Courses from 1000+ universities
AI got cheap enough that Duolingo’s most expensive plan may not survive it. I read the earnings call transcript and opened the app to see what is actually changing for learners.
600 Free Google Certifications
Artificial Intelligence
IT & Networking
Software Engineering
Supporting Victims of Domestic Violence
Know Thyself - The Value and Limits of Self-Knowledge: The Examined Life
Understanding Dementia
Organize and share your learning with Class Central Lists.
View our Lists Showcase
Explore how integrating security into software development enhances organizational performance, drives velocity, and fosters collaborative cultures. Learn key metrics and strategies for successful transformation.
OpenCRE.org connects security standards, documentation, and tooling, serving as a universal translator for various roles in application security. It links topics across multiple standards and provides a comprehensive guide.
Enhance your security champions program with clear roles, mentorship, feedback, and metrics. Learn strategies to address common challenges and demonstrate value to leadership.
Learn strategies for building and scaling an effective application security program in large or rapidly growing organizations, focusing on maturity levels, hiring, tool optimization, and vulnerability management.
Discover OWASP SAMM 2.1, a framework for analyzing and enhancing secure development lifecycles. Learn its application, assessment tools, and new self-paced training to improve your organization's software security practices.
Exploring the limitations of "shift left" in software security and proposing a new approach to integrate it as part of a broader management strategy for improved application security.
Explore OWASP's data-driven approach to information security, leveraging past insights for future improvements. Learn about centralized data collection, analysis, and visualization techniques to enhance organizational security practices.
Learn strategies to transform security teams into collaborative partners, driving adoption of best practices through influence and empowerment rather than obstruction, applicable to organizations of all sizes.
Learn how modern browser features can protect web applications from common high-risk vulnerabilities such as XSS, CSRF, and Spectre-related threats.
Examina cómo las aplicaciones web basadas en NoSQL pueden sufrir inyecciones y CSRF, y qué medidas ayudan a mitigar esas vulnerabilidades.
A look at how serverless changes application security risks, with defenses for the OWASP Serverless Top 10 and a vulnerable app for illustration.
Explore how data from more than half a million applications informed the OWASP Top Ten 2021, and what that analysis can and cannot reveal.
Explains why common low-level encryption for stored data falls short, and compares application- and field-level approaches to protect against modern attacks.
Learn how Infrastructure as Code and the Open Threat Model format can automate architectural risk analysis and bring threat modeling into DevSecOps workflows.
Survey findings benchmark AppSec champions programs, highlighting how organizations recruit, train, and communicate with champions and measure program returns.
Get personalized course recommendations, track subjects and courses with reminders, and more.