OWASP released a major update to the Top Ten in December 2025, introducing new categories, refined definitions, and a sharper focus on web application risks. Understanding and Auditing the OWASP Top Ten provides a practical, risk-driven walkthrough of the most critical vulnerabilities auditors must recognize and evaluate.
As modern web applications increasingly embed AI models and autonomous decision components, auditors must assess not only traditional issues but also AI-driven risks such as model manipulation, insecure integrations, data-poisoning paths, and unintended model behavior. This session equips participants to evaluate both classic and AI-augmented applications, understand how AI shifts threat modeling, and identify evidence needed to validate secure design in today’s evolving landscape.
This event is complementary (no fee)!
Contact Chapter
Contact ISACA Global Support
JoinBenefitsCredentials
About ISACACommunity Code of ConductISACA Policies ISACA Terms of UseISACA Global Privacy Notice
Chapter Privacy Policy