appsec.fyi

Presentations / Talks Resources

Post Share

A curated AppSec resource library covering XSS, SQLi, SSRF, IDOR, RCE, XXE, OSINT, and more.

Presentations / Talks

Security conferences and presentations are one of the best ways to learn from experienced researchers and stay current with emerging threats. Talks from events like DEF CON, Black Hat, BSides, OWASP AppSec, and NahamCon regularly introduce novel attack techniques, reveal real-world vulnerability chains, and share hard-won insights from years of security work.

Conference talks cover the full spectrum of application security — from beginner-friendly introductions to deep technical dives into specific vulnerability classes, tool development, and exploit chains. Many of the most impactful security techniques were first presented at conferences before becoming standard parts of the penetration testing toolkit.

Beyond the technical content, talks provide valuable context that blog posts and writeups often miss: the thought process behind finding a vulnerability, dead ends that were explored, and the methodology that led to a discovery. Watching a skilled researcher walk through their approach is one of the most effective ways to develop your own security intuition.

Most major security conferences publish their talks on YouTube, making this knowledge freely accessible to anyone. The resources collected here span application security, bug bounty, penetration testing, and security tooling.

This page collects notable security presentations, conference talks, and video resources from across the application security community.

Date Added Link Excerpt
2026-04-16 NEW 2026XBOW at Black Hat & DEF CON: AI Agents for Offensive SecurityXBOW at Black Hat & DEF CON: AI Agents for Offensive Security
2026-04-16 NEW 20265 Takeaways from Black Hat x DEF CON 20255 Takeaways from Black Hat x DEF CON 2025
2026-04-16 NEW 2026Black Hat USA 2025 Briefings ScheduleBlack Hat USA 2025 Briefings Schedule
2026-04-16 NEW 2026Cybersecurity Slides CollectionCybersecurity Slides Collection
2026-04-16 NEW 2026InfoCon: Hacking and Security Conference ArchivesInfoCon: Hacking and Security Conference Archives
2026-04-16 NEW 2026DEFCON Media Server: Complete Conference Video ArchiveDEFCON Media Server: Complete Conference Video Archive
2026-04-16 NEW 2026DEF CON 33 Archive: Videos, Slides, and White PapersDEF CON 33 Archive: Videos, Slides, and White Papers
2026-04-10 2026BSidesSLC 2026BSidesSLC 2026
2026-04-10 2026Approov Events and ConferencesApproov Events and Conferences
2026-04-10 2026OWASP Global AppSec USA 2025 - CFPOWASP Global AppSec USA 2025 - CFP
2026-04-10 2026OWASP Global AppSec EU 2025 - GenAI FocusOWASP Global AppSec EU 2025 - GenAI Focus
2026-04-10 2026OWASP Global AppSec EU 2025 (Barcelona)OWASP Global AppSec EU 2025 (Barcelona)
2026-04-10 2026OWASP Global AppSec USA 2025 (Washington DC)OWASP Global AppSec USA 2025 (Washington DC)
2026-04-10 2026OWASP Global & Regional EventsOWASP Global & Regional Events
2026-04-10 2026OWASP AppSec Days Developer Security SummitOWASP AppSec Days Developer Security Summit
2026-04-10 2026OWASP 25th Anniversary Virtual ConferenceOWASP 25th Anniversary Virtual Conference
2026-04-10 2026AppSec & Cybersecurity Events Calendar 2026: 60+ ConferencesAppSec & Cybersecurity Events Calendar 2026: 60+ Conferences
2026-04-10 2026Annual Computer Security Applications ConferenceAnnual Computer Security Applications Conference
2026-04-10 2026GPSEC Cybersecurity ConferenceGPSEC Cybersecurity Conference
2026-04-10 2026IEEE Symposium on Security and Privacy 2026IEEE Symposium on Security and Privacy 2026
2026-04-10 2026The Elephant in AppSec ConferenceThe Elephant in AppSec Conference
2026-04-10 2026RSA Conference 2026RSA Conference 2026
2026-04-10 2026Cybersecurity Conferences 2026-2027Cybersecurity Conferences 2026-2027
2026-04-10 2026NDC Security 2026NDC Security 2026
2026-04-10 2026The Best Security Conferences & Events 2026The Best Security Conferences & Events 2026
2026-04-10 2026LASCON – Lonestar Application Security ConferenceLASCON – Lonestar Application Security Conference
2026-04-06 2026HTB COAE: Introducing the new standard for AI Red TeamingHTB COAE: Introducing the new standard for AI Red Teaming
2026-04-06 2026OWASP Impact Report 2025OWASP Impact Report 2025
2026-04-06 2026AI Agent Security Masterclass: Attacking and Defending Autonomous AI Systems - DEF CON TrainingAI Agent Security Masterclass: Attacking and Defending Autonomous AI Systems - DEF CON Training
2026-04-06 2026Hacking Android and IOT Apps by Example - DEF CON Training LV 2026Hacking Android and IOT Apps by Example - DEF CON Training LV 2026
2026-04-06 2026Black Hat USA 2026 Training ScheduleBlack Hat USA 2026 Training Schedule
2026-04-03 2026DEF CON 32 Registration via Black Hat USA 2024DEF CON 32 Registration via Black Hat USA 2024
2026-04-03 2026Black Hat Briefings - WikipediaBlack Hat Briefings - Wikipedia
2026-04-03 2026Security Summer Camp: Black Hat 2025, DEF CON, and OthersSecurity Summer Camp: Black Hat 2025, DEF CON, and Others
2026-04-03 2026Black Hat USA 2024, BSidesLV and DEF CON 32: Hacker Summer Camp GuideBlack Hat USA 2024, BSidesLV and DEF CON 32: Hacker Summer Camp Guide
2026-04-03 2026Black Hat Conference: Cutting-Edge Cybersecurity InsightsBlack Hat Conference: Cutting-Edge Cybersecurity Insights
2026-04-03 2026Black Hat 2025: Latest News and Insights | CSO OnlineBlack Hat 2025: Latest News and Insights | CSO Online
2026-04-03 2026Black Hat 2025 & DEF CON 33: The Attendees' Guide | SplunkBlack Hat 2025 & DEF CON 33: The Attendees' Guide | Splunk
2026-04-03 2026Black Hat USA 2025 & DEF CON 33Black Hat USA 2025 & DEF CON 33
2026-04-03 2026Black Hat USA 2024Black Hat USA 2024
2026-04-03 2026DEF CON Hacking ConferenceDEF CON Hacking Conference
2025-08-14 2025Introducing the OWASP Nettacker Project - Speaker DeckThe content is an introduction to the OWASP Nettacker Project, presented on Speaker Deck. OWASP Nettacker is likely a cybersecurity project associated with the Open Web Application Security Project (OWASP). The presentation on Speaker Deck may provide an overview of the project's goals, features, and importance in the realm of cybersecurity. It aims to raise awareness about the project and potentially attract contributors or users interested in enhancing their security practices.
2025-08-14 2025Gibler - An Opinionated Guide to Scaling Your Company's Security - Google SThe content provided is a title mentioning "Gibler - An Opinionated Guide to Scaling Your Company's Security - Google S." It appears to be a guide or resource focused on helping companies scale their security measures. The mention of "Google S" may suggest a connection to Google or a specific security initiative within Google. The content seems to emphasize the importance of enhancing security practices within a company as it grows and expands, possibly offering opinionated insights and recommendations on how to effectively manage and scale security measures.
2025-08-14 2025Frans Rosén Keynote at BSides Ahmedabad - YouTubeFrans Rosén delivered a keynote speech at BSides Ahmedabad, which is available on YouTube. The content likely includes insights, information, or perspectives shared by Frans Rosén during the keynote address at the event. Viewers can watch the video to gain knowledge or understanding of the topics discussed by Frans Rosén at BSides Ahmedabad.
2025-08-14 2025OWASP VideosThe content is concise and simply states "OWASP Videos," indicating that there are videos related to the Open Web Application Security Project (OWASP). OWASP is a non-profit organization focused on improving software security. The videos likely cover various topics related to web application security, such as best practices, vulnerabilities, and tools. Viewers can expect educational content on how to secure web applications and prevent security breaches.
2025-08-14 2025The security phoenix - from the ashes of DEV-OPS Appsec California 20…The content seems to discuss the concept of security rising like a phoenix from the challenges faced in the realm of DevOps and application security at the Appsec California 2020 event. It likely explores how security measures can evolve and improve despite setbacks, drawing parallels to the mythical phoenix that rises from its ashes. The content may delve into strategies for enhancing security practices in the context of DevOps and application security.
2025-08-14 2025(186) @Jhaddix Talks About Defcon, Burp Suite, Hacking, Bug Bounties and HoThe content discusses @Jhaddix's insights on Defcon, Burp Suite, hacking, bug bounties, and more in a concise manner. It likely covers topics related to cybersecurity, ethical hacking, and bug bounty programs. The content may provide valuable information and perspectives on these subjects from @Jhaddix's expertise.
2020-01-31 2020OWASP VideosThe OWASP Foundation hosts videos on its website to educate about software security. OWASP is a nonprofit organization dedicated to enhancing software security.
2020-01-31 2020Purple is the new black: Modern Approaches to Application SecurityThe content discusses modern approaches to application security, highlighting the concept that "purple is the new black." This phrase implies a shift towards a more comprehensive and integrated approach to security that combines traditional blue team (defenders) and red team (attackers) strategies. By adopting a "purple team" mindset, organizations can enhance their security posture by fostering collaboration between defensive and offensive security teams to better protect against cyber threats.

Frequently Asked Questions

Where can I watch security conference talks?
Most major conferences publish talks on YouTube. Search for DEF CON, Black Hat, BSides, OWASP AppSec, NahamCon, and Bugcrowd LevelUp channels. Many conferences also post slides on their websites or speakers share them on their personal sites and social media.
What are the best security conferences for beginners?
BSides events (free or low-cost, held worldwide) and OWASP chapter meetings are excellent starting points. NahamCon (virtual, free) focuses on bug bounty and practical security. Wild West Hackin' Fest offers beginner tracks. For self-study, the DEF CON 101 track and PortSwigger's recorded workshops are highly recommended.
How do security talks help with bug bounty hunting?
Conference talks often reveal new attack techniques months before they become widely known, giving early adopters an advantage. Speakers share their methodology, tools, and thought processes — not just the final vulnerability. Understanding how experienced researchers approach targets helps develop your own hunting intuition.

Weekly AppSec Digest

Get new resources delivered every Monday.