Big thank you to our Gold Sponsor DefectDojo! Check them and all other vendors at #basc2025 . Buy your ticket at www.basconf.org. #owasp #appsec #owaspboston
Big thank you to our Gold Sponsor DefectDojo! Check them and all other vendors at #basc2025 . Buy your ticket at www.basconf.org. #owasp #appsec #owaspboston
Yeah, Copilot, I say the same thing as @bontchev - now do Windows.
Run a deep dive into #OWASPASVS with Tejpal Garhwal! Buy your ticket at www.basconf.org to grab a spot! #owasp #basc2025 #appsec #owaspboston
Some of my colleagues at #AWS have created an open-source serverless #AI assisted #threatmodel solution. You upload architecture diagrams to it, and it uses Claude Sonnet via Amazon Bedrock to analyze it.
I'm not too impressed with the threats it comes up with. But I am very impressed with the amount of typing it saves. Given nothing more than a picture and about 2 minutes of computation, it spits out a very good list of what is depicted in the diagram and the flows between them. To the extent that the diagram is accurate/well-labeled, this solution seems to do a very good job writing out what is depicted.
I deployed this "Threat Designer" app. Then I took the architecture image from this blog post and dropped that picture into it. The image analysis produced some of the list of things you see attached.
This is a specialized, context-aware kind of OCR. I was impressed at boundaries, flows, and assets pulled from a graphic. Could save a lot of typing time. I was not impressed with the threats it identifies. Having said that, it did identify a handful of things I hadn't thought of before, like EventBridge event injection. But the majority of the threats are low value.
I suspect this app is not cheap to run. So caveat deployor.
#cloud #cloudsecurity #appsec #threatmodeling
Big thank you to our Platinum Sponsor Run Security! Check them out along with all vendors with some amazing raffle prizes to give at #basc2025. Buy your ticket at www.basconf.org. #owasp #appsec #owaspboston
Everyone knows all the apps on your phone A case study looking at #Indian Apps on #Android phones. #SmartPhones #privacy #india #surveillance #DataPrivacy #DataProtection #DataSecurity #software #Apps #AppSec #AppDev
https://peabee.substack.com/p/everyone-knows-what-apps-you-use
Learn how to protect Internet's Core Infrastructure with Or Katz. Buy your tickets at www.basconf.org to grab a seat. #owasp #owaspboston #basconf25 #appsec
Try your luck at winning one of many raffle prizes from Flipper Zeros, Apple Airpods, Bose Headsets, Lego Sets, Yeti Soft Coolers, Polaroid Gen3+ and many many more! Buy your tickets at www.basconf.org to be allowed in! #owasp #appsec #basc2025 #owaspboston
Learn with Aedan Lawrence how to apply a scalable approach to ##threatmodeling at OWASP BASC on April 5th (Saturday). Buy your tickets at www.basconf.org #owasp #basc2025 #owaspboston #appsec
Big thank you to our silver sponsors Snyk! Check them out and all our vendors with some surprise raffles on April 5th (Saturday) at OWASP BASC 2025! Buy your ticket at www.basconf.org
#owasp #owaspboston #appsec #basc2025
Space is filling up fast! Secure your expo spot at #OWASP Global AppSec US DC before it’s too late! http://dc.globalappsec.org/ #appsec #developers #cybersecurity
6 workshops, 18 talks, 1 CTF, 14 vendors with raffle prizes, there is something for everyone! Make sure to buy your tickets at www.basconf.org to grab a spot! #owasp #basc2025 #owaspbasc #appsec
We have Audrey Long explaining how to automate #threatmodeling at BASC 2025. Buy your ticket at www.basconf.org to grab a spot. #owasp #appsec #basc2025 ##basc
Big thank you to our platinum sponsors Heeler! Visit their booth at BASC 2025. Buy your ticket at www.basconf.org to visit and learn more. #owasp #appsec #basc2025 #basc
Big thank you to our gold sponsors Correlium! Visit their booth at BASC 2025 by buying your ticket at www.basconf.org . #owasp #basc2025 #appsec #basc
Hear Craig Chamberlain talk about Intrusion Prediction ! Buy your tickets at www.basconf.org to grab a spot. #owasp #basc2025 #appsec #basc
Best way to spend $30 by learning about #ai, #threatmodeling & #mobilesecurity ! Check out www.basconf.org to register. Hurry up to grab a spot! #owasp #basc2025 #appsec
We’re excited to welcome the @SecCodeWarrior team as a Gold Exhibitor at #OWASP 2025 Global AppSec EU in Barcelona! Thank you for supporting the community and helping advance #AppSec and #Cybersecurity. See you there! barcelona.globalappsec.org #developer #supportnonprofit