▾ G11 Media Network: | ChannelCity | ImpresaCity | SecurityOpenLab | Italian Channel Awards | Italian Project Awards | Italian Security Awards | ...
InnovationOpenLab

Nokod Security to Host Capture the Flag Competition and Demonstrate Microsoft Power BI Vulnerability at OWASP Global AppSec EU 2025

#RPAsecurity--Nokod Security, the security company for no-code application development, today announced it will host a no-code Capture the Flag (CTF) hacking competition in collaboration with OWASP at...

Business Wire

Live hacking challenge and groundbreaking security session to highlight hidden risks in no-code apps and automations

NEW YORK & TEL AVIV, Israel: #RPAsecurity--Nokod Security, the security company for no-code application development, today announced it will host a no-code Capture the Flag (CTF) hacking competition in collaboration with OWASP at Global AppSec EU 2025 in Barcelona. In addition, Nokod Senior Security Researcher Uriya Elkayam will present a session that exposes data leakage vulnerabilities affecting Power BI reports.

WHO: Nokod Security helps enterprises secure their no-code application development environments.

WHAT:

No-Code Capture the Flag (CTF) Competition
Security researchers will compete in a live event to uncover vulnerabilities in no-code apps that expose sensitive data. All players who successfully complete the challenge will be entered to win prizes, including a DJI NEO Mini Drone and 9 JBL GO 4 speakers.

Conference Session: To BI or Not to BI? Data Leakage Tragedies with Power BI Reports
In this session, Uriya Elkayam will demonstrate how a vulnerability in Microsoft Fabric (Power BI) can allow unauthorized data access via API manipulation, especially in publicly shared reports. He will present PBAnalyzer, an open-source tool developed by Nokod Security, which helps organizations identify data oversharing in widely shared Power BI reports. He will also unveil a new attack technique called DAX Injection, which exploits Power BI queries through Power Automate flows. This attack could potentially lead to external data leakage. The session will conclude with actionable steps for securing Power BI environments.

WHEN & WHERE:

No-Code CTF Competition

  • Live Event: Friday, May 30
  • 10:00 am - 2:00 pm
  • Room: 118
  • Location: OWASP 2025 Global AppSec, Fira Barcelona Conference Center

Conference Session

  • To BI or Not to BI? Data Leakage Tragedies with Power BI Reports
  • Thursday, May 29, 2025, 3:30 pm – 4:15 pm CET
  • Room 113, Fira Barcelona Conference Center

HOW: To schedule a conversation with Nokod Security about no-code and BI platform security contact Marc Gendron at marc@mgpr.net or +1 617.877.7480.

About Nokod Security
Nokod Security is the security company for no-code application development. The Nokod Security Platform protects enterprises from risks introduced by no-code applications across Microsoft Power Platform, UiPath, Salesforce, ServiceNow, and more. Founded by cybersecurity veterans from Imperva and SecuredTouch (now Ping Identity), Nokod is backed by Acrew Capital, Meron Capital, and Flint Capital. Learn more at www.nokodsecurity.com or follow us on X and LinkedIn.

Fonte: Business Wire

If you liked this article and want to stay up to date with news from InnovationOpenLab.com subscribe to ours Free newsletter.

Related news

Last News

RSA at Cybertech Europe 2024

Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…

Italian Security Awards 2024: G11 Media honours the best of Italian cybersecurity

G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes

How Austria is making its AI ecosystem grow

Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries

Sparkle and Telsy test Quantum Key Distribution in practice

Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…

Most read

Fannie Mae, FHFA, and Palantir Join Forces to Combat Mortgage Fraud—FundingShield…

#compliancemanagement--In a major step toward protecting the integrity of the U.S. housing finance system, Fannie Mae CEO Priscilla Almodovar, FHFA Director…

IPinfo Launches IPinfo Core: City-Level Precision and Privacy Clarity

IPinfo, the internet data company, today announced the launch of IPinfo Core, a new product that delivers enhanced IP context at an entry-level price.…

Udemy Launches AI-Powered Role Play to Coach Professionals on Business…

Udemy (Nasdaq: UDMY), a leading AI-powered reskilling platform, today announced the launch of Role Play, a new AI-powered offering that helps learners…

APFC Board Examines Asset Allocation, Approves Targeted Portfolio Adjustments

The Board of Trustees of the Alaska Permanent Fund Corporation (APFC) held its quarterly meeting and the Ethics, Audit, & Cybersecurity Committee…

Newsletter signup

Join our mailing list to get weekly updates delivered to your inbox.

Sign me up!