 Questions)

OWASP Top Ten 2025 Quiz 2 Week 1 (51 Questions)

Comments
51 min read
OWASP Top 10 2025 Quiz: Week 1 (51 Questions)

OWASP Top 10 2025 Quiz: Week 1 (51 Questions)

Comments
25 min read
JWT Token Validator Challenge

JWT Token Validator Challenge

2
Comments
8 min read
Password Generator Challenge

Password Generator Challenge

5
Comments 3
7 min read
API Request Limiter Challenge

API Request Limiter Challenge

Comments
10 min read
Unpacking Application Security: A Comprehensive Threat Modeling Guide

Unpacking Application Security: A Comprehensive Threat Modeling Guide

1
Comments
12 min read
Applying Bandit SAST Tool to Secure Python Applications

Applying Bandit SAST Tool to Secure Python Applications

1
Comments 1
3 min read
🔍 Applying Flawfinder: A Lightweight SAST Tool to Secure C/C++ Codebases

🔍 Applying Flawfinder: A Lightweight SAST Tool to Secure C/C++ Codebases

1
Comments
4 min read
Global Product Security Strategy: A Multi-Layered Framework (I.P. developed)

Global Product Security Strategy: A Multi-Layered Framework (I.P. developed)

1
Comments
4 min read
My Firebase Webapp almost got pwned by a bot. Then another bot saved it.

My Firebase Webapp almost got pwned by a bot. Then another bot saved it.

Comments
1 min read
OWASP Cornucopia Companion Edition

OWASP Cornucopia Companion Edition

3
Comments
2 min read
loading...