
Björn Kimminich — JuiceShop — 5 minute AppSec
Om avsnittet
What makes OWASP Juice Shop useful to developers when many intentionally vulnerable applications feel dated? Project creator Björn Kimminich explains that he built Juice Shop because older training targets did not represent modern front ends, REST APIs, or the technologies his students used. The project turns web vulnerabilities, business-logic flaws, validation failures, and design problems into hands-on challenges with a scoreboard and gamification. Teams can use it for developer training, awareness demonstrations, capture-the-flag events, security-tool testing, and customized management exercises. This short introduction shows why learning through a realistic application can make the OWASP Top 10 and other security weaknesses more concrete, memorable, and relevant to everyday development work.
The Application Security Podcast is brought to you by Security Journey.
About Security Journey
Security Journey provides application security education for developers and everyone in the software development lifecycle.
→ Learn more about Security Journey
Connect with Björn Kimminich:
→ Björn Kimminich on LinkedIn
→ OWASP Juice Shop
Mentioned in this episode:
→ OWASP Juice Shop
→ OWASP Top 10
→ Open Security Summit
Follow the Application Security Podcast:
➜ Home
➜ X
➜ LinkedIn
➜ YouTube
➜ Instagram
➜ Facebook
Chapters:
00:00 What is OWASP Juice Shop?
00:19 A modern vulnerable application for developers
01:36 Challenges, gamification, and hands-on learning
03:01 Training, CTFs, and management demonstrations
04:20 Continue with the full Juice Shop interview
The Application Security Podcast med Chris Romeo and Robert Hurlbut finns tillgänglig på flera plattformar. Informationen på denna sida kommer från offentliga podd-flöden.