Skip to content

#011 — OWASP Top 10:2025

Stream #011

Дата: 24 липня 2026 | 19:00 London / 21:00 Kyiv
Формат: Гостьова доповідь · технічний deep-dive · ~75–90 хвилин
Гість: Олександр Блажейко
YouTube: https://youtube.com/live/pUNYHsXrT6g

Учасники

Олександр Блажейко — Software Development Engineer · Fullstack
Україна
LinkedIn · itvibe.party

Про що поговоримо

Офіційний OWASP Top 10:2025 щойно оновили. Олександр Блажейко розбирає всі 10 категорій ризику з прикладами вразливого коду.

Що змінилось у 2025

  • A01 Broken Access Control — і далі №1
  • A03 Software Supply Chain Failures — нова, розширена категорія (кейс Shai-Hulud, npm)
  • A10 Mishandling of Exceptional Conditions — абсолютно нова категорія

Усі 10 категорій

A01 Broken Access Control (+ JWT alg:none attack, GraphQL access control), A02 Security Misconfiguration, A03 Software Supply Chain Failures, A04 Cryptographic Failures, A05 Injection, A06 Insecure Design, A07 Authentication Failures, A08 Software or Data Integrity Failures, A09 Security Logging & Alerting Failures, A10 Mishandling of Exceptional Conditions

Ключові тези

Будуть додані після стріму.

Таймкоди

Будуть додані після стріму.

Ресурси

ІТ П'ятниця · @zloyleva