SecAppDev 2027: June 7-11, Leuven, Belgium. A week of secure application development training with industry and academic experts. Subscribe for updates: secappdev.org/course
SecAppDev
@secappdev.org
SecAppDev is an immersive week-long course in secure application development. In-depth lectures and hands-on workshops take you on a deep-dive in today's security best practices. More info on https://secappdev.org
SecAppDev: a week of immersive, in-depth training in secure application development. Experts from industry and academia, hands-on workshops, and a unique venue in Leuven, Belgium. secappdev.org/course
SecAppDev 2026 is a wrap: 18 speakers, 2 keynotes, 20 sessions, 4 workshops, and a week full of knowledge-sharing. Thank you to everyone who joined. Taking a summer break now, SecAppDev 2027 follows on June 7-11. secappdev.org/course
SecAppDev 2026 is a wrap. 18 experts, 20 sessions, 4 workshops, five days of deep-diving into application security in Leuven, Belgium. SecAppDev 2027 is already on the calendar: June 7–11. Subscribe for updates at secappdev.org.
The handouts from SecAppDev 2026 are now available online, great sessions worth revisiting. secappdev.org/previous/handouts-2026/ SecAppDev 2027 is June 7–11 in Leuven, Belgium. Subscribe at secappdev.org.
Thank you to every speaker and participant who made SecAppDev 2026 genuinely special. The feedback we received has been wonderful. SecAppDev 2027 is June 7–11 in Leuven, Belgium. Subscribe for updates: secappdev.org
Final day of #SecAppDev 2026. Two workshops to close: attacking and defending LLMs hands-on, and practical web application security through the lens of real-world CVEs. A strong end to a strong week.
Workshop day at #SecAppDev. Today's tracks: disciplined AI-assisted coding with Claude Code, and threat modeling with AI support. Hands-on, full day, no slides-only learning.
Midweek at #SecAppDev: real breaches through a secure-by-design lens, adversarial ML, EU CRA compliance, XS-Leaks, privacy attacks on deep learning, and Inti De Ceukelaire on what happens when you actually read the RFCs. Then a BBQ workshop to wrap the evening.
Day 2 of #SecAppDev covers AI agent security, SBOMs and supply-chain risk, MCP security, ASVS v5, the ongoing crypto wars, and dark patterns in the age of AI. Two tracks running in parallel - hard choices ahead.
Yesterday, #SecAppDev kicked off with @Freddy Dezeure on security by default and European cyber resilience, @Bart Preneel on post-quantum cryptography, and @Philippe De Ryck on the updated security model of the web, as well as OAuth 2.1 best practices and AI memory as an attack surface.
Jim Manico (OWASP, Manicode Security) at SecAppDev 2026: a full-day workshop on disciplined AI coding with Claude Code, plus a lecture on MCP security risks. June 1–5, Leuven, Belgium secappdev.org/2026/speaker...
New speaker confirmed for #SecAppDev 2026 → Tom Van Goethem will give an advanced lecture on XS-Leaks: how attackers use browser side-channels to leak sensitive data without breaking the same-origin policy, and what you can do about it. Leuven, Belgium. June 1–5 → secappdev.org
4 full-day workshops at #SecAppDev 2026. Real-world CVEs. Threat modeling. Attacking and defending LLMs. Least-authority JavaScript. Hands-on, led by the same experts who deliver the lectures. June 1–5 · Leuven, Belgium · secappdev.org
SecAppDev 2026 faculty: Roman Zhukov on the EU Cyber Resilience Act, a hands-on survival workshop for enterprise & open source. In-scope exercises, role mapping, live gap analysis. June 1–5, Leuven. secappdev.org/2026/speaker... #AppSec #SecAppDev
SecAppDev 2026: 18 speakers, 22 lectures, 4 workshops. Web & API security, AI security, cryptography, IAM, governance. June 1–5, Leuven, Belgium. Running since 2005. secappdev.org/registration/ #SecAppDev
SecAppDev 2026 faculty: Alexios Zavras, Chief Open Source Compliance Officer at Intel. SPDX, OpenChain, SBOM, open source supply chain security - involved since 1983. June 1–5, Leuven, Belgium. secappdev.org/2026/speaker... #AppSec #SecAppDev
SecAppDev 2026 faculty: Freddy Dezeure on Security by Default, how Microsoft maps NIS2, DORA & CRA to real engineering controls at cloud scale. Deep-dive session. June 1–5, Leuven, Belgium. SecAppDev 2026 - Freddy Dezeure #AppSec #SecAppDev
SecAppDev is a full week of immersive #AppSec education, 22 lectures, 4 workshops, world-renowned faculty. June 1–5, Leuven, Belgium. Everything included. Register now to secure your seat! secappdev.org/registration/ #SecAppDev
We believe world-class application security education shouldn't be out of reach for those with smaller budgets. That’s why we offer a community ticket at a 50% discount. More info on our website secappdev.org/registration/ #AppSec #SecAppDev
SecAppDev 2026 faculty: Dr. Johanna Gunawan, Assistant Professor at Maastricht University Law & Tech Lab. Dark patterns, privacy implications of common tech, design choices that shape security. June 1–5, Leuven. secappdev.org/2026/speaker... #AppSec #SecAppDev
SecAppDev 2026 session: AI Memory, Mapped by Natalie Isak. AI memory is not just RAG, it’s a persistent attack surface. Covers risks like prompt injection exfiltration, delayed tool use, psychosocial impacts, plus memory threat modeling, observability, and more. secappdev.org/2026/session...
SecAppDev 2026 session: What’s New in ASVS v5 by @Eden Sofia Yardeni. ASVS 5.0 brings rewritten verifiable requirements, risk-based levels, and updated CWE mappings. Includes hands-on code review demos (OAuth, WebSockets, race conditions). secappdev.org/2026/session... #ASVS #SecAppDev
SecAppDev 2026 faculty: Daniel Deogun, CTO at Omegapoint, co-author of Secure by Design. From life-critical systems to cloud-scale apps, he's seen it all. June 1–5, Leuven, Belgium. secappdev.org/2026/speaker... #AppSec #SecAppDev
SecAppDev 2026 faculty: Dan Bergh Johnsson, AI Head at Omegapoint, co-author of Secure by Design. What gets lost when productivity outpaces system understanding? June 1–5, Leuven, Belgium. secappdev.org/2026/speaker... #SecAppDev
SecAppDev 2026 faculty: Inti De Ceukelaire, founding member of Intigriti. Most Valuable Hacker (2018), Belgium's IT Person of the Year (2020). Web security from the attacker's perspective. June 1–5, Leuven, Belgium. secappdev.org/2026/speaker... #SecAppDev
SecAppDev 2026 offers 4 full-day hands-on workshops in Leuven, Belgium: AI coding with Claude Code, attacking and defending LLMs, web app security via real CVEs, and threat modeling with AI. You choose on the morning of the day. secappdev.org/2026/workshops/ #AppSec #SecAppDev
The SecAppDev audience is a small group by design. Developers, security engineers, architects, and academics who take application security seriously enough to spend a full week on it. That combination makes for a very good week. secappdev.org/registration/ #AppSec #SecAppDev
Registration
Register here for SecAppDev. Significant discounts for small organizations and the public sector are available.
secappdev.org
Roman Zhukov is joining SecAppDev 2026 in Leuven, Belgium. Principal Architect at Red Hat, formerly leading Product Security at Intel. His session turns the EU Cyber Resilience Act from a compliance burden into an engineering advantage. secappdev.org/2026/speakers/romanzhukov/ #AppSec
SecAppDev 2026 in Leuven, Belgium runs June 1-5. 90-minute lectures that go somewhere. Hands-on workshops where you choose your track on the day. Catered lunch, breaks long enough to actually talk, and a course dinner included. secappdev.org/registration/ #AppSec #SecAppDev