Foundational Security Pillars
Detection and response
Network and application protection
Data protection
Compliance
AI safety
Offensive Red Team Security
Penetration Tests
Black Box Testing
Social Engineering
Web App Scanning
Defensive Blue Team Security
Infrastructure Protection
Damage Control
Incident Response (IR)
Operational Security
Threat Hunters
Digital Forensics
OWASP Web Top 10
A01:2021 Broken Access Control
A02:2021 Cryptographic Failures
A03:2021 Injection
A04:2021 Insecure Design
A05:2021 Security Misconfiguration
A06:2021 Vulnerable and Outdated Components
A07:2021 Identification and Authentication Failures
A08:2021 Software and Data Integrity Failures
A09:2021 Security Logging and Monitoring Failures
A10:2021 Server-Side Request Forgery
OWASP API Top 10
API1:2023 Broken Object Level Authorization
API2:2023 Broken Authentication
API3:2023 Broken Object Property Level Authorization
API4:2023 Unrestricted Resource Consumption
API5:2023 Broken Function Level Authorization
API6:2023 Unrestricted Access to Sensitive Business Flows
API7:2023 Server Side Request Forgery
API8:2023 Security Misconfiguration
API9:2023 Improper Inventory Management
API10:2023 Unsafe Consumption of APIs
OWASP Mobile Top 10
M1:2024 Improper Credential Usage
M2:2024 Inadequate Supply Chain Security
M3:2024 Insecure Authentication/Authorization
M4:2024 Insufficient Input/Output Validation
M5:2024 Insecure Communication
M6:2024 Inadequate Privacy Controls
M7:2024 Insufficient Binary Protections
M8:2024 Security Misconfiguration
M9:2024 Insecure Data Storage
M10:2024 Insufficient Cryptography
OWASP LLM Top 10
LLM01:2025 Prompt Injection
LLM02:2025 Sensitive Information Disclosure
LLM03:2025 Supply Chain
LLM04:2025 Data and Model Poisoning
LLM05:2025 Improper Output Handling
LLM06:2025 Excessive Agency
LLM07:2025 System Prompt Leakage
LLM08:2025 Vector and Embedding Weaknesses
LLM09:2025 Misinformation
LLM10:2025 Unbounded Consumption
OWASP Agentic Top 10
ASI01:2026 Agent Goal Hijack
ASI02:2026 Tool Misuse & Exploitation
ASI03:2026 Identity & Privilege Abuse
ASI04:2026 Agentic Supply Chain Vulnerabilities
ASI05:2026 Unexpected Code Execution (RCE)
ASI06:2026 Memory & Context Poisoning
ASI07:2026 Insecure InterAgent Communication
ASI08:2026 Cascading Failures
ASI09:2026 HumanAgent Trust Exploitation
ASI10:2026 Rogue Agents
