Course with Nathaniel
Nathaniel — Secure Coding Against the OWASP Top 10
OWASP Top 10 practice for developers last trained on the 2021 list, with an AI tutor that marks against your coding standard. Six sessions on the 2025 categories inside your own Java and TypeScript pull requests, until developers catch five planted flaws unaided.
What you’ll master — Outcomes you can use
- They catch five planted flaws unaided
Your tutor
An application security engineer who reviews pull requests for a living and has re-mapped every training deck to the OWASP Top 10:2025.
Direct · Code-first · Allergic to abstraction
The plan — What’s inside
- Broken Access Control In Our Own Routes
- Security Misconfiguration Now At A02
- Software Supply Chain Failures At A03
- Injection In Our Query Layer
- Mishandling Exceptional Conditions At A10
- Fixing It In A Pull Request
6 parts
Questions about this course
What changed in the OWASP Top 10 2025 and how do developers train for it?
OWASP Top 10 practice for developers last trained on the 2021 list, with an AI tutor that marks against your coding standard. Six sessions on the 2025 categories inside your own Java and TypeScript pull requests, until developers catch five planted flaws unaided.