Sveriges mest populära poddar
The Application Security Podcast
The Application Security Podcast

Björn Kimminich — JuiceShop — 5 minute AppSec

5 min26 maj 2019

Om avsnittet

What makes OWASP Juice Shop useful to developers when many intentionally vulnerable applications feel dated? Project creator Björn Kimminich explains that he built Juice Shop because older training targets did not represent modern front ends, REST APIs, or the technologies his students used. The project turns web vulnerabilities, business-logic flaws, validation failures, and design problems into hands-on challenges with a scoreboard and gamification. Teams can use it for developer training, awareness demonstrations, capture-the-flag events, security-tool testing, and customized management exercises. This short introduction shows why learning through a realistic application can make the OWASP Top 10 and other security weaknesses more concrete, memorable, and relevant to everyday development work.

The Application Security Podcast is brought to you by Security Journey.

About Security Journey
Security Journey provides application security education for developers and everyone in the software development lifecycle.
Learn more about Security Journey

Connect with Björn Kimminich:
Björn Kimminich on LinkedIn
OWASP Juice Shop

Mentioned in this episode:
OWASP Juice Shop
OWASP Top 10
Open Security Summit

Follow the Application Security Podcast:
Home
X
LinkedIn
YouTube
Instagram
➜ Facebook

Chapters:
00:00 What is OWASP Juice Shop?
00:19 A modern vulnerable application for developers
01:36 Challenges, gamification, and hands-on learning
03:01 Training, CTFs, and management demonstrations
04:20 Continue with the full Juice Shop interview

The Application Security Podcast med Chris Romeo and Robert Hurlbut finns tillgänglig på flera plattformar. Informationen på denna sida kommer från offentliga podd-flöden.