<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Antti</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Antti"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Antti"/>
		<updated>2026-05-06T12:55:25Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72951</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72951"/>
				<updated>2009-11-11T12:04:32Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automated Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''19.00- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[File:Security_in_integration_and_ESB-OWASP_20091020.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72950</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72950"/>
				<updated>2009-11-11T12:03:57Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''19.00- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[File:Security_in_integration_and_ESB-OWASP_20091020.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72354</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72354"/>
				<updated>2009-10-28T13:09:47Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #10: October 20 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Code Analysis, Jussi Liukkonen, CTO, Cubical Solutions'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[File:Security_in_integration_and_ESB-OWASP_20091020.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72353</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72353"/>
				<updated>2009-10-28T12:59:48Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #10: October 20 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Code Analysis, Jussi Liukkonen, CTO, Cubical Solutions'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Security_in_integration_and_ESB-OWASP_20091020.pdf&amp;diff=72352</id>
		<title>File:Security in integration and ESB-OWASP 20091020.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Security_in_integration_and_ESB-OWASP_20091020.pdf&amp;diff=72352"/>
				<updated>2009-10-28T12:57:43Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72351</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72351"/>
				<updated>2009-10-28T12:50:47Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Code Analysis, Jussi Liukkonen, CTO, Cubical Solutions'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72343</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72343"/>
				<updated>2009-10-27T21:50:47Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Speaker unconfirmed'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72342</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72342"/>
				<updated>2009-10-27T21:45:39Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Speaker unconfirmed'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72227</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72227"/>
				<updated>2009-10-25T22:24:09Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009, Unconfirmed */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Speaker unconfirmed'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset ät nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72226</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72226"/>
				<updated>2009-10-25T22:23:40Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009, Unconfirmed */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009, Unconfirmed ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Speaker unconfirmed'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset ät nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72225</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=72225"/>
				<updated>2009-10-25T22:22:43Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #11: November 17 2009, Unconfirmed */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009, Unconfirmed ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automatic Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu'''&lt;br /&gt;
&lt;br /&gt;
'''18:45 Speaker unconfirmed'''&lt;br /&gt;
&lt;br /&gt;
'''19.15- Sauna and refreshments from our sponsor'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset ät nsense.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=71349</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=71349"/>
				<updated>2009-10-12T11:58:41Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #10: October 20 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009, Unconfirmed ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:30 Unconfirmed'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Static Code analysers, Speaker to be confirmed'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=71348</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=71348"/>
				<updated>2009-10-12T11:37:38Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #10: October 20 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=71347</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=71347"/>
				<updated>2009-10-12T11:35:17Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #10: October 20 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Representative from Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Representative from Finnish Customs'''&lt;br /&gt;
&lt;br /&gt;
'''19:10 Web Services Security and Authentication, Representative from System Intregator field'''&lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=69931</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=69931"/>
				<updated>2009-09-28T15:03:58Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #10: October 20 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 Distributed Services Security, Representative From Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''19:00 Web Services Security, Speaker not confirmed yet'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=69930</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=69930"/>
				<updated>2009-09-28T15:01:46Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #9: May 12 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:300'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Word from our sponsor Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 Distributed Services Security, Representative From Tieto Oy'''&lt;br /&gt;
&lt;br /&gt;
'''19:00 Web Services Security, Speaker not confirmed yet'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy Helsinki Vltava watering hole at own risk &amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=60247</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=60247"/>
				<updated>2009-05-07T06:27:40Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #9: April May 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks&lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners&lt;br /&gt;
* Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders ====&lt;br /&gt;
The chapter leader is [mailto:antti@owasp.org Antti Laulajainen]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=56490</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=56490"/>
				<updated>2009-03-11T08:20:58Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #8: March 12 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: April May 2009 ==&lt;br /&gt;
&lt;br /&gt;
TBA&lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009 ==&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki '''&lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00'''&lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan.&lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin.&lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html&lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle.&lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp; sisäänpääsymaksunsa.&lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=52144</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=52144"/>
				<updated>2009-01-27T11:09:23Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter Meeting #8: February March 2009 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: April May 2009 ==&lt;br /&gt;
&lt;br /&gt;
TBA&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink&lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink'''&lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
Presentation: [[Image:OWASP_Startups_20090115_Henri.pdf]]&lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP)&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
Presentation: [[Image:SDG_Scred_090115.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=50373</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=50373"/>
				<updated>2009-01-08T10:57:48Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Introduction to startup firms: Thursday January 15th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: April May 2009 ==&lt;br /&gt;
&lt;br /&gt;
TBA&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: February March 2009 ==&lt;br /&gt;
&lt;br /&gt;
TBA&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=50372</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=50372"/>
				<updated>2009-01-08T10:56:07Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Introduction to startup firms: Thursday January 15th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2008 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=50371</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=50371"/>
				<updated>2009-01-08T10:55:42Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Meeting #7: Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2008 ==&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki'''&lt;br /&gt;
'''Time: 18:00-20:00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
* What OWASP is&lt;br /&gt;
&lt;br /&gt;
* Examples of useful Tools and Documents&lt;br /&gt;
&lt;br /&gt;
* OWASP in Finland&lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred'''&lt;br /&gt;
* Henri Lindberg from Scred shares experiences and lessons learned&lt;br /&gt;
* How to make your web application more secure with minimal budget&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Top_10_2007_Finnish&amp;diff=46216</id>
		<title>Top 10 2007 Finnish</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Top_10_2007_Finnish&amp;diff=46216"/>
				<updated>2008-11-10T19:14:16Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* Kooste */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Johdanto==&lt;br /&gt;
&lt;br /&gt;
'''Huom! Tämä sivu on täysin työn alla. Tavoitteena on aluksi saada työtä valmiiksi sitä mukaa kuin suomennostyöhön osallistuvilla on aikaa. Suomennostyöhön saavat osallistua kaikki.'''&lt;br /&gt;
&lt;br /&gt;
Tervetuloa OWASP Top 10 2007 suomennettuun versioon! Top 10:n 2007 versio on uudelleenkirjoitettu alkuperäisestä vuoden 2004 versiosta, ja kuvaa hyvin niitä tyypillisiä haavoittuvuuksia, joita nykypäivän web-sovelluksista havaitaan. &lt;br /&gt;
&lt;br /&gt;
Java Enterprise Edition-kohtainen lista on ladattavissa  [https://www.owasp.org/images/8/89/OWASP_Top_10_2007_for_JEE.pdf täältä].&lt;br /&gt;
&lt;br /&gt;
==Tavoitteet==&lt;br /&gt;
&lt;br /&gt;
'''OWASP Top 10:n tärkein tavoite on kouluttaa sovelluskehittäjiä, suunnittelijoita, arkkitehtejä ja organisaatioita''' tyypillisimpien sovellushaavoittuvuuksien seurauksista. Top 10 tarjoaa perusmenetelmät näiltä haavoittuvuuksilta suojautumiseen - loistava ensiaskel turvalliseen ohjelmistokehitykseen. &lt;br /&gt;
&lt;br /&gt;
'''Tietoturvallisuutta ei saavuteta kerralla'''. Ei riitä, että sovellus tehdään turvalliseksi kerran. Esimerkiksi tämäkin lista on muuttunut vuosien varrella, ja muuttamatta sovelluksesi lähdekoodia uusien uhkien valossa, sovelluksesi voi olla turvaton. Lisätietoja ja tarkempia suosituksia on tarjolla englanninkielisessä dokumentissa [[Top_10_2007-Where to Go From Here|Where to Go From Here]].&lt;br /&gt;
&lt;br /&gt;
'''Turvallisen ohjelmoinnin periaatteet tulee olla mukana kaikissa sovelluksen elinkaaren vaiheissa.'''. Turvallinen web-sovellus on mahdollinen '''''vain''''' kun turvallisen ohjelmistokehityksen elinkaarimalli on mukana (secure SDLC). Tämän mallin tulee olla oletuksena mukana sekä suunnitteluvaiheessa, että kaikissa kehitysvaiheissa. Erilaisia web-sovellusten tietoturvallisuuteen vaikuttavia tekijöitä voidaan nimetä yli 300 kohtaa. Näistä tekijöistä on tarkempia kuvauksia englanninkielisessä dokumentissa [[OWASP_Guide_Project|OWASP Development Guide]], mikä sisältää oleellista luettavaa kaikille nykypäivän web-sovelluskehittäjille.&lt;br /&gt;
&lt;br /&gt;
'''Tämän dokumentin ensisijainen tarkoitus olla opetuksellinen, ei standardi'''. Älä käytä tätä dokumenttia tietoturvallisuuden ohjenuorana tai standardina ottamatta [mailto:owasp@owasp.org meihin yhteyttä] ensin! Jos tarvitset turvallisen ohjelmistokehityksen standardia, OWASPilla on käynnissä tähän liittyviä toisia projekteja. Liittymällä tai antamalla tukea näihin projekteihin tuet niiden edistymistä parhaiten.&lt;br /&gt;
&lt;br /&gt;
==Kiitokset avustajille==&lt;br /&gt;
&lt;br /&gt;
{| &lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|We thank [http://www.mitre.org/ MITRE] for making ''Vulnerability Type Distribution in [http://cve.mitre.org/ CVE]'' data freely available for use. The OWASP Top Ten project is led and sponsored by [http://www.aspectsecurity.com https://www.owasp.org/images/d/d1/Aspect_logo.gif].  &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Project Lead: 	Andrew van der Stock (Executive Director, OWASP Foundation)&lt;br /&gt;
&lt;br /&gt;
Co-authors: 	Jeff Williams (Chair, OWASP Foundation), Dave Wichers (Conference Chair, OWASP Foundation)&lt;br /&gt;
&lt;br /&gt;
We’d like to thank our reviewers:&lt;br /&gt;
&lt;br /&gt;
*Raoul Endres for help in getting the Top 10 going again and with his valuable comments. &lt;br /&gt;
*[mailto:coley...at...mitre.org Steve Christey](MITRE) for an extensive peer review and adding the MITRE CWE data&lt;br /&gt;
*[http://jeremiahgrossman.blogspot.com/ Jeremiah Grossman] ([http://www.whitehatsec.com/ WhiteHat Security]) for peer reviewing and contributing information about the success (or otherwise) of automated means of detection.&lt;br /&gt;
*[http://www.smithline.net/ Neil Smithline] ([http://www.OneStopAppSecurity.com/ OneStopAppSecurity.com]) for comments and producing the Wiki version.&lt;br /&gt;
*Sylvan von Stuppe for an exemplary peer review.&lt;br /&gt;
*Colin Wong, Nigel Evans and Andre Gironda for e-mailed comments.&lt;br /&gt;
&lt;br /&gt;
==Kooste==&lt;br /&gt;
&lt;br /&gt;
{| border='1' cellpadding='2' &lt;br /&gt;
|-	&lt;br /&gt;
|[[Top_10_2007-A1|A1 - Cross Site Scripting (XSS)]] (Haitallisten komentojen välittäminen käyttäjän selaimeen toisen sivuston kautta)&lt;br /&gt;
|&lt;br /&gt;
Sovellus on haavoittuva XSS:lle, kun se välittää käyttäjän antaman syötteen selaimelle sellaisenaan tarkastamatta ja käsittelemättä sitä ensin. Tämä mahdollistaa hyökkääjältä tulevien komentojen suorittamisen sovelluksen alaisuudessa. Komennoilla voidaan muuttaa selaimessa esimerkiksi sivuston ulkoasua tai kaapata sivuston istuntotunnisteet.&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Kaksi yleistä XSS-tyyppiä ovat pysyvä ja heijastuva/ei-pysyvä, joiden erona on että pysyvässä tapauksessa komento jää sovelluksen omaan tietokantaan.&lt;br /&gt;
&lt;br /&gt;
Pysyvä: Hyökkääjä muuttaa haavoittuvan yhteisösivuston nimimerkkinsä siten, että se sisältää komennon. Esim: &amp;quot;luser&amp;lt;script src=&amp;quot;http://example.com/~luser/xss.js&amp;quot;&amp;gt;&amp;lt;/script&amp;gt;&amp;quot;. Tiedostossa xss.js oleva komento lähettää sivuston istuntotunnisteen hyökkääjälle. Hän jättää sivustolle viestin, jolloin hänen nimimerkkinsä näkyy otsikossa. Viestin lukevan toisen käyttäjän selain suorittaa hänen tietämättään hyökkääjän komennon, minkä jälkeen hyökkääjällä on mahdollisuus käyttää sivustoa hänen tunnuksillaan.&lt;br /&gt;
&lt;br /&gt;
Ei-pysyvä: Käyttäjä on kirjautunut haavoittuvaan yhteisösivustoon, jonka haku-kentässä on XSS-haavoittuvuus. Samalla hän saa hyökkääjältä viestin, joka kehoittaa katsomaan annettu linkki, mikä todellisuudessa ohjaakin osoitteeseen &amp;quot;http://community.example.com/search?term=qwert&amp;lt;script....&amp;gt;&amp;quot;. Tällöin hakumoottori ilmoittaa että hakutulos &amp;quot;qwert&amp;quot; ei tuottanut tuloksia, mutta samalla selain suorittaa myös hyökkääjän komennon. Lopputulos on sama.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Tarkasta kaikki syötekentät ja koodaa niistä erikoismerkit toiseen muotoon. Tarkasta ja käsittele myös kaikki kentät, jotka liitetään osaksi vastausviestiä.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A2|A2 - Injektio-ongelmat]] (Haitallisen komennon välittäminen syötteessä osaksi taustajärjestelmäkyselyä)&lt;br /&gt;
|Injektio-ongelmat, erityisesti SQL-injektio, ovat tyypillisiä web-sovelluksissa. Injektio onnistuu, kun käyttäjän antama syöte istutetaan suoraan osaksi taustajärjestelmäkomentoa tai tietokantakyselyä. Tämä mahdollistaa hyökkääjälle komentojen ajamisen tai tiedon muuttamisen taustajärjestelmässä.&lt;br /&gt;
|'''Esimerkki'''&lt;br /&gt;
Haavoittuva sovellus etsii kirjautuessa käyttäjän kannasta seuraavalla tietokantakyselyllä: &lt;br /&gt;
&lt;br /&gt;
&amp;quot;SELECT * FROM users WHERE username='&amp;quot; + ''username'' + &amp;quot;' AND password='&amp;quot; + ''password'' + &amp;quot;'&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Parametrit ''username'' ja ''password'' tulevat suoraan kirjautumislomakkeelta. Hyökkääjä antaa admin-käyttäjän salasanaksi: ' OR '1'='1&lt;br /&gt;
&lt;br /&gt;
&amp;quot;SELECT * FROM users WHERE username='admin' AND password='' OR '1'='1'&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Mikä sovellukselle näyttää onnistuneelta kirjautumiselta, vaikka oikea salasana ei ollut tiedossa.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Tarkasta kaikki syötekentät ja koodaa tietokanta- tai muissa taustajärjestelmäkyselyissä käytettävät erikoismerkit toiseen muotoon.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A3|A3 - Haitallisen tiedoston suoritus]]&lt;br /&gt;
|Käyttäjän antama tiedosto tai tiedostonimi välitetään sovellukselle tarkistamatta tiedoston sisällön tai tiedostonimen oikeellisuutta. Tämä mahdollistaa käyttäjälle tavan liittää haitallista koodia tai haitallisia tiedostoja sovelluksen käyttöön.&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Sovellus ottaa yhtenä parametrinaan osaksi sivuston generoivaa koodia sisältävän tiedoston nimen. Oletus on, että käytetään jotakin sivuston omista tiedostoista, mutta hyökkääjä vaihtaa nimen osoittamaan omalle palvelimelleen. Hyökkääjän tiedosto sisältää koodia, joka avaa hänelle pääsyn sovellusta isännöivään järjestelmään.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Tarkasta, että syötteenä käytetyt tiedostot eivät sisällä suoritettavaa koodia tai että tiedostojen alkuperä on tunnettu.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A4|A4 - Turvaton suora objektiviittaus]]&lt;br /&gt;
|Jos sovellus käyttää suoria viittauksia sovelluksen sisäisesti käyttämiin objekteihin, kuten tiedostoihin tai tietokantatauluihin tai avaimiin, viittaukset voivat esimerkiksi paljastua käyttäjälle näkyvien parametrien arvona. Tämä mahdollistaa käyttäjälle valtuuttamattoman pääsyn sovelluksen sisäisiin objekteihin muuttamalla viittauksien arvoja toisiin.&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Verkkopankkisovelluksessa käytetään tiliin viittamiseen asiakkaan tilinumeroa. Hyökkääjä, yksi verkkopankin käyttäjä, huomaa että tilitietojen kyselyssä yhtenä parametrina välitetään hänen oma tilinumeronsa. Hän muuttaa tämän parametrin arvon toisen käyttäjän tilinumeroksi, ja sovellus paljastaa toisen käyttäjän tilitiedot.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Tarkasta jokaisen pyynnön kohdalla, että käyttäjällä on oikeus suoritettavaan toimintoon.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A5|A5 - Cross Site Request Forgery (CSRF)]] (Haitallisen sovelluskutsun tekeminen toisen käyttäjän valtuuksilla pyyntöhuijauksen avulla)&lt;br /&gt;
|&lt;br /&gt;
CSRF hyökkäyksessä hyökkääjä lähettää sovellukseen kirjautuneelle käyttäjälle esimerkiksi väärennetyn linkin, joka ohjaa käyttäjän selaimen suorittamaan hyökkääjän määräämän toiminnon käyttäjän valtuuksilla. Tämä voidaan tehdä täysin käyttäjän tietämättä, sillä kyseinen kutsu voidaan piilottaa esimerkiksi kuvaelementin sisään jollakin toisella sivustolla.&lt;br /&gt;
&lt;br /&gt;
''Verrattuna XSS:ään, tämä hyökkäys periaatteen tasolla toimii päinvastoin. Tässä hyökkääjä hyödyntää käyttäjän selainta suorittaakseen komennon sovelluksessa, kun XSS:ssä hyödynnetään sovellusta suorittamaan komento käyttäjän selaimessa.''&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Example.comin pääkäyttäjä saa viestin, jossa on linkki &amp;quot;Katso video&amp;quot;. Linkin takana on sivusto, mikä näyttää videon, mutta lisäksi yksi kuva haetaan osoitteesta &amp;quot;https://internaladmin.example.com/firewalladmin/dropallrules.cgi?confirm=yes&amp;quot;. Käyttäjä on valmiiksi kirjautunut vain sisäverkossa näkyvään palomuurin hallintaliittymään, ja tämä kutsu poistaa kaikki example.com:in palomuurisäännöt, mikä helpottaa hyökkääjän tehtävää.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Toteuta evästeissä kulkevan istuntotunnisteen lisäksi jokaiseen sovelluskutsuun yhtenä parametrinä satunnainen arvo, jota hyökkääjä ei voi etukäteen tietää.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A6|A6 - Tiedon vuotaminen ja puutteelinen virheenkäsittely]]&lt;br /&gt;
|&lt;br /&gt;
Sovellukset voivat tarkoituksettomasti vuotaa tietoja omista asetuksistaan, sisäisistä toteutustavoistaan tai jopa loukata yksityisyydensuojaa erilaisten hallitsemattomien virhetilanteiden johdosta. Hyökkääjät voivat käyttää sovelluksen virheviesteistä paljastuvia tietoja joko suoraan tai apuna suunnitellessa vakavampia hyökkäyksiä.&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Tunnistuksen yhteydessä tapahtuu hallitsematon virhe, koska yhtä tunnistusparametria oli muutettu odottamattomasti. Poikkeuksen ajonaikaiset tiedot paljastuvat käyttäjälle. Tiedoista myös paljastuu, mikä käyttäjän salasanan pitäisi olla.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Toteuta järjestelmällinen virheenkäsittely, joka käsittelee virhe- ja poikkeustilanteet hallitusti ilmoittamalla ainoastaan yleinen virheilmoitus.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A7|A7 - Viallinen tunnistusmenettely ja istunnonhallinta]]&lt;br /&gt;
|Käyttäjä- sekä istuntotunnisteet eivät usein ole suojattu riittävillä keinoilla. Tämä mahdollistaa hyökkääjille salasanojen, käyttäjä- tai istuntotunnisteiden keruun järjestelmästä, ja sitä kautta sovelluksen käyttämisen toisten valtuuksilla.&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Sovelluksen istuntotunniste generoidaan liittämällä käyttäjän tunnus sekä päivämäärä ja kellonaika, ja tästä muodostetaan hash-arvo. Hyökkääjä pystyy helposti arvaamaan istuntotunnisteen, kun tietää käyttäjän nimen ja kirjautumisajan. Monesti myös käytetään heikkoja satunnaislukugeneraattoreita, joiden tuottamat satunnaisluvut ovat ennustettavia.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Käytä riittävän vahvoja salasanoja sekä istuntotunnisteita.&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A8|A8 - Kryptografisesti turvaton tiedon säilytys]]&lt;br /&gt;
|Web-sovelluksissa käytetään vain harvoin asianmukaisia kryptografisia menetelmiä tiedon ja käyttäjätunnisteiden salaukseen esimerkiksi tietokannassa. Tietokantainjektion avulla tai jollain muulla keinolla tietoihin käsiksi pääsevä hyökkääjä voi tästä johtuen helposti selvittää esimerkiksi käyttäjien identiteettitietoja ja luottokorttinumeroita.&lt;br /&gt;
|&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Käytä tiedon salaukseen asiantuntijoiden hyväksymiä kryptografisia menetelmiä.&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A9|A9 - Turvattomat tietoliikenneyhteydet]]&lt;br /&gt;
|Sovellukset eivät usein käytä asianmukaisesti salattuja tietoliikenneyhteyksiä. Tämä voi johtaa esimerkiksi liikenteen salakuunteluun.&lt;br /&gt;
|&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Käytä riittävän vahvaa SSL/TLS-yhteyttä suojaamaan tietoliikenneyhteydet.&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|[[Top_10_2007-A10|A10 - Rajoittamaton URL-tason pääsy]]&lt;br /&gt;
|Sovellusten pääsynvalvonta perustuu monesti siihen, että valtuuttamattomalle käyttäjälle ei näytetä linkkejä niihin toimintoihin, joihin hänellä ei ole oikeuksia. Kuitenkin nämä osoitteet saattavat olla yleisesti tunnettuja tai helposti arvattavia, ja hyökkääjä pystyy suorittamaan valtuuttamattomia toimia siirtymällä näihin osoitteisiin suoraan.&lt;br /&gt;
|&lt;br /&gt;
'''Esimerkki'''&lt;br /&gt;
Intranet-sovelluksen pääkäyttäjätoimintoja ei näytetä tavalliselle käyttäjälle. Käyttäjä kuitenkin voi suorittaa kyselyn intranet-osoitteeseen: &amp;quot;https://employees.example.com/raisesalary?user=luser&amp;amp;raisesalaryby=10000&amp;quot;, vaikka palkankorotuksen pitäisi olla mahdollista vain pääkäyttäjälle.&lt;br /&gt;
&lt;br /&gt;
'''Suositus'''&lt;br /&gt;
Tarkasta jokaisen pyynnön kohdalla, että käyttäjällä on oikeus suoritettavaan toimintoon.&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
'''&amp;lt;center&amp;gt;Taulukko 1: Web-sovellusten Top 10-haavoittuvuudet 2007&amp;lt;/center&amp;gt;'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
There are several pages in this document that are not dedicated to a specific vulnerability and hence are not listed in the table. Here is the list of them.&lt;br /&gt;
Tämä dokumentti sisältää myös muutamia sivuja, jotka eivät suoraan kosketa mitään tiettyä haavoittuvuutta. Nämä on listattu seuraavassa taulukossa.&lt;br /&gt;
&lt;br /&gt;
{| border='1' cellpadding='2' &lt;br /&gt;
|-	&lt;br /&gt;
|[[Top 10 2007 Finnish]]&lt;br /&gt;
|Dokumentin pääsivu (tämä sivu) tarjoaa johdannon ja mahdollisuuden kirjanmerkata &amp;quot;Kooste&amp;quot; osuuden, jotta voit käyttää sitä helposti tarvittaessa. (lisää [https://www.owasp.org/index.php/Top_10_2007_Finnish#Kooste tämä linkki] selaimesi kirjanmerkkeihin)&lt;br /&gt;
|-&lt;br /&gt;
|[[Top 10 2007-Methodology]]&lt;br /&gt;
|Kuvaus tähän dokumenttiin valittujen haavoittuvuuksien valintamenetelmistä.&lt;br /&gt;
|-&lt;br /&gt;
|[[Top 10 2007-Where to Go From Here]]&lt;br /&gt;
|Vinkkejä siihen kuinka jatkaa tämän dokumentin lukemisen jälkeen.&lt;br /&gt;
|-&lt;br /&gt;
|[[Top 10 2007-References]]&lt;br /&gt;
|Suositeltavaa luettavaa.&lt;br /&gt;
|}&lt;br /&gt;
'''&amp;lt;center&amp;gt;Taulukko 1a: Sivut ''OWASP Top Ten 2007'' dokumentissä, jotka eivät liity ylläoleviin haavoittuvuussivuihin.&amp;lt;/center&amp;gt;'''&lt;br /&gt;
&lt;br /&gt;
==A Note About The Different Versions==&lt;br /&gt;
While the only official version of the ''OWASP Top Ten 2007'' list is the downloadable English PDF version, OWASP has put together this Wiki that initially contains the same content as the PDF. But OWASP hopes that will change with your help. OWASP encourages community involvement and wants your help to make the Wiki version even better. To aid in this they have put together a brief [[Editing:Top_10_2007|tutorial]] to get you started.&lt;br /&gt;
&lt;br /&gt;
==Downloadable Versions==&lt;br /&gt;
You can download the Top 10 2007 (Final) here:&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/images/e/e8/OWASP_Top_10_2007.pdf (PDF, 930 kb)]&lt;br /&gt;
&amp;lt;!--* [http://www.owasp.org/images/2/24/OWASP_Top_10_2007.doc (Word, 514 kb)]--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/images/c/ce/OWASP_Top_10_2007_-_French.pdf (French Version PDF, 455 kb)]&lt;br /&gt;
&lt;br /&gt;
* [http://www.metasecurity.org/owasp/OWASP_Top_10_2007_Korean.pdf (Korean Version PDF, 768 kb)]&lt;br /&gt;
&lt;br /&gt;
* [http://csirt.ulakbim.gov.tr/dokumanlar/Ceviri_OWASP_ilk10_2007.pdf (Turkish Version PDF, 718 kb)]&lt;br /&gt;
&lt;br /&gt;
* [http://www.owasp.org/images/4/42/OWASP_TOP_10_2007_PT-BR.pdf (Brazilian Portuguese PDF, 329 kb)]&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/images/a/ae/OWASP_Top_10_2007_Spanish.pdf (Spanish PDF, 488kb)]&lt;br /&gt;
&lt;br /&gt;
* [https://www.owasp.org/images/8/89/OWASP_Top_10_2007_for_JEE.pdf OWASP Top 10 for Java Enterprise Edition (PDF, 630 kb)]&lt;br /&gt;
&lt;br /&gt;
* Looking for a version in another language? We could use your help translating. Contact Andrew van der Stock (vanderaj ...(@)... owasp.org) to help translating the OWASP Top 10 into your language.&lt;br /&gt;
&lt;br /&gt;
{{Top_10_2007:BottomTemplate|usenext=NextLink|next=-Methodology|useprev=Nothing|usemain=Nothing}}&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45907</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45907"/>
				<updated>2008-11-05T15:01:10Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Meeting: November 11 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: Tuesday November 11 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Juhani Eronen, CERT-FI: A recent security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45904</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45904"/>
				<updated>2008-11-05T14:59:39Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: November 11 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Juhani Eronen, CERT-FI: A recent security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008_Paid_Participants&amp;diff=38954</id>
		<title>OWASP EU Summit 2008 Paid Participants</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008_Paid_Participants&amp;diff=38954"/>
				<updated>2008-09-09T12:09:07Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* Provisory list of 'expenses paid' participants */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Provisory list of 'expenses paid' participants    ==&lt;br /&gt;
&lt;br /&gt;
 {| style=&amp;quot;width:100%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot;|&amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''PROJECTED CONFERENCE PAID ATTENDEES AND/OR SPEAKERS - NEEDS OWASP BOARD CONFIRMATION''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''NAME'''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''POSITION/REASON OF ATTENDANCE'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''COUNTRY'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''DEPARTURE (AIRPORT/CITY)'''&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP BOARD MEMBERS &amp;amp; EMPLOYEES''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Jeff Williams&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, Chair, Wiki, Management&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Washington, D.C. &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dave Wichers &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, Conferences, Financials&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Washington, D.C.&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dinis Cruz &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, Firehose of Ideas and Money spender&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Tom Brennan &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, OWASP Governance&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|New York, NY&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sebastien Deleersnyder &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, OWASP Chapters and Projects&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Belgium&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Paulo Coimbra&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Employee, Project Manager&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Kate Hartmann&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Employee, Operations Director&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Washington, D.C.&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SUMMER OF CODE 2008 PROJECT LEADERS &amp;amp; REVIEWERS''' &lt;br /&gt;
|- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Achim Hoffmann&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Skavenger Project, OWASP w3af Project  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Germany&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Frankfurt or Munich&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Alexander Fry&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Source Code Review OWASP Projects&amp;lt;br&amp;gt;OWASP Teachable Static Analysis Workbench&amp;lt;br&amp;gt;OWASP WeBekci Project  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Arshan Dabirsiaghi&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP AntiSamy Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Baltimore, MD&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Andrew Petukhov &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Access Control Rules Tester Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Russia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Moscow&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dmitry Kozlov &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Teachable Static Analysis, OWASP Application Security Tool Benchmarking Environment and Site Generator Refresh Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Russia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Moscow&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Arturo Alberto Busleiman &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Enigform and mod_Openpgp &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Argentina&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Carlo Pelliccioni &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Backend Security Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Italy &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rome (FCO)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Deb, LX Studios&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Book Cover &amp;amp; Sleeve Design, OWASP Individual &amp;amp; Corporate Member Packs, Conference Attendee Packs&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Eduardo Vianna de Camargo Neves  &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Positive Security  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brazil &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Curitiba (CWB)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Wagner Elias  &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviwer, OWASP Positive Security  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brazil &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|São Paulo(GRU)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Eoin Keary&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Code Review Guide, Chapter Leader &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ireland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dublin (DUB)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Esteban Ribicic&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Backend Security Project&amp;lt;br&amp;gt;OWASP Classic ASP Security Project&amp;lt;br&amp;gt;OWASP AntiSamy .NET&amp;lt;br&amp;gt;OWASP Interceptor Project - 2008 Update&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Croatia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Wien&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Fabio Cerullo&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Internationalization Guidelines Project&amp;lt;br&amp;gt;OWASP Spanish Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ireland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dublin (DUB)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Frederick Donovan&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Application Security Desk Reference (ASDR) &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|United States&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Heiko Webers&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Ruby on Rails Security Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Germany&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Frankfurt&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Anthony Shireman&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project reviewer, OWASP Ruby on Rails Security Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Portland, OR (PDX)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Juan Carlos Calderon&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Internationalization Guidelines&amp;lt;br&amp;gt;OWASP Spanish Project&amp;lt;br&amp;gt;OWASP Classic ASP Security Project &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Mexico &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|MMAS - Aguascalientes, Mexico&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Justin Derry&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader &amp;amp; Project Leader, OWASP Interceptor Project &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sydney Australia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sydney Australia &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Kevin Fuller&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Testing Guide v3&amp;lt;br&amp;gt;OWASP SQL Injector Benchmarking Project (SQLiBENCH)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sacramento Ca &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Leonardo Cavallari Militelli&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Application Security Desk Reference (ASDR)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brazil &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sao Paulo (GRU)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Mark Roxberry&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Leader, OWASP .NET Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Matt Tesauro&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP Live CD 2008&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Austin, TX or Dallas, TX&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Matteo Meucci&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP Testing Guide&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Italy&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rome&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Matthias Rohr&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Skavenger Project &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Germany &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Michael Coates&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP AppSensor &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chicago&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Nam Nguyen&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Testing Guide v3, Python Static Analysis, OWASP Education&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Vietnam&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ho Chi Minh City&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|P.Satish Kumar&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Code Review Guide &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|India&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Hyderabad/Mumbai/Chennai&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Paolo Perego&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP Orizon Project  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Italy&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Parvathy Iyer &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|OWASP Corporate Application Security Guide &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Newark (New Jersey)or Newyork (Newyork city)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Pierre Parrend&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP OpenSign Server Project&amp;lt;br&amp;gt;OWASP Application Security Verification Standard &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|France&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Stephen Craig Evans&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Securing WebGoat using ModSecurity &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Singapore&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Singapore&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Jason Li&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP JSP Testing Tool&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Baltimore&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Gandhi Aryavalli Sriranga Narasimha&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Application Security Desk Reference (ASDR)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|India &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Bangalore&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rodrigo Marcos&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Internationalization Guidelines Project&amp;lt;br&amp;gt;OWASP Spanish Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Marcin Wielgoszewski&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP AntiSamy.NET&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|New York, NY&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;| &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SUMMER OF CODE 2008 SPECIAL PROJECT CONTRIBUTORS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;| &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SUMMER OF CODE 2008/LOGISTICS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sarah Cruz&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, Graphic Design &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SPRING OF CODE 2007 PROJECT LEADERS &amp;amp; REVIEWERS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Joshua Perrymon&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP LiveCD, OWASP Phishing Framework, Alabama Chapter Lead&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Birmingham,AL&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP AUTUMN OF CODE 2006 PROJECT LEADERS &amp;amp; REVIEWERS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rogan Dawes &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, WebScarab-NG &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|South Africa&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Johannesburg, South Africa&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Simon Roses Femerling&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Pantera&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Spain&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''ACTIVE PROJECT LEADERS (NOT CURRENTLY PARTICIPATING ON SOC 08)''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Alex Smolen&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;| Project leader, .NET ESAPI &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
  |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''ACTIVE CHAPTER LEADERS (NOT CURRENTLY PARTICIPATING ON SOC 08)''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Steve Antoniewicz&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter Board Member, NY/NJ Metro  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Kuai Hinojosa&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader, Twin-Cities &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Jim Manico&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader/founder, Hawaii&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Hawaii, USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Anahola, Island of Kauai&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rex Booth&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader, Washington DC  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Washington DC&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Andrzej Targosz&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader, Poland  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Poland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Cracow&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''SIGNIFICANT PAST OWASP CONTRIBUTOR (THAT IS NOT ALREADY COVERED BY ONE OF THE ABOVE CATEGORIES)''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|David Rook&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Code Review Guide Contributor, Irish Chapter Contributor&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ireland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dublin (DUB)&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP NON-INDIVIDUAL MEMBERS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 |}&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=37150</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=37150"/>
				<updated>2008-08-25T10:18:13Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting, Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: TBA'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
'''TBA'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=37149</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=37149"/>
				<updated>2008-08-25T10:15:16Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Goes! CERT-FI, Thursday, June 12th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008&amp;diff=33421</id>
		<title>OWASP EU Summit 2008</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008&amp;diff=33421"/>
				<updated>2008-07-04T13:32:19Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* Active Chapter Leaders */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;(WORK IN PROGRESS /UNDER DISCUSSION)&lt;br /&gt;
== UPDATES ==&lt;br /&gt;
*[[OWASP EU Summit 2008 - updates|'''OWASP EU Summit 2008 - updates''']]&lt;br /&gt;
&lt;br /&gt;
== What: OWASP Summit, a conference about OWASP and for OWASP's community ==&lt;br /&gt;
=== When: 4 to 7 Nov 2008 (4 &amp;amp; 5: Meetings and Training, 6 &amp;amp; 7: Conference) === &lt;br /&gt;
=== Where: Portugal ===&lt;br /&gt;
Faro or Lisbon&lt;br /&gt;
=== Organization===&lt;br /&gt;
Paulo Coimbra and Dinis Cruz&lt;br /&gt;
== Agenda ==&lt;br /&gt;
Theme: Present OWASP's projects, community and activities  .....     '....Connecting the dots.... &amp;quot;&lt;br /&gt;
&lt;br /&gt;
'''Day 1 &amp;amp; 2'''&lt;br /&gt;
*Training sessions (similar to what happens at the moment at the other OWASP conferences)&lt;br /&gt;
*OWASP Working Group sessions (1/2 day each) on:&lt;br /&gt;
** OWASP Governance, &amp;quot;What is OWASP's position on ....&amp;quot; &amp;amp; Action Plan for 2009&lt;br /&gt;
** ESAPI&lt;br /&gt;
** Browser Security&lt;br /&gt;
** OWASP Top 10 2009&lt;br /&gt;
&lt;br /&gt;
'''Day 3 &amp;amp; 4 Agenda:'''&lt;br /&gt;
* Presentations from AoC, SpoC and SoC Participants&lt;br /&gt;
* Presentations from 'Release' Quality OWASP projects (not included in the list above) or Key OWASP projects (like ESAPI)&lt;br /&gt;
* Presentations about OWASP : How it works, Financial reports, OotM (OWASP on the Move), new project management guidelines, local chapter finances, OWASP governance &lt;br /&gt;
* Presentation from Chapter leaders on the activities developed on their project&lt;br /&gt;
* Discussion on next steps for OWASP and focus of next OWASP financial investment plans&lt;br /&gt;
&lt;br /&gt;
Other ideas:&lt;br /&gt;
&lt;br /&gt;
* vote on 6th OWASP board member (Candidates to Apply)&lt;br /&gt;
&lt;br /&gt;
== other details==&lt;br /&gt;
&lt;br /&gt;
'''Projected Attendees:450 '''&lt;br /&gt;
* 200 with some (or all) expenses covered by OWASP&lt;br /&gt;
** 33 SoC participants&lt;br /&gt;
** 70 SoC reviewers&lt;br /&gt;
** 10 SoC Collaborators&lt;br /&gt;
** 15 AoC &amp;amp; SpoC participants&lt;br /&gt;
** 15 Chapter Leaders&lt;br /&gt;
** 8 OWASP Board &amp;amp; Employees&lt;br /&gt;
** 49 OWASP non-individual members (2x per 9k Corporate? 1x for the others?)&lt;br /&gt;
&lt;br /&gt;
=== Financial details ===&lt;br /&gt;
'''Expenses'''&lt;br /&gt;
* Accommodation &amp;amp; meals: 80,000 USD  = 400 USD per person (200x) for 3 nights accommodation  and 5 meals (3 dinners and 2 lunches)&lt;br /&gt;
* Flights &amp;amp;  Trains : 70,000 USD&lt;br /&gt;
&lt;br /&gt;
'''Revenue sources'''&lt;br /&gt;
* Tickets (for the 250 non 'OWASP invited' attendees)&lt;br /&gt;
* Training Sessions&lt;br /&gt;
* Conference sponsors&lt;br /&gt;
&lt;br /&gt;
== Participants ==&lt;br /&gt;
=== OWASP Board members &amp;amp; employees ===&lt;br /&gt;
* Jeff Williams &lt;br /&gt;
* Dave Wichers &lt;br /&gt;
* Dinis Cruz &lt;br /&gt;
* Tom Brennan &lt;br /&gt;
* Sebastien Deleersnyder &lt;br /&gt;
* Paulo Coimbra&lt;br /&gt;
* Kate Hartmann (to be confirmed)&lt;br /&gt;
* Alison McNamee (to be confirmed)&lt;br /&gt;
* Larry Casey (to be confirmed)&lt;br /&gt;
&lt;br /&gt;
=== Summer of Code 08 Participants &amp;amp; Reviewers ===&lt;br /&gt;
* (please add your name in the following format)&lt;br /&gt;
* OWASP Classic ASP Security Project&lt;br /&gt;
**Reviewer Esteban Ribicic Argentina -living in Croatia/Wien-&lt;br /&gt;
**Project Lead - Juan Carlos Calderon - Mexico&lt;br /&gt;
* OWASP Internationalization Guidelines &lt;br /&gt;
**Reviewer Esteban Ribicic Argentina -living in Croatia/Wien-&lt;br /&gt;
**Project Lead - Juan Carlos Calderon - Mexico&lt;br /&gt;
* OWASP Spanish Project Reviewer Esteban Ribicic&lt;br /&gt;
**Reviewer Esteban Ribicic Argentina -living in Croatia/Wien-&lt;br /&gt;
**Project Lead - Juan Carlos Calderon - Mexico&lt;br /&gt;
* OWASP Ruby on Rails Security Project Leader Heiko Webers from Germany&lt;br /&gt;
* OWASP Code Review Guide Lead - Eoin Keary - Ireland&lt;br /&gt;
* OWASP Enigform and mod_Openpgp - Arturo Alberto Busleiman (a.k.a Buanzo) - Argentina&lt;br /&gt;
* OWASP AppSensor - Michael Coates - United States&lt;br /&gt;
* OWASP ASDR - Leonardo Cavallari Militelli - Brazil&lt;br /&gt;
*OWASP Corporate Application security guide- Parvathy Iyer- USA&lt;br /&gt;
* OWASP Backend Security Project - Carlo Pelliccioni - Italy&lt;br /&gt;
* OWASP Source Code Review OWASP Projects - Marco M. Morana (2nd reviewer) - United States&lt;br /&gt;
* OWASP Access Control Rules Tester Project&lt;br /&gt;
**Project leader - Andrew Petukhov - Russia, Moscow&lt;br /&gt;
* OWASP Live CD 2008&lt;br /&gt;
** Project Leader - Matt Tesauro - Austin, USA&lt;br /&gt;
&lt;br /&gt;
=== Spring of Code 07 Participants (Completed Projects) ===&lt;br /&gt;
* Refresh Attacks list - Przemyslaw Skowron - Poland&lt;br /&gt;
&lt;br /&gt;
* (please add your name)&lt;br /&gt;
* {Project} {Name} {Origin Country}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Autumn of Code 06 Participants ===&lt;br /&gt;
* (please add your name)&lt;br /&gt;
* {Project} {Name} {Origin Country}&lt;br /&gt;
&lt;br /&gt;
* WebScarab-NG, Rogan Dawes, South Africa&lt;br /&gt;
* OWASP Pantera, Simon Roses Femerling, Spain&lt;br /&gt;
&lt;br /&gt;
=== Active Chapter Leaders ===&lt;br /&gt;
* (please add your name in the following format)&lt;br /&gt;
* {Chapter} {Role} {Name} {Origin Country}&lt;br /&gt;
* Helsinki chapter leader - Antti Laulajainen, Finland&lt;br /&gt;
* NY/NJ Metro Board Member - Steve Antoniewicz, USA&lt;br /&gt;
* Twin-Cities chapter leader - Kuai Hinojosa, MN, USA&lt;br /&gt;
* Hawaii chapter leader/founder - Jim Manico, Anahola, Island of Kauai, Hawaii, USA&lt;br /&gt;
&lt;br /&gt;
=== Active Project Leaders (not currently participating on SoC 08)===&lt;br /&gt;
* (please add your name in the following format)&lt;br /&gt;
* {Project} {Role} {Name} {Origin Country}&lt;br /&gt;
.NET ESAPI - Project Leader - Alex Smolen - USA&lt;br /&gt;
&lt;br /&gt;
=== Significant Past OWASP contributor (that is not already covered by one of the above categories) ===&lt;br /&gt;
* (please add your name in the following format)&lt;br /&gt;
* {Project/Chapter} {Role} {Name} {Origin Country}&lt;br /&gt;
&lt;br /&gt;
=== Logistic and Support team ===&lt;br /&gt;
* Summit Graphic Design + Summit organization + on-site logistics support, Sarah Cruz, UK (London)&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=29570</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=29570"/>
				<updated>2008-05-20T07:29:46Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:OWASP_HelsinkiChapter_130508.pdf&amp;diff=29569</id>
		<title>File:OWASP HelsinkiChapter 130508.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:OWASP_HelsinkiChapter_130508.pdf&amp;diff=29569"/>
				<updated>2008-05-20T07:24:50Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: Chapter Meeting presentation 13th of May 2008&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Chapter Meeting presentation 13th of May 2008&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=29265</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=29265"/>
				<updated>2008-05-12T06:27:36Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=28941</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=28941"/>
				<updated>2008-05-06T11:17:51Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Goes! CERT-FI, Thursday, June 12th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=28940</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=28940"/>
				<updated>2008-05-06T11:07:48Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=28939</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=28939"/>
				<updated>2008-05-06T10:58:35Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=27894</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=27894"/>
				<updated>2008-04-09T09:56:40Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Goes! Thursday, June 12th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10 - 17.00 TBA'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=27893</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=27893"/>
				<updated>2008-04-09T09:48:50Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
CERT-FI is going to introduce their activities to OWASP Helsinki on 12th of June from 4 pm to 6 pm. &lt;br /&gt;
Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
16.00 Welcome and recent activities. Antti Laulajainen &lt;br /&gt;
&lt;br /&gt;
16.10 Introduction of CERT-FI&lt;br /&gt;
      Juhani Eronen&lt;br /&gt;
      Information Security Adviser&lt;br /&gt;
      CERT-FI&lt;br /&gt;
16.30 Vulnerability coordination&lt;br /&gt;
        * CERT-FI as a vulnerability coordinator&lt;br /&gt;
      * Coordination examples&lt;br /&gt;
      Juhani Eronen&lt;br /&gt;
      Information Security Adviser&lt;br /&gt;
      CERT-FI&lt;br /&gt;
18.00 Possibility to continue the evening at the One Pint Pub&lt;br /&gt;
      * If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10 - 17.00 TBA'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10 - 17.00 TBA'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=27892</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=27892"/>
				<updated>2008-04-09T09:46:19Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Wanha Mylly, Linnanrakentajankatu 12, 00810 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10 - 17.00 TBA'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Wanha Mylly terrace'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=26427</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=26427"/>
				<updated>2008-03-07T09:05:37Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=26210</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=26210"/>
				<updated>2008-03-03T12:11:31Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP Helsinki update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25675</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25675"/>
				<updated>2008-02-21T12:24:39Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Director of Special Operations of Sentor Mr. Jussi Jaakonaho. His topic will be a real life application exploit&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP Helsinki update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Application Vulnerability Exploit -real life case. Jussi Jaakonaho'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25674</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25674"/>
				<updated>2008-02-21T12:19:37Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. We are pleased to have as a speaker Director of Special Operations of Sentor Mr. Jussi Jaakonaho. His topic will be a real life application exploit&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40''' OWASP Helsinki update Antti Laulajainen&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30''' Application Vulnerability Exploit -real life case Jussi Jaakonaho&lt;br /&gt;
&lt;br /&gt;
Welcome everybody&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25350</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25350"/>
				<updated>2008-02-14T15:12:57Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25349</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25349"/>
				<updated>2008-02-14T15:11:52Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/index.php/Image:RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25348</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25348"/>
				<updated>2008-02-14T15:10:38Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here https'''&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25347</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=25347"/>
				<updated>2008-02-14T15:10:16Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here https'''&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
You can download the presentation here: https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:RWSUG5_Agile_Security_Management.pdf&amp;diff=25346</id>
		<title>File:RWSUG5 Agile Security Management.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:RWSUG5_Agile_Security_Management.pdf&amp;diff=25346"/>
				<updated>2008-02-14T15:07:28Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: OWASP Presentation at RWSUG Finland seminar&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP Presentation at RWSUG Finland seminar&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=24763</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=24763"/>
				<updated>2008-01-27T22:23:32Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
You can download the presentation here: https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=24762</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=24762"/>
				<updated>2008-01-27T22:21:08Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen] &lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;u&amp;gt;The chapter mailing address is:&amp;lt;/u&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Antti Laulajainen  /Ixonos &amp;lt;br&amp;gt;&lt;br /&gt;
Hitsaajankatu 20&amp;lt;br&amp;gt;&lt;br /&gt;
00810 Helsinki&amp;lt;br&amp;gt;&lt;br /&gt;
Finland &amp;lt;br&amp;gt;|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
You can download the presentation here: https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=24761</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=24761"/>
				<updated>2008-01-27T22:06:26Z</updated>
		
		<summary type="html">&lt;p&gt;Antti: /* OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti.laulajainen@ixonos.com Antti Laulajainen]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Details TBA&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
You can download the presentation here: https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Antti</name></author>	</entry>

	</feed>