OWASP Top 10 Tutorial — One-Page Cheat Sheet
The ten most critical web application security risks.
OWASP Top 10
- HOME
- Intro
- A01 Broken Access Control
- A02 Cryptographic Failures
- A03 Injection
- A04 Insecure Design
- A05 Security Misconfiguration
- A06 Vulnerable Components
- A07 Auth Failures
- A08 Software / Data Integrity
- A09 Logging / Monitoring
- A10 SSRF
Defence in Depth
- Threat Modelling
- Secrets Management
- Security Headers
- Rate Limiting
- Logging & Alerting
- Patch Management
- Least Privilege