33 items
Principle of Least Privilege
Security by Design and Shift-Left
Attacker Motivations and Threat Actors
Trust Boundaries and Untrusted Input
Security in the SDLC
Encryption vs Hashing vs Encoding
What Is Application Security?
Vulnerability, Threat, and Risk
Exploit vs Payload
OWASP Top 10 Overview
Defense in Depth
Non-Repudiation and Accountability
The CIA Triad
Attack Surface Basics
Authentication vs Authorization
Encryption at Rest vs in Transit
Non-repudiation and Accountability
AppSec vs Network Security
Attack Surface
Fail Securely and Secure Defaults
Shift-Left Security
Never Trust User Input
Threat Actors and Motivations
What Is an Exploit
What Is Application Security
OWASP and the OWASP Top 10
Security by Design vs Bolt-on
Trust Boundaries
Defense in depth uses multiple layered security controls.
What does defense in depth mean?