Inside the New OWASP MAS
The OWASP Mobile Application Security project has gone through one of the biggest evolutions in its history. MASTG v2 is now live, MASWE v1 has reached its first stable release, and the chain from a high-level requirement to a concrete test is now connected.
Carlos Holguera co-chairs the project and led the MASTG v2 refactor from design through delivery. He will walk through the changes that matter most in day to day testing, the thinking behind key decisions, and what the new structure means in practice. He is joined by Starr Brown, Director of Open Source Programs and Projects at the OWASP Foundation.
Who should attend:
Mobile penetration testers, AppSec and DevSecOps engineers, mobile developers, security researchers, and anyone responsible for testing or securing mobile apps. If you already use MASVS or MASTG, you will leave knowing what changed and what it means for the way you test.
What you will learn:
-
What changed in MASTG v2, and how atomic tests, stable identifiers, and reproducible demos change the way you use the guide
-
Where MASWE v1 fits between MASVS requirements and MASTG testing, and how the chain now connects
-
Which changes carry the most weight for testing, automation, and reporting
-
The reasoning and lessons behind the refactor from the person who led it