Skip to content

Glossary · Security

OWASP Top 10

A list of the most critical web application security risks, maintained by the Open Web Application Security Project.

Browse all definitions

In detail

The OWASP Top 10 is the most cited security checklist for web applications, updated every few years based on data from real breaches. The current version (OWASP Top 10:2021) leads with broken access control, cryptographic failures, injection, insecure design, security misconfiguration, and so on. It is the baseline that any web app, including AI built ones, should be assessed against. OWASP also publishes a parallel Top 10 for LLM Applications covering AI specific risks.

Sources & further reading

Check the source, not just the summary

Apply the definition

Want to talk through how this applies to your business?

Start with the decision in front of you. We will help map the fit.

Straight answers · no pitch deck · no commitment