Good coverage of the OWASP Top 10 in a clearly structured and easy to follow manner. I certainly picked up some stuff I should concentrate on.
What I would have wished for was some suggestions on tools for static code analysis and external vulnerability scanners.
Thanks for the talk. Most stuff I knew already - but there was enough there that the talk was worth the investment of the time.
Now I am going to do research on dynamic field names and CSRF.
Learnt a few better ways of doing things thanks to this very well put together overview.