
The NYP InfoSec Web Security Workshop focused on the OWASP Top 10 and how to identify, exploit, and fix common web vulnerabilities. It also covered how these issues appear in AI powered sites, such as those using chatbots or dynamic content generators.
As part of the organizing team, I helped develop and run the exercises, including hands on labs where participants explored issues like XSS, insecure design, and sensitive data exposure.
We used intentionally vulnerable sites and AI integrated mock apps to simulate real world environments. I also assisted participants during the workshop, helping them understand how the exploits worked.
It was an eye opening experience that showed how traditional web security and AI development intersect, emphasizing the need for secure by design principles as AI becomes more common online.