
Stung by OWASP? Chatting with the creator of the most popular web app scanner
Saintedyfy59
Description
<p>Simon is the founder and longtime project lead of <a href="https://www.zaproxy.org/">OWASP ZAP</a>, an integrated penetration testing tool that helps uncover vulnerabilities in web apps, including compromised authentication, sensitive data exposure, and SQL injection. ZAP is <a href="https://owasp.org/">OWASP</a>’s most active project and the world’s most popular web app scanner. </p><p>Check out other OWASP projects <a href="https://owasp.org/projects/">here</a> or explore ZAP’s <a href="https://www.zaproxy.org/docs/">docs</a>.</p><p>Check out our blog post on how you can <a href="https://stackoverflow.blog/2019/12/02/preventing-the-top-security-weaknesses-found-in-stack-overflow-code-snippets/">mitigate the ten most-found OWASP vulnerabilities</a> in Stack Overflow C++ snippets.</p><p><a href="https://www.jit.io/">Jit</a>, where Simon is a distinguished engineer, is a DevSecOps platform that allows high-velocity engineering teams to embed security requirements throughout the DevOps workflow. You can explore Jit’s docs <a href="https://docs.jit.io/docs">here</a>.</p><p>Today we’re shouting out the question <a href="https://stackoverflow.com/questions/75297420/csp-alerts-by-owasp-even-though-csp-header-is-added">CSP Alerts by OWASP even though CSP header is added</a>, definitively answered by one <a href="https://stackoverflow.com/users/1509834/simon-bennetts">Simon Bennetts</a>.</p><p>Simon is on <a href="https://www.linkedin.com/in/psiinon/?originalSubdomain=uk">LinkedIn</a> and <a href="https://twitter.com/psiinon">Twitter</a>.</p>
Uploader
Episodes
Stung by OWASP? Chatting with the creator of the most popular web app scanner
Saintedyfy59