<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Craig+Klosterman</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Craig+Klosterman"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Craig_Klosterman"/>
		<updated>2026-05-16T23:39:50Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=162839</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=162839"/>
				<updated>2013-11-07T23:29:57Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:SS_SolutionsII.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas, a division of Solutions II] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
South Seas is now a division of Solutions II, providing our Clients an even better experience! Solutions II, founded in 1992, is nationally recognized for their world class innovation in Virtualization, Business Continuance and Data Lifecycle Management. Solutions II assists Clients in leveraging technologies and services to drive the cost out of IT.  Their experience in IT solutions will make this a seamless transition.&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==Next Chapter Meeting: November 20th at Chinook Tavern==&lt;br /&gt;
6380 South Fiddlers Green Circle &lt;br /&gt;
Denver, CO 80122&lt;br /&gt;
&lt;br /&gt;
RSVP at: http://www.meetup.com/Denver-OWASP/events/149764742/?a=ea1_grp&amp;amp;rv=ea1&lt;br /&gt;
 &lt;br /&gt;
or at: http://www.eventbrite.com/org/4542128885?s=19431483&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
Guest Speaker:  Joe Gerber&lt;br /&gt;
Joe will be talking with us about security and HTML 5.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] a[http://universitycollege.du.edu/ict/degree/masters/information-systems-security-online/degreeid/402/The University of Denver] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for September and November.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 3 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_July_2013|Jim Manico: &amp;quot;Secure Coding Techniques Part 2&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2013|Aaron Cure: &amp;quot;Less Frequently talked about vulnerabilities&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013|Dave Ferguson: &amp;quot;Building a Successful Application Security Program&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=156952</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=156952"/>
				<updated>2013-08-17T16:00:57Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==Next Chapter Meeting: Sept 18th at Chinook Tavern==&lt;br /&gt;
6380 South Fiddlers Green Circle &lt;br /&gt;
Denver, CO 80122&lt;br /&gt;
&lt;br /&gt;
RSVP at: http://www.meetup.com/Denver-OWASP/events/135102292/&lt;br /&gt;
 &lt;br /&gt;
or at: http://www.eventbrite.com/event/7929311785&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
Guest Speaker:  Bill Jackson&lt;br /&gt;
Bill has been a software engineer with Raytheon for 15 years. He has worked as the secure coding lead for the GPS-OCX program, and has helped define and implement secure coding processes and practices for several other programs. His other presentation topic include Java EE, Agile software development, concurrency, and user interface design.&lt;br /&gt;
&lt;br /&gt;
His certifications include a CISSP and CompTIA Security+&lt;br /&gt;
&lt;br /&gt;
Bill has an MS in computer science from the University of Colorado at Denver and a BS from Colorado State University.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] a[http://universitycollege.du.edu/ict/degree/masters/information-systems-security-online/degreeid/402/The University of Denver] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for September and November.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 3 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_July_2013|Jim Manico: &amp;quot;Secure Coding Techniques Part 2&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2013|Aaron Cure: &amp;quot;Less Frequently talked about vulnerabilities&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013|Dave Ferguson: &amp;quot;Building a Successful Application Security Program&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_July_2013&amp;diff=156951</id>
		<title>Denver July 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_July_2013&amp;diff=156951"/>
				<updated>2013-08-17T15:14:49Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: Created page with &amp;quot;Speaker:Jim Manico: Secure coding Part 2 Click here for to see Jims slides. http://www.meetup.com/Denver-OWASP/files/&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Jim Manico: Secure coding Part 2&lt;br /&gt;
Click here for to see Jims slides. http://www.meetup.com/Denver-OWASP/files/&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=156950</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=156950"/>
				<updated>2013-08-17T15:13:19Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==Next Chapter Meeting: Sept 18th at Chinook Tavern==&lt;br /&gt;
6380 South Fiddlers Green Circle &lt;br /&gt;
Denver, CO 80122&lt;br /&gt;
&lt;br /&gt;
RSVP at: http://www.meetup.com/Denver-OWASP/events/135102292/&lt;br /&gt;
 &lt;br /&gt;
or at: &lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
Guest Speaker:  Bill Jackson&lt;br /&gt;
Bill has been a software engineer with Raytheon for 15 years. He has worked as the secure coding lead for the GPS-OCX program, and has helped define and implement secure coding processes and practices for several other programs. His other presentation topic include Java EE, Agile software development, concurrency, and user interface design.&lt;br /&gt;
&lt;br /&gt;
His certifications include a CISSP and CompTIA Security+&lt;br /&gt;
&lt;br /&gt;
Bill has an MS in computer science from the University of Colorado at Denver and a BS from Colorado State University.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] a[http://universitycollege.du.edu/ict/degree/masters/information-systems-security-online/degreeid/402/The University of Denver] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for September and November.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 3 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_July_2013|Jim Manico: &amp;quot;Secure Coding Techniques Part 2&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2013|Aaron Cure: &amp;quot;Less Frequently talked about vulnerabilities&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013|Dave Ferguson: &amp;quot;Building a Successful Application Security Program&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=156949</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=156949"/>
				<updated>2013-08-17T15:09:43Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==Next Chapter Meeting: Sept 18th at Chinook Tavern==&lt;br /&gt;
6380 South Fiddlers Green Circle &lt;br /&gt;
Denver, CO 80122&lt;br /&gt;
&lt;br /&gt;
RSVP at: http://www.meetup.com/Denver-OWASP/events/135102292/&lt;br /&gt;
 &lt;br /&gt;
or at: &lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
Guest Speaker:  Bill Jackson&lt;br /&gt;
Bill has been a software engineer with Raytheon for 15 years. He has worked as the secure coding lead for the GPS-OCX program, and has helped define and implement secure coding processes and practices for several other programs. His other presentation topic include Java EE, Agile software development, concurrency, and user interface design.&lt;br /&gt;
&lt;br /&gt;
His certifications include a CISSP and CompTIA Security+&lt;br /&gt;
&lt;br /&gt;
Bill has an MS in computer science from the University of Colorado at Denver and a BS from Colorado State University.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] a[http://universitycollege.du.edu/ict/degree/masters/information-systems-security-online/degreeid/402/The University of Denver] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for September and November.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 2 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_July_2013|Jim Manico: &amp;quot;Secure Coding Techniques Part 2&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2013|Aaron Cure: &amp;quot;Less Frequently talked about vulnerabilities&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013|Dave Ferguson: &amp;quot;Building a Successful Application Security Program&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_June_2013&amp;diff=155185</id>
		<title>Denver June 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_June_2013&amp;diff=155185"/>
				<updated>2013-07-05T22:21:46Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: Created page with &amp;quot;Speaker:Aron Cure Topic: Less Frequantly talked about vulnerabilities  Click here for to see Aarons slides.   http://www.meetup.com/Denver-OWASP/files/&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Aron Cure Topic: Less Frequantly talked about vulnerabilities&lt;br /&gt;
&lt;br /&gt;
Click here for to see Aarons slides.  &lt;br /&gt;
http://www.meetup.com/Denver-OWASP/files/&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=155184</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=155184"/>
				<updated>2013-07-05T22:10:46Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
==Next Chapter Meeting: Jul 17th at Chinook Tavern==&lt;br /&gt;
6380 South Fiddlers Green Circle &lt;br /&gt;
Denver, CO 80122&lt;br /&gt;
&lt;br /&gt;
RSVP at: http://www.meetup.com/Denver-OWASP/events/127370252/&lt;br /&gt;
 &lt;br /&gt;
or at: http://www.meetup.com/Denver-OWASP/events/127370252/&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
Guest Speaker:  Jim Manico (VP Security Architecture at WhiteHat Security and Global OWASP board member)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
Topic:  Secure Development round 2 (building on and exploring more than his earlier presentation)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] a[http://universitycollege.du.edu/ict/degree/masters/information-systems-security-online/degreeid/402/The University of Denver] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for July, September and November.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 2 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_June_2013|Aaron Cure: &amp;quot;Less Frequently talked about vulnerabilities&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013|Dave Ferguson: &amp;quot;Building a Successful Application Security Program&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=151286</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=151286"/>
				<updated>2013-05-10T13:04:23Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: June 19th at Denver University  &lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Topic: Look for the details'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Thanks to Matt Shufeldt he had a great presentation on security in the SDLC looking at different models and what has worked and not worked.   Matt is the Director of Information Security at Sports Authority and it was excellent to hear his lessons learned!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 2 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013|Dave Ferguson: &amp;quot;Building a Successful Application Security Program&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_April_2013&amp;diff=150139</id>
		<title>Denver April 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_April_2013&amp;diff=150139"/>
				<updated>2013-04-19T15:15:25Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Matt Shufeldt&lt;br /&gt;
Topic: Security in the SDLC&lt;br /&gt;
&lt;br /&gt;
Click here for to see Matt's slides. [http://www.meetup.com/Denver-OWASP/files/ Meetup]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_March_2013&amp;diff=150138</id>
		<title>Denver March 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_March_2013&amp;diff=150138"/>
				<updated>2013-04-19T15:14:47Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Jim Manico &lt;br /&gt;
Topic: Writing secure code&lt;br /&gt;
&lt;br /&gt;
Click here for to see Jim's slides. [http://www.meetup.com/Denver-OWASP/files/ Meetup]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_March_2013&amp;diff=150137</id>
		<title>Denver March 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_March_2013&amp;diff=150137"/>
				<updated>2013-04-19T15:14:15Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Jim Manico &lt;br /&gt;
Topic: Writing secure code&lt;br /&gt;
&lt;br /&gt;
Click here for to see Jim's slides. [http://www.meetup.com/Denver-OWASP/files/]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_April_2013&amp;diff=150136</id>
		<title>Denver April 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_April_2013&amp;diff=150136"/>
				<updated>2013-04-19T15:10:42Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: Created page with &amp;quot;Speaker:Matt Shufeldt Topic: Security in the SDLC  Click here for to see Matt's slides. [http://www.meetup.com/Denver-OWASP/events/2808802/ Meetup]&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Matt Shufeldt&lt;br /&gt;
Topic: Security in the SDLC&lt;br /&gt;
&lt;br /&gt;
Click here for to see Matt's slides. [http://www.meetup.com/Denver-OWASP/events/2808802/ Meetup]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_March_2013&amp;diff=150135</id>
		<title>Denver March 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_March_2013&amp;diff=150135"/>
				<updated>2013-04-19T15:07:22Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: Created page with &amp;quot;Speaker:Jim Manico  Topic: Writing secure code  Click here for to see Jim's slides. [http://www.meetup.com/Denver-OWASP/events/2808802/ Meetup]&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Jim Manico &lt;br /&gt;
Topic: Writing secure code&lt;br /&gt;
&lt;br /&gt;
Click here for to see Jim's slides. [http://www.meetup.com/Denver-OWASP/events/2808802/ Meetup]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=150134</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=150134"/>
				<updated>2013-04-19T14:57:58Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: April 17th at CCA Lowery  [ http://1304denverowasp.eventbrite.com/#    RSVP Now!!! ] ===&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
[ http://1304denverowasp.eventbrite.com/# RSVP]&lt;br /&gt;
&lt;br /&gt;
'''Topic: Security in the SDLC'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This month we welcome Matt Shufeldt who will be presenting on security in the SDLC looking at different models and what has worked and not worked.   Matt is the Director of Information Security at Sports Authority and we look forward to hearing of his lessons learned!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 2 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013| Dave Ferguson: Securing Your Code]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=150133</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=150133"/>
				<updated>2013-04-19T14:54:27Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: April 17th at CCA Lowery  [ http://1304denverowasp.eventbrite.com/#    RSVP Now!!! ] ===&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
[ http://1304denverowasp.eventbrite.com/# RSVP]&lt;br /&gt;
&lt;br /&gt;
'''Topic: Security in the SDLC'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This month we welcome Matt Shufeldt who will be presenting on security in the SDLC looking at different models and what has worked and not worked.   Matt is the Director of Information Security at Sports Authority and we look forward to hearing of his lessons learned!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 2 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_April_2013|Matt Schufeldt: &amp;quot;Security in the SDLC&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013| Dave Ferguson: Securing Your Code]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=149576</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=149576"/>
				<updated>2013-04-10T15:02:33Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: April 17th at CCA Lowery  [ http://1304denverowasp.eventbrite.com/#    RSVP Now!!! ] ===&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
[ http://1304denverowasp.eventbrite.com/# RSVP]&lt;br /&gt;
&lt;br /&gt;
'''Topic: Security in the SDLC'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This month we welcome Matt Shufeldt who will be presenting on security in the SDLC looking at different models and what has worked and not worked.   Matt is the Director of Information Security at Sports Authority and we look forward to hearing of his lessons learned!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder has built a strong chapter over the past 2 years.  Any individuals up north of Denver have a great resource.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in meeting with the Boulder chapter please let us know!  &lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_March_2013|Jim Manico: &amp;quot;Secure Coding Techniques&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013| Dave Ferguson: Securing Your Code]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=FROC_Schedule&amp;diff=147571</id>
		<title>FROC Schedule</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=FROC_Schedule&amp;diff=147571"/>
				<updated>2013-03-11T20:56:44Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: Created page with &amp;quot; Front Range OWASP Conference  Join 300+ developers, security professionals, and cyber security industry leaders for a day-and-a-half of world-class presentations, hacking com...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
Front Range OWASP Conference&lt;br /&gt;
&lt;br /&gt;
Join 300+ developers, security professionals, and cyber security industry leaders for a day-and-a-half of world-class presentations, hacking competitions, expert training, and collaborative Birds of a Feather sessions.&lt;br /&gt;
&lt;br /&gt;
SnowFROC 2013 offers four tracks designed to tackle cyber security from all angles: technical, deep-dive, management, and legal. For the hands-on crowd, a capture the flag hacking tournament will run in parallel to conference proceedings.&lt;br /&gt;
&lt;br /&gt;
The keynote speaker will be Neal Ziring, Technical Director of Information Protection, NSA.&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
When&lt;br /&gt;
Conference proceedings: Thursday, March 28, 2013&lt;br /&gt;
Training and Birds of a Feather: Friday, March 29, 2013&lt;br /&gt;
&lt;br /&gt;
Where&lt;br /&gt;
&lt;br /&gt;
Attendee Registration&lt;br /&gt;
Non-Member Registration  $115.00&lt;br /&gt;
(One year of OWASP membership is included in the cost)&lt;br /&gt;
&lt;br /&gt;
OWASP Member Registration  $65.00&lt;br /&gt;
(Register using the email address associated with your membership)&lt;br /&gt;
&lt;br /&gt;
Student Registration  $35.00&lt;br /&gt;
(An active student ID or transcript is required)&lt;br /&gt;
&lt;br /&gt;
Event Registration &lt;br /&gt;
Additional SnowFROC Information&lt;br /&gt;
&lt;br /&gt;
Come for the conference, stay for the winter sports.&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Please respond by clicking one of the options below&lt;br /&gt;
&lt;br /&gt;
https://www.cvent.com/events/front-range-owasp-conference/registration-e25b04af59c84f4db33f51fb4fb6f5ec.aspx&lt;br /&gt;
&lt;br /&gt;
https://www.cvent.com/events/front-range-owasp-conference/regret-survey-e25b04af59c84f4db33f51fb4fb6f5ec.aspx?rc=18313587-d688-4340-aa82-34a81d18b080&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=147570</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=147570"/>
				<updated>2013-03-11T20:53:40Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: March 20th at CCA Lowery  [ http://1303owaspdenver.eventbrite.com/#    RSVP Now!!! ] ===&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
[ http://1303owaspdenver.eventbrite.com/# RSVP]&lt;br /&gt;
&lt;br /&gt;
'''Topic: secure coding techniques'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This month we welcome Jim Manico who will be presenting on secure coding techniques.  Jim is a global board member for the OWASP organization and VP of Security Architecture at WhiteHat Security.  It is our understanding that some giveaways will be presented to some lucky attendees. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.ccaurora.edu/ Community College Aurora ] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder is in the process of putting together new leadership.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in working with the Boulder chapter please let us know!  More to come...&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013| Dave Ferguson: Securing Your Code]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_February_2013&amp;diff=147567</id>
		<title>Denver February 2013</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_February_2013&amp;diff=147567"/>
				<updated>2013-03-11T20:40:25Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: Created page with &amp;quot;Speaker:Chris Roberts Founder and CISO of One World Labs Topic: The Evolution of Hacking  Click here for Chris' slides. [http://www.meetup.com/Denver-OWASP/events/105012802/ M...&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Speaker:Chris Roberts Founder and CISO of One World Labs&lt;br /&gt;
Topic: The Evolution of Hacking&lt;br /&gt;
&lt;br /&gt;
Click here for Chris' slides. [http://www.meetup.com/Denver-OWASP/events/105012802/ Meetup]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=147563</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=147563"/>
				<updated>2013-03-11T20:25:28Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: March 20th at CCA Lowery  [ http://1303owaspdenver.eventbrite.com/#    RSVP Now!!! ] ===&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
[ http://1303owaspdenver.eventbrite.com/# RSVP]&lt;br /&gt;
&lt;br /&gt;
'''Topic: secure coding techniques'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This month we welcome Jim Manico who will be presenting on secure coding techniques.  Jim is a global board member for the OWASP organization and VP of Security Architecture at WhiteHat Security.  It is our understanding that some giveaways will be presented to some lucky attendees. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.hosting.com/ Hosting.com] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder is in the process of putting together new leadership.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in working with the Boulder chapter please let us know!  More to come...&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013| Dave Ferguson: Securing Your Code]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule|SnowFROC 2013 ]]&lt;br /&gt;
* http://www.meetup.com/Denver-OWASP/&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=147560</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=147560"/>
				<updated>2013-03-11T20:21:52Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Steve Kosten.   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
===THANK YOU TO OUR SPONSORS===&lt;br /&gt;
[[File:DenverCateringSponsor2013SouthSeas.jpg]]&lt;br /&gt;
&lt;br /&gt;
A big thank you to [http://www.southseascorp.com/ South Seas Corporation] for sponsoring all catering for our 2013 monthly chapter meetings!!  It is much appreciated!&lt;br /&gt;
&lt;br /&gt;
===Next Chapter Meeting: March 20th at CCA Lowery  [ http://1303owaspdenver.eventbrite.com/#    RSVP Now!!! ] ===&lt;br /&gt;
&lt;br /&gt;
Food and Chapter Business starting at 6, presentation starting at about 6:30.&lt;br /&gt;
&lt;br /&gt;
[ http://1303owaspdenver.eventbrite.com/# RSVP]&lt;br /&gt;
&lt;br /&gt;
'''Topic: secure coding techniques'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This month we welcome Jim Manico who will be presenting on secure coding techniques.  Jim is a global board member for the OWASP organization and VP of Security Architecture at WhiteHat Security.  It is our understanding that some giveaways will be presented to some lucky attendees. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''About the chapter:'''&lt;br /&gt;
Chapter Meetings are held the 3rd Wednesday of designated months for the Denver Chapter, and the 3rd Thursday of designated months for the [[Boulder|Boulder]] Chapter.  If you have an idea for a topic or speaker or would like to present, please&lt;br /&gt;
reach out to Steve Kosten, Denver OWASP Chapter Leader: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- June 20th at 6'ish at Hosting.  [http://www.eventbrite.com/org/371792456    RSVP HERE ] so we can order the right # of pizzas --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Thanks to [http://www.hosting.com/ Hosting.com] for hosting us, [http://www.southseascorp.com/ South Seas Corporation] for providing food for our meetings and thanks to [http://veracode.com Veracode] for providing a speaker for this meeting...'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Future meetings are planned for: stay tuned for 2013.&lt;br /&gt;
&lt;br /&gt;
==Chapter Board of Directors==&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Steve Kosten&lt;br /&gt;
* Director of Communications - Craig Klosterman&lt;br /&gt;
* Comm Vice-Director - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Micah Tapman&lt;br /&gt;
* FROC Chair Emeritus - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: PLEASE CONSIDER FOLLOWING US AT @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST] AND/OR join the OWASP Denver Linked In group.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Wassup Boulder=====&lt;br /&gt;
Boulder is in the process of putting together new leadership.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in working with the Boulder chapter please let us know!  More to come...&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve 'dot' kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
Meetings are usually the 3rd Wednesday of the month.  We are trying to have at least 2/quarter.  If you can't make the Denver meeting, the [[Boulder|Boulder]] meeting is usually the 3rd Thursday of the month.&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
Meetings are planned for the 3rd Wednesdays of September and October.  We may do a social event or two also...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 March 28 2013: SnowFROC 2013  --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver_February_2013|Chris Roberts: &amp;quot;The Evolution of Hacking&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_January_2013| Dave Ferguson: Securing Your Code]]&lt;br /&gt;
&lt;br /&gt;
[[Denver_June_2012|Laz: Emerging Threats]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2012 meeting|Steve Kosten: XSS hands-on]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting|April 18th 2012: Tim Van Cleave &amp;quot;Intro to WebScarab and WebGoat&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]]&lt;br /&gt;
&lt;br /&gt;
Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Steve Kosten, Denver OWASP: steve.kosten 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
&lt;br /&gt;
[[FROC Schedule Draft|SnowFROC 2012 Schedule Draft]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=124817</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=124817"/>
				<updated>2012-02-21T23:18:51Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://snowfroc2012.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Front Range OWASP Conference: March 22nd, 2012: SnowFROC&lt;br /&gt;
&lt;br /&gt;
* [http://snowfroc2012.eventbrite.com/  RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup Boulder=====&lt;br /&gt;
Boulder is in the process of putting together new leadership.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in working with the Boulder chapter please let us know!  More to come...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
[Denver April 2012 meeting] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]&lt;br /&gt;
&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=124816</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=124816"/>
				<updated>2012-02-21T23:16:02Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://snowfroc2012.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Front Range OWASP Conference: March 22nd, 2012: SnoFROC&lt;br /&gt;
&lt;br /&gt;
* [http://snowfroc2012.eventbrite.com/  RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup Boulder=====&lt;br /&gt;
Boulder is in the process of putting together new leadership.  We hope to share some resources and communication with the Boulder chapter.  If you're interested in working with the Boulder chapter please let us know!  More to come...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
[Denver April 2012 meeting] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]&lt;br /&gt;
&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=124810</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=124810"/>
				<updated>2012-02-21T20:02:44Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://snowfroc2012.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Front Range OWASP Conference: March 22nd, 2012: SnoFROC&lt;br /&gt;
&lt;br /&gt;
* [http://snowfroc2012.eventbrite.com/  RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
[Denver April 2012 meeting] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]&lt;br /&gt;
&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=124807</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=124807"/>
				<updated>2012-02-21T20:00:50Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://snowfroc2012.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Front Range OWASP Conference: March 22nd, 2012: SnoFROC&lt;br /&gt;
&lt;br /&gt;
* [http://snowfroc2012.eventbrite.com/  RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP? OWASP is the wheel. You don't need to reinvent it!]&lt;br /&gt;
&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=124799</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=124799"/>
				<updated>2012-02-21T19:45:53Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://snowfroc2012.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Front Range OWASP Conference: March 22nd, 2012: SnoFROC&lt;br /&gt;
&lt;br /&gt;
* [http://snowfroc2012.eventbrite.com/  RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver February 2012 meeting|February 15th 2012: Andy Lewis &amp;quot;Why OWASP?&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123252</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123252"/>
				<updated>2012-01-25T22:40:48Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver Febuary 2012 meeting: Febuary 15th, 2012: &amp;quot;Stay Tuned&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123251</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123251"/>
				<updated>2012-01-25T22:10:51Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123250</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123250"/>
				<updated>2012-01-25T22:09:23Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver January 2012 meeting January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123249</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123249"/>
				<updated>2012-01-25T22:08:23Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver January 2012 meeting|January 18th, 2012| Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123248</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123248"/>
				<updated>2012-01-25T22:03:07Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver January 2012 meeting|January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123247</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123247"/>
				<updated>2012-01-25T22:00:59Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver January 2012 meeting|January 18th 2010:Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123246</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123246"/>
				<updated>2012-01-25T22:00:02Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver&amp;diff=123245</id>
		<title>Denver</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver&amp;diff=123245"/>
				<updated>2012-01-25T21:59:18Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Denver|extra=Chapter leader is Andy Lewis (many thanks to David Campbell for past leadership).   |mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-denver|emailarchives=http://lists.owasp.org/pipermail/owasp-denver}}&lt;br /&gt;
&lt;br /&gt;
==== Local News ====&lt;br /&gt;
&lt;br /&gt;
=====Next Chapter Meeting: [http://dowasp20120118.eventbrite.com RSVP Now!]=====&lt;br /&gt;
Denver January 2012 meeting: January 18th, 2012: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]&lt;br /&gt;
&lt;br /&gt;
* [http://dowasp20120118.eventbrite.com RSVP Now!]&lt;br /&gt;
&lt;br /&gt;
====New Chapter Board of Directors!====&lt;br /&gt;
Here's the team that's putting it all together:&lt;br /&gt;
* Chairman/Chapter Leader - Andy Lewis&lt;br /&gt;
* Vice Chairman - Steve Kosten&lt;br /&gt;
* Communications Chairman - Craig Klosterman&lt;br /&gt;
* Comm Vice-Chair - Alan Darien&lt;br /&gt;
* Outreach &amp;amp; Education Chair - James Synovec&lt;br /&gt;
* Outreach &amp;amp; Education Vice Chair - Brad Carvalho&lt;br /&gt;
* FROC Chair - Kathy Thaxton&lt;br /&gt;
&lt;br /&gt;
NOTE: THIS WIKI IS USUALLY TERRIBLY OUT OF DATE.  PLEASE FOLLOW @OWASP303 ON TWITTER AND/OR [http://lists.owasp.org/mailman/listinfo/owasp-denver SUBSCRIBE TO THE MAILING LIST]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- =====Missed the con?=====&lt;br /&gt;
* [http://www.reddit.com/r/netsec/comments/fgetw/shmoocon_2011_video_collection/ Vids from Schmoocon 2011]&lt;br /&gt;
* [http://media.ccc.de/browse/congress/2010/index.html Vids from 27c3]&lt;br /&gt;
* [http://vimeo.com/groups/asdc10/videos/sort:newest Vids from AppsecDC 2010]&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=====OWASP Podcast=====&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Podcast OWASP Podcast]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=====Wassup with Boulder???=====&lt;br /&gt;
Boulder is presently leaderless.  We hope that by moving the Denver meetings up north several miles that we can lure more of the Boulder folks to come join us in our new setup close to downtown Denver.  If you're interested in taking over the Boulder chapter please let us know!&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Denver&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Questions, Comments==&lt;br /&gt;
Questions can be directed to &lt;br /&gt;
&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings ====&lt;br /&gt;
&lt;br /&gt;
== Future Meetings == &lt;br /&gt;
&lt;br /&gt;
[[Denver Feb 2012 meeting | DenverOWASP201202]] - stay tuned...&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Front_Range_OWASP_Conference_2012 SNOWFROC 2012 ] March 22d at the Tivoli!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!-- 5 May 2011: SnowFROC 2011 followed by B-Sides &amp;quot;SkiSides&amp;quot;.  Details TBD --&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Past Meetings ==&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Greg Knaddison [http://2011.badcamp.net/program/sessions/how-does-drupal-security-stack &amp;quot;How Does Drupal Security Stack up?&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2011 meeting|September 14th 2011: Chris Schmidt &amp;quot;OWASP ESAPI&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver March 2011 meeting|March 17th 2011: Hands on &amp;quot;Hack a Thon&amp;quot;]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2010 meeting|September 22nd 2010: Eric Duprey: Application Vulnerability Shooting Gallery]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2010 meeting|August 18th 2010: Clint Pollock: Protecting Your Applications from Backdoors]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2010|June 2nd 2010: Front Range OWASP Conference]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2010 meeting|January 20th 2010: John Evans: Securing Webapps: An Illustrative Overview]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2009 meeting|November 18th 2009: Anton Rager: Advanced XSS]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2009 meeting|August 27th 2009: Jon Rose: Security in the Clouds]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2009 meeting|May 2009: Dr. Joseph McComb &amp;amp; and Daniel Weiske: Compliance and application security testing]]&lt;br /&gt;
&lt;br /&gt;
[[Front_Range_OWASP_Conference_2009|March 2009: Front Range OWASP Conference (SnowFROC)]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2009 meeting|January 2009: David Campbell &amp;amp; Eric Duprey: Guided Tour: AppSec NYC '08 CTF]]&lt;br /&gt;
&lt;br /&gt;
[[Denver October 2008 meeting|October 2008: Alex Smolen: The OWASP ASP .NET ESAPI]]&lt;br /&gt;
&lt;br /&gt;
[[Denver September 2008 meeting|September 2008: John Dickson: Black Box vs. White Box: Different App Testing Strategies]]&lt;br /&gt;
&lt;br /&gt;
[[Denver August 2008 meeting|August 2008: Dan Cornell: Static Analysis]]&lt;br /&gt;
&lt;br /&gt;
[[Denver July 2008 meeting|July 2008: David Byrne &amp;amp; Eric Duprey: Grendel-Scan]]&lt;br /&gt;
&lt;br /&gt;
[[Front Range OWASP Conference|June 2008: Front Range OWASP Conference: Jeremiah Grossman, Robert Hansen, and more!]]&lt;br /&gt;
&lt;br /&gt;
[[Denver May 2008 meeting|May 2008: David Campbell &amp;amp; Eric Duprey: XSS Attacks &amp;amp; Defenses]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2008 meeting|April 2008: Ryan Barnett: Virtual Patching with ModSecurity]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2008 meeting|February 2008: Michael Sutton: SQL Injection Revisited]]&lt;br /&gt;
&lt;br /&gt;
[[Denver June 2007 meeting|June 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver April 2007 meeting|April 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver February 2007 meeting|February 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver January 2007 meeting|January 2007]]&lt;br /&gt;
&lt;br /&gt;
[[Denver November 2006 meeting|November 2006]]&lt;br /&gt;
&lt;br /&gt;
==[[Related_Organizations|Local Organizations of Interest]]==&lt;br /&gt;
&lt;br /&gt;
==== Mailing List ====&lt;br /&gt;
Join the [http://lists.owasp.org/mailman/listinfo/owasp-denver OWASP Denver Mailing List] to receive meeting notifications via email&lt;br /&gt;
&lt;br /&gt;
==== Twitter Feed @owasp303 ====&lt;br /&gt;
Denver OWASP has created a [http://twitter.com/owasp303 Twitter feed @owasp303] to keep you in the loop.  Whilst the mailing list is primarily intended to be low-traffic and only provide updates regarding the times, locations, and topics for chapter meetings, the Twitter feed will also provide noteworthy appsec updates.&lt;br /&gt;
&lt;br /&gt;
{|&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
'''@OWASP303 Twitter Feed ([http://twitter.com/OWASP303 follow us on Twitter!])'''&lt;br /&gt;
&amp;lt;twitter&amp;gt;55021150&amp;lt;/twitter&amp;gt; &lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;width: 110px; font-size: 95%; color: rgb(0, 0, 0);&amp;quot; | &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Resources====&lt;br /&gt;
&lt;br /&gt;
=====Denver OWASP Chapter Leaders=====&lt;br /&gt;
*Andy Lewis, Denver OWASP: alewis 'at' owasp.org&lt;br /&gt;
&lt;br /&gt;
=====Key OWASP Resources=====&lt;br /&gt;
* http://www.owasp.org/images/4/41/ASVS_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/3/31/ESAPI_One_Page_Handout.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/a1/Legal_One_Page_Handout.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/a/a3/How_ESAPI_Works.pdf&lt;br /&gt;
* http://www.owasp.org/images/a/ac/LAMP_Should_be_Spelled_LAMPE.pdf&lt;br /&gt;
* http://www.owasp.org/images/0/01/Getting_started_designing_for_a_level_of_assurance.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/index.php/Agile_Software_Development:_Don%27t_Forget_EVIL_User_Stories&lt;br /&gt;
* http://www.owasp.org/index.php/Man_vs._Code&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/4/4e/OWASP_ASVS_2009_Web_App_Std_Release.pdf&lt;br /&gt;
* &lt;br /&gt;
* http://www.owasp.org/images/c/cd/PHP-ESAPI_1.0a_install.pdf&lt;br /&gt;
* http://www.owasp.org/images/6/67/PHP-ESAPI_1.0a_ReleaseNotes.pdf&lt;br /&gt;
&lt;br /&gt;
=====Chapter Management Links=====&lt;br /&gt;
&amp;lt;!-- [[Pizza|Best pizza in Centennial]] --&amp;gt;&lt;br /&gt;
[[Chapter SOPs|Denver OWASP Chapter SOPs]]&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
[[Category:Colorado]]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Denver_Feb_2012_meeting&amp;diff=123244</id>
		<title>Denver Feb 2012 meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Denver_Feb_2012_meeting&amp;diff=123244"/>
				<updated>2012-01-25T21:55:45Z</updated>
		
		<summary type="html">&lt;p&gt;Craig Klosterman: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Denver OWASP Meeting Feb 2012=&lt;br /&gt;
February's topic is a walkthrough of key OWASP projects:&lt;br /&gt;
&lt;br /&gt;
#Intro to OWASP Projects&lt;br /&gt;
* How do they work?&lt;br /&gt;
* How do I participate?  If something's missing, can I add it?&lt;br /&gt;
* What if I want to start one?&lt;br /&gt;
&lt;br /&gt;
# Life Cycle (of particular value to Architects, Managers, and Project Managers)&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API ESAPIs]&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:Software_Assurance_Maturity_Model Software Assurance Maturity Model]&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:OWASP_Source_Code_Review_OWASP_Projects_Project Source Code Review Project]&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:OWASP_AppSec_FAQ_Project AppSec FAQ Project]&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:OWASP_Legal_Project OWASP Legal Project] (Outsourcing/offshoring?)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
# Noteworthy Projects for Testers/QA teams&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:OWASP_WebGoat_Project WEBGOAT!]&lt;br /&gt;
* [https://www.owasp.org/index.php/Category:OWASP_Testing_Project OWASP Testing Project]&lt;br /&gt;
* [https://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project OWASP Zed Attack Proxy Project]&lt;br /&gt;
&lt;br /&gt;
# Noteworthy Projects for DEFENDING your apps&lt;br /&gt;
&lt;br /&gt;
Return to [https://www.owasp.org/index.php/Denver Denver OWASP main page]&lt;/div&gt;</summary>
		<author><name>Craig Klosterman</name></author>	</entry>

	</feed>