OWASP AppSec Days Portugal 2026

Schedule

Wed, 23 Sep, 2026 at 10:00 am to Thu, 24 Sep, 2026 at 06:00 pm

UTC+01:00
Location

Fundação António Cupertino de Miranda | Porto, PO

Advertisement
Join 400+ security professionals, developers, and architects for Portugal's premier application security conference.
About this Event

OWASP AppSec Days Portugal 2026

🚀 Elevate Your Security Game: OWASP AppSec Days Portugal 2026

The cybersecurity world evolves by the millisecond. Are you just going to watch, or will you lead the change?

Welcome to Portugal's premier Application Security event! Join 400+ security professionals, developers, and software architects for two intense days of tech immersion, practical knowledge sharing, and high-impact networking.

Forget boring sales pitches. Here we talk about real vulnerabilities, resilient architectures, DevSecOps, and Offensive Security — "by the community, for the community."


⚡ What makes this event unmissable? (Highlights)
  • World-Class Speakers: Keynotes from global industry references like Lukas Weichselbaum and Petra Vukmirovic.
  • 100% Practical & Hands-on: Immersive workshops and an intense CTF (Capture The Flag) to test your skills in real-time.
  • Valuable Networking: Direct contact with bright minds in software engineering and cybersecurity from Portugal and across Europe.



Event Photos

🎟️ Which ticket is right for you?

We created different options to ensure the entire community is represented:

💼 General Admission / Corporate

  • For whom: Software Engineers, Security Analysts, DevOps, System Architects, and CTOs.
  • What's included: Full access to the 2-day conference (all Main and Alt Track talks), networking zone, CTF participation, and coffee breaks.

🎓 Student / Academia

  • For whom: University students, researchers, and recent grads (valid student ID required at check-in).
  • What's included: The exact same access as General Admission, but at a heavily subsidized price to support the next generation of tech talent!

🛠️ Workshops (Add-on) (Limited seats)

  • For whom: Professionals who want to get their hands dirty with a technical deep-dive led by experts.
  • What's included: Exclusive access to practical workshop rooms. (Note: You must also hold a General Admission or Student ticket to enter the event).

Application security has never been more critical. Secure your spot and come build the future of AppSec with us in Porto!


Main Track

🕑: 09:00 AM - 09:30 AM
Opening Session
Opening Keynote
Host: Lukas Weichselbaum
🕑: 10:20 AM - 10:30 AM
Break
🕑: 10:30 AM - 11:15 AM
Securing Devs and AI in the Age of Supply Chain Attacks
Host: Luís Fontes
🕑: 11:15 AM - 12:00 PM
Designing Secure Identity and Access Management for AI Agents
Host: Thivaharan Kalyanasundaram
🕑: 12:00 PM - 01:00 PM
Lunch
🕑: 01:00 PM - 01:45 AM
Injection Attacks Through the Ages: From Turing Machines to Prompt Injection
Host: Lucas Ferreira
🕑: 01:45 PM - 02:30 PM
Mission: Impossible? Fully Automated Enterprise-Scale IDOR Detection
Host: Andrei Kan
🕑: 02:30 PM - 03:15 PM
Install Me Maybe: Turning Claimable VS Code Extension IDs into Supply-Chain At
Host: Raphael Silva
🕑: 03:15 PM - 04:00 PM
Reading Between the Lines: Exploiting Indirect Injection in AI Systems
Host: Michael Reimsbach
🕑: 04:00 PM - 04:30 PM
Coffee Break
🕑: 04:30 PM - 05:15 PM
The Programmable Debugger You Already Have
Host: Jasvir Nagra
🕑: 05:15 PM
Closing Keynote
Host: Petra Vukmirovic
🕑: 06:05 PM - 06:25 PM
Closing Session
🕑: 06:25 PM - 08:30 PM
Social
Alt Track

🕑: 10:30 AM - 11:15 AM
Containers Won't Fix Your Code: Unraveling the Elaborate Fabric of Security Theater
Host: Kat Fitzgerald
🕑: 11:15 AM - 12:00 AM
AppSec AI Without the Hype
Host: Bara Shaikhibrahim
🕑: 12:00 AM - 12:45 AM
DrogonSec: Building a Parallelized, Multi-Engine Security Scanner for DevSecOp
Host: Filipi Pires
🕑: 12:45 AM - 01:45 PM
Lunch
🕑: 01:45 PM - 02:30 PM
Building Layne: Scaling Security Scanning @ Rocket.Chat
Host: Julio Araujo
🕑: 02:30 PM - 03:15 PM
Talk to a Shell : Exploiting AI agent in Real Time
Host: Parth Shukla
🕑: 03:15 PM - 04:00 PM
Securing Agentic Alliances: Cryptographic Threat Hunting in OT Environments
Host: Ahmed Elmesiry
🕑: 04:00 PM - 04:30 PM
Coffee Break
🕑: 04:30 PM - 05:15 PM
How We Stopped Shai Hulud v4: Hunting a Self-Replicating npm Worm with AI Tool
Host: Kush Pandya
🕑: 06:30 PM - 08:30 PM
Social
Advertisement

Where is it happening?

Fundação António Cupertino de Miranda, 4245 Avenida da Boavista, Porto, Portugal

Event Location & Nearby Stays:

Tickets

EUR 0.00 to EUR 553.50

Know what’s Happening Next — before everyone else does.
OWASP Italy
Host or PublisherOWASP Italy

Ask AI if this event suits you