33 items
Security by Design and Shift-Left
Attacker Motivations and Threat Actors
Trust Boundaries and Untrusted Input
Security in the SDLC
Encryption vs Hashing vs Encoding
What Is Application Security?
Vulnerability, Threat, and Risk
Exploit vs Payload
OWASP Top 10 Overview
Defense in Depth
Non-Repudiation and Accountability
The CIA Triad
Attack Surface Basics
Authentication vs Authorization
Principle of Least Privilege
Attack Surface
Fail Securely and Secure Defaults
Encryption at Rest vs in Transit
Trust Boundaries
Security by Design vs Bolt-on
OWASP and the OWASP Top 10
What Is Application Security
What Is an Exploit
Threat Actors and Motivations
Never Trust User Input
Shift-Left Security
Non-repudiation and Accountability
AppSec vs Network Security
Defense in depth uses multiple layered security controls.
What does defense in depth mean?