OWASP LA Monthly In-Person Meeting - FEB 25, 2025
Details
TOPIC: Make Attackers Cry Outsmart them with DeceptionJoin us for great networking, dinner and drinks, and see a presentation by Rick HorwitzSr. Sales Engineer Fastly
ABSTRACT:
In this session, Rick Horwitz will explore how next-generation web application defense techniques use deception to disrupt account takeover attempts by returning responses that resemble invalid login credentials. Rather than outright blocking the request, this approach introduces uncertainty, making it harder for attackers to understand why their attempts are failing.
This method leverages core principles of security deception raising an attacker’s cognitive load, consuming their time, and prompting them to question the reliability of their tools or assumptions. Over time, this added friction can decrease the likelihood that they continue targeting the application.
Because these techniques typically require minimal configuration, they can offer immediate insight into attack patterns and behaviors. These signals help defenders analyze adversary tactics and strengthen overall protections, demonstrating how psychological and operational pressure can complement traditional security controls.
Thanks to our SPONSOR: Fastly
Build, Secure, and Deliver. Instantly.
Thanks to our HOST:
SPONSORSHIP Opportunities Available
*Vendors interested in sponsoring please send an email to sponsorship.la@owasp.org*
CODE OF CONDUCT
We hope you enjoy the event, we care deeply about inclusivity and diversity so that OWASP is a comfortable and welcoming community for everyone. Please reach out to one of our chapter leaders if you have any feedback/concerns or would like to speak to us, we take these matters very seriously. You can find out more about our policies here:
https://owasp.org/www-policy/operational/conferences-events.html#conference-and-event-anti-harassment-policy




