ToolsLinked from 28 episodes
OWASP ZAP
Welcome to ZAP! It provides a technical capability or reference that security practitioners can evaluate directly.
Visit resource ↗zaproxy.org
Episodes that link here
Tanya Janca - Secure Vibe Coding
Brad Geesaman - Redefining AppSec with AI: Shrinking Toil, Expanding Impact - How LLMs are able to reduce toil in triage-heavy AppSec workflows
Phillip Wylie -- Pen Testing from Somebody who Knows about Pen Testing
Mark Curphey and Simon Bennetts -- Riding the Coat Tails of ZAP, without Open Source Funding
OWASP Board of Directors Debate
Mark Curphey and John Viega -- Chalk
Kevin Johnson -- Samurai Swords and Zap's Departure
Steve Giguere -- Cloud AppSec
Mark Curphey -- The future of OWASP
Tiago Mendo -- How to scan at scale with OWASP ZAP
Sam Stepanyan -- OWASP Nettacker Project
Simon Bennetts -- Using OWASP Zap across an Enterprise
Vandana Verma -- OWASP Spotlight Series
Andrew van der Stock — Taking Application Security to the Masses
Elie Saad — OWASP WSTG, Cheat Sheets, and Integration
Vandana Verma — Support each other
Season 5 Finale — A cross section of #AppSec
Nancy Gariché and Tanya Janca — DevSlop, the movement
Jon McCoy — Hacker outreach
Simon Bennetts — OWASP ZAP: past, present, and future
Matt Konda -- OWASP Glue
Abhay Bhargav -- Threat Modeling as Code
Matt Tesauro -- #AppSec Pipeline as Toolbox
Julien Vehent -- Securing DevOps
Martin Knobloch -- OWASP, Reach Out; We Are Known and Misunderstood
Bill Sempf -- Insecure Deserialization
Tanya Janca and Nicole Becher -- Hacking APIs and Web Services with DevSlop
Eric Johnson -- Continuous Integration in .NET
This catalogue is derived from episode show-note links. Appearance here records a reference from the show; it is not a recommendation, verification, or claim of guest attribution.