Workshops at SecAppDev 2025
SecAppDev 2025 offers three days of in-depth lectures and two days of workshops, organized in a dual-track program.
SecAppDev workshops offer a one-day hands-on deep-dive into application security. Our expert faculty members will teach you how to bring appsec knowledge into practice. Throughout the workshop and the entire SecAppDev course, there is ample time to ask questions or discuss scenarios with our faculty members.
Check out the workshops for SecAppDev 2025 below. More sessions will be announced soon!
SecAppDev offers hands-on workshops by world-renowned experts
Grab your seat nowHands-on deep-dive into frontend security
One-day workshop by Philippe De Ryck
Modern web applications rely heavily on frontend code, making browser security mechanisms crucial for protecting users and data. This hands-on workshop takes a deep dive into advanced frontend security for Angular / React / Vue applications.
Participants will explore real-world attack scenarios and implement defenses through guided exercises. Designed for developers and security professionals, this workshop blends academic depth with practical application, equipping attendees with the skills to secure modern frontends effectively.
Learning goal: Understand and apply state-of-the-art security mechanisms to protect modern frontends from real-world threats.
Secure Coding Workshop
One-day workshop by Jim Manico
This hands-on workshop teaches developers the principles of secure coding, focusing on real-world attack scenarios and defense strategies. Participants will learn to identify and mitigate vulnerabilities such as injection flaws, XSS, authentication weaknesses, and insecure dependencies. Using AI code generators and security tools, attendees will strengthen their ability to write robust, secure applications.
Ideal for developers looking to enhance their security mindset and build software that withstands modern threats.
Learning goal: Attendees will learn to build secure APIs by preventing injection attacks, managing third-party risks, OAuth2 basics, securing React integrations, and handling file uploads safely. They will also explore AI-assisted code generation.