<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Dmunge</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Dmunge"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Dmunge"/>
		<updated>2026-05-03T02:17:24Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16789</id>
		<title>Mark O'Neill</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16789"/>
				<updated>2007-03-01T11:11:09Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP London Chapter meeting on the 22nd of March!&lt;br /&gt;
&lt;br /&gt;
Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening.&lt;br /&gt;
&lt;br /&gt;
Mark is the author of the book [http://www.vordel.com/knowledgebase/book.html Web Services Security], published by McGraw-Hill/Osborne Media. He has provided training on Web Services Security to amongst others some US Government agencies and to Telecoms companies worldwide. &lt;br /&gt;
&lt;br /&gt;
For each of the past 7 years, Mark has spoken on Web Services Security at the RSA Conference. This year 2007, he presented on Security Vulnerabilities in AJAX and Web 2.0 when he demonstrated security holes in the “mash-up” model. &lt;br /&gt;
&lt;br /&gt;
His talk to the London chapter of OWASP on the 22nd of March will be based on the RSA presentation&lt;br /&gt;
&lt;br /&gt;
Mark’s experience includes IT solutions architectures, and a comprehensive knowledge of programming. &lt;br /&gt;
&lt;br /&gt;
Mark is a contributing member of the OASIS Security Services Technical Committee &lt;br /&gt;
&lt;br /&gt;
[[London|return to London page]]&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16788</id>
		<title>Mark O'Neill</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16788"/>
				<updated>2007-03-01T11:07:37Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP London Chapter meeting on the 22nd of March!&lt;br /&gt;
&lt;br /&gt;
Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening.&lt;br /&gt;
&lt;br /&gt;
Mark is the author of the book Web Services Security, published by McGraw-Hill/Osborne Media. He has provided training on Web Services Security to amongst others some US Government agencies and to Telecoms companies worldwide. &lt;br /&gt;
&lt;br /&gt;
For each of the past 7 years, Mark has spoken on Web Services Security at the RSA Conference. This year 2007, he presented on Security Vulnerabilities in AJAX and Web 2.0 when he demonstrated security holes in the “mash-up” model. &lt;br /&gt;
&lt;br /&gt;
His talk to the London chapter of OWASP on the 22nd of March will be based on the RSA presentation&lt;br /&gt;
&lt;br /&gt;
Mark’s experience includes IT solutions architectures, and a comprehensive knowledge of programming. &lt;br /&gt;
&lt;br /&gt;
Mark is a contributing member of the OASIS Security Services Technical Committee &lt;br /&gt;
&lt;br /&gt;
[[London|return to London page]]&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16787</id>
		<title>Mark O'Neill</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16787"/>
				<updated>2007-03-01T11:06:03Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP London Chapter meeting on the 22nd of March!&lt;br /&gt;
&lt;br /&gt;
Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening.&lt;br /&gt;
&lt;br /&gt;
Mark is the author of the book Web Services Security, published by McGraw-Hill/Osborne Media. He has provided training on Web Services Security to amongst others some US Government agencies and to Telecoms companies worldwide. &lt;br /&gt;
&lt;br /&gt;
For each of the past 7 years, Mark has spoken on Web Services Security at the RSA Conference. This year 2007, he presented on Security Vulnerabilities in AJAX and Web 2.0 when he demonstrated security holes in the “mash-up” model. &lt;br /&gt;
&lt;br /&gt;
His talk to the London chapter of OWASP on the 22nd of March will be based on the RSA presentation&lt;br /&gt;
&lt;br /&gt;
Mark’s experience includes IT solutions architectures, and a comprehensive knowledge of programming. &lt;br /&gt;
&lt;br /&gt;
Mark is a contributing member of the OASIS Security Services Technical Committee &lt;br /&gt;
&lt;br /&gt;
[[London return to London page]]&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16786</id>
		<title>Mark O'Neill</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16786"/>
				<updated>2007-03-01T11:04:57Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP London Chapter meeting on the 22nd of March!&lt;br /&gt;
&lt;br /&gt;
Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening.&lt;br /&gt;
&lt;br /&gt;
Mark is the author of the book Web Services Security, published by McGraw-Hill/Osborne Media. He has provided training on Web Services Security to amongst others some US Government agencies and to Telecoms companies worldwide. &lt;br /&gt;
&lt;br /&gt;
For each of the past 7 years, Mark has spoken on Web Services Security at the RSA Conference. This year 2007, he presented on Security Vulnerabilities in AJAX and Web 2.0 when he demonstrated security holes in the “mash-up” model. &lt;br /&gt;
&lt;br /&gt;
His talk to the London chapter of OWASP on the 22nd of March will be based on the RSA presentation&lt;br /&gt;
&lt;br /&gt;
Mark’s experience includes IT solutions architectures, and a comprehensive knowledge of programming. &lt;br /&gt;
&lt;br /&gt;
Mark is a contributing member of the OASIS Security Services Technical Committee &lt;br /&gt;
&lt;br /&gt;
[[London]]&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16785</id>
		<title>Mark O'Neill</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16785"/>
				<updated>2007-03-01T11:04:25Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP London Chapter meeting on the 22nd of March!&lt;br /&gt;
&lt;br /&gt;
Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening.&lt;br /&gt;
&lt;br /&gt;
Mark is the author of the book Web Services Security, published by McGraw-Hill/Osborne Media. He has provided training on Web Services Security to amongst others some US Government agencies and to Telecoms companies worldwide. &lt;br /&gt;
&lt;br /&gt;
For each of the past 7 years, Mark has spoken on Web Services Security at the RSA Conference. This year 2007, he presented on Security Vulnerabilities in AJAX and Web 2.0 when he demonstrated security holes in the “mash-up” model. &lt;br /&gt;
&lt;br /&gt;
His talk to the London chapter of OWASP on the 22nd of March will be based on the RSA presentation&lt;br /&gt;
&lt;br /&gt;
Mark’s experience includes IT solutions architectures, and a comprehensive knowledge of programming. &lt;br /&gt;
&lt;br /&gt;
Mark is a contributing member of the OASIS Security Services Technical Committee [[London]]&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16784</id>
		<title>Mark O'Neill</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Mark_O%27Neill&amp;diff=16784"/>
				<updated>2007-03-01T11:03:01Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: New page: OWASP London Chapter meeting on the 22nd of March!  Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening...&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OWASP London Chapter meeting on the 22nd of March!&lt;br /&gt;
&lt;br /&gt;
Mark O'Neill - Chief Technical Officer- Vordel Ltd.  www.vordel.com  is giving an XML/Web services security presentation on this evening.&lt;br /&gt;
&lt;br /&gt;
Mark is the author of the book Web Services Security, published by McGraw-Hill/Osborne Media. He has provided training on Web Services Security to amongst others some US Government agencies and to Telecoms companies worldwide. &lt;br /&gt;
&lt;br /&gt;
For each of the past 7 years, Mark has spoken on Web Services Security at the RSA Conference. This year 2007, he presented on Security Vulnerabilities in AJAX and Web 2.0 when he demonstrated security holes in the “mash-up” model. &lt;br /&gt;
&lt;br /&gt;
His talk to the London chapter of OWASP on the 22nd of March will be based on the RSA presentation&lt;br /&gt;
&lt;br /&gt;
Mark’s experience includes IT solutions architectures, and a comprehensive knowledge of programming. &lt;br /&gt;
&lt;br /&gt;
Mark is a contributing member of the OASIS Security Services Technical Committee,&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=London&amp;diff=16783</id>
		<title>London</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=London&amp;diff=16783"/>
				<updated>2007-03-01T11:01:25Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=London|extra=The chapter leader is [[user:Dinis.cruz| Dinis Cruz]] (since Jan 2007)|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-london|emailarchives=http://lists.owasp.org/pipermail/owasp-london}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
The next two Owasp-London events will be:&lt;br /&gt;
&lt;br /&gt;
* '''Thursday 22nd February'''&lt;br /&gt;
** Location: The Water Poet Pub, Liverpool St, London [http://www.beerintheevening.com/cgi-bin/map_link.cgi?id=17986&amp;amp;type=8 map] , [http://www.beerintheevening.com/pubs/s/17/17986/Water_Poet/Shoreditch description]&lt;br /&gt;
** We are going to use the downstairs room which you can access from the back of the pub &lt;br /&gt;
* '''Presentations''':&lt;br /&gt;
** by '''Dinis Cruz (Chief OWASP Evangelist)''' :&lt;br /&gt;
*** '''OWASP, the Open Web Application Security Project''' 30m - The Open Web Application Security Project (OWASP) is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, blogs, and chapters are free and open to anyone interested in improving application security. In this presentation Dinis will show the latest guides and tools from OWASP which should be part of every company's security efforts.&lt;br /&gt;
*** '''Buffer Overflows on .Net and Asp.Net''' 30m - One of the common myths about the .Net Framework is that it is immune to Buffer Overflows. Although this might be correct in pure managed and verifiable .Net code, large percentage of .Net and Asp.Net applications code is unmanaged code. In this talk Dinis will show the areas in .Net and Asp.Net applications that are vulnerable to Buffer Overflows (including the demo of a .Net Buffer Overflow Fuzzer).&lt;br /&gt;
*** '''0wning Vista's userland - The CAS / UAC missed opportunity , and what I think MS should had done''' - In this presentation Dinis will explore the missed opportunity by Microsoft to use technologies like .Net's CAS (Code Access Security) and Vista's UAC (User Access Control) to create secure and trustworthy userland environments that protect the user's assets. In the hope that might make a small difference, ideas and solutions for the future will also be presented.&lt;br /&gt;
** by '''Ivan Ristic''': &lt;br /&gt;
*** '''ModSecurity'''  - 30m&lt;br /&gt;
&lt;br /&gt;
* '''Schedule''':&lt;br /&gt;
** 6pm - 7pm arrive and grab a drink&lt;br /&gt;
** 7:00 - '''OWASP, the Open Web Application Security Project''', Dinis Cruz&lt;br /&gt;
** 7:45 - '''ModSecurity''', Ivan Ristic&lt;br /&gt;
** 8:15 - '''Buffer Overflows on .Net and Asp.Net''', Dinis Cruz&lt;br /&gt;
** 8:50 -  0wning Vista's userland - The CAS / UAC missed opportunity, and what I think MS should had done, Dinis Cruz&lt;br /&gt;
** 9:00 - Dinner (TBD)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*''' Thursday 22nd March'''&lt;br /&gt;
** Presentations:&lt;br /&gt;
*** Dinis Cruz on more OWASP's World - 30m&lt;br /&gt;
*** [[Mark O'Neill]] &amp;quot;Security Vulnerabilities in AJAX and Web 2.0&amp;quot; - 45 m&lt;br /&gt;
*** Dan: 'Hacking Tailand' - 30m&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=London&amp;diff=16782</id>
		<title>London</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=London&amp;diff=16782"/>
				<updated>2007-03-01T10:59:31Z</updated>
		
		<summary type="html">&lt;p&gt;Dmunge: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=London|extra=The chapter leader is [[user:Dinis.cruz| Dinis Cruz]] (since Jan 2007)|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-london|emailarchives=http://lists.owasp.org/pipermail/owasp-london}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
The next two Owasp-London events will be:&lt;br /&gt;
&lt;br /&gt;
* '''Thursday 22nd February'''&lt;br /&gt;
** Location: The Water Poet Pub, Liverpool St, London [http://www.beerintheevening.com/cgi-bin/map_link.cgi?id=17986&amp;amp;type=8 map] , [http://www.beerintheevening.com/pubs/s/17/17986/Water_Poet/Shoreditch description]&lt;br /&gt;
** We are going to use the downstairs room which you can access from the back of the pub &lt;br /&gt;
* '''Presentations''':&lt;br /&gt;
** by '''Dinis Cruz (Chief OWASP Evangelist)''' :&lt;br /&gt;
*** '''OWASP, the Open Web Application Security Project''' 30m - The Open Web Application Security Project (OWASP) is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, blogs, and chapters are free and open to anyone interested in improving application security. In this presentation Dinis will show the latest guides and tools from OWASP which should be part of every company's security efforts.&lt;br /&gt;
*** '''Buffer Overflows on .Net and Asp.Net''' 30m - One of the common myths about the .Net Framework is that it is immune to Buffer Overflows. Although this might be correct in pure managed and verifiable .Net code, large percentage of .Net and Asp.Net applications code is unmanaged code. In this talk Dinis will show the areas in .Net and Asp.Net applications that are vulnerable to Buffer Overflows (including the demo of a .Net Buffer Overflow Fuzzer).&lt;br /&gt;
*** '''0wning Vista's userland - The CAS / UAC missed opportunity , and what I think MS should had done''' - In this presentation Dinis will explore the missed opportunity by Microsoft to use technologies like .Net's CAS (Code Access Security) and Vista's UAC (User Access Control) to create secure and trustworthy userland environments that protect the user's assets. In the hope that might make a small difference, ideas and solutions for the future will also be presented.&lt;br /&gt;
** by '''Ivan Ristic''': &lt;br /&gt;
*** '''ModSecurity'''  - 30m&lt;br /&gt;
&lt;br /&gt;
* '''Schedule''':&lt;br /&gt;
** 6pm - 7pm arrive and grab a drink&lt;br /&gt;
** 7:00 - '''OWASP, the Open Web Application Security Project''', Dinis Cruz&lt;br /&gt;
** 7:45 - '''ModSecurity''', Ivan Ristic&lt;br /&gt;
** 8:15 - '''Buffer Overflows on .Net and Asp.Net''', Dinis Cruz&lt;br /&gt;
** 8:50 -  0wning Vista's userland - The CAS / UAC missed opportunity, and what I think MS should had done, Dinis Cruz&lt;br /&gt;
** 9:00 - Dinner (TBD)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*''' Thursday 22nd March'''&lt;br /&gt;
** Presentations:&lt;br /&gt;
*** Dinis Cruz on more OWASP's World - 30m&lt;br /&gt;
*** Mark O'Neill &amp;quot;Security Vulnerabilities in AJAX and Web 2.0&amp;quot; 45 mins &lt;br /&gt;
*** Dan: 'Hacking Tailand' - 30m&lt;/div&gt;</summary>
		<author><name>Dmunge</name></author>	</entry>

	</feed>