Supply Chain Security OWASP Incubator Project Helps Developers Find and Fix Vulnerable Dependencies in Seconds CVE Lite CLI is a free, open-source command line tool that scans your projects in seconds and tells you exactly which included packages contain... Kevin TownsendJune 5, 2026
Application Security Two New Web Application Risk Categories Added to OWASP Top 10 OWASP has added two new categories to the revised version of its Top 10 list of the most critical risks to web applications. Ionut ArghireNovember 10, 2025
Data Breaches OWASP Data Breach Caused by Server Misconfiguration The OWASP Foundation says a wiki misconfiguration exposed resumes filed over a decade ago by aspiring members. Ionut ArghireApril 2, 2024
Application Security OWASP’s 2023 API Security Top 10 Refines View of API Risks OWASP’s ranking for the major API security risks in 2023 has been published. The list includes many parallels with the 2019 list, some reorganizations/redefinitions,... Kevin TownsendJune 7, 2023
Supply Chain Security Top 10 Security, Operational Risks From Open Source Code Endor Labs has introduced an OWASP-style listing of the most important or impactful risks inherent in the use of open source software (OSS). Kevin TownsendMarch 1, 2023