Web Application Security
Hands-on exploration of injection, auth, access control, SSRF and more — defending and attacking with permission.
Proxy & repeater
The OWASP Top 10:2025 is the latest version of a key document highlighting critical security risks for web applications. This release has been updated to reflect current security trends and data. The document covers key sections including an introduction to the 2025 updates, an overview of OWASP, and explanations of application security risks. The Top 10 risks identified for 2025 are: 1) Broken Access Control, 2) Security Misconfiguration, 3) Software Supply Chain Failures, 4) Cryptographic Failures, 5) Injection, 6) Insecure Design, 7) Authentication Failures, 8) Software or Data Integrity Failures, 9) Security Logging and Alerting Failures, and 10) Mishandling of Exceptional Conditions. The main project page provides further information and access to older versions.
Source synthétisée — 6/4/2026
Ressources complémentaires