Slides and videos
Developer
- "Making Vulnerability Management Suck Less with the new OWASP Project, DefectDojo ", by Greg Anderson - Slides Movie
- "Don’t Get Caught Em-bed:Finding and Preventing Vulns at its Lowest Level ", by Aaron Guzman - Slides Movie
- "So we broke all CSPs... You won't guess what happened next! ", by Michele Spagnuolo and Lukas Weichselbaum - Slides Movie
- "Become a "Capture the Flag" Star ", by Bruce Mayhew, Nanne Baars and Jason White - Slides Movie
- "How to lead better security through our Mini Hardening project ", by Kazuki Tsubo - Slides Movie
- "Security Best practices in Azure Cloud ", by Viktorija Almazova - Slides Movie
- "Fixing Mobile AppSec: The OWASP Mobile Project ", by Bernhard Mueller and Sven Schleier - Slides Movie
- "The path of secure software ", by Katy Anton - Slides Movie
- "DNS hijacking using cloud providers – no verification needed ", by Frans Rosén - Slides Movie
- "Combining the Security Risks of Native and Web Development: Hybrid Apps ", by Achim D. Brucker and Michael Herzberg - Slides Movie
AllStars
- "Allstars Opening Note ", by Mario Heiderich - Slides Movie
- "My Sweet Innocence Exposed - Eleven Reasons why we will all miss you, "e" ", by Mario Heiderich - Slides Movie
- "Phishing your way through Two-Factor Authentication ", by Michele Orrú - Slides Movie
- "Wicked malware persistence methods ", by Hasherezade - Slides Movie
- "The hidden OS in smart phones ", by Thomas Roth - Slides Movie
- "PDF - A file format that never stops giving ", by Alex Inführ - Slides Movie
- "Building security teams ", by Astera Schneeweisz - Slides Movie
- "DOM based Angular sandbox escapes ", by Gareth Heyes - Slides Movie
- "Exploiting the unexploitable with lesser known browser tricks ", by Filedescriptor - Slides Movie
Keynote
- "KeyNote: Shannon Lietz. The Gift of Feedback ", by Shannon Lietz - Slides Movie
- "KeyNote: Brian Honan. Looking back to look ahead. ", by Brian Honan - Slides Movie
- "KeyNote: Jeremiah Grossman. What the Kidnapping & Ransom Economy Teaches Us About Ransomware ", by Jeremiah Grossman - Slides Movie
- "KeyNote: Jaya Baloo. Everything is Quantum! ", by Jaya Baloo - Slides Movie
DevSecOps
- "What is a DevSecOps Engineer? ", by Helen Beal - Slides Movie
- "Security and the Self-Contained Unit of Software ", by Gareth Rushgrove - Slides Movie
- "I am not a Robot: Job Security in a DevSecOps World ", by Correy Voo - Slides Movie
- "Improving the security of Software Defined Infrastructures ", by Theodoor Scholte - Slides Movie
- "An SDLC for the DevSecOps Era ", by Zane Lackey - Slides Movie
- "Requirements Gathering for Successful DevSecOps Pipeline ", by Aaron Volkman and Hasan Yasar - Slides Movie
- "Integrating Security in Agile Projects - ", by Elena Kravchenko and Efrat Wasserman - Slides Movie
- "Secure DevOps Journey: A How to Guide ", by Peter Chestna - Slides Movie
- "The DevSecOps Playbook from a Practitioner’s Perspective ", by Shannon Lietz - Slides Movie
- "DevSecOps: A Rose by Any Other Name Would Smell Sweeter ", by Nigel Kersten - Slides Movie
- "Pushing Left Like a Boss: Application Security Foundations ", by Tanya Janca - Slides Movie
- "Security In The Land of Microservices ", by Jack Mannino - Slides Movie
- "Don’t Learn, Don’t See, Don’t Run: Application Security for DevSecOps ", by Joseph Feiman - Slides Movie
- "Securing the Continuous Integration Process ", by Irene Michlin - Slides Movie
- "Monitoring Attack Surface and Integrating Security into DevOps Pipelines ", by Dan Cornell - Slides Movie
- "DevSec: Continuous Patch and Security Assessment with InSpec ", by Christoph Hartmann - Slides Movie
- "Creating an AppSec Pipeline with Containers in a Week: How We Failed and Succeeded ", by Jeroen Willemsen - Slides Movie
- "DevSecOps Roundup: An Overview of the Current State of DevSecOps ", by Dan Cornell - Slides Movie
Hacker
- "Boosting the security of your Angular application ", by Philippe De Ryck - Slides Movie
- "Don’t trust the DOM: Bypassing XSS mitigations via Script gadgets ", by Sebastian Lekies, Krzystof Kotowicz and Eduardo Vela Nava - Slides Movie
- "The Key Under the Doormat: Design Flaws and Vulnerabilities in Android Password Manager Applications ", by Steven Arzt - Slides Movie
- "OWASP Juice Shop: Achieving sustainability for open source projects ", by Björn Kimminich - Slides Movie
- "Printer Security ", by Jens Müller and Vladislav Mladenov - Slides Movie
- "2017: Rise of the Machines ", by Kev D'Arcy, Nicholas Raite and Rohini Sulatycki - Slides Movie
- "Pentesting voice biometrics solutions ", by Jakub Kaluzny - Slides Movie
- "How to steal mobile wallet? – Mobile contactless payments apps attack and defense ", by Wojtek Dworakowski and Slawomir Jasek - Slides Movie
- "Exploiting CORS Misconfigurations for Bitcoins and Bounties ", by James Kettle - Slides Movie
- "Analysis and Detection of Authentication Cross-Site Request Forgery ", by Luca Compagna - Slides Movie
- "Preventing 10 Common Security Mistakes in the MEAN Stack ", by David Bohannon - Slides Movie
- "On the (in-)security of JavaScript Object Signing and Encryption ", by Dennis Detering - Slides Movie
CISO
- "Embedding GDPR into the SDLC ", by Sebastien Deleersnyder and Siebe De Roovere - Slides Movie
- "Threat Modeling w/ PASTA - Risk Centric Application Threat Modeling Case Studies ", by Tony UcedaVelez - Slides Movie
- "The Flaws in Hordes, The Security in Crowds ", by Mike Shema - Slides Movie
- "The Dark Side of Search Engines Optimizations Campaigns ", by Or Katz - Slides Movie
- "The evil friend in your browser ", by Achim D. Brucker - Slides Movie
- "Introducing the OWASP ModSecurity Core Rule Set 3.0 ", by Christian Folini - Slides Movie
- "Incremental Threat Modelling ", by Irene Michlin - Slides Movie
- "How to put the Sec in DevOps ", by Helen Bravo - Slides Movie
- "Could a few lines of code F!#ck it all up! ", by Erez Yalon - Slides Movie
- "An Introduction to Quantum-Safe Cryptography ", by Gavin McWilliams - Slides Movie
- "Dangerous Optimizations and the Loss of Causality ", by Robert C. Seacord - Slides Movie
Lightning Talk
- "Bot or Not? - Mitigating Automated Threats to Web Applications ", by Bastian Braun - Slides Movie
- "Creating a buzz: Tales of building WordPress Honeypots at Scale ", by Claire Burn - Slides Movie
- "Is Software Eating Security? How disruption has hit Security & how to survive the "tidal forces". ", by Dave Anderson - Slides Movie
- "CSP Pitfalls and Gotchas ", by Ilya Nesterov - Slides Movie
- "Knowing Is Only Half the Battle ", by Gregory Shapiro - Slides Movie
- "AngularJS + CSP: A Perfect Match or Unhappy Marriage? ", by David Johansson - Slides Movie
- "Increasing web apps security with the power of http headers ", by Jose Manuel Ortega - Slides Movie
- "How to ensure that no one wants to work with you. Mistakes that all security programs make, and how to correct them. ", by Siren Hofvander - Slides Movie
- "The Next Generation in Biometrics - ECG", by Adrian Condon - Slides Movie