<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Fabio.e.cerullo</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Fabio.e.cerullo"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Fabio.e.cerullo"/>
		<updated>2026-04-11T20:27:45Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GSoC&amp;diff=237235</id>
		<title>GSoC</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GSoC&amp;diff=237235"/>
				<updated>2018-02-02T19:53:16Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''OWASP is applying to be a Google Summer of Code (“GSoC”) mentoring organization in 2018!'''&lt;br /&gt;
&lt;br /&gt;
Open source software is changing the world and creating the future.&lt;br /&gt;
&lt;br /&gt;
Want to help shaping it? We’re looking for students to join us in making 2018 the best Summer of Code yet!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;span style=&amp;quot;color:#FF0000&amp;quot;&amp;gt;'''STUDENTS: THE PROPOSAL SUBMISSION PERIOD WILL BE OPEN FROM MARCH 12th thru 27th 2018'''&amp;lt;/span&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|March 12 16:00 UTC&lt;br /&gt;
|Student application period begins&lt;br /&gt;
|-&lt;br /&gt;
|March 27 16:00 UTC&lt;br /&gt;
|Student application deadline&lt;br /&gt;
|}&lt;br /&gt;
[https://summerofcode.withgoogle.com/ '''Google Summer of Code Program Site''']&lt;br /&gt;
* OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted.&lt;br /&gt;
* All students currently enrolled in an accredited institution are welcome to participate in the Google Summer of Code 2018 program, hopefully along with the OWASP Foundation.&lt;br /&gt;
* Below you could find all the instructions on how to participate.&lt;br /&gt;
&lt;br /&gt;
== What is GSOC? ==&lt;br /&gt;
&lt;br /&gt;
The [https://developers.google.com/open-source/gsoc/ Google Summer of Code program] (“GSoC”) is designed to encourage student participation in open source development. Through GSoC, accepted student applicants will be paired with OWASP mentors that will guide them through their coding tasks.&lt;br /&gt;
&lt;br /&gt;
Benefits to students include:&lt;br /&gt;
&lt;br /&gt;
* Gaining exposure to real-world software development scenarios&lt;br /&gt;
* An opportunity for employment in areas related to their academic pursuits and&lt;br /&gt;
* Google will be offering successful student contributors a 5,500 USD stipend, enabling them to focus on their coding projects for three months. &lt;br /&gt;
&lt;br /&gt;
This program is done completely online. Students and mentors from more than 100 countries have participated in past years.&lt;br /&gt;
==Instructions common to all participants==&lt;br /&gt;
&lt;br /&gt;
All participants should take a look at the [https://developers.google.com/open-source/gsoc/faq Google Summer of Code Program Site] every now and then to be informed about updates and advice. It is also important to read the [https://developers.google.com/open-source/gsoc/faq Summer of Code FAQ], as it contains useful information.&lt;br /&gt;
All participants will need a Google account in order to join the program. You'll save some time if you create one now. Please review the [https://developers.google.com/open-source/gsoc/timeline GSOC 2018 TimeLine]&lt;br /&gt;
&lt;br /&gt;
===Programming Language===&lt;br /&gt;
&lt;br /&gt;
While the majority of OWASP tools are developed using C++/Java, we do accept other languages, including (but not limited to) Python, Ruby and C#. C++ will be accepted for any project. Submissions and ideas for projects in any other language should specifically mention the choice.&lt;br /&gt;
&lt;br /&gt;
==Instructions for students==&lt;br /&gt;
&lt;br /&gt;
Are you a student and want to code for an OWASP project? &lt;br /&gt;
Here are the steps and some tips on getting started:&lt;br /&gt;
&lt;br /&gt;
1) Think of a good idea – For reference see&lt;br /&gt;
[https://www.owasp.org/index.php/GSOC2018_Ideas GSOC 2018 Ideas].&lt;br /&gt;
&lt;br /&gt;
2) Do some research yourself based on the idea, write up a proposal draft &lt;br /&gt;
&lt;br /&gt;
3) Post it to the mailing list at [https://groups.google.com/forum/#!forum/owasp-gsoc https://groups.google.com/d/forum/owasp-gsoc] for initial discussions with OWASP mentors.&lt;br /&gt;
&lt;br /&gt;
4) Based on feedback, write a full proposal – See template below:&lt;br /&gt;
https://www.owasp.org/index.php/GSoC_SAT&lt;br /&gt;
&lt;br /&gt;
5) Submit your proposal to Google from March 12th to March 27th 2018.&lt;br /&gt;
&lt;br /&gt;
Students wishing to participate in GSoC must realize this is a formal commitment to produce code for the selected OWASP Project during three months. You will also take some resources from OWASP project leaders, who will dedicate a portion of their time to mentor you. Therefore, we'd like to have candidates who are committed to helping OWASP mission. You don't have to be a proven developer -- in fact, this whole program is meant to facilitate joining OWASP and other Open Source communities. However, experience in coding and applications are welcome.&lt;br /&gt;
&lt;br /&gt;
You should start familiarising yourself with the components that you plan on working on before the start date. OWASP Project Mentors are available on the mailing list https://groups.google.com/d/forum/owasp-gsoc for help. &lt;br /&gt;
&lt;br /&gt;
===General instructions===&lt;br /&gt;
First of all, please read the instructions common to all participants and the [https://developers.google.com/open-source/gsoc/faq GSoC FAQ]. Pay special attention to the '''Eligibility''' section of the FAQ.&lt;br /&gt;
&lt;br /&gt;
===Getting in touch===&lt;br /&gt;
* Google Group: OWASP Organization Administrators and Mentors are available at https://groups.google.com/d/forum/owasp-gsoc ready to answer any questions and discuss any idea.&lt;br /&gt;
* Mailing list: Each project has its own development mailing list (eg. ESAPI: http://lists.owasp.org/pipermail/esapi-dev/). Feel free to subscribe in order to discuss your ideas directly with the project's contributors.&lt;br /&gt;
* IRC channel: You can find us at irc.freenode.net channel #owasp-gsoc&lt;br /&gt;
&lt;br /&gt;
===Recommended steps===&lt;br /&gt;
* Read Google's instructions for participating&lt;br /&gt;
* Take a look at the list of ideas&lt;br /&gt;
* Come up with project that you're interested in&lt;br /&gt;
* Write a first draft proposal and get someone to review it for you&lt;br /&gt;
* Submit it using Google's web interface&lt;br /&gt;
&lt;br /&gt;
Coming up with an interesting idea is probably the most difficult part of all. It should be something interesting for an OWASP Project, and more importantly for you. It also has to be something that you can realistically achieve in the time available to you.&lt;br /&gt;
&lt;br /&gt;
Finding out what the most pressing issues are in the projects you're interested in is a good start. You can optionally join the mailing lists for that project: you can make acquaintance with developers and your potential mentor, as well as start learning the codebase. We recommend strongly doing that and we will look favourably on applications from students who have started to act like Open Source developers.&lt;br /&gt;
&lt;br /&gt;
===Student proposal guidelines===&lt;br /&gt;
A project proposal is what you will be judged upon. So, as a general recommendation, write a clear proposal on what you plan to do, what your project is and what it is not, etc. Several websites now contain hints and other useful information on writing up such proposals.&lt;br /&gt;
OWASP does not require a specific format or specific list of information, but there is an application template on the OWASP page in Google Melange with some specific points that you should address in your application:&lt;br /&gt;
* Who are you? What are you studying?&lt;br /&gt;
* What exactly do you intend to do? What will not be done?&lt;br /&gt;
* Why are you the right person for this task?&lt;br /&gt;
* To what extent are you familiar with the software you're proposing to work with? Have you used it? Have you read the source? Have  you modified the source?&lt;br /&gt;
* How many hours are you going to work on this a week? 10? 20? 30? 40?&lt;br /&gt;
* Do you have other commitments that we should know about? If so, please suggest a way to compensate if it will take much time away from Summer of Code.&lt;br /&gt;
* Are you comfortable working independently under a supervisor or mentor who is several thousand miles away, not to mention 12 time zones away? How will you work with your mentor to track your work? Have you worked in this style before?&lt;br /&gt;
* If your native language is not English, are you comfortable working closely with a supervisor whose native language is English? What is your native language, as that may help us find a mentor who has the same native language?&lt;br /&gt;
* Where do you live, and can we assign a mentor who is local to you so you can meet in a coffee shop for lunch?&lt;br /&gt;
&lt;br /&gt;
After you have written your proposal, you should get it reviewed. Do not rely on the OWASP mentors to do it for you via the web interface: they will only send back a proposal if they find it lacking. Instead, ask a colleague or a developer to do it for you.&lt;br /&gt;
&lt;br /&gt;
===Hints===&lt;br /&gt;
'''Submit your proposal early:''' early submissions get more attention from developers for the simple fact that they have more time to dedicate to reading them. The more people see it, the more it'll get known.&lt;br /&gt;
&lt;br /&gt;
'''Do not leave it all to the last minute:''' while it is Google that is operating the webserver, it would be wise to expect a last-minute overload on the server. So, make sure you send your application before the final rush. Also, note that the applications submitted very late will get the least attention from mentors, so you may get a low vote because of that.&lt;br /&gt;
&lt;br /&gt;
'''Keep it simple:''' we don't need a 10-page essay on the project and on you (Google won't even let you submit a text that long). You just need to be concise and precise.&lt;br /&gt;
&lt;br /&gt;
'''Know what you are talking about:''' the last thing we need is for students to submit ideas that cannot be accomplished realistically or ideas that aren't even remotely related to OWASP Projects. If your idea is unusual, be sure to explain why you have chosen OWASP to be your mentoring organisation.&lt;br /&gt;
&lt;br /&gt;
'''Aim wide:''' submit more than one proposal, to different OWASP Projects. We also recommend submitting to more than one organisation too. This will increase your chances of being chosen.&lt;br /&gt;
&lt;br /&gt;
The PostgreSQL project has also released a list of [http://www.postgresql.org/developer/summerofcodeadvice.html hints] that you can take a look.&lt;br /&gt;
&lt;br /&gt;
==Instructions for mentors==&lt;br /&gt;
===Ideas===&lt;br /&gt;
If you're a developer and you wish to participate in Summer of Code, you can do it in two ways: the first and easiest is to make a proposal in the [https://www.owasp.org/index.php/GSOC2016_Ideas ideas] page. Take a look at what the different OWASP Projects needs or what you feel should have. Feel free to submit ideas even if you cannot elaborate too much on them.&lt;br /&gt;
&lt;br /&gt;
The second possibility is to be a mentor for a more specific idea. If you wish to do that, please read the instructions common to all participants and the Summer of Code FAQ. Also, please contact the project leader for your application or module and get the go-ahead from him/her. Then edit the ideas page, adding your idea.&lt;br /&gt;
&lt;br /&gt;
Your idea proposal should be a brief description of what the project is, what the desired goals would be, what the student should know and your email address for contact. Please note, though, that the students are not required to follow your idea to the letter, so regard your proposal as just a suggestion.&lt;br /&gt;
&lt;br /&gt;
===Mentoring===&lt;br /&gt;
If you wish to help us even more, you can be an OWASP mentor. We will potentially assign a student to you who has never worked on such a large project and will need some help. Make sure you're up for the task.&lt;br /&gt;
When subscribing yourself as a mentor, please make sure that your application or module maintainer is aware of that. Ask him/her to send the Summer of Code OWASP Administrators an email confirming to know you. This is just a formality to make sure you are a real person we can trust -- the administrators cannot know all active developers by their Google account ID.&lt;br /&gt;
&lt;br /&gt;
If you would like to get an idea of what is involved in being a good mentor, be sure to read the [http://write.flossmanuals.net/gsoc-mentoring/about-this-manual/ mentoring guide]. &lt;br /&gt;
&lt;br /&gt;
You will be subscribed to a mailing list to discuss ideas. We will also require you to read the proposals as they come in and you will be allowed to vote on the proposals, according to rules we will publish later.&lt;br /&gt;
&lt;br /&gt;
Finally, know that we will never assign you to a project you do not want to work on. We will not assign you more projects than you can/want to take on either. And you will have a backup mentor, just in case something unforeseen takes place.&lt;br /&gt;
&lt;br /&gt;
===Subscribing as mentor===&lt;br /&gt;
To subscribe as mentor, you need to complete a few easy steps.&lt;br /&gt;
* Contact the OWASP GSoC administrators to let them know which project you want to mentor for&lt;br /&gt;
* Log in to [https://summerofcode.withgoogle.com/ Google Summer of Code Program Site]&lt;br /&gt;
* Apply as a mentor for OWASP&lt;br /&gt;
* Subscribe to https://groups.google.com/d/forum/owasp-gsoc&lt;br /&gt;
&lt;br /&gt;
'''The current list of GSOC 2018 Mentors are:'''&lt;br /&gt;
* Fabio Cerullo&lt;br /&gt;
* Kostas Papapanagiotou&lt;br /&gt;
* Spyros Gasteratos&lt;br /&gt;
&lt;br /&gt;
==Instructions for OWASP Project Leaders==&lt;br /&gt;
If you are an OWASP Project Leader, you may be contacted by developers in your project about an idea he wants to submit. &lt;br /&gt;
You should judge whether the idea being proposed coincides with the general goals for your OWASP Project. If you feel that is not the case, you should reply to your developer and suggest that he modify the proposal.&lt;br /&gt;
You do not need yourself to be a mentor, but we would like you to.&lt;br /&gt;
&lt;br /&gt;
==Contact OWASP GSoC Admininstrators==&lt;br /&gt;
To reach the OWASP administrators for Summer of Code, please send an email to the GSOC Administrators below.&lt;br /&gt;
&lt;br /&gt;
'''The GSOC 2018 Administrators are:'''&lt;br /&gt;
&lt;br /&gt;
* Kostas Papapanagiotou (konstantinos@owasp.org)&lt;br /&gt;
* Claudia Casanovas (claudia.aviles-casanovas@owasp.org)&lt;br /&gt;
* Fabio Cerullo (fcerullo@owasp.org)&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GSoC&amp;diff=237234</id>
		<title>GSoC</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GSoC&amp;diff=237234"/>
				<updated>2018-02-02T19:50:46Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: typo&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''OWASP is applying to be a Google Summer of Code (“GSoC”) mentoring organization in 2018!'''&lt;br /&gt;
&lt;br /&gt;
Open source software is changing the world and creating the future.&lt;br /&gt;
&lt;br /&gt;
Want to help shaping it? We’re looking for students to join us in making 2018 the best Summer of Code yet!&lt;br /&gt;
&lt;br /&gt;
&amp;lt;span style=&amp;quot;color:#FF0000&amp;quot;&amp;gt;'''STUDENTS: THE PROPOSAL SUBMISSION PERIOD WILL BE OPEN FROM MARCH 12th thru 27th 2018'''&amp;lt;/span&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|March 12 16:00 UTC&lt;br /&gt;
|Student application period begins&lt;br /&gt;
|-&lt;br /&gt;
|March 27 16:00 UTC&lt;br /&gt;
|Student application deadline&lt;br /&gt;
|}&lt;br /&gt;
[https://summerofcode.withgoogle.com/ '''Google Summer of Code Program Site''']&lt;br /&gt;
* OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted.&lt;br /&gt;
* All students currently enrolled in an accredited institution are welcome to participate in the Google Summer of Code 2018 program, hopefully along with the OWASP Foundation.&lt;br /&gt;
* Below you could find all the instructions on how to participate.&lt;br /&gt;
&lt;br /&gt;
== What is GSOC? ==&lt;br /&gt;
&lt;br /&gt;
The [https://developers.google.com/open-source/gsoc/ Google Summer of Code program] (“GSoC”) is designed to encourage student participation in open source development. Through GSoC, accepted student applicants will be paired with OWASP mentors that will guide them through their coding tasks.&lt;br /&gt;
&lt;br /&gt;
Benefits to students include:&lt;br /&gt;
&lt;br /&gt;
* Gaining exposure to real-world software development scenarios&lt;br /&gt;
* An opportunity for employment in areas related to their academic pursuits and&lt;br /&gt;
* Google will be offering successful student contributors a 5,500 USD stipend,enabling them to focus on their coding projects for three months. &lt;br /&gt;
&lt;br /&gt;
This program is done completely online. Students and mentors from more than 100 countries have participated in past years.&lt;br /&gt;
==Instructions common to all participants==&lt;br /&gt;
&lt;br /&gt;
All participants should take a look at the [https://developers.google.com/open-source/gsoc/faq Google Summer of Code Program Site] every now and then to be informed about updates and advice. It is also important to read the [https://developers.google.com/open-source/gsoc/faq Summer of Code FAQ], as it contains useful information.&lt;br /&gt;
All participants will need a Google account in order to join the program. You'll save some time if you create one now. Please review the [https://developers.google.com/open-source/gsoc/timeline GSOC 2018 TimeLine]&lt;br /&gt;
&lt;br /&gt;
===Programming Language===&lt;br /&gt;
&lt;br /&gt;
While the majority of OWASP tools are developed using C++/Java, we do accept other languages, including (but not limited to) Python, Ruby and C#. C++ will be accepted for any project. Submissions and ideas for projects in any other language should specifically mention the choice.&lt;br /&gt;
&lt;br /&gt;
==Instructions for students==&lt;br /&gt;
&lt;br /&gt;
Are you a student and want to code for an OWASP project? &lt;br /&gt;
Here are the steps and some tips on getting started:&lt;br /&gt;
&lt;br /&gt;
1) Think of a good idea – For reference see&lt;br /&gt;
[https://www.owasp.org/index.php/GSOC2018_Ideas GSOC 2018 Ideas].&lt;br /&gt;
&lt;br /&gt;
2) Do some research yourself based on the idea, write up a proposal draft &lt;br /&gt;
&lt;br /&gt;
3) Post it to the mailing list at [https://groups.google.com/forum/#!forum/owasp-gsoc https://groups.google.com/d/forum/owasp-gsoc] for initial discussions with OWASP mentors.&lt;br /&gt;
&lt;br /&gt;
4) Based on feedback, write a full proposal – See template below:&lt;br /&gt;
https://www.owasp.org/index.php/GSoC_SAT&lt;br /&gt;
&lt;br /&gt;
5) Submit your proposal to Google from March 12th to March 27th 2018.&lt;br /&gt;
&lt;br /&gt;
Students wishing to participate in GSoC must realize this is a formal commitment to produce code for the selected OWASP Project during three months. You will also take some resources from OWASP project leaders, who will dedicate a portion of their time to mentor you. Therefore, we'd like to have candidates who are committed to helping OWASP mission. You don't have to be a proven developer -- in fact, this whole program is meant to facilitate joining OWASP and other Open Source communities. However, experience in coding and applications are welcome.&lt;br /&gt;
&lt;br /&gt;
You should start familiarising yourself with the components that you plan on working on before the start date. OWASP Project Mentors are available on the mailing list https://groups.google.com/d/forum/owasp-gsoc for help. &lt;br /&gt;
&lt;br /&gt;
===General instructions===&lt;br /&gt;
First of all, please read the instructions common to all participants and the [https://developers.google.com/open-source/gsoc/faq GSoC FAQ]. Pay special attention to the '''Eligibility''' section of the FAQ.&lt;br /&gt;
&lt;br /&gt;
===Getting in touch===&lt;br /&gt;
* Google Group: OWASP Organization Administrators and Mentors are available at https://groups.google.com/d/forum/owasp-gsoc ready to answer any questions and discuss any idea.&lt;br /&gt;
* Mailing list: Each project has its own development mailing list (eg. ESAPI: http://lists.owasp.org/pipermail/esapi-dev/). Feel free to subscribe in order to discuss your ideas directly with the project's contributors.&lt;br /&gt;
* IRC channel: You can find us at irc.freenode.net channel #owasp-gsoc&lt;br /&gt;
&lt;br /&gt;
===Recommended steps===&lt;br /&gt;
* Read Google's instructions for participating&lt;br /&gt;
* Take a look at the list of ideas&lt;br /&gt;
* Come up with project that you're interested in&lt;br /&gt;
* Write a first draft proposal and get someone to review it for you&lt;br /&gt;
* Submit it using Google's web interface&lt;br /&gt;
&lt;br /&gt;
Coming up with an interesting idea is probably the most difficult part of all. It should be something interesting for an OWASP Project, and more importantly for you. It also has to be something that you can realistically achieve in the time available to you.&lt;br /&gt;
&lt;br /&gt;
Finding out what the most pressing issues are in the projects you're interested in is a good start. You can optionally join the mailing lists for that project: you can make acquaintance with developers and your potential mentor, as well as start learning the codebase. We recommend strongly doing that and we will look favourably on applications from students who have started to act like Open Source developers.&lt;br /&gt;
&lt;br /&gt;
===Student proposal guidelines===&lt;br /&gt;
A project proposal is what you will be judged upon. So, as a general recommendation, write a clear proposal on what you plan to do, what your project is and what it is not, etc. Several websites now contain hints and other useful information on writing up such proposals.&lt;br /&gt;
OWASP does not require a specific format or specific list of information, but there is an application template on the OWASP page in Google Melange with some specific points that you should address in your application:&lt;br /&gt;
* Who are you? What are you studying?&lt;br /&gt;
* What exactly do you intend to do? What will not be done?&lt;br /&gt;
* Why are you the right person for this task?&lt;br /&gt;
* To what extent are you familiar with the software you're proposing to work with? Have you used it? Have you read the source? Have  you modified the source?&lt;br /&gt;
* How many hours are you going to work on this a week? 10? 20? 30? 40?&lt;br /&gt;
* Do you have other commitments that we should know about? If so, please suggest a way to compensate if it will take much time away from Summer of Code.&lt;br /&gt;
* Are you comfortable working independently under a supervisor or mentor who is several thousand miles away, not to mention 12 time zones away? How will you work with your mentor to track your work? Have you worked in this style before?&lt;br /&gt;
* If your native language is not English, are you comfortable working closely with a supervisor whose native language is English? What is your native language, as that may help us find a mentor who has the same native language?&lt;br /&gt;
* Where do you live, and can we assign a mentor who is local to you so you can meet in a coffee shop for lunch?&lt;br /&gt;
&lt;br /&gt;
After you have written your proposal, you should get it reviewed. Do not rely on the OWASP mentors to do it for you via the web interface: they will only send back a proposal if they find it lacking. Instead, ask a colleague or a developer to do it for you.&lt;br /&gt;
&lt;br /&gt;
===Hints===&lt;br /&gt;
'''Submit your proposal early:''' early submissions get more attention from developers for the simple fact that they have more time to dedicate to reading them. The more people see it, the more it'll get known.&lt;br /&gt;
&lt;br /&gt;
'''Do not leave it all to the last minute:''' while it is Google that is operating the webserver, it would be wise to expect a last-minute overload on the server. So, make sure you send your application before the final rush. Also, note that the applications submitted very late will get the least attention from mentors, so you may get a low vote because of that.&lt;br /&gt;
&lt;br /&gt;
'''Keep it simple:''' we don't need a 10-page essay on the project and on you (Google won't even let you submit a text that long). You just need to be concise and precise.&lt;br /&gt;
&lt;br /&gt;
'''Know what you are talking about:''' the last thing we need is for students to submit ideas that cannot be accomplished realistically or ideas that aren't even remotely related to OWASP Projects. If your idea is unusual, be sure to explain why you have chosen OWASP to be your mentoring organisation.&lt;br /&gt;
&lt;br /&gt;
'''Aim wide:''' submit more than one proposal, to different OWASP Projects. We also recommend submitting to more than one organisation too. This will increase your chances of being chosen.&lt;br /&gt;
&lt;br /&gt;
The PostgreSQL project has also released a list of [http://www.postgresql.org/developer/summerofcodeadvice.html hints] that you can take a look.&lt;br /&gt;
&lt;br /&gt;
==Instructions for mentors==&lt;br /&gt;
===Ideas===&lt;br /&gt;
If you're a developer and you wish to participate in Summer of Code, you can do it in two ways: the first and easiest is to make a proposal in the [https://www.owasp.org/index.php/GSOC2016_Ideas ideas] page. Take a look at what the different OWASP Projects needs or what you feel should have. Feel free to submit ideas even if you cannot elaborate too much on them.&lt;br /&gt;
&lt;br /&gt;
The second possibility is to be a mentor for a more specific idea. If you wish to do that, please read the instructions common to all participants and the Summer of Code FAQ. Also, please contact the project leader for your application or module and get the go-ahead from him/her. Then edit the ideas page, adding your idea.&lt;br /&gt;
&lt;br /&gt;
Your idea proposal should be a brief description of what the project is, what the desired goals would be, what the student should know and your email address for contact. Please note, though, that the students are not required to follow your idea to the letter, so regard your proposal as just a suggestion.&lt;br /&gt;
&lt;br /&gt;
===Mentoring===&lt;br /&gt;
If you wish to help us even more, you can be an OWASP mentor. We will potentially assign a student to you who has never worked on such a large project and will need some help. Make sure you're up for the task.&lt;br /&gt;
When subscribing yourself as a mentor, please make sure that your application or module maintainer is aware of that. Ask him/her to send the Summer of Code OWASP Administrators an email confirming to know you. This is just a formality to make sure you are a real person we can trust -- the administrators cannot know all active developers by their Google account ID.&lt;br /&gt;
&lt;br /&gt;
If you would like to get an idea of what is involved in being a good mentor, be sure to read the [http://write.flossmanuals.net/gsoc-mentoring/about-this-manual/ mentoring guide]. &lt;br /&gt;
&lt;br /&gt;
You will be subscribed to a mailing list to discuss ideas. We will also require you to read the proposals as they come in and you will be allowed to vote on the proposals, according to rules we will publish later.&lt;br /&gt;
&lt;br /&gt;
Finally, know that we will never assign you to a project you do not want to work on. We will not assign you more projects than you can/want to take on either. And you will have a backup mentor, just in case something unforeseen takes place.&lt;br /&gt;
&lt;br /&gt;
===Subscribing as mentor===&lt;br /&gt;
To subscribe as mentor, you need to complete a few easy steps.&lt;br /&gt;
* Contact the OWASP GSoC administrators to let them know which project you want to mentor for&lt;br /&gt;
* Log in to [https://summerofcode.withgoogle.com/ Google Summer of Code Program Site]&lt;br /&gt;
* Apply as a mentor for OWASP&lt;br /&gt;
* Subscribe to https://groups.google.com/d/forum/owasp-gsoc&lt;br /&gt;
&lt;br /&gt;
'''The current list of GSOC 2018 Mentors are:'''&lt;br /&gt;
* Fabio Cerullo&lt;br /&gt;
* Kostas Papapanagiotou&lt;br /&gt;
* Spyros Gasteratos&lt;br /&gt;
&lt;br /&gt;
==Instructions for OWASP Project Leaders==&lt;br /&gt;
If you are an OWASP Project Leader, you may be contacted by developers in your project about an idea he wants to submit. &lt;br /&gt;
You should judge whether the idea being proposed coincides with the general goals for your OWASP Project. If you feel that is not the case, you should reply to your developer and suggest that he modify the proposal.&lt;br /&gt;
You do not need yourself to be a mentor, but we would like you to.&lt;br /&gt;
&lt;br /&gt;
==Contact OWASP GSoC Admininstrators==&lt;br /&gt;
To reach the OWASP administrators for Summer of Code, please send an email to the GSOC Administrators below.&lt;br /&gt;
&lt;br /&gt;
'''The GSOC 2018 Administrators are:'''&lt;br /&gt;
&lt;br /&gt;
* Kostas Papapanagiotou (konstantinos@owasp.org)&lt;br /&gt;
* Claudia Casanovas (claudia.aviles-casanovas@owasp.org)&lt;br /&gt;
* Fabio Cerullo (fcerullo@owasp.org)&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Board_Election_Policy&amp;diff=198106</id>
		<title>Board Election Policy</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Board_Election_Policy&amp;diff=198106"/>
				<updated>2015-07-29T18:35:17Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== '''OWASP International Board Of Directors Election Policy''' ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The OWASP Foundation was established in 2001 as an open community and software security resource. Since then, OWASP has grown to be globally recognized as a credible source for application security standards (see industry citations). Individuals typically find OWASP when searching the internet for information about software security - and they are happy to find a reliable source of knowledge built by an extremely open and passionate community. OWASP is open to anyone. Anyone can attend OWASP's vendor agnostic local chapter meetings, participate in regional and global conferences, and contribute to the many OWASP projects. And anyone can start a new project, form a new chapter, or lend their expertise to help an OWASP Global Committee.&lt;br /&gt;
&lt;br /&gt;
The OWASP Foundation Board of Directors currently consists of seven elected volunteers. These unpaid volunteers dedicate themselves to the organizational mission and playing a pivotal role in the software security community. OWASP conducts democratic elections of its Board Members to enable bottom-up advancement of its mission.&lt;br /&gt;
&lt;br /&gt;
=== About OWASP  ===&lt;br /&gt;
* [https://www.owasp.org/index.php/About_OWASP Learn About OWASP]&lt;br /&gt;
* Read the OWASP Foundation bylaws - [https://www.owasp.org/images/9/92/April2014OWASPFoundationByLaws.pdf Click Here] &lt;br /&gt;
* Review the Monthly Board meetings, voting history and topics - [https://www.owasp.org/index.php/OWASP_Board_Meetings Click Here]&lt;br /&gt;
&lt;br /&gt;
=== '''Potential Election Timeline''' ===&lt;br /&gt;
# Notify current board member(s) who's term is up&amp;lt;br&amp;gt; &lt;br /&gt;
# Call for Candidates Opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Honorary Membership Self Nomination Opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Call For Candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Submission for Questions From the Community for the Candidate Interviews Opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Honorary Membership&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Honorary Membership&amp;lt;br&amp;gt;&lt;br /&gt;
# Honorary Membership Closes&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Call For Candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Call For Candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Deadline for Call for Candidates Closes&amp;lt;br&amp;gt;&lt;br /&gt;
# Deadline for Questions from the community&amp;lt;br&amp;gt;&lt;br /&gt;
# The 4-5 top questions from the community will be selected&amp;lt;br&amp;gt;&lt;br /&gt;
# Verification of candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Candidates announced in OWASP &amp;quot;Special Edition&amp;quot; connector and posted to social media/email&amp;lt;br&amp;gt;&lt;br /&gt;
# Top 4-5 questions are shared with all candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Scheduling of interview recordings &amp;lt;br&amp;gt;&lt;br /&gt;
# Deadline for interview recordings to be completed&amp;lt;br&amp;gt;&lt;br /&gt;
# Recordings posted on the election wiki page&amp;lt;br&amp;gt;&lt;br /&gt;
# Email/Social Media notifying the community the recordings are posted&amp;lt;br&amp;gt;&lt;br /&gt;
# Paid Membership Deadline&amp;lt;br&amp;gt;&lt;br /&gt;
# Voting opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Voting closes&amp;lt;br&amp;gt;&lt;br /&gt;
# Results shared with all candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Results shared via &amp;quot;Special Edition&amp;quot; connector, email and social media&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== '''Global Board of Directors Primary Responsibilities''' ===&lt;br /&gt;
&lt;br /&gt;
Seated members of the Board of Directors attend and contribute to monthly meetings. Additionally, they:&lt;br /&gt;
&lt;br /&gt;
1. Create and review a statement of mission and purpose that articulates the organization's goals, means, and primary constituents served globally. They then support that mission and purpose.&lt;br /&gt;
&lt;br /&gt;
2. Support all employees. The Board should ensure that the employees have the moral and professional support needed to further the goals and performance objectives of the organization.&lt;br /&gt;
&lt;br /&gt;
3. Ensure effective planning. The Board must actively participate in the overall planning process for the organization and assist in implementing and monitoring the organization's goals.&lt;br /&gt;
&lt;br /&gt;
4. Monitor and strengthen programs and services. The Board's responsibility is to determine which programs are consistent with the organization's mission and monitor their effectiveness.&lt;br /&gt;
&lt;br /&gt;
5. Ensure financial integrity of the Foundation. Secure adequate funding resources for the organization to fulfill its mission; protect assets and provide financial oversight following general accepted accounting principles and policies and assist in developing the annual budget and ensuring that proper financial controls are in place.&lt;br /&gt;
&lt;br /&gt;
Additional Responsibilities that the International Board of Directors must adhere to can be found [https://www.owasp.org/index.php/Governance on the Foundation Governance Page]&lt;br /&gt;
&lt;br /&gt;
=== '''Eligibility Requirements for Board Candidates''' ===&lt;br /&gt;
You need to be an OWASP [https://www.owasp.org/index.php/Membership member]. '''NOT''' just paid members, but active [https://www.owasp.org/index.php/Category:OWASP_Project project] and [https://www.owasp.org/index.php/OWASP_Chapter chapter] contributors are eligible. All candidates must be in good standing for a twelve (12) month period of time prior to the '''&amp;lt;&amp;lt;election period commencement date&amp;gt;&amp;gt;'''. Candidates are required to submit a bio, current membership status and a brief description of why you would like to be elected. You will be contacted in early August to schedule a audio interview/podcast. If you are interesting in running for the board then please submit your intention along with the requirements listed above [http://www.tfaforms.com/371459 here]. All submissions will be reviewed and verified by OWASP.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== '''Honorary Membership''' ===&lt;br /&gt;
Who is eligible for Honorary Membership? &lt;br /&gt;
*OWASP Chapter Leaders - The OWASP Chapter MUST be active and your leadership position MUST be on file with the OWASP Foundation prior to the '''&amp;lt;&amp;lt;election period commencement date&amp;gt;&amp;gt;'''.&lt;br /&gt;
*OWASP Project Leaders - The OWASP Project MUST be active and your leadership position MUST be on file with the OWASP Foundation prior to the '''&amp;lt;&amp;lt;election period commencement date&amp;gt;&amp;gt;'''.&lt;br /&gt;
&lt;br /&gt;
'''**NOTE**''' If you are an OWASP leader that does not have a paid individual membership on file, but meets the requirements for Honorary Membership, then you '''MUST APPLY''' for an Honorary Membership in order to vote in this years election. The Honorary Membership request form will be available starting June 1 and will close June 30. All submissions will be reviewed and verified by OWASP.  [http://www.tfaforms.com/371458 '''Submit your Request HERE''']&lt;br /&gt;
&lt;br /&gt;
=== '''Who Can Vote?''' ===&lt;br /&gt;
OWASP paid Individual Members, paid Corporate Members and Honorary Members registered prior to the '''&amp;lt;&amp;lt;election period commencement date&amp;gt;&amp;gt;''' will have (1) vote per set (there are 4 sets up for this election). &lt;br /&gt;
Please check the current [https://docs.google.com/spreadsheets/d/1XW-VxPOz8smjWyk6T8eyK5zw4FB51Q3E4hPuTOdGBtg/edit?usp=sharing Member Directory]. If you are not a member yet, we encourage you to join.  [http://myowasp.force.com/memberappregion Join Now]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== '''How Do I Vote?''' ===&lt;br /&gt;
Eligible voting members will receive an email to their registered email address from owasp@simplyvoting.com with subject &amp;quot;OWASP Board Election&amp;quot;&lt;br /&gt;
This email will have a specific link for you to cast your vote.  Please '''do NOT''' share this link with anyone.  It is a specific link '''JUST FOR YOU'''! &lt;br /&gt;
&lt;br /&gt;
Additionally, eligible voting members will also receive an email from the OWASP Foundation notifying them that their ballot has been sent. In the instance that they did not receive a ballot they will be asked to contact us immediately.&lt;br /&gt;
&lt;br /&gt;
=== '''Have additional questions about the OWASP Membership?''' ===&lt;br /&gt;
*Read the Membership FAQ [https://www.owasp.org/index.php/MEMBERSHIP_FAQ CLICK HERE]&amp;lt;br&amp;gt;&lt;br /&gt;
=== '''Election FAQ''' ===&lt;br /&gt;
If you have a question about the current election please [http://owasp4.owasp.org/contactus.html click here].&lt;br /&gt;
*'''Where can I find communication to the OWASP Community about the upcoming election?'''&lt;br /&gt;
Answer: We will try to publish announcements and key milestone reminders to as many communication channels as possible, including the OWASP Blog, OWASP Connector, OWASP Leader's List and this Wiki Page. Please feel free to help us communicate the message, by re-posting, re-tweeting, or sharing with the OWASP Chapter, Project, or Initiatives you may be involved with.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
=== '''Acknowledgements''' ===&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Board_Election_Policy&amp;diff=198105</id>
		<title>Board Election Policy</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Board_Election_Policy&amp;diff=198105"/>
				<updated>2015-07-29T18:33:33Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== '''OWASP International Board Of Directors Election Policy''' ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
The OWASP Foundation was established in 2001 as an open community and software security resource. Since then, OWASP has grown to be globally recognized as a credible source for application security standards (see industry citations). Individuals typically find OWASP when searching the internet for information about software security - and they are happy to find a reliable source of knowledge built by an extremely open and passionate community. OWASP is open to anyone. Anyone can attend OWASP's vendor agnostic local chapter meetings, participate in regional and global conferences, and contribute to the many OWASP projects. And anyone can start a new project, form a new chapter, or lend their expertise to help an OWASP Global Committee.&lt;br /&gt;
&lt;br /&gt;
The OWASP Foundation Board of Directors currently consists of seven elected volunteers. These unpaid volunteers dedicate themselves to the organizational mission and playing a pivotal role in the software security community. OWASP conducts democratic elections of its Board Members to enable bottom-up advancement of its mission.&lt;br /&gt;
&lt;br /&gt;
=== About OWASP  ===&lt;br /&gt;
* [https://www.owasp.org/index.php/About_OWASP Learn About OWASP]&lt;br /&gt;
* Read the OWASP Foundation bylaws - [https://www.owasp.org/images/9/92/April2014OWASPFoundationByLaws.pdf Click Here] &lt;br /&gt;
* Review the Monthly Board meetings, voting history and topics - [https://www.owasp.org/index.php/OWASP_Board_Meetings Click Here]&lt;br /&gt;
&lt;br /&gt;
=== '''Potential Election Timeline''' ===&lt;br /&gt;
# Notify current board member(s) who's term is up&amp;lt;br&amp;gt; &lt;br /&gt;
# Call for Candidates Opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Honorary Membership Self Nomination Opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Call For Candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Submission for Questions From the Community for the Candidate Interviews Opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Honorary Membership&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Honorary Membership&amp;lt;br&amp;gt;&lt;br /&gt;
# Honorary Membership Closes&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Call For Candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Email Reminder Call For Candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Deadline for Call for Candidates Closes&amp;lt;br&amp;gt;&lt;br /&gt;
# Deadline for Questions from the community&amp;lt;br&amp;gt;&lt;br /&gt;
# The 4-5 top questions from the community will be selected&amp;lt;br&amp;gt;&lt;br /&gt;
# Verification of candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Candidates announced in OWASP &amp;quot;Special Edition&amp;quot; connector and posted to social media/email&amp;lt;br&amp;gt;&lt;br /&gt;
# Top 4-5 questions are shared with all candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Scheduling of interview recordings &amp;lt;br&amp;gt;&lt;br /&gt;
# Deadline for interview recordings to be completed&amp;lt;br&amp;gt;&lt;br /&gt;
# Recordings posted on the election wiki page&amp;lt;br&amp;gt;&lt;br /&gt;
# Email/Social Media notifying the community the recordings are posted&amp;lt;br&amp;gt;&lt;br /&gt;
# Paid Membership Deadline&amp;lt;br&amp;gt;&lt;br /&gt;
# Voting opens&amp;lt;br&amp;gt;&lt;br /&gt;
# Voting closes&amp;lt;br&amp;gt;&lt;br /&gt;
# Results shared with all candidates&amp;lt;br&amp;gt;&lt;br /&gt;
# Results shared via &amp;quot;Special Edition&amp;quot; connector, email and social media&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== '''Global Board of Directors Primary Responsibilities''' ===&lt;br /&gt;
&lt;br /&gt;
Seated members of the Board of Directors attend and contribute to monthly meetings. Additionally, they:&lt;br /&gt;
&lt;br /&gt;
1. Create and review a statement of mission and purpose that articulates the organization's goals, means, and primary constituents served globally. They then support that mission and purpose.&lt;br /&gt;
&lt;br /&gt;
2. Support all employees. The Board should ensure that the employees have the moral and professional support needed to further the goals and performance objectives of the organization.&lt;br /&gt;
&lt;br /&gt;
3. Ensure effective planning. The Board must actively participate in the overall planning process for the organization and assist in implementing and monitoring the organization's goals.&lt;br /&gt;
&lt;br /&gt;
4. Monitor and strengthen programs and services. The Board's responsibility is to determine which programs are consistent with the organization's mission and monitor their effectiveness.&lt;br /&gt;
&lt;br /&gt;
5. Ensure financial integrity of the Foundation. Secure adequate funding resources for the organization to fulfill its mission; protect assets and provide financial oversight following general accepted accounting principles and policies and assist in developing the annual budget and ensuring that proper financial controls are in place.&lt;br /&gt;
&lt;br /&gt;
Additional Responsibilities that the International Board of Directors must adhere to can be found [https://www.owasp.org/index.php/Governance on the Foundation Governance Page]&lt;br /&gt;
&lt;br /&gt;
=== '''Eligibility Requirements for Board Candidates''' ===&lt;br /&gt;
You need to be an OWASP [https://www.owasp.org/index.php/Membership member]. '''NOT''' just paid members, but active [https://www.owasp.org/index.php/Category:OWASP_Project project] and [https://www.owasp.org/index.php/OWASP_Chapter chapter] contributors are eligible. All candidates must be in good standing for a twelve (12) month period of time prior to the election period commencement date. Candidates are required to submit a bio, current membership status and a brief description of why you would like to be elected. You will be contacted in early August to schedule a audio interview/podcast. If you are interesting in running for the board then please submit your intention along with the requirements listed above [http://www.tfaforms.com/371459 here]. All submissions will be reviewed and verified by OWASP.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== '''Honorary Membership''' ===&lt;br /&gt;
Who is eligible for Honorary Membership? &lt;br /&gt;
*OWASP Chapter Leaders - The OWASP Chapter MUST be active and your leadership position MUST be on file with the OWASP Foundation prior to the election period commencement date.&lt;br /&gt;
*OWASP Project Leaders - The OWASP Project MUST be active and your leadership position MUST be on file with the OWASP Foundation prior to the election period commencement date.&lt;br /&gt;
&lt;br /&gt;
'''**NOTE**''' If you are an OWASP leader that does not have a paid individual membership on file, but meets the requirements for Honorary Membership, then you '''MUST APPLY''' for an Honorary Membership in order to vote in this years election. The Honorary Membership request form will be available starting June 1 and will close June 30. All submissions will be reviewed and verified by OWASP.  [http://www.tfaforms.com/371458 '''Submit your Request HERE''']&lt;br /&gt;
&lt;br /&gt;
=== '''Who Can Vote?''' ===&lt;br /&gt;
OWASP paid Individual Members, paid Corporate Members and Honorary Members registered prior to the election period commencement date will have (1) vote per set (there are 4 sets up for this election). &lt;br /&gt;
Please check the current [https://docs.google.com/spreadsheets/d/1XW-VxPOz8smjWyk6T8eyK5zw4FB51Q3E4hPuTOdGBtg/edit?usp=sharing Member Directory]. If you are not a member yet, we encourage you to join.  [http://myowasp.force.com/memberappregion Join Now]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== '''How Do I Vote?''' ===&lt;br /&gt;
Eligible voting members will receive an email to their registered email address from owasp@simplyvoting.com with subject &amp;quot;OWASP Board Election&amp;quot;&lt;br /&gt;
This email will have a specific link for you to cast your vote.  Please '''do NOT''' share this link with anyone.  It is a specific link '''JUST FOR YOU'''! &lt;br /&gt;
&lt;br /&gt;
Additionally, eligible voting members will also receive an email from the OWASP Foundation notifying them that their ballot has been sent. In the instance that they did not receive a ballot they will be asked to contact us immediately.&lt;br /&gt;
&lt;br /&gt;
=== '''Have additional questions about the OWASP Membership?''' ===&lt;br /&gt;
*Read the Membership FAQ [https://www.owasp.org/index.php/MEMBERSHIP_FAQ CLICK HERE]&amp;lt;br&amp;gt;&lt;br /&gt;
=== '''Election FAQ''' ===&lt;br /&gt;
If you have a question about the current election please [http://owasp4.owasp.org/contactus.html click here].&lt;br /&gt;
*'''Where can I find communication to the OWASP Community about the upcoming election?'''&lt;br /&gt;
Answer: We will try to publish announcements and key milestone reminders to as many communication channels as possible, including the OWASP Blog, OWASP Connector, OWASP Leader's List and this Wiki Page. Please feel free to help us communicate the message, by re-posting, re-tweeting, or sharing with the OWASP Chapter, Project, or Initiatives you may be involved with.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
=== '''Acknowledgements''' ===&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196544</id>
		<title>Owasp.org email address</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196544"/>
				<updated>2015-06-24T10:09:46Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Request an OWASP.org email account'''&lt;br /&gt;
&lt;br /&gt;
Paid members, project leaders and chapter leaders can get a @OWASP.ORG email address. That way, if you desire to collaborate with peers globally, you do not have to use your company/personal email address if you do not want to.&lt;br /&gt;
&lt;br /&gt;
[http://sl.owasp.org/contactus Submit a request.]&lt;br /&gt;
&lt;br /&gt;
[[newmembership|Return to membership overview.]]&lt;br /&gt;
&lt;br /&gt;
'''Terms of Use'''&lt;br /&gt;
&lt;br /&gt;
By accessing or using the OWASP.org email services, you agree to act responsibly, exercise good judgment, adhere to the [https://www.owasp.org/index.php/About_OWASP#Code_of_Ethics OWASP Code of Ethics] and comply with the following:&lt;br /&gt;
&lt;br /&gt;
(a) Do not use your OWASP.org email address in connection with the distribution of spam (which we define as unsolicited bulk e-mail or any other unsolicited messages of a commercial, religious, romantic or political nature);&lt;br /&gt;
&lt;br /&gt;
(b) Do not use your OWASP.org email address for any commercial purpose whatsoever, including but not limited to:&amp;lt;br&amp;gt;&lt;br /&gt;
- Unsolicited advertising of services, products and goods.&amp;lt;br&amp;gt;&lt;br /&gt;
- Posting of job offers or volunteer opportunities for one’s business.&amp;lt;br&amp;gt;&lt;br /&gt;
- Any commercial content that benefits the content author (such as signatures with company details, logos, etc).&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Signature Format'''&lt;br /&gt;
&lt;br /&gt;
We strongly encourage OWASP leaders to promote their projects, chapters, conferences, etc in their OWASP.org email signatures. Here is a suggested signature format template:&lt;br /&gt;
&lt;br /&gt;
Joe Doe&amp;lt;br&amp;gt;&lt;br /&gt;
OWASP Awesome Project Leader&amp;lt;br&amp;gt;&lt;br /&gt;
https://www.owasp.org/awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
Follow us @awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
If you have any questions, please don’t hesitate to [http://sl.owasp.org/contactus contact us].&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196543</id>
		<title>Owasp.org email address</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196543"/>
				<updated>2015-06-24T10:09:26Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Request an OWASP.org email account'''&lt;br /&gt;
&lt;br /&gt;
Paid members, project leaders and chapter leaders can get a @OWASP.ORG email address. That way, if you desire to collaborate with peers globally, you do not have to use your company/personal email address if you do not want to.&lt;br /&gt;
&lt;br /&gt;
[http://sl.owasp.org/contactus Submit a request.]&lt;br /&gt;
&lt;br /&gt;
[[newmembership|Return to membership overview.]]&lt;br /&gt;
&lt;br /&gt;
'''Terms of Use'''&lt;br /&gt;
&lt;br /&gt;
By accessing or using the OWASP.org email services, you agree to act responsibly, exercise good judgment, adhere to the [https://www.owasp.org/index.php/About_OWASP#Code_of_Ethics OWASP Code of Ethics] and comply with the following:&lt;br /&gt;
&lt;br /&gt;
(a) Do not use your OWASP.org email address in connection with the distribution of spam (which we define as unsolicited bulk e-mail or any other unsolicited messages of a commercial, religious, romantic or political nature);&lt;br /&gt;
&lt;br /&gt;
(b) Do not use your OWASP.org email address for any commercial purpose whatsoever, including but not limited to:&amp;lt;br&amp;gt;&lt;br /&gt;
Unsolicited advertising of services, products and goods.&amp;lt;br&amp;gt;&lt;br /&gt;
Posting of job offers or volunteer opportunities for one’s business.&amp;lt;br&amp;gt;&lt;br /&gt;
Any commercial content that benefits the content author (such as signatures with company details, logos, etc).&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Signature Format'''&lt;br /&gt;
&lt;br /&gt;
We strongly encourage OWASP leaders to promote their projects, chapters, conferences, etc in their OWASP.org email signatures. Here is a suggested signature format template:&lt;br /&gt;
&lt;br /&gt;
Joe Doe&amp;lt;br&amp;gt;&lt;br /&gt;
OWASP Awesome Project Leader&amp;lt;br&amp;gt;&lt;br /&gt;
https://www.owasp.org/awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
Follow us @awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
If you have any questions, please don’t hesitate to [http://sl.owasp.org/contactus contact us].&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196542</id>
		<title>Owasp.org email address</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196542"/>
				<updated>2015-06-24T10:08:47Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Request an OWASP.org email account'''&lt;br /&gt;
&lt;br /&gt;
Paid members, project leaders and chapter leaders can get a @OWASP.ORG email address. That way, if you desire to collaborate with peers globally, you do not have to use your company/personal email address if you do not want to.&lt;br /&gt;
&lt;br /&gt;
[http://sl.owasp.org/contactus Submit a request.]&lt;br /&gt;
&lt;br /&gt;
[[newmembership|Return to membership overview.]]&lt;br /&gt;
&lt;br /&gt;
'''Terms of Use'''&lt;br /&gt;
&lt;br /&gt;
By accessing or using the OWASP.org email services, you agree to act responsibly, exercise good judgment, adhere to the [https://www.owasp.org/index.php/About_OWASP#Code_of_Ethics OWASP Code of Ethics] and comply with the following:&lt;br /&gt;
&lt;br /&gt;
(a) Do not use your OWASP.org email address in connection with the distribution of spam (which we define as unsolicited bulk e-mail or any other unsolicited messages of a commercial, religious, romantic or political nature);&lt;br /&gt;
&lt;br /&gt;
(b) Do not use your OWASP.org email address for any commercial purpose whatsoever, including but not limited to:&lt;br /&gt;
Unsolicited advertising of services, products and goods&lt;br /&gt;
Posting of job offers or volunteer opportunities for one’s business.&lt;br /&gt;
Any commercial content that benefits the content author (such as signatures with company details, logos, etc).&lt;br /&gt;
&lt;br /&gt;
'''Signature Format'''&lt;br /&gt;
&lt;br /&gt;
We strongly encourage OWASP leaders to promote their projects, chapters, conferences, etc in their OWASP.org email signatures. Here is a suggested signature format template:&lt;br /&gt;
&lt;br /&gt;
Joe Doe&amp;lt;br&amp;gt;&lt;br /&gt;
OWASP Awesome Project Leader&amp;lt;br&amp;gt;&lt;br /&gt;
https://www.owasp.org/awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
Follow us @awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
If you have any questions, please don’t hesitate to [http://sl.owasp.org/contactus contact us].&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196541</id>
		<title>Owasp.org email address</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196541"/>
				<updated>2015-06-24T10:08:26Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''Request an OWASP.org email account'''&lt;br /&gt;
&lt;br /&gt;
Paid members, project leaders and chapter leaders can get a @OWASP.ORG email address. That way, if you desire to collaborate with peers globally, you do not have to use your company/personal email address if you do not want to.&lt;br /&gt;
&lt;br /&gt;
[http://sl.owasp.org/contactus Submit a request.]&lt;br /&gt;
&lt;br /&gt;
[[newmembership|Return to membership overview.]]&lt;br /&gt;
&lt;br /&gt;
'''Terms of Use'''&lt;br /&gt;
&lt;br /&gt;
By accessing or using the OWASP.org email services, you agree to act responsibly, exercise good judgment, adhere to the [https://www.owasp.org/index.php/About_OWASP#Code_of_Ethics OWASP Code of Ethics] and comply with the following:&lt;br /&gt;
&lt;br /&gt;
(a) Do not use your OWASP.org email address in connection with the distribution of spam (which we define as unsolicited bulk e-mail or any other unsolicited messages of a commercial, religious, romantic or political nature);&lt;br /&gt;
&lt;br /&gt;
(b) Do not use your OWASP.org email address for any commercial purpose whatsoever, including but not limited to:&lt;br /&gt;
Unsolicited advertising of services, products and goods&lt;br /&gt;
Posting of job offers or volunteer opportunities for one’s business.&lt;br /&gt;
Any commercial content that benefits the content author (such as signatures with company details, logos, etc).&lt;br /&gt;
&lt;br /&gt;
'''Signature Format'''&lt;br /&gt;
&lt;br /&gt;
We strongly encourage OWASP leaders to promote their projects, chapters, conferences, etc in their OWASP.org email signatures. Here is a suggested signature format template:&lt;br /&gt;
&lt;br /&gt;
Joe Doe&amp;lt;br&amp;gt;&lt;br /&gt;
OWASP Awesome Project Leader&amp;lt;br&amp;gt;&lt;br /&gt;
https://www.owasp.org/awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
Follow us @awesomeproject&amp;lt;br&amp;gt;&lt;br /&gt;
If you have any questions, please don’t hesitate to [http://sl.owasp.org/contactus contact us].&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196540</id>
		<title>Owasp.org email address</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196540"/>
				<updated>2015-06-24T10:07:14Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''OWASP.org email address'''&lt;br /&gt;
&lt;br /&gt;
Paid members, project leaders and chapter leaders can get a @OWASP.ORG email address. That way, if you desire to collaborate with peers globally, you do not have to use your company/personal email address if you do not want to.&lt;br /&gt;
&lt;br /&gt;
[http://sl.owasp.org/contactus Submit a request.]&lt;br /&gt;
&lt;br /&gt;
[[newmembership|Return to membership overview.]]&lt;br /&gt;
&lt;br /&gt;
'''Terms of Use'''&lt;br /&gt;
&lt;br /&gt;
By accessing or using the OWASP.org email services, you agree to act responsibly, exercise good judgment, adhere to the [https://www.owasp.org/index.php/About_OWASP#Code_of_Ethics OWASP Code of Ethics] and comply with the following:&lt;br /&gt;
&lt;br /&gt;
(a) Do not use your OWASP.org email address in connection with the distribution of spam (which we define as unsolicited bulk e-mail or any other unsolicited messages of a commercial, religious, romantic or political nature);&lt;br /&gt;
&lt;br /&gt;
(b) Do not use your OWASP.org email address for any commercial purpose whatsoever, including but not limited to:&lt;br /&gt;
Unsolicited advertising of services, products and goods&lt;br /&gt;
Posting of job offers or volunteer opportunities for one’s business.&lt;br /&gt;
Any commercial content that benefits the content author (such as signatures with company details, logos, etc).&lt;br /&gt;
&lt;br /&gt;
'''Signature Format'''&lt;br /&gt;
&lt;br /&gt;
We strongly encourage OWASP leaders to promote their projects, chapters, conferences, etc in their OWASP.org email signatures. Here is a suggested signature format template:&lt;br /&gt;
&lt;br /&gt;
Joe Doe&lt;br /&gt;
OWASP Awesome Project Leader&lt;br /&gt;
https://www.owasp.org/awesomeproject&lt;br /&gt;
Follow us @awesomeproject&lt;br /&gt;
If you have any questions, please don’t hesitate to [http://sl.owasp.org/contactus contact us].&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196539</id>
		<title>Owasp.org email address</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Owasp.org_email_address&amp;diff=196539"/>
				<updated>2015-06-24T10:06:30Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''OWASP.org email address'''&lt;br /&gt;
&lt;br /&gt;
Paid members, project leaders and chapter leaders can get a @OWASP.ORG email address. That way, if you desire to collaborate with peers globally, you do not have to use your company/personal email address if you do not want to.&lt;br /&gt;
&lt;br /&gt;
[http://sl.owasp.org/contactus Submit a request.]&lt;br /&gt;
&lt;br /&gt;
[[newmembership|Return to membership overview.]]&lt;br /&gt;
&lt;br /&gt;
'''Terms of Use'''&lt;br /&gt;
&lt;br /&gt;
By accessing or using the OWASP.org email services, you agree to act responsibly, exercise good judgment, adhere to the [https://www.owasp.org/index.php/About_OWASP#Code_of_Ethics OWASP Code of Ethics] and comply with the following:&lt;br /&gt;
&lt;br /&gt;
(a) Do not use your OWASP.org email address in connection with the distribution of spam (which we define as unsolicited bulk e-mail or any other unsolicited messages of a commercial, religious, romantic or political nature);&lt;br /&gt;
&lt;br /&gt;
(b) Do not use your OWASP.org email address for any commercial purpose whatsoever, including but not limited to:&lt;br /&gt;
Unsolicited advertising of services, products and goods&lt;br /&gt;
Posting of job offers or volunteer opportunities for one’s business.&lt;br /&gt;
Any commercial content that benefits the content author (such as signatures with company details, logos, etc).&lt;br /&gt;
&lt;br /&gt;
'''Signature Format'''&lt;br /&gt;
&lt;br /&gt;
We strongly encourage OWASP leaders to promote their projects, chapters, conferences, etc in their OWASP.org email signatures. Here is a suggested signature format template:&lt;br /&gt;
&lt;br /&gt;
Joe Doe&lt;br /&gt;
OWASP Awesome Project Leader&lt;br /&gt;
[https://www.owasp.org/awesomeproject https://www.owasp.org/awesomeproject]&lt;br /&gt;
Follow us @awesomeproject&lt;br /&gt;
If you have any questions, please don’t hesitate to [http://sl.owasp.org/contactus contact us].&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=June_24,_2015&amp;diff=196483</id>
		<title>June 24, 2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=June_24,_2015&amp;diff=196483"/>
				<updated>2015-06-22T18:28:10Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Old Business */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Dial In Info==&lt;br /&gt;
===Notice of Recording===&lt;br /&gt;
* Notice to all attendees - board meetings are recorded and publicly available as of March, 2013&lt;br /&gt;
* Joining the call acknowledges your awareness of recording and consent to be recorded and public dissemination of the recording.&lt;br /&gt;
*[link:addme Meeting Recording]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Time===&lt;br /&gt;
14:00-15:00 PDT&lt;br /&gt;
&lt;br /&gt;
===Location===   &lt;br /&gt;
&lt;br /&gt;
'''Teleconference Information:'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Attendance Tracker===&lt;br /&gt;
'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0ApZ9zE0hx0LNdG5uRzNYZE8ycDFabnBWNkU4SFpwREE Board Meeting Attendance Tracker]'''&lt;br /&gt;
&lt;br /&gt;
=== Meeting Minutes===&lt;br /&gt;
[link:addme Meeting Minutes]&lt;br /&gt;
&lt;br /&gt;
= Reading Material  =&lt;br /&gt;
'''''It is a requirement as a board member to fully read all material prior to the start of the meeting'''''&lt;br /&gt;
&lt;br /&gt;
* [https://docs.google.com/document/d/1RnVbx6DXX3tGcFWlrSxyn8NDKPQEYbTcACJR0oCuyaI/edit#heading=h.rye1xpr37ksy|OWASP By Laws v7]&lt;br /&gt;
&lt;br /&gt;
* [https://docs.google.com/a/owasp.org/document/d/1d6c5LqjN-qSQjWfMQdqaYaQz2dBVTNssBSLCSKAgusY/edit?usp=sharing On-Demand Training Proposal]&lt;br /&gt;
&lt;br /&gt;
= Meeting Agenda =&lt;br /&gt;
== Call to Order /OWASP Mission ==&lt;br /&gt;
*Administrative (List of attendees and Agenda bashing (only if last-minute changes to the agenda are needed) (5 min)&lt;br /&gt;
&lt;br /&gt;
== Reports ==&lt;br /&gt;
=== Chairmain's Report - Tobias Gondrom ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Vice Chairmain's Report - Josh Sokol ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Treasurer Report - Fabio Cerullo ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Secretary Report - Matt Konda  ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Updates from Members at Large - Michael Coates, Andrew van der Stock &amp;amp; Jim Manico ===&lt;br /&gt;
&lt;br /&gt;
* Andrew van der Stock - Education strategic goal update.&lt;br /&gt;
&lt;br /&gt;
==Reports==&lt;br /&gt;
* Executive Director/Operations Update - [link:addme Rollup Report P.Ritchie]&lt;br /&gt;
** Financial Update - [link:addme Monthly &amp;amp; YTD Financials]&lt;br /&gt;
** Director Update - Kate Hartmann - [link:addme Kate Hartmann Update]&lt;br /&gt;
** Project Manager Update - [link:addme  Project Manager Report]&lt;br /&gt;
** Membership Update - [https://www.owasp.org/index.php/May_2015_Membership_Report Membership Report]&lt;br /&gt;
** IT Update - [link:addme Matt Tesauro Report]&lt;br /&gt;
&lt;br /&gt;
=== Community Initiative Reports  ===&lt;br /&gt;
*&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
==Old Business==&lt;br /&gt;
All active board proposals are listed [https://drive.google.com/folderview?id=0BxSfMVkfLvslVXdvUFV3NkxucWc&amp;amp;usp=sharing here]&lt;br /&gt;
* Bylaws (pre-reading material: [https://docs.google.com/document/d/1RnVbx6DXX3tGcFWlrSxyn8NDKPQEYbTcACJR0oCuyaI/edit#heading=h.rye1xpr37ksy|OWASP By Laws v7])&lt;br /&gt;
&lt;br /&gt;
Discuss revised by laws, approve, reword or reject changes to bring our by laws into good standing before the election. &lt;br /&gt;
&lt;br /&gt;
* Fund ring fencing &lt;br /&gt;
&lt;br /&gt;
Discuss how we ensure that all of our strategic goals are properly funded, and ensure that the Foundation doesn't need to borrow when we have funds on hand. Chapters have 71% of OWASP's funds ring fenced. Let's discuss how we deliver all of OWASP's strategic goals, and improve our admin cost overhead ratio.&lt;br /&gt;
&lt;br /&gt;
* On Demand Training (pre-reading material link above)&lt;br /&gt;
&lt;br /&gt;
At OWASP we are frequently receiving requests from companies looking for training related to application security. This is an area of expertise that plenty of individuals in our Community could fulfil. This growing demand for training is aligned with OWASP Strategic Goals and will become a much needed revenue stream for the Foundation that is not conference driven. Discuss revised proposal for OWASP to deliver/organise trainings.&lt;br /&gt;
&lt;br /&gt;
==New Business==&lt;br /&gt;
All active board proposals are listed [https://drive.google.com/folderview?id=0BxSfMVkfLvslVXdvUFV3NkxucWc&amp;amp;usp=sharing here]&lt;br /&gt;
* [Tobias] - reopen communication with RSA to explore potential opportunities for OWASP outreach. &lt;br /&gt;
** [discussion topic]&lt;br /&gt;
* [Matt] - hire a technical editor for a few months. &lt;br /&gt;
** [discussion topic]&lt;br /&gt;
* [Jim] - Making public statements on crypto&lt;br /&gt;
** &amp;quot;Even though 501c3 organizations *can* do some lobbying (as long as expenditures are not substantial), the IAB is careful not to talk about legislation or urge anyone to contact representatives about legislation.&amp;quot; - Jeff Willams&lt;br /&gt;
* [Josh] - Funding request for Project Summit at AppSecUSA 2015&lt;br /&gt;
** http://lists.owasp.org/pipermail/owasp-leaders/2015-June/014359.html&lt;br /&gt;
** $10,000 requested&lt;br /&gt;
&lt;br /&gt;
== Action Items==&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
==Announcements==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Adjournment==&lt;br /&gt;
*Next meeting date/time: &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Motion to close meeting==&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=June_24,_2015&amp;diff=196482</id>
		<title>June 24, 2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=June_24,_2015&amp;diff=196482"/>
				<updated>2015-06-22T18:25:00Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Dial In Info==&lt;br /&gt;
===Notice of Recording===&lt;br /&gt;
* Notice to all attendees - board meetings are recorded and publicly available as of March, 2013&lt;br /&gt;
* Joining the call acknowledges your awareness of recording and consent to be recorded and public dissemination of the recording.&lt;br /&gt;
*[link:addme Meeting Recording]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Time===&lt;br /&gt;
14:00-15:00 PDT&lt;br /&gt;
&lt;br /&gt;
===Location===   &lt;br /&gt;
&lt;br /&gt;
'''Teleconference Information:'''&lt;br /&gt;
&lt;br /&gt;
https://www3.gotomeeting.com/join/861328838&lt;br /&gt;
&lt;br /&gt;
[[International Toll Free Calling Information]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Attendance Tracker===&lt;br /&gt;
'''[https://docs.google.com/a/owasp.org/spreadsheet/ccc?key=0ApZ9zE0hx0LNdG5uRzNYZE8ycDFabnBWNkU4SFpwREE Board Meeting Attendance Tracker]'''&lt;br /&gt;
&lt;br /&gt;
=== Meeting Minutes===&lt;br /&gt;
[link:addme Meeting Minutes]&lt;br /&gt;
&lt;br /&gt;
= Reading Material  =&lt;br /&gt;
'''''It is a requirement as a board member to fully read all material prior to the start of the meeting'''''&lt;br /&gt;
&lt;br /&gt;
* [https://docs.google.com/document/d/1RnVbx6DXX3tGcFWlrSxyn8NDKPQEYbTcACJR0oCuyaI/edit#heading=h.rye1xpr37ksy|OWASP By Laws v7]&lt;br /&gt;
&lt;br /&gt;
* [https://docs.google.com/a/owasp.org/document/d/1d6c5LqjN-qSQjWfMQdqaYaQz2dBVTNssBSLCSKAgusY/edit?usp=sharing On-Demand Training Proposal]&lt;br /&gt;
&lt;br /&gt;
= Meeting Agenda =&lt;br /&gt;
== Call to Order /OWASP Mission ==&lt;br /&gt;
*Administrative (List of attendees and Agenda bashing (only if last-minute changes to the agenda are needed) (5 min)&lt;br /&gt;
&lt;br /&gt;
== Reports ==&lt;br /&gt;
=== Chairmain's Report - Tobias Gondrom ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Vice Chairmain's Report - Josh Sokol ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Treasurer Report - Fabio Cerullo ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Secretary Report - Matt Konda  ===&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
=== Updates from Members at Large - Michael Coates, Andrew van der Stock &amp;amp; Jim Manico ===&lt;br /&gt;
&lt;br /&gt;
* Andrew van der Stock - Education strategic goal update.&lt;br /&gt;
&lt;br /&gt;
==Reports==&lt;br /&gt;
* Executive Director/Operations Update - [link:addme Rollup Report P.Ritchie]&lt;br /&gt;
** Financial Update - [link:addme Monthly &amp;amp; YTD Financials]&lt;br /&gt;
** Director Update - Kate Hartmann - [link:addme Kate Hartmann Update]&lt;br /&gt;
** Project Manager Update - [link:addme  Project Manager Report]&lt;br /&gt;
** Membership Update - [https://www.owasp.org/index.php/May_2015_Membership_Report Membership Report]&lt;br /&gt;
** IT Update - [link:addme Matt Tesauro Report]&lt;br /&gt;
&lt;br /&gt;
=== Community Initiative Reports  ===&lt;br /&gt;
*&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
==Old Business==&lt;br /&gt;
All active board proposals are listed [https://drive.google.com/folderview?id=0BxSfMVkfLvslVXdvUFV3NkxucWc&amp;amp;usp=sharing here]&lt;br /&gt;
* Bylaws (pre-reading material: [https://docs.google.com/document/d/1RnVbx6DXX3tGcFWlrSxyn8NDKPQEYbTcACJR0oCuyaI/edit#heading=h.rye1xpr37ksy|OWASP By Laws v7])&lt;br /&gt;
&lt;br /&gt;
Discuss revised by laws, approve, reword or reject changes to bring our by laws into good standing before the election. &lt;br /&gt;
&lt;br /&gt;
* Fund ring fencing &lt;br /&gt;
&lt;br /&gt;
Discuss how we ensure that all of our strategic goals are properly funded, and ensure that the Foundation doesn't need to borrow when we have funds on hand. Chapters have 71% of OWASP's funds ring fenced. Let's discuss how we deliver all of OWASP's strategic goals, and improve our admin cost overhead ratio.&lt;br /&gt;
&lt;br /&gt;
* On Demand Training (pre-reading material link above)&lt;br /&gt;
&lt;br /&gt;
Discuss revised proposal to provide training and generate revenue for the OWASP Foundation and Local Chapters.&lt;br /&gt;
&lt;br /&gt;
==New Business==&lt;br /&gt;
All active board proposals are listed [https://drive.google.com/folderview?id=0BxSfMVkfLvslVXdvUFV3NkxucWc&amp;amp;usp=sharing here]&lt;br /&gt;
* [Tobias] - reopen communication with RSA to explore potential opportunities for OWASP outreach. &lt;br /&gt;
** [discussion topic]&lt;br /&gt;
* [Matt] - hire a technical editor for a few months. &lt;br /&gt;
** [discussion topic]&lt;br /&gt;
* [Jim] - Making public statements on crypto&lt;br /&gt;
** &amp;quot;Even though 501c3 organizations *can* do some lobbying (as long as expenditures are not substantial), the IAB is careful not to talk about legislation or urge anyone to contact representatives about legislation.&amp;quot; - Jeff Willams&lt;br /&gt;
* [Josh] - Funding request for Project Summit at AppSecUSA 2015&lt;br /&gt;
** http://lists.owasp.org/pipermail/owasp-leaders/2015-June/014359.html&lt;br /&gt;
** $10,000 requested&lt;br /&gt;
&lt;br /&gt;
== Action Items==&lt;br /&gt;
*&lt;br /&gt;
&lt;br /&gt;
==Announcements==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Adjournment==&lt;br /&gt;
*Next meeting date/time: &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Motion to close meeting==&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summer_Code_Sprint2015&amp;diff=196279</id>
		<title>Summer Code Sprint2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summer_Code_Sprint2015&amp;diff=196279"/>
				<updated>2015-06-17T15:36:55Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Mailing List */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP Summer Code Sprint 2015 ==&lt;br /&gt;
&lt;br /&gt;
== Goal == &lt;br /&gt;
&lt;br /&gt;
The OWASP Summer Code Sprint 2015 is a program that aims to provide incentives to students to contribute to OWASP projects. By participating in the OWASP Summer Code Sprint a student can get real life experience while contributing to an open source project. A student that successfully completes the program will receive in total $1500.&lt;br /&gt;
&lt;br /&gt;
== Program details ==&lt;br /&gt;
&lt;br /&gt;
''Projects that are eligible:'' All code/tools projects. Documentation projects are excluded.&lt;br /&gt;
&lt;br /&gt;
''Duration:'' 2 months of full-time engagement.&lt;br /&gt;
&lt;br /&gt;
== How it works ==&lt;br /&gt;
&lt;br /&gt;
Any code/tool project can participate in the OWASP Summer Code Sprint. Each project will be guided by an OWASP mentor. Students are evaluated in the middle and at the end of the coding period, based on success criteria identified at the beginning of the project. Successful students will receive $750 after each evaluation, a total of $1500 per student.&lt;br /&gt;
&lt;br /&gt;
Projects are focused on developing security tools. It is required that the code any student produces for those projects will be released as Open Source. &lt;br /&gt;
&lt;br /&gt;
Note on language: English is required for code comments and documentation, but not for interactions between students and advisers. Advisers who speak the same language as their students are encouraged to interact in that language. &lt;br /&gt;
&lt;br /&gt;
== How you can participate ==&lt;br /&gt;
&lt;br /&gt;
=== As a student: ===&lt;br /&gt;
&lt;br /&gt;
1. Review the list of OWASP Projects currently participating in the OWASP Summer Code Sprint 2015.&lt;br /&gt;
&lt;br /&gt;
2. Get in touch with the OWASP Project mentor of your choice.&lt;br /&gt;
&lt;br /&gt;
3. Agree deliverables with OWASP mentor. &lt;br /&gt;
&lt;br /&gt;
4. Work away during Summer 2015.&lt;br /&gt;
&lt;br /&gt;
5. Rise to Open Source Development Glory :-)&lt;br /&gt;
&lt;br /&gt;
ALL STUDENTS PLEASE APPLY HERE &amp;gt;&amp;gt; [http://goo.gl/forms/jUFTcXVDEY FORM]&lt;br /&gt;
&lt;br /&gt;
=== As an OWASP Project Leader: ===&lt;br /&gt;
&lt;br /&gt;
1. Edit this page adding your project and some proposed tasks as per the examples&lt;br /&gt;
&lt;br /&gt;
2. Promote the initiative to your academic contacts&lt;br /&gt;
&lt;br /&gt;
== Timeplan ==&lt;br /&gt;
&lt;br /&gt;
'''Phase 1: Proposals'''&lt;br /&gt;
&lt;br /&gt;
Project leaders who want to include their project to the program should submit some initial proposal ideas on this page. These ideas serve as guidance to the students; they are things that project leaders would like to get done, like new features, improvements, etc.&lt;br /&gt;
&lt;br /&gt;
Subsequently students are invited to submit detailed proposals that can (but do not necessarily have to) be based on these ideas. Students are strongly encouraged to engage with project leaders and each project's community (e.g. through the project's mailing list) in order to discuss the details of their proposal. Proposals should provide details about the implementation, time plan, milestones, etc.&lt;br /&gt;
&lt;br /&gt;
'''Phase 2: Scoring of proposals'''&lt;br /&gt;
&lt;br /&gt;
After the submission of proposals, project leaders and contributors/mentors are required to review the submitted proposals and score them (on a 1 to 5 scale). Each proposal should receive at least 3 assessments/scores from different mentors. Each mentor, contributor or leader can score only proposals for their OWN project. All assessments should provide justification. Reviewers are strongly encouraged to provide constructive comments for students so that they can improve in the future.&lt;br /&gt;
&lt;br /&gt;
Project leaders are responsible to attract a sufficient number of volunteer mentors to score proposals and subsequently supervise those that will get selected.&lt;br /&gt;
&lt;br /&gt;
'''Phase 3: Slot allocation.'''&lt;br /&gt;
&lt;br /&gt;
When proposal scoring has been completed, each project leader requests a specific number of slots. This number should be based on:&lt;br /&gt;
The number of truly outstanding proposals according to submitted scores.&lt;br /&gt;
The importance of the proposal to the project's roadmap.&lt;br /&gt;
The number of available mentors for the project. At least 2 mentors are needed for each proposal that gets accepted.&lt;br /&gt;
If the total number of requested slots is less than or equal to the available number of slots, then all projects get the requested slots. If not, the following rules apply:&lt;br /&gt;
All projects that have requested a slot get at least 1 slot, provided they have a high quality proposal and sufficient number of mentors.&lt;br /&gt;
Two mentors are required per slot allocated to the project.&lt;br /&gt;
The program's administrators get in touch with project leaders, especially those that have requested a large number of slots to receive additional feedback on the requested slots and explore any available possibilities for reducing the requested number of slots. A project leader might choose to donate one or more requested slots back to the pool so that other projects can get more slots. The program administrators can choose to initiate a public discussion between projects in need of more slots and projects that have requested a lot of slots in order to determine the best possible outcome for everyone.&lt;br /&gt;
If all else fails, slots are equally allocated to projects, i.e. all projects get 1 slot; projects that have requested 2 or more slots get an extra slot if available; projects that have requested 3 or more slots get an extra slot if available, etc. When there are no more slots available for all projects that have requested them a draw is used to allocate the remaining slots.&lt;br /&gt;
&lt;br /&gt;
In any case, the program's administrators should perform a final review of the selected proposals to ensure that they are of high quality. If concerns arise they should request additional information from project leaders.&lt;br /&gt;
&lt;br /&gt;
'''Phase 4: Coding.'''&lt;br /&gt;
&lt;br /&gt;
This is the main phase of the program. Students implement their proposal according to the submitted timeplan and under the supervision &lt;br /&gt;
of their mentors.&lt;br /&gt;
&lt;br /&gt;
== Evaluations ==&lt;br /&gt;
&lt;br /&gt;
In the middle of the coding period, mentors should submit an evaluation of their students to ensure that they are on track and provide some feedback both to OWASP and the students.&lt;br /&gt;
&lt;br /&gt;
If no/little progress has been made up to this point, the mentors could decide to fail the student in which case the student does not receive money. If successful, OWASP will pay half the amount ($750). The final evaluations are submitted at the end of the coding period and the second installment ($750) is paid to the student if all agreed deliverables are met. If the student has failed to demonstrate progress during the second period, then the second installment will not be paid and the student will get only half of the amount.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Deadlines == &lt;br /&gt;
Program announcement: June 1st, 2015&lt;br /&gt;
&lt;br /&gt;
Student Applications: June 21st, 2015&lt;br /&gt;
&lt;br /&gt;
Proposal Evaluations: from June 22nd until June 28th.&lt;br /&gt;
&lt;br /&gt;
Successful proposals announcement: July 1st&lt;br /&gt;
&lt;br /&gt;
Coding Period Starts: July 10th&lt;br /&gt;
&lt;br /&gt;
Mid-term evaluations: Submitted from August 10th until August 15th.&lt;br /&gt;
&lt;br /&gt;
Coding period ends: September 10th.&lt;br /&gt;
&lt;br /&gt;
Final evaluations: Until September 18th.&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
Please subscribe to the following mailing list to receive updates or ask any particular questions:&lt;br /&gt;
&lt;br /&gt;
[https://groups.google.com/d/forum/owasp-summer-code-sprint OWASP Summer Code Sprint Mailing List]&lt;br /&gt;
&lt;br /&gt;
== Ideas ==&lt;br /&gt;
&lt;br /&gt;
=== OWASP Hackademic  ===&lt;br /&gt;
&lt;br /&gt;
=== Docker Sandboxed for challenges ===&lt;br /&gt;
&lt;br /&gt;
''' Brief explanation: '''&lt;br /&gt;
Background problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are trying to enable users to freely upload vulnerable applications to the platform. &lt;br /&gt;
After some research we concluded that writing a python application that uses docker to deploy challenges would be the best way to go about it.&lt;br /&gt;
Also, we need to provide a frontend to manage the deployed containers and integrate our existing analytics gathering system into the dockerized challenges.&lt;br /&gt;
The installer of the application should take care of initializing both the cms and the containers without introducing too much complexity.&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
There is an easy to use python library for docker and there should be a frontend managing the containers we can use off the self with minimal modifications.&lt;br /&gt;
The feature has already had a poc using linux containers, you can find it in the open merge requests of the project's github page.&lt;br /&gt;
&lt;br /&gt;
''' Expected results '''&lt;br /&gt;
* Integrate dockerized challenges in the platform.&lt;br /&gt;
* PEP-8 compliant code in all provided python code&lt;br /&gt;
* PSR compliant code in all php provided code&lt;br /&gt;
* Sphinx/phpdoc friendly comments&lt;br /&gt;
* Excellent reliability&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation &lt;br /&gt;
&lt;br /&gt;
''' Prerequisites '''&lt;br /&gt;
&lt;br /&gt;
Some knowledge of test driven development, php, python, docker&lt;br /&gt;
&lt;br /&gt;
''' OWASP Mentors '''&lt;br /&gt;
&lt;br /&gt;
Spyros Gasteratos (spyros.gasteratos@owasp.org)&lt;br /&gt;
-- anyone else who already knows of puppet(I think we'll end up writing puppet manifests for installation)&lt;br /&gt;
docker, python, php?&lt;br /&gt;
&lt;br /&gt;
=== Javascript Based Development Challenges ===&lt;br /&gt;
&lt;br /&gt;
Brief explanation:&lt;br /&gt;
Background Problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are looking for challenges which are aimed towards secure coding.&lt;br /&gt;
The user should be served with a piece of vulnerable javascript which fails the unit tests provided.&lt;br /&gt;
The user has to fix the vulnerability in a way that makes the unit tests pass.&lt;br /&gt;
&lt;br /&gt;
Example Solution of one of the challenges:&lt;br /&gt;
Provide the user with the following code:&lt;br /&gt;
''&lt;br /&gt;
function sayHi(string userInput){&lt;br /&gt;
var hiField = document.getElementById(&amp;quot;hiField&amp;quot;);&lt;br /&gt;
hiField.innerHtml = userInput;&lt;br /&gt;
}&lt;br /&gt;
''&lt;br /&gt;
Use any javascript unit - testing framework to design a set of unit tests which call the function with all sorts of payloads and test if the user seems to have escaped userInput correctly,&lt;br /&gt;
we're not looking for completeness a solid proof of concept implementation for future reference is acceptable.&lt;br /&gt;
&lt;br /&gt;
''' Expected Results '''&lt;br /&gt;
A complete implementation of challenges covering the top 10 according to our coding standards.&lt;br /&gt;
&lt;br /&gt;
=== Migrate old code to the new coding standards ===&lt;br /&gt;
&lt;br /&gt;
In the last project summit we decided to introduce code style and standards compliance checking for new commits and slowly migrate the old ones to the new setting.&lt;br /&gt;
We also decided to prefer contributions with unit tests.&lt;br /&gt;
&lt;br /&gt;
We're looking for someone to assist in this migration. So far we have 0% of the classes in the new standards/coding style but the frontend tests cover a significant part of the platform.&lt;br /&gt;
You could help us reach at least 70% line coverage in tests and a similar coverage in standard/code style &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== New Theme ===&lt;br /&gt;
&lt;br /&gt;
Problem to solve:&lt;br /&gt;
Our current theme is from 2012 and looks even older, moreover it could do with some usability improvements. Your job will be to design and implement a new shiny theme for the platform.&lt;br /&gt;
&lt;br /&gt;
'''Expected Results'''  A shiny new theme with complete front end tests using the theme&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF  ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - VMS - OWTF Vulnerability Management System ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Background problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are trying to reduce the human work burden where there will be hundreds of issues listing apache out of date or php out of date. &lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
We can meta aggregate these duplicate issues into one issue of &amp;quot;outdated software / apache / php detected&amp;quot;. with XYZ list of issues in them.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
A separate set of scripts that allows for grouping and management of vulnerabilities (i.e. think huge assessments), to be usable *both* from inside + outside of OWTF in a separate sub-repo here: https://github.com/owtf &lt;br /&gt;
&lt;br /&gt;
VMS will have the following features:&lt;br /&gt;
* Vulnerability correlation engine which will allow for quick identification of unique vulnerability and deduplication.&lt;br /&gt;
* Vulnerability table optimization : combining redundant vulnerabilities like example : PHP &amp;lt;5.1 , PHP &amp;lt; 5.2 , PHP &amp;lt; 5.3 all suggest upgrade php so if multiple issues are reported they should be combined.&lt;br /&gt;
* Integration with existing bug tracking system like example bugzilla, jira : Should not be too hard as all such system have one or the other method exposed (REST API or similar)&lt;br /&gt;
* Fix Validation : Since we integrate with bug tracking once dev fixed the bug and code deployed we can run specific checks via * OWTF or other tool (may be specific nessus or nexpose plugin or similar.)&lt;br /&gt;
* Management Dashboard : Could be exposed to Pentester, Higher Management where stats are shown with lesser details but more of high level overview.&lt;br /&gt;
&lt;br /&gt;
[http://www.slideshare.net/null0x00/nessus-and-reporting-karma Similar previous work for Nessus]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - HTTP Request Translator Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Problem to solve:&lt;br /&gt;
&lt;br /&gt;
There are many situations in web app pentests where just no tool will do the job and you need to script something, or mess around with the command line (classic example: sequence of steps where each step requires input from the previous step). In these situations, translating an HTTP request or a sequence of HTTP requests, takes valuable time which the pentester might just not really have.&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
An HTTP request translator, a *standalone* *tool* that can:&lt;br /&gt;
&lt;br /&gt;
1) Be used from inside OR outside of OWTF.&lt;br /&gt;
&lt;br /&gt;
2) Translate raw HTTP requests into curl commands or bash/python/php/ruby/PowerShell scripts&lt;br /&gt;
&lt;br /&gt;
3) Provide essential quick and dirty transforms: base64 (encode/decode), urlencode (encode/decode)&lt;br /&gt;
* Transforms with boundary strings? (TBD)&lt;br /&gt;
* Individually or in bulk? (TBD)&lt;br /&gt;
&lt;br /&gt;
'''Essential Function: &amp;quot;--output&amp;quot; argument'''&lt;br /&gt;
&lt;br /&gt;
CRITICAL: The command/script should be generated so that the request is sent as literally as possible.&lt;br /&gt;
&lt;br /&gt;
Example: NO client specific headers are sent. IF the original request had &amp;quot;User-Agent: X&amp;quot;, the generated command/script should have EXACTLY that (i.e. NOT a curl user agent, etc.). Obviously, the same applies to ALL other headers.&lt;br /&gt;
&lt;br /&gt;
NOTE: Ideally the following should be implemented using an extensible plugin architecture (i.e. NEW plugins are EASY to add)&lt;br /&gt;
* http request in =&amp;gt; curl command out&lt;br /&gt;
* http request in =&amp;gt; bash script out&lt;br /&gt;
* http request in =&amp;gt; python script out&lt;br /&gt;
* http request in =&amp;gt; php script out&lt;br /&gt;
* http request in =&amp;gt; ruby script out&lt;br /&gt;
* http request in =&amp;gt; PowerShell script out&lt;br /&gt;
&lt;br /&gt;
'''Basic additional arguments:'''&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--proxy&amp;quot; argument: generates the command/script with the relevant proxy option&lt;br /&gt;
&lt;br /&gt;
		NOTE: With this the command/script may send requests through a MiTM proxy (i.e. OWTF, ZAP, Burp, etc.)&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--string-search&amp;quot; argument: generates the command/script so that it:&lt;br /&gt;
&lt;br /&gt;
		1) performs the request&lt;br /&gt;
&lt;br /&gt;
		2) then searches for something in the response (i.e. literal match)&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--regex-search&amp;quot; argument: generates the command/script so that it:&lt;br /&gt;
		1) performs the request&lt;br /&gt;
&lt;br /&gt;
		2) then searches for something in the response (i.e. regex match)&lt;br /&gt;
&lt;br /&gt;
'''OWTF integration'''&lt;br /&gt;
&lt;br /&gt;
The idea here, is to invoke this tool from:&lt;br /&gt;
&lt;br /&gt;
1) Single HTTP transactions:&lt;br /&gt;
&lt;br /&gt;
For example, have a button to &amp;quot;export http request&amp;quot; + then show options equivalent to the flags&lt;br /&gt;
&lt;br /&gt;
2) Multiple HTTP transactions:&lt;br /&gt;
&lt;br /&gt;
Same as with Single transactions, but letting the user &amp;quot;select a number of transactions&amp;quot; first (maybe a checkbox?).&lt;br /&gt;
&lt;br /&gt;
		&lt;br /&gt;
'''Desired input formats:'''&lt;br /&gt;
&lt;br /&gt;
* Read raw HTTP request from stdin -Suggested default behaviour! :)-&lt;br /&gt;
&lt;br /&gt;
	Example: cat path/to/http_request.txt | http-request-translator.py --output&lt;br /&gt;
&lt;br /&gt;
* Interactive mode: read raw HTTP request from keyboard + &amp;quot;hit enter when ready&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	Suggestion: This could be a &amp;quot;-i&amp;quot; (for &amp;quot;interactive&amp;quot;) flag and/or the fallback option when &amp;quot;stdin is empty&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	Example:&lt;br /&gt;
&lt;br /&gt;
	1) User runs tool with desired flags (i.e. &amp;quot;--output ruby --proxy 127.0.0.1:1234 ...&amp;quot;, etc.)&lt;br /&gt;
&lt;br /&gt;
	2) Tool prints: &amp;quot;Please paste a raw HTTP request and hit enter when ready&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	3) User pastes a raw HTTP requests + hits enter&lt;br /&gt;
&lt;br /&gt;
	4) Tool outputs whatever is relevant for the flags + http request given&lt;br /&gt;
&lt;br /&gt;
* For bulk processing: Maybe a directory of raw http request files?&lt;br /&gt;
&lt;br /&gt;
'''Nice to have: Transforms'''&lt;br /&gt;
&lt;br /&gt;
In the context of translating raw HTTP requests into commands/scripts, what we want here is to provide some handy &amp;quot;macros&amp;quot; so that the relevant command/script is generated accordingly.&lt;br /&gt;
&lt;br /&gt;
Example:&lt;br /&gt;
&lt;br /&gt;
NOTE: Assume something like the following arguments: &amp;quot;--transform-boundary=@@@@@@@ --transform-language=php&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Step 1) The user provides a raw HTTP request like this:&lt;br /&gt;
&lt;br /&gt;
  GET /path/to/urlencode@@@@@@@abc d@@@@@@@/test&lt;br /&gt;
  Host: target.com&lt;br /&gt;
  ...&lt;br /&gt;
&lt;br /&gt;
Step 2) The tool generates a bash script like the following:&lt;br /&gt;
&lt;br /&gt;
  #!/bin/bash&lt;br /&gt;
  &lt;br /&gt;
  PARAM1=$(echo 'abc d' | php -r &amp;quot;echo urlencode(fgets(STDIN));&amp;quot;)&lt;br /&gt;
  curl ...... &amp;quot;http://target.com/path/to/$PARAM1/test&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OR a &amp;quot;curl command&amp;quot; like the following:&lt;br /&gt;
  PARAM1=$(echo 'abc d' | php -r &amp;quot;echo urlencode(fgets(STDIN));&amp;quot;); curl ...... &amp;quot;http://target.com/path/to/$PARAM1/test&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This feature can be valuable to shave a bit more time in script writing.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - JavaScript Library Sniper Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
This is a project that tries to resolve a very common problem during penetration tests:&lt;br /&gt;
&lt;br /&gt;
The customer is running a number of outdated JavaScript Libraries, but there is just not enough time to determine if something useful -i.e. something *really* bad! :)- can be done with that or not.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
To solve this problem, we propose a *standalone* *tool* that can:&lt;br /&gt;
&lt;br /&gt;
1) Be run BOTH from inside AND outside of OWTF&lt;br /&gt;
&lt;br /&gt;
2) Build and *update* a fingerprint JavaScript library database of:&lt;br /&gt;
* Library File hashes =&amp;gt; JavaScript Library version&lt;br /&gt;
* Library File lengths =&amp;gt; JavaScript Library version&lt;br /&gt;
* (Nice to have:) As above, but for each individual github commit (possible drawback: too big?)&lt;br /&gt;
&lt;br /&gt;
3) Build and *update* a vulnerability database of:&lt;br /&gt;
* JavaScript Library version =&amp;gt; CVE - CVSS score - Vulnerability info&lt;br /&gt;
&lt;br /&gt;
4) Given a [ JavaScript file OR hash OR length ], found in the database, provides:&lt;br /&gt;
* JavaScript Library version&lt;br /&gt;
* List of vulnerabilities sorted in descending CVSS score order&lt;br /&gt;
&lt;br /&gt;
5) (very cool to have) Given a list of JavaScript files (maybe a directory), provides:&lt;br /&gt;
* ALL Library/vulnerability matches described on 4)&lt;br /&gt;
	&lt;br /&gt;
Once the standalone tool is built and verified to be working, OWTF should be able to:&lt;br /&gt;
&lt;br /&gt;
Feature 1) GREP plugin improvement (Web Application Fingerprint):&lt;br /&gt;
&lt;br /&gt;
Step 1) Lookup file lengths and hashes in the &amp;quot;JavaScript library database&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Step 2) If a match is found: provide the list of known vulnerabilities against &amp;quot;JavaScript library X&amp;quot; to the user&lt;br /&gt;
&lt;br /&gt;
Feature 2) SEMI-PASSIVE plugin improvement (Web Application Fingerprint):&lt;br /&gt;
&lt;br /&gt;
1) Requests all referenced BUT missing JavaScript files -i.e. scanners won't load JavaScript files! :)-&lt;br /&gt;
&lt;br /&gt;
2) re-runs the GREP plugin on the new files (i.e. to avoid missing vulns due to unrequested JavaScript files)&lt;br /&gt;
&lt;br /&gt;
Potential projects worth having a look for potential overlap/inspiration:&lt;br /&gt;
* [https://owasp.org/index.php/OWASP_Dependency_Check OWASP Dependency Check?]&lt;br /&gt;
&lt;br /&gt;
How many JavaScript libraries should be included?&lt;br /&gt;
* As many as possible, but especially the major ones: jQuery, knockout, etc.&lt;br /&gt;
* &amp;quot;Nirvana&amp;quot; Nice to have: ALL Individual versions of ALL JavaScript files from ALL opensource projects, (ideally) even if the project is not a JavaScript library -i.e. JavaScript files from Joomla, Wordpress, etc.-&lt;br /&gt;
&lt;br /&gt;
Common JavaScript library fingerprinting techniques include:&lt;br /&gt;
* Parse the JavaScript file and grab the version from there&lt;br /&gt;
* Determine the JavaScript version based on a hash of the file&lt;br /&gt;
* Determine the JavaScript version based on the length of the file&lt;br /&gt;
&lt;br /&gt;
Other Challenges:&lt;br /&gt;
* &amp;quot;the file&amp;quot; could be &amp;quot;the minimised file&amp;quot;, &amp;quot;the expanded file&amp;quot; or even &amp;quot;a specific JavaScript file from Library X&amp;quot;&lt;br /&gt;
* When the JavaScript file does not match a specific version:&lt;br /&gt;
	1) The commit that matches the closest should (ideally) be found&lt;br /&gt;
	2) The NEXT library version after that commit (if present) should be found&lt;br /&gt;
	3) From there, it is about reusing the knowledge to figure out public vulnerabilities, CVSS scores, etc. again&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Off-line HTTP traffic uploader ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Although it is awesome that OWTF runs a lot of tools on behalf of the user, there are situations where uploading the HTTP traffic of another tool off-line can be very interesting for OWTF, for example:&lt;br /&gt;
&lt;br /&gt;
* Tools that OWTF has trouble proxying right now: skipfish, hoppy&lt;br /&gt;
* Tools that the user may have run manually OR even from a tool aggregator -very common! :)-&lt;br /&gt;
* Tools that we just don't run from OWTF: ZAP, Burp, Fiddler&lt;br /&gt;
&lt;br /&gt;
This project is about implementing an off-line utility able to parse HTTP traffic:&lt;br /&gt;
&lt;br /&gt;
1) Figure out how to read output files from various tools like:&lt;br /&gt;
skipfish, hoppy, w3af, arachni, etc.&lt;br /&gt;
Nice to have: ZAP database, Burp database&lt;br /&gt;
&lt;br /&gt;
2) Translate that into the following clearly defined fields:&lt;br /&gt;
&lt;br /&gt;
* HTTP request&lt;br /&gt;
* HTTP response status code&lt;br /&gt;
* HTTP response headers&lt;br /&gt;
* HTTP response body&lt;br /&gt;
&lt;br /&gt;
3) IMPORTANT: Implement a plugin-based uploader system&lt;br /&gt;
&lt;br /&gt;
4) IMPORTANT: Implement ONE plugin, that uploads that into the OWTF database&lt;br /&gt;
&lt;br /&gt;
5) IMPORTANT: OWTF should ideally be able to invoke the uploader right after running a tool&lt;br /&gt;
	Example: OWTF runs skipfish, skipfish finishes, OWTF runs the HTTP traffic uploader, all skipfish data is pushed to the OWTF DB.&lt;br /&gt;
&lt;br /&gt;
6) CRITICAL: The off-line HTTP traffic uploader should be smart enough to read + push 1-by-1 instead of *stupidly* trying to load everything into memory first, you have been warned! :)&lt;br /&gt;
&lt;br /&gt;
	Why? Because in a huge assessment, the output of &amp;quot;tool X&amp;quot; can be &amp;quot;10 GB&amp;quot;, which is *stupid* to load into memory, this is OWTF, we *really* try to foresee the crash before it happens! ;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
CRITICAL: It is important to implement a plugin-based uploader system, so that other projects can benefit from this work (i.e. to be able to import third-party tool data to ZAP, Burp, and other tools in a similar fashion), and hence hopefully join us in maintaining this project moving forward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Health Monitor ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
In some cases, especially on large assessments (think: &amp;gt; 30 URLs) a number of things often go wrong and OWTF needs to recover from everything, which is difficult.&lt;br /&gt;
&lt;br /&gt;
For this reason, OWTF needs an independent module, which is completely detached from OWTF (a different process), to ensure the health of the assessment is in check at all times, this includes the following:&lt;br /&gt;
&lt;br /&gt;
'''Feature 1) Alerting mechanisms'''&lt;br /&gt;
&lt;br /&gt;
When any of the monitor alerts (see below) is triggered. The OWTF user will be notified immediately through ALL of the following means:&lt;br /&gt;
* Playing an mp3 song (both local and possibly remote locations)&lt;br /&gt;
* Scan status overview on the CLI&lt;br /&gt;
* Scan status overview on the GUI&lt;br /&gt;
&lt;br /&gt;
NOTE: A configuration file from where the user can enable/disable/configure all these mechanisms is desired.&lt;br /&gt;
&lt;br /&gt;
'''Feature 2) Corrective mechanisms'''&lt;br /&gt;
&lt;br /&gt;
Corrective mechanisms are also expected in this project, these will be accomplished sending OWTF api messages such as:&lt;br /&gt;
* Stop this tool&lt;br /&gt;
* Freeze this process (to continue later)&lt;br /&gt;
* Freeze the whole scan (to continue later)&lt;br /&gt;
&lt;br /&gt;
Additional mechanisms:&lt;br /&gt;
* Show a ranking of files that take the most space&lt;br /&gt;
&lt;br /&gt;
'''Feature 3) Target monitor'''&lt;br /&gt;
&lt;br /&gt;
Brief overview:&lt;br /&gt;
&lt;br /&gt;
All target URLs are checked for availability periodically (i.e. once x 5 minutes?), if a URL in scope goes down the pentester is alerted (see above).&lt;br /&gt;
&lt;br /&gt;
Potential approach: Check if length of 1st page changes every 60 seconds.&lt;br /&gt;
&lt;br /&gt;
NOTE: It might be needed to change this on the fly.&lt;br /&gt;
&lt;br /&gt;
More background&lt;br /&gt;
&lt;br /&gt;
Consider the following scenario:&lt;br /&gt;
&lt;br /&gt;
Current Situation aka &amp;quot;problem to solve&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
1) Website X goes down during a scan&lt;br /&gt;
&lt;br /&gt;
2) the customer notices&lt;br /&gt;
&lt;br /&gt;
3) the customer tells the boss&lt;br /&gt;
&lt;br /&gt;
4) the boss tells the pentester&lt;br /&gt;
&lt;br /&gt;
5) the pentester stops the tool which was *still* trying to scan THAT target (!!!!)&lt;br /&gt;
&lt;br /&gt;
Desired situation aka &amp;quot;solution&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
It would be much more professional AND efficient that:&lt;br /&gt;
&lt;br /&gt;
1) The pentester notices&lt;br /&gt;
&lt;br /&gt;
2) The pentester tells the boss&lt;br /&gt;
&lt;br /&gt;
3) The boss tells the customer&lt;br /&gt;
&lt;br /&gt;
4) OWTF stops the tool because it knows that website is DEAD anyway&lt;br /&gt;
&lt;br /&gt;
A target monitor could easily do this with heartbeat requests + playing mp3s&lt;br /&gt;
&lt;br /&gt;
The target monitor will use the api to tell OWTF &amp;quot;this target is dead: freeze(stop?) current tests, skip target in future tests&amp;quot;&lt;br /&gt;
&lt;br /&gt;
'''Feature 4) Disk space monitor'''&lt;br /&gt;
&lt;br /&gt;
Another problem that is relatively common in large assessments, is that all disk space is used and the scanning box becomes unresponsive or crashes. When this happens it is too late, the pentester may also see this coming but wonder “which are the biggest files in the filesystem that I can delete”, it is not ideal to have to look for these files in a moment when the scanning box is about to crash :).&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
Regularly monitor how much disk space is left, especially on the partition where OWTF is writing the review (but also tool directories such as /home/username/.w3af/tmp, etc.). Keep track of files created by OWTF and all called tools and sort them by size in descending order. Then when the disk space is going low (i.e. predefined threshold), an mp3 or similar is played and this list is displayed to the user, so that they know what to delete to survive :).&lt;br /&gt;
&lt;br /&gt;
'''Feature 5) Network/Internet Connectivity monitor'''&lt;br /&gt;
&lt;br /&gt;
Sometimes it may also happen that ISP, etc. connectivity go down in the middle of a scan, this is often a very unfortunate situation since most tools are scanning in parallel and they won’t be able to produce a report OR even resume (i.e. A LOT is lost). The goal here is that OWTF does all of the following automatically:&lt;br /&gt;
&lt;br /&gt;
1) Detects the lack of connectivity&lt;br /&gt;
&lt;br /&gt;
2) Freezes all the tools (read: processes) in progress&lt;br /&gt;
&lt;br /&gt;
3) Resumes the scan when the connectivity is back.&lt;br /&gt;
&lt;br /&gt;
'''Feature 6) Tool crash detection'''&lt;br /&gt;
&lt;br /&gt;
Sometimes, certain tools (most notably, ahem, w3af), when they crash they do NOT exit. This leaves OWTF in a difficult position where 1+ process is waiting for nothing, forever (i.e. because “Tool X” will never finish)&lt;br /&gt;
&lt;br /&gt;
'''Feature 7) Tool (Plugin?) CPU/RAM/Bandwidth abuse detection and correction'''&lt;br /&gt;
&lt;br /&gt;
OWTF needs to notice when some tools crash and/or “go beserk” with RAM/CPU/Bandwidth consumption, this is different from the existing built-in checks in OWTF like “do not launch a new tool if there is less than XYZ RAM free” and more like “if tool X is using &amp;gt; XYZ of the available RAM/CPU/Bandwidth” and this is (potentially) negatively affecting other tools/tests, then throttle it.&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Installation Improvements and Package manager ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
This project is to implement what was suggested in the following github issue:&lt;br /&gt;
[https://github.com/owtf/owtf/issues/192 https://github.com/owtf/owtf/issues/192]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Recently i tried to make a fresh installation of OWTF. The installation process takes too much time. Is there any way to make the installation faster?&lt;br /&gt;
Having a private server with:&lt;br /&gt;
* pre-installed files for VMs&lt;br /&gt;
* pre-configured and patched tools&lt;br /&gt;
* Merged Lists&lt;br /&gt;
* Pre-configured certificates&lt;br /&gt;
Additionally a minimal installation which will install the core of OWTF with the option of update can increase the installation speed. The update procedure will start fetching the latest file versions from the server and copy them to the right path.&lt;br /&gt;
Additional ideas are welcome.&lt;br /&gt;
&lt;br /&gt;
-- They could be hosted on Dropbox or a private VPS :)&lt;br /&gt;
&lt;br /&gt;
2 Installation Modes&lt;br /&gt;
* For high speed connections (Downloading the files uncompressed)&lt;br /&gt;
* For low speed connections (Downloading the files compressed)&lt;br /&gt;
and the installation crashed because i runned out of space in the vm&lt;br /&gt;
IMPORTANT NOTE: OWTF should check the available disk space BEFORE installation starts + warn the user if problems are likely&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Excellent reliability (i.e. proper exception handling, etc.)&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Testing Framework Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
As OWASP OWTF grows it makes sense to build custom unit tests to automatically re-test that functionality has not been broken. In this project we would like to improve the existing unit testing framework so that creating OWASP OWTF unit tests is as simple as possible and all missing tests for new functionality are created. The goal of this project is to update the existing Unit Test Framework to create all missing tests as well as improve the existing ones to verify OWASP OWTF functionality in an automated fashion.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Top features'''&lt;br /&gt;
&lt;br /&gt;
In this improvement phase, the Testing Framework should:&lt;br /&gt;
* (Top Prio) Focus more on functional tests&lt;br /&gt;
For example: Improve coverage of OWASP Testing Guide, PTES, etc. (lots of room for improvement there!)&lt;br /&gt;
* (Top Prio) Put together a great wiki documentation section for contributors&lt;br /&gt;
The goal here is to help contributors write tests for the functionality that they implement. This should be as easy as possible.&lt;br /&gt;
* (Top Prio) Fix the current Travis issues :)&lt;br /&gt;
* (Nice to have) Bring the unit tests up to speed with the codebase&lt;br /&gt;
This will be challenging but very worth trying after top priorities.&lt;br /&gt;
The wiki should be heavily updated so that contributors create their own unit tests easily moving forward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''General background'''&lt;br /&gt;
&lt;br /&gt;
The Unit Test Framework should be able to:&lt;br /&gt;
* Define test categories: For example, &amp;quot;all plugins&amp;quot;, &amp;quot;web plugins&amp;quot;, &amp;quot;aux plugins&amp;quot;, &amp;quot;test framework core&amp;quot;, etc. (please see [http://www.slideshare.net/abrahamaranguren/introducing-owasp-owtf-workshop-brucon-2012 this presentation] for more background)&lt;br /&gt;
* Allow to regression test isolated plugins (i.e. &amp;quot;only test _this_ plugin&amp;quot;)&lt;br /&gt;
* Allow to regression test by test categories (i.e. &amp;quot;test only web plugins&amp;quot;)&lt;br /&gt;
* Allow to regression test everything (i.e. plugins + framework core: &amp;quot;test all&amp;quot;)&lt;br /&gt;
* Produce meaningful statistics and easy to navigate logs to identify which tests failed and ideally also hints on how to potentially fix the problem where possible&lt;br /&gt;
* Allow for easy creation of _new_ unit tests specific to OWASP OWTF&lt;br /&gt;
* Allow for easy modification and maintenance of _existing_ unit tests specific to OWASP OWTF&lt;br /&gt;
* Perform well so that we can run as many tests as possible in a given period of time&lt;br /&gt;
* Potentially leverage the python unittest library: [http://docs.python.org/2/library/unittest.html http://docs.python.org/2/library/unittest.html]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Performant and automated regression testing&lt;br /&gt;
* Unit tests for a wide coverage of OWASP OWTF, ideally leveraging the Unit Test Framework where possible&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python, experience with unit tests and automated regression testing would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Tool utilities module ===&lt;br /&gt;
&lt;br /&gt;
'''WARNING: This idea is taken from the 1st round of OWCS selections (Sept. 15th), please do NOT apply'''&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
The spirit of this feature is something that may or may not be used from OWTF: These are utilities that may be chained together by OWTF OR a penetration tester using the command line. The idea is to automate mundane tasks that take time but may provide a lever to a penetration tester short on time.&lt;br /&gt;
&lt;br /&gt;
'''Feature 1) Vulnerable software version database:'''&lt;br /&gt;
&lt;br /&gt;
Implement a searchable vulnerable software version database so that a penetration tester enters a version and gets vulnerabilities sorted by criticality with MAX Impact vulnerabilities at the top (possibly: CVSS score in DESC order).&lt;br /&gt;
&lt;br /&gt;
Example:&lt;br /&gt;
[http://www.cvedetails.com/vulnerability-list.php?vendor_id=74&amp;amp;product_id=128&amp;amp;version_id=149817&amp;amp;page=1&amp;amp;hasexp=0&amp;amp;opdos=0&amp;amp;opec=0&amp;amp;opov=0&amp;amp;opcsrf=0&amp;amp;opgpriv=0&amp;amp;opsqli=0&amp;amp;opxss=0&amp;amp;opdirt=0&amp;amp;opmemc=0&amp;amp;ophttprs=0&amp;amp;opbyp=0&amp;amp;opfileinc=0&amp;amp;opginf=0&amp;amp;cvssscoremin=0&amp;amp;cvssscoremax=0&amp;amp;year=0&amp;amp;month=0&amp;amp;cweid=0&amp;amp;order=3&amp;amp;trc=17&amp;amp;sha=0d26af6f3ba8ea20af18d089df40c252ea09b711 Vulnerabilities against specific software version]&lt;br /&gt;
&lt;br /&gt;
'''Feature 2) Nmap output file merger:'''&lt;br /&gt;
&lt;br /&gt;
Unify nmap files *without* losing data: XML, text and greppable formats&lt;br /&gt;
For example: Sometimes 2 scans pass through the same port, one returns the server version, the other does not, we obviously do not want to lose banner information :).&lt;br /&gt;
&lt;br /&gt;
'''Feature 3) Nmap output file vulnerability mapper'''&lt;br /&gt;
&lt;br /&gt;
From an nmap output file, get the unique software version banners, and provide a list of (maybe in tabs?):&lt;br /&gt;
&lt;br /&gt;
1) CVEs in reverse order of CVSS score, with links.&lt;br /&gt;
&lt;br /&gt;
2) Metasploit modules available for each CVE / issue&lt;br /&gt;
&lt;br /&gt;
NOTE: Can supply an *old* shell script for reference&lt;br /&gt;
&lt;br /&gt;
3) Servers/ports affected (i.e. all server / port combinations using that software version)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 4) URL target list creator:'''&lt;br /&gt;
&lt;br /&gt;
Turn all “speaks http” ports (from any nmap format) into a list of URL targets for OWTF&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 5) Hydra command creator:'''&lt;br /&gt;
&lt;br /&gt;
nmap file in =&amp;gt; Hydra command list out&lt;br /&gt;
&lt;br /&gt;
grep http auth / login pages in output files to identify login interfaces =&amp;gt; Hydra command list out&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 6) WP-scan command creator:'''&lt;br /&gt;
&lt;br /&gt;
look at all URLs (i.e. nmap file), check if they might be running word press, generate a list of suggested wp-scan commands for all targets that might be running word press&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Excellent reliability (i.e. proper exception handling, etc.)&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python, experience with unit tests and automated regression testing would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
''' OWASP Mentors '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP ZAP  ===&lt;br /&gt;
There are a number of ZAP related projects students can work on, including:&lt;br /&gt;
* Bug tracker support&lt;br /&gt;
* Convert active and passive scan rules to scripts&lt;br /&gt;
* Field enumeration&lt;br /&gt;
* Form handling&lt;br /&gt;
* Gauntlet integration&lt;br /&gt;
* Script console code completion&lt;br /&gt;
* Support java as a scripting language&lt;br /&gt;
* Testing guide integration&lt;br /&gt;
* Zest text representation and parser&lt;br /&gt;
&lt;br /&gt;
For more details see the ZAP [https://code.google.com/p/zaproxy/wiki/OpenProjects Open Projects] wiki page.&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summer_Code_Sprint2015&amp;diff=196276</id>
		<title>Summer Code Sprint2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summer_Code_Sprint2015&amp;diff=196276"/>
				<updated>2015-06-17T15:33:30Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* As a student: */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP Summer Code Sprint 2015 ==&lt;br /&gt;
&lt;br /&gt;
== Goal == &lt;br /&gt;
&lt;br /&gt;
The OWASP Summer Code Sprint 2015 is a program that aims to provide incentives to students to contribute to OWASP projects. By participating in the OWASP Summer Code Sprint a student can get real life experience while contributing to an open source project. A student that successfully completes the program will receive in total $1500.&lt;br /&gt;
&lt;br /&gt;
== Program details ==&lt;br /&gt;
&lt;br /&gt;
''Projects that are eligible:'' All code/tools projects. Documentation projects are excluded.&lt;br /&gt;
&lt;br /&gt;
''Duration:'' 2 months of full-time engagement.&lt;br /&gt;
&lt;br /&gt;
== How it works ==&lt;br /&gt;
&lt;br /&gt;
Any code/tool project can participate in the OWASP Summer Code Sprint. Each project will be guided by an OWASP mentor. Students are evaluated in the middle and at the end of the coding period, based on success criteria identified at the beginning of the project. Successful students will receive $750 after each evaluation, a total of $1500 per student.&lt;br /&gt;
&lt;br /&gt;
Projects are focused on developing security tools. It is required that the code any student produces for those projects will be released as Open Source. &lt;br /&gt;
&lt;br /&gt;
Note on language: English is required for code comments and documentation, but not for interactions between students and advisers. Advisers who speak the same language as their students are encouraged to interact in that language. &lt;br /&gt;
&lt;br /&gt;
== How you can participate ==&lt;br /&gt;
&lt;br /&gt;
=== As a student: ===&lt;br /&gt;
&lt;br /&gt;
1. Review the list of OWASP Projects currently participating in the OWASP Summer Code Sprint 2015.&lt;br /&gt;
&lt;br /&gt;
2. Get in touch with the OWASP Project mentor of your choice.&lt;br /&gt;
&lt;br /&gt;
3. Agree deliverables with OWASP mentor. &lt;br /&gt;
&lt;br /&gt;
4. Work away during Summer 2015.&lt;br /&gt;
&lt;br /&gt;
5. Rise to Open Source Development Glory :-)&lt;br /&gt;
&lt;br /&gt;
ALL STUDENTS PLEASE APPLY HERE &amp;gt;&amp;gt; [http://goo.gl/forms/jUFTcXVDEY FORM]&lt;br /&gt;
&lt;br /&gt;
=== As an OWASP Project Leader: ===&lt;br /&gt;
&lt;br /&gt;
1. Edit this page adding your project and some proposed tasks as per the examples&lt;br /&gt;
&lt;br /&gt;
2. Promote the initiative to your academic contacts&lt;br /&gt;
&lt;br /&gt;
== Timeplan ==&lt;br /&gt;
&lt;br /&gt;
'''Phase 1: Proposals'''&lt;br /&gt;
&lt;br /&gt;
Project leaders who want to include their project to the program should submit some initial proposal ideas on this page. These ideas serve as guidance to the students; they are things that project leaders would like to get done, like new features, improvements, etc.&lt;br /&gt;
&lt;br /&gt;
Subsequently students are invited to submit detailed proposals that can (but do not necessarily have to) be based on these ideas. Students are strongly encouraged to engage with project leaders and each project's community (e.g. through the project's mailing list) in order to discuss the details of their proposal. Proposals should provide details about the implementation, time plan, milestones, etc.&lt;br /&gt;
&lt;br /&gt;
'''Phase 2: Scoring of proposals'''&lt;br /&gt;
&lt;br /&gt;
After the submission of proposals, project leaders and contributors/mentors are required to review the submitted proposals and score them (on a 1 to 5 scale). Each proposal should receive at least 3 assessments/scores from different mentors. Each mentor, contributor or leader can score only proposals for their OWN project. All assessments should provide justification. Reviewers are strongly encouraged to provide constructive comments for students so that they can improve in the future.&lt;br /&gt;
&lt;br /&gt;
Project leaders are responsible to attract a sufficient number of volunteer mentors to score proposals and subsequently supervise those that will get selected.&lt;br /&gt;
&lt;br /&gt;
'''Phase 3: Slot allocation.'''&lt;br /&gt;
&lt;br /&gt;
When proposal scoring has been completed, each project leader requests a specific number of slots. This number should be based on:&lt;br /&gt;
The number of truly outstanding proposals according to submitted scores.&lt;br /&gt;
The importance of the proposal to the project's roadmap.&lt;br /&gt;
The number of available mentors for the project. At least 2 mentors are needed for each proposal that gets accepted.&lt;br /&gt;
If the total number of requested slots is less than or equal to the available number of slots, then all projects get the requested slots. If not, the following rules apply:&lt;br /&gt;
All projects that have requested a slot get at least 1 slot, provided they have a high quality proposal and sufficient number of mentors.&lt;br /&gt;
Two mentors are required per slot allocated to the project.&lt;br /&gt;
The program's administrators get in touch with project leaders, especially those that have requested a large number of slots to receive additional feedback on the requested slots and explore any available possibilities for reducing the requested number of slots. A project leader might choose to donate one or more requested slots back to the pool so that other projects can get more slots. The program administrators can choose to initiate a public discussion between projects in need of more slots and projects that have requested a lot of slots in order to determine the best possible outcome for everyone.&lt;br /&gt;
If all else fails, slots are equally allocated to projects, i.e. all projects get 1 slot; projects that have requested 2 or more slots get an extra slot if available; projects that have requested 3 or more slots get an extra slot if available, etc. When there are no more slots available for all projects that have requested them a draw is used to allocate the remaining slots.&lt;br /&gt;
&lt;br /&gt;
In any case, the program's administrators should perform a final review of the selected proposals to ensure that they are of high quality. If concerns arise they should request additional information from project leaders.&lt;br /&gt;
&lt;br /&gt;
'''Phase 4: Coding.'''&lt;br /&gt;
&lt;br /&gt;
This is the main phase of the program. Students implement their proposal according to the submitted timeplan and under the supervision &lt;br /&gt;
of their mentors.&lt;br /&gt;
&lt;br /&gt;
== Evaluations ==&lt;br /&gt;
&lt;br /&gt;
In the middle of the coding period, mentors should submit an evaluation of their students to ensure that they are on track and provide some feedback both to OWASP and the students.&lt;br /&gt;
&lt;br /&gt;
If no/little progress has been made up to this point, the mentors could decide to fail the student in which case the student does not receive money. If successful, OWASP will pay half the amount ($750). The final evaluations are submitted at the end of the coding period and the second installment ($750) is paid to the student if all agreed deliverables are met. If the student has failed to demonstrate progress during the second period, then the second installment will not be paid and the student will get only half of the amount.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Deadlines == &lt;br /&gt;
Program announcement: June 1st, 2015&lt;br /&gt;
&lt;br /&gt;
Student Applications: June 21st, 2015&lt;br /&gt;
&lt;br /&gt;
Proposal Evaluations: from June 22nd until June 28th.&lt;br /&gt;
&lt;br /&gt;
Successful proposals announcement: July 1st&lt;br /&gt;
&lt;br /&gt;
Coding Period Starts: July 10th&lt;br /&gt;
&lt;br /&gt;
Mid-term evaluations: Submitted from August 10th until August 15th.&lt;br /&gt;
&lt;br /&gt;
Coding period ends: September 10th.&lt;br /&gt;
&lt;br /&gt;
Final evaluations: Until September 18th.&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
Please subscribe to the following mailing list to receive updates or ask any particular questions: &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ideas ==&lt;br /&gt;
&lt;br /&gt;
=== OWASP Hackademic  ===&lt;br /&gt;
&lt;br /&gt;
=== Docker Sandboxed for challenges ===&lt;br /&gt;
&lt;br /&gt;
''' Brief explanation: '''&lt;br /&gt;
Background problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are trying to enable users to freely upload vulnerable applications to the platform. &lt;br /&gt;
After some research we concluded that writing a python application that uses docker to deploy challenges would be the best way to go about it.&lt;br /&gt;
Also, we need to provide a frontend to manage the deployed containers and integrate our existing analytics gathering system into the dockerized challenges.&lt;br /&gt;
The installer of the application should take care of initializing both the cms and the containers without introducing too much complexity.&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
There is an easy to use python library for docker and there should be a frontend managing the containers we can use off the self with minimal modifications.&lt;br /&gt;
The feature has already had a poc using linux containers, you can find it in the open merge requests of the project's github page.&lt;br /&gt;
&lt;br /&gt;
''' Expected results '''&lt;br /&gt;
* Integrate dockerized challenges in the platform.&lt;br /&gt;
* PEP-8 compliant code in all provided python code&lt;br /&gt;
* PSR compliant code in all php provided code&lt;br /&gt;
* Sphinx/phpdoc friendly comments&lt;br /&gt;
* Excellent reliability&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation &lt;br /&gt;
&lt;br /&gt;
''' Prerequisites '''&lt;br /&gt;
&lt;br /&gt;
Some knowledge of test driven development, php, python, docker&lt;br /&gt;
&lt;br /&gt;
''' OWASP Mentors '''&lt;br /&gt;
&lt;br /&gt;
Spyros Gasteratos (spyros.gasteratos@owasp.org)&lt;br /&gt;
-- anyone else who already knows of puppet(I think we'll end up writing puppet manifests for installation)&lt;br /&gt;
docker, python, php?&lt;br /&gt;
&lt;br /&gt;
=== Javascript Based Development Challenges ===&lt;br /&gt;
&lt;br /&gt;
Brief explanation:&lt;br /&gt;
Background Problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are looking for challenges which are aimed towards secure coding.&lt;br /&gt;
The user should be served with a piece of vulnerable javascript which fails the unit tests provided.&lt;br /&gt;
The user has to fix the vulnerability in a way that makes the unit tests pass.&lt;br /&gt;
&lt;br /&gt;
Example Solution of one of the challenges:&lt;br /&gt;
Provide the user with the following code:&lt;br /&gt;
''&lt;br /&gt;
function sayHi(string userInput){&lt;br /&gt;
var hiField = document.getElementById(&amp;quot;hiField&amp;quot;);&lt;br /&gt;
hiField.innerHtml = userInput;&lt;br /&gt;
}&lt;br /&gt;
''&lt;br /&gt;
Use any javascript unit - testing framework to design a set of unit tests which call the function with all sorts of payloads and test if the user seems to have escaped userInput correctly,&lt;br /&gt;
we're not looking for completeness a solid proof of concept implementation for future reference is acceptable.&lt;br /&gt;
&lt;br /&gt;
''' Expected Results '''&lt;br /&gt;
A complete implementation of challenges covering the top 10 according to our coding standards.&lt;br /&gt;
&lt;br /&gt;
=== Migrate old code to the new coding standards ===&lt;br /&gt;
&lt;br /&gt;
In the last project summit we decided to introduce code style and standards compliance checking for new commits and slowly migrate the old ones to the new setting.&lt;br /&gt;
We also decided to prefer contributions with unit tests.&lt;br /&gt;
&lt;br /&gt;
We're looking for someone to assist in this migration. So far we have 0% of the classes in the new standards/coding style but the frontend tests cover a significant part of the platform.&lt;br /&gt;
You could help us reach at least 70% line coverage in tests and a similar coverage in standard/code style &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== New Theme ===&lt;br /&gt;
&lt;br /&gt;
Problem to solve:&lt;br /&gt;
Our current theme is from 2012 and looks even older, moreover it could do with some usability improvements. Your job will be to design and implement a new shiny theme for the platform.&lt;br /&gt;
&lt;br /&gt;
'''Expected Results'''  A shiny new theme with complete front end tests using the theme&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF  ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - VMS - OWTF Vulnerability Management System ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Background problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are trying to reduce the human work burden where there will be hundreds of issues listing apache out of date or php out of date. &lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
We can meta aggregate these duplicate issues into one issue of &amp;quot;outdated software / apache / php detected&amp;quot;. with XYZ list of issues in them.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
A separate set of scripts that allows for grouping and management of vulnerabilities (i.e. think huge assessments), to be usable *both* from inside + outside of OWTF in a separate sub-repo here: https://github.com/owtf &lt;br /&gt;
&lt;br /&gt;
VMS will have the following features:&lt;br /&gt;
* Vulnerability correlation engine which will allow for quick identification of unique vulnerability and deduplication.&lt;br /&gt;
* Vulnerability table optimization : combining redundant vulnerabilities like example : PHP &amp;lt;5.1 , PHP &amp;lt; 5.2 , PHP &amp;lt; 5.3 all suggest upgrade php so if multiple issues are reported they should be combined.&lt;br /&gt;
* Integration with existing bug tracking system like example bugzilla, jira : Should not be too hard as all such system have one or the other method exposed (REST API or similar)&lt;br /&gt;
* Fix Validation : Since we integrate with bug tracking once dev fixed the bug and code deployed we can run specific checks via * OWTF or other tool (may be specific nessus or nexpose plugin or similar.)&lt;br /&gt;
* Management Dashboard : Could be exposed to Pentester, Higher Management where stats are shown with lesser details but more of high level overview.&lt;br /&gt;
&lt;br /&gt;
[http://www.slideshare.net/null0x00/nessus-and-reporting-karma Similar previous work for Nessus]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - HTTP Request Translator Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Problem to solve:&lt;br /&gt;
&lt;br /&gt;
There are many situations in web app pentests where just no tool will do the job and you need to script something, or mess around with the command line (classic example: sequence of steps where each step requires input from the previous step). In these situations, translating an HTTP request or a sequence of HTTP requests, takes valuable time which the pentester might just not really have.&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
An HTTP request translator, a *standalone* *tool* that can:&lt;br /&gt;
&lt;br /&gt;
1) Be used from inside OR outside of OWTF.&lt;br /&gt;
&lt;br /&gt;
2) Translate raw HTTP requests into curl commands or bash/python/php/ruby/PowerShell scripts&lt;br /&gt;
&lt;br /&gt;
3) Provide essential quick and dirty transforms: base64 (encode/decode), urlencode (encode/decode)&lt;br /&gt;
* Transforms with boundary strings? (TBD)&lt;br /&gt;
* Individually or in bulk? (TBD)&lt;br /&gt;
&lt;br /&gt;
'''Essential Function: &amp;quot;--output&amp;quot; argument'''&lt;br /&gt;
&lt;br /&gt;
CRITICAL: The command/script should be generated so that the request is sent as literally as possible.&lt;br /&gt;
&lt;br /&gt;
Example: NO client specific headers are sent. IF the original request had &amp;quot;User-Agent: X&amp;quot;, the generated command/script should have EXACTLY that (i.e. NOT a curl user agent, etc.). Obviously, the same applies to ALL other headers.&lt;br /&gt;
&lt;br /&gt;
NOTE: Ideally the following should be implemented using an extensible plugin architecture (i.e. NEW plugins are EASY to add)&lt;br /&gt;
* http request in =&amp;gt; curl command out&lt;br /&gt;
* http request in =&amp;gt; bash script out&lt;br /&gt;
* http request in =&amp;gt; python script out&lt;br /&gt;
* http request in =&amp;gt; php script out&lt;br /&gt;
* http request in =&amp;gt; ruby script out&lt;br /&gt;
* http request in =&amp;gt; PowerShell script out&lt;br /&gt;
&lt;br /&gt;
'''Basic additional arguments:'''&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--proxy&amp;quot; argument: generates the command/script with the relevant proxy option&lt;br /&gt;
&lt;br /&gt;
		NOTE: With this the command/script may send requests through a MiTM proxy (i.e. OWTF, ZAP, Burp, etc.)&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--string-search&amp;quot; argument: generates the command/script so that it:&lt;br /&gt;
&lt;br /&gt;
		1) performs the request&lt;br /&gt;
&lt;br /&gt;
		2) then searches for something in the response (i.e. literal match)&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--regex-search&amp;quot; argument: generates the command/script so that it:&lt;br /&gt;
		1) performs the request&lt;br /&gt;
&lt;br /&gt;
		2) then searches for something in the response (i.e. regex match)&lt;br /&gt;
&lt;br /&gt;
'''OWTF integration'''&lt;br /&gt;
&lt;br /&gt;
The idea here, is to invoke this tool from:&lt;br /&gt;
&lt;br /&gt;
1) Single HTTP transactions:&lt;br /&gt;
&lt;br /&gt;
For example, have a button to &amp;quot;export http request&amp;quot; + then show options equivalent to the flags&lt;br /&gt;
&lt;br /&gt;
2) Multiple HTTP transactions:&lt;br /&gt;
&lt;br /&gt;
Same as with Single transactions, but letting the user &amp;quot;select a number of transactions&amp;quot; first (maybe a checkbox?).&lt;br /&gt;
&lt;br /&gt;
		&lt;br /&gt;
'''Desired input formats:'''&lt;br /&gt;
&lt;br /&gt;
* Read raw HTTP request from stdin -Suggested default behaviour! :)-&lt;br /&gt;
&lt;br /&gt;
	Example: cat path/to/http_request.txt | http-request-translator.py --output&lt;br /&gt;
&lt;br /&gt;
* Interactive mode: read raw HTTP request from keyboard + &amp;quot;hit enter when ready&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	Suggestion: This could be a &amp;quot;-i&amp;quot; (for &amp;quot;interactive&amp;quot;) flag and/or the fallback option when &amp;quot;stdin is empty&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	Example:&lt;br /&gt;
&lt;br /&gt;
	1) User runs tool with desired flags (i.e. &amp;quot;--output ruby --proxy 127.0.0.1:1234 ...&amp;quot;, etc.)&lt;br /&gt;
&lt;br /&gt;
	2) Tool prints: &amp;quot;Please paste a raw HTTP request and hit enter when ready&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	3) User pastes a raw HTTP requests + hits enter&lt;br /&gt;
&lt;br /&gt;
	4) Tool outputs whatever is relevant for the flags + http request given&lt;br /&gt;
&lt;br /&gt;
* For bulk processing: Maybe a directory of raw http request files?&lt;br /&gt;
&lt;br /&gt;
'''Nice to have: Transforms'''&lt;br /&gt;
&lt;br /&gt;
In the context of translating raw HTTP requests into commands/scripts, what we want here is to provide some handy &amp;quot;macros&amp;quot; so that the relevant command/script is generated accordingly.&lt;br /&gt;
&lt;br /&gt;
Example:&lt;br /&gt;
&lt;br /&gt;
NOTE: Assume something like the following arguments: &amp;quot;--transform-boundary=@@@@@@@ --transform-language=php&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Step 1) The user provides a raw HTTP request like this:&lt;br /&gt;
&lt;br /&gt;
  GET /path/to/urlencode@@@@@@@abc d@@@@@@@/test&lt;br /&gt;
  Host: target.com&lt;br /&gt;
  ...&lt;br /&gt;
&lt;br /&gt;
Step 2) The tool generates a bash script like the following:&lt;br /&gt;
&lt;br /&gt;
  #!/bin/bash&lt;br /&gt;
  &lt;br /&gt;
  PARAM1=$(echo 'abc d' | php -r &amp;quot;echo urlencode(fgets(STDIN));&amp;quot;)&lt;br /&gt;
  curl ...... &amp;quot;http://target.com/path/to/$PARAM1/test&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OR a &amp;quot;curl command&amp;quot; like the following:&lt;br /&gt;
  PARAM1=$(echo 'abc d' | php -r &amp;quot;echo urlencode(fgets(STDIN));&amp;quot;); curl ...... &amp;quot;http://target.com/path/to/$PARAM1/test&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This feature can be valuable to shave a bit more time in script writing.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - JavaScript Library Sniper Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
This is a project that tries to resolve a very common problem during penetration tests:&lt;br /&gt;
&lt;br /&gt;
The customer is running a number of outdated JavaScript Libraries, but there is just not enough time to determine if something useful -i.e. something *really* bad! :)- can be done with that or not.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
To solve this problem, we propose a *standalone* *tool* that can:&lt;br /&gt;
&lt;br /&gt;
1) Be run BOTH from inside AND outside of OWTF&lt;br /&gt;
&lt;br /&gt;
2) Build and *update* a fingerprint JavaScript library database of:&lt;br /&gt;
* Library File hashes =&amp;gt; JavaScript Library version&lt;br /&gt;
* Library File lengths =&amp;gt; JavaScript Library version&lt;br /&gt;
* (Nice to have:) As above, but for each individual github commit (possible drawback: too big?)&lt;br /&gt;
&lt;br /&gt;
3) Build and *update* a vulnerability database of:&lt;br /&gt;
* JavaScript Library version =&amp;gt; CVE - CVSS score - Vulnerability info&lt;br /&gt;
&lt;br /&gt;
4) Given a [ JavaScript file OR hash OR length ], found in the database, provides:&lt;br /&gt;
* JavaScript Library version&lt;br /&gt;
* List of vulnerabilities sorted in descending CVSS score order&lt;br /&gt;
&lt;br /&gt;
5) (very cool to have) Given a list of JavaScript files (maybe a directory), provides:&lt;br /&gt;
* ALL Library/vulnerability matches described on 4)&lt;br /&gt;
	&lt;br /&gt;
Once the standalone tool is built and verified to be working, OWTF should be able to:&lt;br /&gt;
&lt;br /&gt;
Feature 1) GREP plugin improvement (Web Application Fingerprint):&lt;br /&gt;
&lt;br /&gt;
Step 1) Lookup file lengths and hashes in the &amp;quot;JavaScript library database&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Step 2) If a match is found: provide the list of known vulnerabilities against &amp;quot;JavaScript library X&amp;quot; to the user&lt;br /&gt;
&lt;br /&gt;
Feature 2) SEMI-PASSIVE plugin improvement (Web Application Fingerprint):&lt;br /&gt;
&lt;br /&gt;
1) Requests all referenced BUT missing JavaScript files -i.e. scanners won't load JavaScript files! :)-&lt;br /&gt;
&lt;br /&gt;
2) re-runs the GREP plugin on the new files (i.e. to avoid missing vulns due to unrequested JavaScript files)&lt;br /&gt;
&lt;br /&gt;
Potential projects worth having a look for potential overlap/inspiration:&lt;br /&gt;
* [https://owasp.org/index.php/OWASP_Dependency_Check OWASP Dependency Check?]&lt;br /&gt;
&lt;br /&gt;
How many JavaScript libraries should be included?&lt;br /&gt;
* As many as possible, but especially the major ones: jQuery, knockout, etc.&lt;br /&gt;
* &amp;quot;Nirvana&amp;quot; Nice to have: ALL Individual versions of ALL JavaScript files from ALL opensource projects, (ideally) even if the project is not a JavaScript library -i.e. JavaScript files from Joomla, Wordpress, etc.-&lt;br /&gt;
&lt;br /&gt;
Common JavaScript library fingerprinting techniques include:&lt;br /&gt;
* Parse the JavaScript file and grab the version from there&lt;br /&gt;
* Determine the JavaScript version based on a hash of the file&lt;br /&gt;
* Determine the JavaScript version based on the length of the file&lt;br /&gt;
&lt;br /&gt;
Other Challenges:&lt;br /&gt;
* &amp;quot;the file&amp;quot; could be &amp;quot;the minimised file&amp;quot;, &amp;quot;the expanded file&amp;quot; or even &amp;quot;a specific JavaScript file from Library X&amp;quot;&lt;br /&gt;
* When the JavaScript file does not match a specific version:&lt;br /&gt;
	1) The commit that matches the closest should (ideally) be found&lt;br /&gt;
	2) The NEXT library version after that commit (if present) should be found&lt;br /&gt;
	3) From there, it is about reusing the knowledge to figure out public vulnerabilities, CVSS scores, etc. again&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Off-line HTTP traffic uploader ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Although it is awesome that OWTF runs a lot of tools on behalf of the user, there are situations where uploading the HTTP traffic of another tool off-line can be very interesting for OWTF, for example:&lt;br /&gt;
&lt;br /&gt;
* Tools that OWTF has trouble proxying right now: skipfish, hoppy&lt;br /&gt;
* Tools that the user may have run manually OR even from a tool aggregator -very common! :)-&lt;br /&gt;
* Tools that we just don't run from OWTF: ZAP, Burp, Fiddler&lt;br /&gt;
&lt;br /&gt;
This project is about implementing an off-line utility able to parse HTTP traffic:&lt;br /&gt;
&lt;br /&gt;
1) Figure out how to read output files from various tools like:&lt;br /&gt;
skipfish, hoppy, w3af, arachni, etc.&lt;br /&gt;
Nice to have: ZAP database, Burp database&lt;br /&gt;
&lt;br /&gt;
2) Translate that into the following clearly defined fields:&lt;br /&gt;
&lt;br /&gt;
* HTTP request&lt;br /&gt;
* HTTP response status code&lt;br /&gt;
* HTTP response headers&lt;br /&gt;
* HTTP response body&lt;br /&gt;
&lt;br /&gt;
3) IMPORTANT: Implement a plugin-based uploader system&lt;br /&gt;
&lt;br /&gt;
4) IMPORTANT: Implement ONE plugin, that uploads that into the OWTF database&lt;br /&gt;
&lt;br /&gt;
5) IMPORTANT: OWTF should ideally be able to invoke the uploader right after running a tool&lt;br /&gt;
	Example: OWTF runs skipfish, skipfish finishes, OWTF runs the HTTP traffic uploader, all skipfish data is pushed to the OWTF DB.&lt;br /&gt;
&lt;br /&gt;
6) CRITICAL: The off-line HTTP traffic uploader should be smart enough to read + push 1-by-1 instead of *stupidly* trying to load everything into memory first, you have been warned! :)&lt;br /&gt;
&lt;br /&gt;
	Why? Because in a huge assessment, the output of &amp;quot;tool X&amp;quot; can be &amp;quot;10 GB&amp;quot;, which is *stupid* to load into memory, this is OWTF, we *really* try to foresee the crash before it happens! ;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
CRITICAL: It is important to implement a plugin-based uploader system, so that other projects can benefit from this work (i.e. to be able to import third-party tool data to ZAP, Burp, and other tools in a similar fashion), and hence hopefully join us in maintaining this project moving forward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Health Monitor ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
In some cases, especially on large assessments (think: &amp;gt; 30 URLs) a number of things often go wrong and OWTF needs to recover from everything, which is difficult.&lt;br /&gt;
&lt;br /&gt;
For this reason, OWTF needs an independent module, which is completely detached from OWTF (a different process), to ensure the health of the assessment is in check at all times, this includes the following:&lt;br /&gt;
&lt;br /&gt;
'''Feature 1) Alerting mechanisms'''&lt;br /&gt;
&lt;br /&gt;
When any of the monitor alerts (see below) is triggered. The OWTF user will be notified immediately through ALL of the following means:&lt;br /&gt;
* Playing an mp3 song (both local and possibly remote locations)&lt;br /&gt;
* Scan status overview on the CLI&lt;br /&gt;
* Scan status overview on the GUI&lt;br /&gt;
&lt;br /&gt;
NOTE: A configuration file from where the user can enable/disable/configure all these mechanisms is desired.&lt;br /&gt;
&lt;br /&gt;
'''Feature 2) Corrective mechanisms'''&lt;br /&gt;
&lt;br /&gt;
Corrective mechanisms are also expected in this project, these will be accomplished sending OWTF api messages such as:&lt;br /&gt;
* Stop this tool&lt;br /&gt;
* Freeze this process (to continue later)&lt;br /&gt;
* Freeze the whole scan (to continue later)&lt;br /&gt;
&lt;br /&gt;
Additional mechanisms:&lt;br /&gt;
* Show a ranking of files that take the most space&lt;br /&gt;
&lt;br /&gt;
'''Feature 3) Target monitor'''&lt;br /&gt;
&lt;br /&gt;
Brief overview:&lt;br /&gt;
&lt;br /&gt;
All target URLs are checked for availability periodically (i.e. once x 5 minutes?), if a URL in scope goes down the pentester is alerted (see above).&lt;br /&gt;
&lt;br /&gt;
Potential approach: Check if length of 1st page changes every 60 seconds.&lt;br /&gt;
&lt;br /&gt;
NOTE: It might be needed to change this on the fly.&lt;br /&gt;
&lt;br /&gt;
More background&lt;br /&gt;
&lt;br /&gt;
Consider the following scenario:&lt;br /&gt;
&lt;br /&gt;
Current Situation aka &amp;quot;problem to solve&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
1) Website X goes down during a scan&lt;br /&gt;
&lt;br /&gt;
2) the customer notices&lt;br /&gt;
&lt;br /&gt;
3) the customer tells the boss&lt;br /&gt;
&lt;br /&gt;
4) the boss tells the pentester&lt;br /&gt;
&lt;br /&gt;
5) the pentester stops the tool which was *still* trying to scan THAT target (!!!!)&lt;br /&gt;
&lt;br /&gt;
Desired situation aka &amp;quot;solution&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
It would be much more professional AND efficient that:&lt;br /&gt;
&lt;br /&gt;
1) The pentester notices&lt;br /&gt;
&lt;br /&gt;
2) The pentester tells the boss&lt;br /&gt;
&lt;br /&gt;
3) The boss tells the customer&lt;br /&gt;
&lt;br /&gt;
4) OWTF stops the tool because it knows that website is DEAD anyway&lt;br /&gt;
&lt;br /&gt;
A target monitor could easily do this with heartbeat requests + playing mp3s&lt;br /&gt;
&lt;br /&gt;
The target monitor will use the api to tell OWTF &amp;quot;this target is dead: freeze(stop?) current tests, skip target in future tests&amp;quot;&lt;br /&gt;
&lt;br /&gt;
'''Feature 4) Disk space monitor'''&lt;br /&gt;
&lt;br /&gt;
Another problem that is relatively common in large assessments, is that all disk space is used and the scanning box becomes unresponsive or crashes. When this happens it is too late, the pentester may also see this coming but wonder “which are the biggest files in the filesystem that I can delete”, it is not ideal to have to look for these files in a moment when the scanning box is about to crash :).&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
Regularly monitor how much disk space is left, especially on the partition where OWTF is writing the review (but also tool directories such as /home/username/.w3af/tmp, etc.). Keep track of files created by OWTF and all called tools and sort them by size in descending order. Then when the disk space is going low (i.e. predefined threshold), an mp3 or similar is played and this list is displayed to the user, so that they know what to delete to survive :).&lt;br /&gt;
&lt;br /&gt;
'''Feature 5) Network/Internet Connectivity monitor'''&lt;br /&gt;
&lt;br /&gt;
Sometimes it may also happen that ISP, etc. connectivity go down in the middle of a scan, this is often a very unfortunate situation since most tools are scanning in parallel and they won’t be able to produce a report OR even resume (i.e. A LOT is lost). The goal here is that OWTF does all of the following automatically:&lt;br /&gt;
&lt;br /&gt;
1) Detects the lack of connectivity&lt;br /&gt;
&lt;br /&gt;
2) Freezes all the tools (read: processes) in progress&lt;br /&gt;
&lt;br /&gt;
3) Resumes the scan when the connectivity is back.&lt;br /&gt;
&lt;br /&gt;
'''Feature 6) Tool crash detection'''&lt;br /&gt;
&lt;br /&gt;
Sometimes, certain tools (most notably, ahem, w3af), when they crash they do NOT exit. This leaves OWTF in a difficult position where 1+ process is waiting for nothing, forever (i.e. because “Tool X” will never finish)&lt;br /&gt;
&lt;br /&gt;
'''Feature 7) Tool (Plugin?) CPU/RAM/Bandwidth abuse detection and correction'''&lt;br /&gt;
&lt;br /&gt;
OWTF needs to notice when some tools crash and/or “go beserk” with RAM/CPU/Bandwidth consumption, this is different from the existing built-in checks in OWTF like “do not launch a new tool if there is less than XYZ RAM free” and more like “if tool X is using &amp;gt; XYZ of the available RAM/CPU/Bandwidth” and this is (potentially) negatively affecting other tools/tests, then throttle it.&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Installation Improvements and Package manager ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
This project is to implement what was suggested in the following github issue:&lt;br /&gt;
[https://github.com/owtf/owtf/issues/192 https://github.com/owtf/owtf/issues/192]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Recently i tried to make a fresh installation of OWTF. The installation process takes too much time. Is there any way to make the installation faster?&lt;br /&gt;
Having a private server with:&lt;br /&gt;
* pre-installed files for VMs&lt;br /&gt;
* pre-configured and patched tools&lt;br /&gt;
* Merged Lists&lt;br /&gt;
* Pre-configured certificates&lt;br /&gt;
Additionally a minimal installation which will install the core of OWTF with the option of update can increase the installation speed. The update procedure will start fetching the latest file versions from the server and copy them to the right path.&lt;br /&gt;
Additional ideas are welcome.&lt;br /&gt;
&lt;br /&gt;
-- They could be hosted on Dropbox or a private VPS :)&lt;br /&gt;
&lt;br /&gt;
2 Installation Modes&lt;br /&gt;
* For high speed connections (Downloading the files uncompressed)&lt;br /&gt;
* For low speed connections (Downloading the files compressed)&lt;br /&gt;
and the installation crashed because i runned out of space in the vm&lt;br /&gt;
IMPORTANT NOTE: OWTF should check the available disk space BEFORE installation starts + warn the user if problems are likely&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Excellent reliability (i.e. proper exception handling, etc.)&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Testing Framework Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
As OWASP OWTF grows it makes sense to build custom unit tests to automatically re-test that functionality has not been broken. In this project we would like to improve the existing unit testing framework so that creating OWASP OWTF unit tests is as simple as possible and all missing tests for new functionality are created. The goal of this project is to update the existing Unit Test Framework to create all missing tests as well as improve the existing ones to verify OWASP OWTF functionality in an automated fashion.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Top features'''&lt;br /&gt;
&lt;br /&gt;
In this improvement phase, the Testing Framework should:&lt;br /&gt;
* (Top Prio) Focus more on functional tests&lt;br /&gt;
For example: Improve coverage of OWASP Testing Guide, PTES, etc. (lots of room for improvement there!)&lt;br /&gt;
* (Top Prio) Put together a great wiki documentation section for contributors&lt;br /&gt;
The goal here is to help contributors write tests for the functionality that they implement. This should be as easy as possible.&lt;br /&gt;
* (Top Prio) Fix the current Travis issues :)&lt;br /&gt;
* (Nice to have) Bring the unit tests up to speed with the codebase&lt;br /&gt;
This will be challenging but very worth trying after top priorities.&lt;br /&gt;
The wiki should be heavily updated so that contributors create their own unit tests easily moving forward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''General background'''&lt;br /&gt;
&lt;br /&gt;
The Unit Test Framework should be able to:&lt;br /&gt;
* Define test categories: For example, &amp;quot;all plugins&amp;quot;, &amp;quot;web plugins&amp;quot;, &amp;quot;aux plugins&amp;quot;, &amp;quot;test framework core&amp;quot;, etc. (please see [http://www.slideshare.net/abrahamaranguren/introducing-owasp-owtf-workshop-brucon-2012 this presentation] for more background)&lt;br /&gt;
* Allow to regression test isolated plugins (i.e. &amp;quot;only test _this_ plugin&amp;quot;)&lt;br /&gt;
* Allow to regression test by test categories (i.e. &amp;quot;test only web plugins&amp;quot;)&lt;br /&gt;
* Allow to regression test everything (i.e. plugins + framework core: &amp;quot;test all&amp;quot;)&lt;br /&gt;
* Produce meaningful statistics and easy to navigate logs to identify which tests failed and ideally also hints on how to potentially fix the problem where possible&lt;br /&gt;
* Allow for easy creation of _new_ unit tests specific to OWASP OWTF&lt;br /&gt;
* Allow for easy modification and maintenance of _existing_ unit tests specific to OWASP OWTF&lt;br /&gt;
* Perform well so that we can run as many tests as possible in a given period of time&lt;br /&gt;
* Potentially leverage the python unittest library: [http://docs.python.org/2/library/unittest.html http://docs.python.org/2/library/unittest.html]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Performant and automated regression testing&lt;br /&gt;
* Unit tests for a wide coverage of OWASP OWTF, ideally leveraging the Unit Test Framework where possible&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python, experience with unit tests and automated regression testing would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Tool utilities module ===&lt;br /&gt;
&lt;br /&gt;
'''WARNING: This idea is taken from the 1st round of OWCS selections (Sept. 15th), please do NOT apply'''&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
The spirit of this feature is something that may or may not be used from OWTF: These are utilities that may be chained together by OWTF OR a penetration tester using the command line. The idea is to automate mundane tasks that take time but may provide a lever to a penetration tester short on time.&lt;br /&gt;
&lt;br /&gt;
'''Feature 1) Vulnerable software version database:'''&lt;br /&gt;
&lt;br /&gt;
Implement a searchable vulnerable software version database so that a penetration tester enters a version and gets vulnerabilities sorted by criticality with MAX Impact vulnerabilities at the top (possibly: CVSS score in DESC order).&lt;br /&gt;
&lt;br /&gt;
Example:&lt;br /&gt;
[http://www.cvedetails.com/vulnerability-list.php?vendor_id=74&amp;amp;product_id=128&amp;amp;version_id=149817&amp;amp;page=1&amp;amp;hasexp=0&amp;amp;opdos=0&amp;amp;opec=0&amp;amp;opov=0&amp;amp;opcsrf=0&amp;amp;opgpriv=0&amp;amp;opsqli=0&amp;amp;opxss=0&amp;amp;opdirt=0&amp;amp;opmemc=0&amp;amp;ophttprs=0&amp;amp;opbyp=0&amp;amp;opfileinc=0&amp;amp;opginf=0&amp;amp;cvssscoremin=0&amp;amp;cvssscoremax=0&amp;amp;year=0&amp;amp;month=0&amp;amp;cweid=0&amp;amp;order=3&amp;amp;trc=17&amp;amp;sha=0d26af6f3ba8ea20af18d089df40c252ea09b711 Vulnerabilities against specific software version]&lt;br /&gt;
&lt;br /&gt;
'''Feature 2) Nmap output file merger:'''&lt;br /&gt;
&lt;br /&gt;
Unify nmap files *without* losing data: XML, text and greppable formats&lt;br /&gt;
For example: Sometimes 2 scans pass through the same port, one returns the server version, the other does not, we obviously do not want to lose banner information :).&lt;br /&gt;
&lt;br /&gt;
'''Feature 3) Nmap output file vulnerability mapper'''&lt;br /&gt;
&lt;br /&gt;
From an nmap output file, get the unique software version banners, and provide a list of (maybe in tabs?):&lt;br /&gt;
&lt;br /&gt;
1) CVEs in reverse order of CVSS score, with links.&lt;br /&gt;
&lt;br /&gt;
2) Metasploit modules available for each CVE / issue&lt;br /&gt;
&lt;br /&gt;
NOTE: Can supply an *old* shell script for reference&lt;br /&gt;
&lt;br /&gt;
3) Servers/ports affected (i.e. all server / port combinations using that software version)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 4) URL target list creator:'''&lt;br /&gt;
&lt;br /&gt;
Turn all “speaks http” ports (from any nmap format) into a list of URL targets for OWTF&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 5) Hydra command creator:'''&lt;br /&gt;
&lt;br /&gt;
nmap file in =&amp;gt; Hydra command list out&lt;br /&gt;
&lt;br /&gt;
grep http auth / login pages in output files to identify login interfaces =&amp;gt; Hydra command list out&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 6) WP-scan command creator:'''&lt;br /&gt;
&lt;br /&gt;
look at all URLs (i.e. nmap file), check if they might be running word press, generate a list of suggested wp-scan commands for all targets that might be running word press&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Excellent reliability (i.e. proper exception handling, etc.)&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python, experience with unit tests and automated regression testing would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
''' OWASP Mentors '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP ZAP  ===&lt;br /&gt;
There are a number of ZAP related projects students can work on, including:&lt;br /&gt;
* Bug tracker support&lt;br /&gt;
* Convert active and passive scan rules to scripts&lt;br /&gt;
* Field enumeration&lt;br /&gt;
* Form handling&lt;br /&gt;
* Gauntlet integration&lt;br /&gt;
* Script console code completion&lt;br /&gt;
* Support java as a scripting language&lt;br /&gt;
* Testing guide integration&lt;br /&gt;
* Zest text representation and parser&lt;br /&gt;
&lt;br /&gt;
For more details see the ZAP [https://code.google.com/p/zaproxy/wiki/OpenProjects Open Projects] wiki page.&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summer_Code_Sprint2015&amp;diff=196273</id>
		<title>Summer Code Sprint2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summer_Code_Sprint2015&amp;diff=196273"/>
				<updated>2015-06-17T15:19:46Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== OWASP Summer Code Sprint 2015 ==&lt;br /&gt;
&lt;br /&gt;
== Goal == &lt;br /&gt;
&lt;br /&gt;
The OWASP Summer Code Sprint 2015 is a program that aims to provide incentives to students to contribute to OWASP projects. By participating in the OWASP Summer Code Sprint a student can get real life experience while contributing to an open source project. A student that successfully completes the program will receive in total $1500.&lt;br /&gt;
&lt;br /&gt;
== Program details ==&lt;br /&gt;
&lt;br /&gt;
''Projects that are eligible:'' All code/tools projects. Documentation projects are excluded.&lt;br /&gt;
&lt;br /&gt;
''Duration:'' 2 months of full-time engagement.&lt;br /&gt;
&lt;br /&gt;
== How it works ==&lt;br /&gt;
&lt;br /&gt;
Any code/tool project can participate in the OWASP Summer Code Sprint. Each project will be guided by an OWASP mentor. Students are evaluated in the middle and at the end of the coding period, based on success criteria identified at the beginning of the project. Successful students will receive $750 after each evaluation, a total of $1500 per student.&lt;br /&gt;
&lt;br /&gt;
Projects are focused on developing security tools. It is required that the code any student produces for those projects will be released as Open Source. &lt;br /&gt;
&lt;br /&gt;
Note on language: English is required for code comments and documentation, but not for interactions between students and advisers. Advisers who speak the same language as their students are encouraged to interact in that language. &lt;br /&gt;
&lt;br /&gt;
== How you can participate ==&lt;br /&gt;
&lt;br /&gt;
=== As a student: ===&lt;br /&gt;
&lt;br /&gt;
1. Review the list of OWASP Projects currently participating in the OWASP Summer Code Sprint 2015.&lt;br /&gt;
&lt;br /&gt;
2. Get in touch with the OWASP Project mentor of your choice.&lt;br /&gt;
&lt;br /&gt;
3. Agree deliverables with OWASP mentor. &lt;br /&gt;
&lt;br /&gt;
4. Work away during Summer 2015.&lt;br /&gt;
&lt;br /&gt;
5. Rise to Open Source Development Glory :-)&lt;br /&gt;
&lt;br /&gt;
ALL STUDENTS PLEASE APPLY HERE &amp;gt;&amp;gt; [FORM http://goo.gl/forms/jUFTcXVDEY]&lt;br /&gt;
&lt;br /&gt;
=== As an OWASP Project Leader: ===&lt;br /&gt;
&lt;br /&gt;
1. Edit this page adding your project and some proposed tasks as per the examples&lt;br /&gt;
&lt;br /&gt;
2. Promote the initiative to your academic contacts&lt;br /&gt;
&lt;br /&gt;
== Timeplan ==&lt;br /&gt;
&lt;br /&gt;
'''Phase 1: Proposals'''&lt;br /&gt;
&lt;br /&gt;
Project leaders who want to include their project to the program should submit some initial proposal ideas on this page. These ideas serve as guidance to the students; they are things that project leaders would like to get done, like new features, improvements, etc.&lt;br /&gt;
&lt;br /&gt;
Subsequently students are invited to submit detailed proposals that can (but do not necessarily have to) be based on these ideas. Students are strongly encouraged to engage with project leaders and each project's community (e.g. through the project's mailing list) in order to discuss the details of their proposal. Proposals should provide details about the implementation, time plan, milestones, etc.&lt;br /&gt;
&lt;br /&gt;
'''Phase 2: Scoring of proposals'''&lt;br /&gt;
&lt;br /&gt;
After the submission of proposals, project leaders and contributors/mentors are required to review the submitted proposals and score them (on a 1 to 5 scale). Each proposal should receive at least 3 assessments/scores from different mentors. Each mentor, contributor or leader can score only proposals for their OWN project. All assessments should provide justification. Reviewers are strongly encouraged to provide constructive comments for students so that they can improve in the future.&lt;br /&gt;
&lt;br /&gt;
Project leaders are responsible to attract a sufficient number of volunteer mentors to score proposals and subsequently supervise those that will get selected.&lt;br /&gt;
&lt;br /&gt;
'''Phase 3: Slot allocation.'''&lt;br /&gt;
&lt;br /&gt;
When proposal scoring has been completed, each project leader requests a specific number of slots. This number should be based on:&lt;br /&gt;
The number of truly outstanding proposals according to submitted scores.&lt;br /&gt;
The importance of the proposal to the project's roadmap.&lt;br /&gt;
The number of available mentors for the project. At least 2 mentors are needed for each proposal that gets accepted.&lt;br /&gt;
If the total number of requested slots is less than or equal to the available number of slots, then all projects get the requested slots. If not, the following rules apply:&lt;br /&gt;
All projects that have requested a slot get at least 1 slot, provided they have a high quality proposal and sufficient number of mentors.&lt;br /&gt;
Two mentors are required per slot allocated to the project.&lt;br /&gt;
The program's administrators get in touch with project leaders, especially those that have requested a large number of slots to receive additional feedback on the requested slots and explore any available possibilities for reducing the requested number of slots. A project leader might choose to donate one or more requested slots back to the pool so that other projects can get more slots. The program administrators can choose to initiate a public discussion between projects in need of more slots and projects that have requested a lot of slots in order to determine the best possible outcome for everyone.&lt;br /&gt;
If all else fails, slots are equally allocated to projects, i.e. all projects get 1 slot; projects that have requested 2 or more slots get an extra slot if available; projects that have requested 3 or more slots get an extra slot if available, etc. When there are no more slots available for all projects that have requested them a draw is used to allocate the remaining slots.&lt;br /&gt;
&lt;br /&gt;
In any case, the program's administrators should perform a final review of the selected proposals to ensure that they are of high quality. If concerns arise they should request additional information from project leaders.&lt;br /&gt;
&lt;br /&gt;
'''Phase 4: Coding.'''&lt;br /&gt;
&lt;br /&gt;
This is the main phase of the program. Students implement their proposal according to the submitted timeplan and under the supervision &lt;br /&gt;
of their mentors.&lt;br /&gt;
&lt;br /&gt;
== Evaluations ==&lt;br /&gt;
&lt;br /&gt;
In the middle of the coding period, mentors should submit an evaluation of their students to ensure that they are on track and provide some feedback both to OWASP and the students.&lt;br /&gt;
&lt;br /&gt;
If no/little progress has been made up to this point, the mentors could decide to fail the student in which case the student does not receive money. If successful, OWASP will pay half the amount ($750). The final evaluations are submitted at the end of the coding period and the second installment ($750) is paid to the student if all agreed deliverables are met. If the student has failed to demonstrate progress during the second period, then the second installment will not be paid and the student will get only half of the amount.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Deadlines == &lt;br /&gt;
Program announcement: June 1st, 2015&lt;br /&gt;
&lt;br /&gt;
Student Applications: June 21st, 2015&lt;br /&gt;
&lt;br /&gt;
Proposal Evaluations: from June 22nd until June 28th.&lt;br /&gt;
&lt;br /&gt;
Successful proposals announcement: July 1st&lt;br /&gt;
&lt;br /&gt;
Coding Period Starts: July 10th&lt;br /&gt;
&lt;br /&gt;
Mid-term evaluations: Submitted from August 10th until August 15th.&lt;br /&gt;
&lt;br /&gt;
Coding period ends: September 10th.&lt;br /&gt;
&lt;br /&gt;
Final evaluations: Until September 18th.&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
Please subscribe to the following mailing list to receive updates or ask any particular questions: &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Ideas ==&lt;br /&gt;
&lt;br /&gt;
=== OWASP Hackademic  ===&lt;br /&gt;
&lt;br /&gt;
=== Docker Sandboxed for challenges ===&lt;br /&gt;
&lt;br /&gt;
''' Brief explanation: '''&lt;br /&gt;
Background problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are trying to enable users to freely upload vulnerable applications to the platform. &lt;br /&gt;
After some research we concluded that writing a python application that uses docker to deploy challenges would be the best way to go about it.&lt;br /&gt;
Also, we need to provide a frontend to manage the deployed containers and integrate our existing analytics gathering system into the dockerized challenges.&lt;br /&gt;
The installer of the application should take care of initializing both the cms and the containers without introducing too much complexity.&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
There is an easy to use python library for docker and there should be a frontend managing the containers we can use off the self with minimal modifications.&lt;br /&gt;
The feature has already had a poc using linux containers, you can find it in the open merge requests of the project's github page.&lt;br /&gt;
&lt;br /&gt;
''' Expected results '''&lt;br /&gt;
* Integrate dockerized challenges in the platform.&lt;br /&gt;
* PEP-8 compliant code in all provided python code&lt;br /&gt;
* PSR compliant code in all php provided code&lt;br /&gt;
* Sphinx/phpdoc friendly comments&lt;br /&gt;
* Excellent reliability&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation &lt;br /&gt;
&lt;br /&gt;
''' Prerequisites '''&lt;br /&gt;
&lt;br /&gt;
Some knowledge of test driven development, php, python, docker&lt;br /&gt;
&lt;br /&gt;
''' OWASP Mentors '''&lt;br /&gt;
&lt;br /&gt;
Spyros Gasteratos (spyros.gasteratos@owasp.org)&lt;br /&gt;
-- anyone else who already knows of puppet(I think we'll end up writing puppet manifests for installation)&lt;br /&gt;
docker, python, php?&lt;br /&gt;
&lt;br /&gt;
=== Javascript Based Development Challenges ===&lt;br /&gt;
&lt;br /&gt;
Brief explanation:&lt;br /&gt;
Background Problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are looking for challenges which are aimed towards secure coding.&lt;br /&gt;
The user should be served with a piece of vulnerable javascript which fails the unit tests provided.&lt;br /&gt;
The user has to fix the vulnerability in a way that makes the unit tests pass.&lt;br /&gt;
&lt;br /&gt;
Example Solution of one of the challenges:&lt;br /&gt;
Provide the user with the following code:&lt;br /&gt;
''&lt;br /&gt;
function sayHi(string userInput){&lt;br /&gt;
var hiField = document.getElementById(&amp;quot;hiField&amp;quot;);&lt;br /&gt;
hiField.innerHtml = userInput;&lt;br /&gt;
}&lt;br /&gt;
''&lt;br /&gt;
Use any javascript unit - testing framework to design a set of unit tests which call the function with all sorts of payloads and test if the user seems to have escaped userInput correctly,&lt;br /&gt;
we're not looking for completeness a solid proof of concept implementation for future reference is acceptable.&lt;br /&gt;
&lt;br /&gt;
''' Expected Results '''&lt;br /&gt;
A complete implementation of challenges covering the top 10 according to our coding standards.&lt;br /&gt;
&lt;br /&gt;
=== Migrate old code to the new coding standards ===&lt;br /&gt;
&lt;br /&gt;
In the last project summit we decided to introduce code style and standards compliance checking for new commits and slowly migrate the old ones to the new setting.&lt;br /&gt;
We also decided to prefer contributions with unit tests.&lt;br /&gt;
&lt;br /&gt;
We're looking for someone to assist in this migration. So far we have 0% of the classes in the new standards/coding style but the frontend tests cover a significant part of the platform.&lt;br /&gt;
You could help us reach at least 70% line coverage in tests and a similar coverage in standard/code style &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== New Theme ===&lt;br /&gt;
&lt;br /&gt;
Problem to solve:&lt;br /&gt;
Our current theme is from 2012 and looks even older, moreover it could do with some usability improvements. Your job will be to design and implement a new shiny theme for the platform.&lt;br /&gt;
&lt;br /&gt;
'''Expected Results'''  A shiny new theme with complete front end tests using the theme&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF  ===&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - VMS - OWTF Vulnerability Management System ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Background problem to solve:&lt;br /&gt;
&lt;br /&gt;
We are trying to reduce the human work burden where there will be hundreds of issues listing apache out of date or php out of date. &lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
We can meta aggregate these duplicate issues into one issue of &amp;quot;outdated software / apache / php detected&amp;quot;. with XYZ list of issues in them.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
A separate set of scripts that allows for grouping and management of vulnerabilities (i.e. think huge assessments), to be usable *both* from inside + outside of OWTF in a separate sub-repo here: https://github.com/owtf &lt;br /&gt;
&lt;br /&gt;
VMS will have the following features:&lt;br /&gt;
* Vulnerability correlation engine which will allow for quick identification of unique vulnerability and deduplication.&lt;br /&gt;
* Vulnerability table optimization : combining redundant vulnerabilities like example : PHP &amp;lt;5.1 , PHP &amp;lt; 5.2 , PHP &amp;lt; 5.3 all suggest upgrade php so if multiple issues are reported they should be combined.&lt;br /&gt;
* Integration with existing bug tracking system like example bugzilla, jira : Should not be too hard as all such system have one or the other method exposed (REST API or similar)&lt;br /&gt;
* Fix Validation : Since we integrate with bug tracking once dev fixed the bug and code deployed we can run specific checks via * OWTF or other tool (may be specific nessus or nexpose plugin or similar.)&lt;br /&gt;
* Management Dashboard : Could be exposed to Pentester, Higher Management where stats are shown with lesser details but more of high level overview.&lt;br /&gt;
&lt;br /&gt;
[http://www.slideshare.net/null0x00/nessus-and-reporting-karma Similar previous work for Nessus]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - HTTP Request Translator Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Problem to solve:&lt;br /&gt;
&lt;br /&gt;
There are many situations in web app pentests where just no tool will do the job and you need to script something, or mess around with the command line (classic example: sequence of steps where each step requires input from the previous step). In these situations, translating an HTTP request or a sequence of HTTP requests, takes valuable time which the pentester might just not really have.&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
An HTTP request translator, a *standalone* *tool* that can:&lt;br /&gt;
&lt;br /&gt;
1) Be used from inside OR outside of OWTF.&lt;br /&gt;
&lt;br /&gt;
2) Translate raw HTTP requests into curl commands or bash/python/php/ruby/PowerShell scripts&lt;br /&gt;
&lt;br /&gt;
3) Provide essential quick and dirty transforms: base64 (encode/decode), urlencode (encode/decode)&lt;br /&gt;
* Transforms with boundary strings? (TBD)&lt;br /&gt;
* Individually or in bulk? (TBD)&lt;br /&gt;
&lt;br /&gt;
'''Essential Function: &amp;quot;--output&amp;quot; argument'''&lt;br /&gt;
&lt;br /&gt;
CRITICAL: The command/script should be generated so that the request is sent as literally as possible.&lt;br /&gt;
&lt;br /&gt;
Example: NO client specific headers are sent. IF the original request had &amp;quot;User-Agent: X&amp;quot;, the generated command/script should have EXACTLY that (i.e. NOT a curl user agent, etc.). Obviously, the same applies to ALL other headers.&lt;br /&gt;
&lt;br /&gt;
NOTE: Ideally the following should be implemented using an extensible plugin architecture (i.e. NEW plugins are EASY to add)&lt;br /&gt;
* http request in =&amp;gt; curl command out&lt;br /&gt;
* http request in =&amp;gt; bash script out&lt;br /&gt;
* http request in =&amp;gt; python script out&lt;br /&gt;
* http request in =&amp;gt; php script out&lt;br /&gt;
* http request in =&amp;gt; ruby script out&lt;br /&gt;
* http request in =&amp;gt; PowerShell script out&lt;br /&gt;
&lt;br /&gt;
'''Basic additional arguments:'''&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--proxy&amp;quot; argument: generates the command/script with the relevant proxy option&lt;br /&gt;
&lt;br /&gt;
		NOTE: With this the command/script may send requests through a MiTM proxy (i.e. OWTF, ZAP, Burp, etc.)&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--string-search&amp;quot; argument: generates the command/script so that it:&lt;br /&gt;
&lt;br /&gt;
		1) performs the request&lt;br /&gt;
&lt;br /&gt;
		2) then searches for something in the response (i.e. literal match)&lt;br /&gt;
&lt;br /&gt;
- &amp;quot;--regex-search&amp;quot; argument: generates the command/script so that it:&lt;br /&gt;
		1) performs the request&lt;br /&gt;
&lt;br /&gt;
		2) then searches for something in the response (i.e. regex match)&lt;br /&gt;
&lt;br /&gt;
'''OWTF integration'''&lt;br /&gt;
&lt;br /&gt;
The idea here, is to invoke this tool from:&lt;br /&gt;
&lt;br /&gt;
1) Single HTTP transactions:&lt;br /&gt;
&lt;br /&gt;
For example, have a button to &amp;quot;export http request&amp;quot; + then show options equivalent to the flags&lt;br /&gt;
&lt;br /&gt;
2) Multiple HTTP transactions:&lt;br /&gt;
&lt;br /&gt;
Same as with Single transactions, but letting the user &amp;quot;select a number of transactions&amp;quot; first (maybe a checkbox?).&lt;br /&gt;
&lt;br /&gt;
		&lt;br /&gt;
'''Desired input formats:'''&lt;br /&gt;
&lt;br /&gt;
* Read raw HTTP request from stdin -Suggested default behaviour! :)-&lt;br /&gt;
&lt;br /&gt;
	Example: cat path/to/http_request.txt | http-request-translator.py --output&lt;br /&gt;
&lt;br /&gt;
* Interactive mode: read raw HTTP request from keyboard + &amp;quot;hit enter when ready&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	Suggestion: This could be a &amp;quot;-i&amp;quot; (for &amp;quot;interactive&amp;quot;) flag and/or the fallback option when &amp;quot;stdin is empty&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	Example:&lt;br /&gt;
&lt;br /&gt;
	1) User runs tool with desired flags (i.e. &amp;quot;--output ruby --proxy 127.0.0.1:1234 ...&amp;quot;, etc.)&lt;br /&gt;
&lt;br /&gt;
	2) Tool prints: &amp;quot;Please paste a raw HTTP request and hit enter when ready&amp;quot;&lt;br /&gt;
&lt;br /&gt;
	3) User pastes a raw HTTP requests + hits enter&lt;br /&gt;
&lt;br /&gt;
	4) Tool outputs whatever is relevant for the flags + http request given&lt;br /&gt;
&lt;br /&gt;
* For bulk processing: Maybe a directory of raw http request files?&lt;br /&gt;
&lt;br /&gt;
'''Nice to have: Transforms'''&lt;br /&gt;
&lt;br /&gt;
In the context of translating raw HTTP requests into commands/scripts, what we want here is to provide some handy &amp;quot;macros&amp;quot; so that the relevant command/script is generated accordingly.&lt;br /&gt;
&lt;br /&gt;
Example:&lt;br /&gt;
&lt;br /&gt;
NOTE: Assume something like the following arguments: &amp;quot;--transform-boundary=@@@@@@@ --transform-language=php&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Step 1) The user provides a raw HTTP request like this:&lt;br /&gt;
&lt;br /&gt;
  GET /path/to/urlencode@@@@@@@abc d@@@@@@@/test&lt;br /&gt;
  Host: target.com&lt;br /&gt;
  ...&lt;br /&gt;
&lt;br /&gt;
Step 2) The tool generates a bash script like the following:&lt;br /&gt;
&lt;br /&gt;
  #!/bin/bash&lt;br /&gt;
  &lt;br /&gt;
  PARAM1=$(echo 'abc d' | php -r &amp;quot;echo urlencode(fgets(STDIN));&amp;quot;)&lt;br /&gt;
  curl ...... &amp;quot;http://target.com/path/to/$PARAM1/test&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OR a &amp;quot;curl command&amp;quot; like the following:&lt;br /&gt;
  PARAM1=$(echo 'abc d' | php -r &amp;quot;echo urlencode(fgets(STDIN));&amp;quot;); curl ...... &amp;quot;http://target.com/path/to/$PARAM1/test&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
This feature can be valuable to shave a bit more time in script writing.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - JavaScript Library Sniper Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
This is a project that tries to resolve a very common problem during penetration tests:&lt;br /&gt;
&lt;br /&gt;
The customer is running a number of outdated JavaScript Libraries, but there is just not enough time to determine if something useful -i.e. something *really* bad! :)- can be done with that or not.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
To solve this problem, we propose a *standalone* *tool* that can:&lt;br /&gt;
&lt;br /&gt;
1) Be run BOTH from inside AND outside of OWTF&lt;br /&gt;
&lt;br /&gt;
2) Build and *update* a fingerprint JavaScript library database of:&lt;br /&gt;
* Library File hashes =&amp;gt; JavaScript Library version&lt;br /&gt;
* Library File lengths =&amp;gt; JavaScript Library version&lt;br /&gt;
* (Nice to have:) As above, but for each individual github commit (possible drawback: too big?)&lt;br /&gt;
&lt;br /&gt;
3) Build and *update* a vulnerability database of:&lt;br /&gt;
* JavaScript Library version =&amp;gt; CVE - CVSS score - Vulnerability info&lt;br /&gt;
&lt;br /&gt;
4) Given a [ JavaScript file OR hash OR length ], found in the database, provides:&lt;br /&gt;
* JavaScript Library version&lt;br /&gt;
* List of vulnerabilities sorted in descending CVSS score order&lt;br /&gt;
&lt;br /&gt;
5) (very cool to have) Given a list of JavaScript files (maybe a directory), provides:&lt;br /&gt;
* ALL Library/vulnerability matches described on 4)&lt;br /&gt;
	&lt;br /&gt;
Once the standalone tool is built and verified to be working, OWTF should be able to:&lt;br /&gt;
&lt;br /&gt;
Feature 1) GREP plugin improvement (Web Application Fingerprint):&lt;br /&gt;
&lt;br /&gt;
Step 1) Lookup file lengths and hashes in the &amp;quot;JavaScript library database&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Step 2) If a match is found: provide the list of known vulnerabilities against &amp;quot;JavaScript library X&amp;quot; to the user&lt;br /&gt;
&lt;br /&gt;
Feature 2) SEMI-PASSIVE plugin improvement (Web Application Fingerprint):&lt;br /&gt;
&lt;br /&gt;
1) Requests all referenced BUT missing JavaScript files -i.e. scanners won't load JavaScript files! :)-&lt;br /&gt;
&lt;br /&gt;
2) re-runs the GREP plugin on the new files (i.e. to avoid missing vulns due to unrequested JavaScript files)&lt;br /&gt;
&lt;br /&gt;
Potential projects worth having a look for potential overlap/inspiration:&lt;br /&gt;
* [https://owasp.org/index.php/OWASP_Dependency_Check OWASP Dependency Check?]&lt;br /&gt;
&lt;br /&gt;
How many JavaScript libraries should be included?&lt;br /&gt;
* As many as possible, but especially the major ones: jQuery, knockout, etc.&lt;br /&gt;
* &amp;quot;Nirvana&amp;quot; Nice to have: ALL Individual versions of ALL JavaScript files from ALL opensource projects, (ideally) even if the project is not a JavaScript library -i.e. JavaScript files from Joomla, Wordpress, etc.-&lt;br /&gt;
&lt;br /&gt;
Common JavaScript library fingerprinting techniques include:&lt;br /&gt;
* Parse the JavaScript file and grab the version from there&lt;br /&gt;
* Determine the JavaScript version based on a hash of the file&lt;br /&gt;
* Determine the JavaScript version based on the length of the file&lt;br /&gt;
&lt;br /&gt;
Other Challenges:&lt;br /&gt;
* &amp;quot;the file&amp;quot; could be &amp;quot;the minimised file&amp;quot;, &amp;quot;the expanded file&amp;quot; or even &amp;quot;a specific JavaScript file from Library X&amp;quot;&lt;br /&gt;
* When the JavaScript file does not match a specific version:&lt;br /&gt;
	1) The commit that matches the closest should (ideally) be found&lt;br /&gt;
	2) The NEXT library version after that commit (if present) should be found&lt;br /&gt;
	3) From there, it is about reusing the knowledge to figure out public vulnerabilities, CVSS scores, etc. again&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Off-line HTTP traffic uploader ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
Although it is awesome that OWTF runs a lot of tools on behalf of the user, there are situations where uploading the HTTP traffic of another tool off-line can be very interesting for OWTF, for example:&lt;br /&gt;
&lt;br /&gt;
* Tools that OWTF has trouble proxying right now: skipfish, hoppy&lt;br /&gt;
* Tools that the user may have run manually OR even from a tool aggregator -very common! :)-&lt;br /&gt;
* Tools that we just don't run from OWTF: ZAP, Burp, Fiddler&lt;br /&gt;
&lt;br /&gt;
This project is about implementing an off-line utility able to parse HTTP traffic:&lt;br /&gt;
&lt;br /&gt;
1) Figure out how to read output files from various tools like:&lt;br /&gt;
skipfish, hoppy, w3af, arachni, etc.&lt;br /&gt;
Nice to have: ZAP database, Burp database&lt;br /&gt;
&lt;br /&gt;
2) Translate that into the following clearly defined fields:&lt;br /&gt;
&lt;br /&gt;
* HTTP request&lt;br /&gt;
* HTTP response status code&lt;br /&gt;
* HTTP response headers&lt;br /&gt;
* HTTP response body&lt;br /&gt;
&lt;br /&gt;
3) IMPORTANT: Implement a plugin-based uploader system&lt;br /&gt;
&lt;br /&gt;
4) IMPORTANT: Implement ONE plugin, that uploads that into the OWTF database&lt;br /&gt;
&lt;br /&gt;
5) IMPORTANT: OWTF should ideally be able to invoke the uploader right after running a tool&lt;br /&gt;
	Example: OWTF runs skipfish, skipfish finishes, OWTF runs the HTTP traffic uploader, all skipfish data is pushed to the OWTF DB.&lt;br /&gt;
&lt;br /&gt;
6) CRITICAL: The off-line HTTP traffic uploader should be smart enough to read + push 1-by-1 instead of *stupidly* trying to load everything into memory first, you have been warned! :)&lt;br /&gt;
&lt;br /&gt;
	Why? Because in a huge assessment, the output of &amp;quot;tool X&amp;quot; can be &amp;quot;10 GB&amp;quot;, which is *stupid* to load into memory, this is OWTF, we *really* try to foresee the crash before it happens! ;)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
CRITICAL: It is important to implement a plugin-based uploader system, so that other projects can benefit from this work (i.e. to be able to import third-party tool data to ZAP, Burp, and other tools in a similar fashion), and hence hopefully join us in maintaining this project moving forward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Health Monitor ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
In some cases, especially on large assessments (think: &amp;gt; 30 URLs) a number of things often go wrong and OWTF needs to recover from everything, which is difficult.&lt;br /&gt;
&lt;br /&gt;
For this reason, OWTF needs an independent module, which is completely detached from OWTF (a different process), to ensure the health of the assessment is in check at all times, this includes the following:&lt;br /&gt;
&lt;br /&gt;
'''Feature 1) Alerting mechanisms'''&lt;br /&gt;
&lt;br /&gt;
When any of the monitor alerts (see below) is triggered. The OWTF user will be notified immediately through ALL of the following means:&lt;br /&gt;
* Playing an mp3 song (both local and possibly remote locations)&lt;br /&gt;
* Scan status overview on the CLI&lt;br /&gt;
* Scan status overview on the GUI&lt;br /&gt;
&lt;br /&gt;
NOTE: A configuration file from where the user can enable/disable/configure all these mechanisms is desired.&lt;br /&gt;
&lt;br /&gt;
'''Feature 2) Corrective mechanisms'''&lt;br /&gt;
&lt;br /&gt;
Corrective mechanisms are also expected in this project, these will be accomplished sending OWTF api messages such as:&lt;br /&gt;
* Stop this tool&lt;br /&gt;
* Freeze this process (to continue later)&lt;br /&gt;
* Freeze the whole scan (to continue later)&lt;br /&gt;
&lt;br /&gt;
Additional mechanisms:&lt;br /&gt;
* Show a ranking of files that take the most space&lt;br /&gt;
&lt;br /&gt;
'''Feature 3) Target monitor'''&lt;br /&gt;
&lt;br /&gt;
Brief overview:&lt;br /&gt;
&lt;br /&gt;
All target URLs are checked for availability periodically (i.e. once x 5 minutes?), if a URL in scope goes down the pentester is alerted (see above).&lt;br /&gt;
&lt;br /&gt;
Potential approach: Check if length of 1st page changes every 60 seconds.&lt;br /&gt;
&lt;br /&gt;
NOTE: It might be needed to change this on the fly.&lt;br /&gt;
&lt;br /&gt;
More background&lt;br /&gt;
&lt;br /&gt;
Consider the following scenario:&lt;br /&gt;
&lt;br /&gt;
Current Situation aka &amp;quot;problem to solve&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
1) Website X goes down during a scan&lt;br /&gt;
&lt;br /&gt;
2) the customer notices&lt;br /&gt;
&lt;br /&gt;
3) the customer tells the boss&lt;br /&gt;
&lt;br /&gt;
4) the boss tells the pentester&lt;br /&gt;
&lt;br /&gt;
5) the pentester stops the tool which was *still* trying to scan THAT target (!!!!)&lt;br /&gt;
&lt;br /&gt;
Desired situation aka &amp;quot;solution&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
It would be much more professional AND efficient that:&lt;br /&gt;
&lt;br /&gt;
1) The pentester notices&lt;br /&gt;
&lt;br /&gt;
2) The pentester tells the boss&lt;br /&gt;
&lt;br /&gt;
3) The boss tells the customer&lt;br /&gt;
&lt;br /&gt;
4) OWTF stops the tool because it knows that website is DEAD anyway&lt;br /&gt;
&lt;br /&gt;
A target monitor could easily do this with heartbeat requests + playing mp3s&lt;br /&gt;
&lt;br /&gt;
The target monitor will use the api to tell OWTF &amp;quot;this target is dead: freeze(stop?) current tests, skip target in future tests&amp;quot;&lt;br /&gt;
&lt;br /&gt;
'''Feature 4) Disk space monitor'''&lt;br /&gt;
&lt;br /&gt;
Another problem that is relatively common in large assessments, is that all disk space is used and the scanning box becomes unresponsive or crashes. When this happens it is too late, the pentester may also see this coming but wonder “which are the biggest files in the filesystem that I can delete”, it is not ideal to have to look for these files in a moment when the scanning box is about to crash :).&lt;br /&gt;
&lt;br /&gt;
Proposed solution:&lt;br /&gt;
&lt;br /&gt;
Regularly monitor how much disk space is left, especially on the partition where OWTF is writing the review (but also tool directories such as /home/username/.w3af/tmp, etc.). Keep track of files created by OWTF and all called tools and sort them by size in descending order. Then when the disk space is going low (i.e. predefined threshold), an mp3 or similar is played and this list is displayed to the user, so that they know what to delete to survive :).&lt;br /&gt;
&lt;br /&gt;
'''Feature 5) Network/Internet Connectivity monitor'''&lt;br /&gt;
&lt;br /&gt;
Sometimes it may also happen that ISP, etc. connectivity go down in the middle of a scan, this is often a very unfortunate situation since most tools are scanning in parallel and they won’t be able to produce a report OR even resume (i.e. A LOT is lost). The goal here is that OWTF does all of the following automatically:&lt;br /&gt;
&lt;br /&gt;
1) Detects the lack of connectivity&lt;br /&gt;
&lt;br /&gt;
2) Freezes all the tools (read: processes) in progress&lt;br /&gt;
&lt;br /&gt;
3) Resumes the scan when the connectivity is back.&lt;br /&gt;
&lt;br /&gt;
'''Feature 6) Tool crash detection'''&lt;br /&gt;
&lt;br /&gt;
Sometimes, certain tools (most notably, ahem, w3af), when they crash they do NOT exit. This leaves OWTF in a difficult position where 1+ process is waiting for nothing, forever (i.e. because “Tool X” will never finish)&lt;br /&gt;
&lt;br /&gt;
'''Feature 7) Tool (Plugin?) CPU/RAM/Bandwidth abuse detection and correction'''&lt;br /&gt;
&lt;br /&gt;
OWTF needs to notice when some tools crash and/or “go beserk” with RAM/CPU/Bandwidth consumption, this is different from the existing built-in checks in OWTF like “do not launch a new tool if there is less than XYZ RAM free” and more like “if tool X is using &amp;gt; XYZ of the available RAM/CPU/Bandwidth” and this is (potentially) negatively affecting other tools/tests, then throttle it.&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* CRITICAL: Excellent reliability -i.e. the Health Monitor cannot crash! :)-&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Installation Improvements and Package manager ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
This project is to implement what was suggested in the following github issue:&lt;br /&gt;
[https://github.com/owtf/owtf/issues/192 https://github.com/owtf/owtf/issues/192]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Recently i tried to make a fresh installation of OWTF. The installation process takes too much time. Is there any way to make the installation faster?&lt;br /&gt;
Having a private server with:&lt;br /&gt;
* pre-installed files for VMs&lt;br /&gt;
* pre-configured and patched tools&lt;br /&gt;
* Merged Lists&lt;br /&gt;
* Pre-configured certificates&lt;br /&gt;
Additionally a minimal installation which will install the core of OWTF with the option of update can increase the installation speed. The update procedure will start fetching the latest file versions from the server and copy them to the right path.&lt;br /&gt;
Additional ideas are welcome.&lt;br /&gt;
&lt;br /&gt;
-- They could be hosted on Dropbox or a private VPS :)&lt;br /&gt;
&lt;br /&gt;
2 Installation Modes&lt;br /&gt;
* For high speed connections (Downloading the files uncompressed)&lt;br /&gt;
* For low speed connections (Downloading the files compressed)&lt;br /&gt;
and the installation crashed because i runned out of space in the vm&lt;br /&gt;
IMPORTANT NOTE: OWTF should check the available disk space BEFORE installation starts + warn the user if problems are likely&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Excellent reliability (i.e. proper exception handling, etc.)&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python and bash experience would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Testing Framework Improvements ===&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
As OWASP OWTF grows it makes sense to build custom unit tests to automatically re-test that functionality has not been broken. In this project we would like to improve the existing unit testing framework so that creating OWASP OWTF unit tests is as simple as possible and all missing tests for new functionality are created. The goal of this project is to update the existing Unit Test Framework to create all missing tests as well as improve the existing ones to verify OWASP OWTF functionality in an automated fashion.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Top features'''&lt;br /&gt;
&lt;br /&gt;
In this improvement phase, the Testing Framework should:&lt;br /&gt;
* (Top Prio) Focus more on functional tests&lt;br /&gt;
For example: Improve coverage of OWASP Testing Guide, PTES, etc. (lots of room for improvement there!)&lt;br /&gt;
* (Top Prio) Put together a great wiki documentation section for contributors&lt;br /&gt;
The goal here is to help contributors write tests for the functionality that they implement. This should be as easy as possible.&lt;br /&gt;
* (Top Prio) Fix the current Travis issues :)&lt;br /&gt;
* (Nice to have) Bring the unit tests up to speed with the codebase&lt;br /&gt;
This will be challenging but very worth trying after top priorities.&lt;br /&gt;
The wiki should be heavily updated so that contributors create their own unit tests easily moving forward.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''General background'''&lt;br /&gt;
&lt;br /&gt;
The Unit Test Framework should be able to:&lt;br /&gt;
* Define test categories: For example, &amp;quot;all plugins&amp;quot;, &amp;quot;web plugins&amp;quot;, &amp;quot;aux plugins&amp;quot;, &amp;quot;test framework core&amp;quot;, etc. (please see [http://www.slideshare.net/abrahamaranguren/introducing-owasp-owtf-workshop-brucon-2012 this presentation] for more background)&lt;br /&gt;
* Allow to regression test isolated plugins (i.e. &amp;quot;only test _this_ plugin&amp;quot;)&lt;br /&gt;
* Allow to regression test by test categories (i.e. &amp;quot;test only web plugins&amp;quot;)&lt;br /&gt;
* Allow to regression test everything (i.e. plugins + framework core: &amp;quot;test all&amp;quot;)&lt;br /&gt;
* Produce meaningful statistics and easy to navigate logs to identify which tests failed and ideally also hints on how to potentially fix the problem where possible&lt;br /&gt;
* Allow for easy creation of _new_ unit tests specific to OWASP OWTF&lt;br /&gt;
* Allow for easy modification and maintenance of _existing_ unit tests specific to OWASP OWTF&lt;br /&gt;
* Perform well so that we can run as many tests as possible in a given period of time&lt;br /&gt;
* Potentially leverage the python unittest library: [http://docs.python.org/2/library/unittest.html http://docs.python.org/2/library/unittest.html]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Performant and automated regression testing&lt;br /&gt;
* Unit tests for a wide coverage of OWASP OWTF, ideally leveraging the Unit Test Framework where possible&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python, experience with unit tests and automated regression testing would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF - Tool utilities module ===&lt;br /&gt;
&lt;br /&gt;
'''WARNING: This idea is taken from the 1st round of OWCS selections (Sept. 15th), please do NOT apply'''&lt;br /&gt;
&lt;br /&gt;
'''Brief explanation:'''&lt;br /&gt;
&lt;br /&gt;
The spirit of this feature is something that may or may not be used from OWTF: These are utilities that may be chained together by OWTF OR a penetration tester using the command line. The idea is to automate mundane tasks that take time but may provide a lever to a penetration tester short on time.&lt;br /&gt;
&lt;br /&gt;
'''Feature 1) Vulnerable software version database:'''&lt;br /&gt;
&lt;br /&gt;
Implement a searchable vulnerable software version database so that a penetration tester enters a version and gets vulnerabilities sorted by criticality with MAX Impact vulnerabilities at the top (possibly: CVSS score in DESC order).&lt;br /&gt;
&lt;br /&gt;
Example:&lt;br /&gt;
[http://www.cvedetails.com/vulnerability-list.php?vendor_id=74&amp;amp;product_id=128&amp;amp;version_id=149817&amp;amp;page=1&amp;amp;hasexp=0&amp;amp;opdos=0&amp;amp;opec=0&amp;amp;opov=0&amp;amp;opcsrf=0&amp;amp;opgpriv=0&amp;amp;opsqli=0&amp;amp;opxss=0&amp;amp;opdirt=0&amp;amp;opmemc=0&amp;amp;ophttprs=0&amp;amp;opbyp=0&amp;amp;opfileinc=0&amp;amp;opginf=0&amp;amp;cvssscoremin=0&amp;amp;cvssscoremax=0&amp;amp;year=0&amp;amp;month=0&amp;amp;cweid=0&amp;amp;order=3&amp;amp;trc=17&amp;amp;sha=0d26af6f3ba8ea20af18d089df40c252ea09b711 Vulnerabilities against specific software version]&lt;br /&gt;
&lt;br /&gt;
'''Feature 2) Nmap output file merger:'''&lt;br /&gt;
&lt;br /&gt;
Unify nmap files *without* losing data: XML, text and greppable formats&lt;br /&gt;
For example: Sometimes 2 scans pass through the same port, one returns the server version, the other does not, we obviously do not want to lose banner information :).&lt;br /&gt;
&lt;br /&gt;
'''Feature 3) Nmap output file vulnerability mapper'''&lt;br /&gt;
&lt;br /&gt;
From an nmap output file, get the unique software version banners, and provide a list of (maybe in tabs?):&lt;br /&gt;
&lt;br /&gt;
1) CVEs in reverse order of CVSS score, with links.&lt;br /&gt;
&lt;br /&gt;
2) Metasploit modules available for each CVE / issue&lt;br /&gt;
&lt;br /&gt;
NOTE: Can supply an *old* shell script for reference&lt;br /&gt;
&lt;br /&gt;
3) Servers/ports affected (i.e. all server / port combinations using that software version)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 4) URL target list creator:'''&lt;br /&gt;
&lt;br /&gt;
Turn all “speaks http” ports (from any nmap format) into a list of URL targets for OWTF&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 5) Hydra command creator:'''&lt;br /&gt;
&lt;br /&gt;
nmap file in =&amp;gt; Hydra command list out&lt;br /&gt;
&lt;br /&gt;
grep http auth / login pages in output files to identify login interfaces =&amp;gt; Hydra command list out&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Feature 6) WP-scan command creator:'''&lt;br /&gt;
&lt;br /&gt;
look at all URLs (i.e. nmap file), check if they might be running word press, generate a list of suggested wp-scan commands for all targets that might be running word press&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For background on OWASP OWTF please see: [https://www.owasp.org/index.php/OWASP_OWTF https://www.owasp.org/index.php/OWASP_OWTF]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Expected results:'''&lt;br /&gt;
&lt;br /&gt;
* '''IMPORTANT: [http://legacy.python.org/dev/peps/pep-0008/ PEP-8 compliant code] in all modified code and surrounding areas.'''&lt;br /&gt;
* '''IMPORTANT: [https://github.com/7a/owtf/wiki/Contributor%27s-README OWTF contributor README compliant code]'''&lt;br /&gt;
* '''IMPORTANT: [http://sphinx-doc.org/ Sphinx-friendly python comments] [http://owtf.github.io/ptp/_modules/ptp/tools/w3af/parser.html#W3AFXMLParser example Sphinx-friendly python comments here]'''&lt;br /&gt;
* Excellent reliability (i.e. proper exception handling, etc.)&lt;br /&gt;
* Good performance&lt;br /&gt;
* Unit tests / Functional tests&lt;br /&gt;
* Good documentation&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisite:'''&lt;br /&gt;
&lt;br /&gt;
Python, experience with unit tests and automated regression testing would be beneficial, some previous exposure to security concepts and penetration testing is welcome but not strictly necessary as long as there is will to learn&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP OWTF Mentor:'''&lt;br /&gt;
&lt;br /&gt;
Abraham Aranguren, Bharadwaj Machiraju - OWASP OWTF Project Leaders - Contact: Abraham.Aranguren@owasp.org, bharadwaj.machiraju@gmail.com&lt;br /&gt;
&lt;br /&gt;
''' OWASP Mentors '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP ZAP  ===&lt;br /&gt;
There are a number of ZAP related projects students can work on, including:&lt;br /&gt;
* Bug tracker support&lt;br /&gt;
* Convert active and passive scan rules to scripts&lt;br /&gt;
* Field enumeration&lt;br /&gt;
* Form handling&lt;br /&gt;
* Gauntlet integration&lt;br /&gt;
* Script console code completion&lt;br /&gt;
* Support java as a scripting language&lt;br /&gt;
* Testing guide integration&lt;br /&gt;
* Zest text representation and parser&lt;br /&gt;
&lt;br /&gt;
For more details see the ZAP [https://code.google.com/p/zaproxy/wiki/OpenProjects Open Projects] wiki page.&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195770</id>
		<title>Spain/Chapter Meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195770"/>
				<updated>2015-06-04T07:49:09Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== &amp;lt;b&amp;gt;IX OWASP Spain Chapter Meeting&amp;lt;/b&amp;gt; - &amp;lt;font size=-1&amp;gt;Barcelona, 12 de junio de 2015&amp;lt;/font&amp;gt; ==&lt;br /&gt;
Estas conferencias, abiertas y gratuitas, reúnen desde 2006 a los profesionales del sector de la seguridad de nuestro país y se han consolidado como un evento de referencia sobre seguridad en el software.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Si desea conocer las opciones de patrocinio disponibles, contacte con [mailto:vicente.aguilera@owasp.org Vicente Aguilera].&lt;br /&gt;
 '''Patrocinador PLATINO'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
[[Image:Logo_ISEC.png|link=http://www.isecauditors.com]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=60%&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
 '''Patrocinador ORO'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Patrocinador PLATA'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Colabora'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=left&amp;gt;&lt;br /&gt;
[[Image:Logo_laSalle_URL_institucional_positiu_CAT.png|link=http://www.salleurl.edu]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
= Agenda =&lt;br /&gt;
{{:Spain/Agenda_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Localización = &lt;br /&gt;
{{:Spain/Localizacion_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Ponentes =&lt;br /&gt;
{{:Spain/Ponentes Chapter Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Formacion =&lt;br /&gt;
&lt;br /&gt;
'''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
'''DIA''': Jueves 11 de Junio de 9 a 18 horas.&lt;br /&gt;
&lt;br /&gt;
El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
&lt;br /&gt;
'''Formato:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejercicios prácticos. Los participantes aprenderán a identificar vulnerabilidades en sitios web específicamente diseñados  con vulnerabilidades y errores de código, explotándolas utilizando diferentes técnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnología usada en aplicaciones web.&lt;br /&gt;
*Áreas críticas en una aplicación web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
[[Image:Cerullof.jpg|150px]]&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' 200 Euros (Miembros OWASP). 250 Euros (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor información : ''' Por favor comuníquese al correo fcerullo@owasp.org&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/introduccionalaseguridadweb'''HAZ CLICK AQUI!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Patrocinadores =&lt;br /&gt;
{{:Spain/Patrocinadores_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Call For Papers =&lt;br /&gt;
{{:Spain/CFP_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;left&amp;quot;&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;right&amp;quot;&amp;gt;[http://www.owasp.org/index.php/Spain https://www.owasp.org/images/a/a0/Owasp-logo-250.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
[[Category:Spain]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195769</id>
		<title>Spain/Chapter Meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195769"/>
				<updated>2015-06-04T07:47:31Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== &amp;lt;b&amp;gt;IX OWASP Spain Chapter Meeting&amp;lt;/b&amp;gt; - &amp;lt;font size=-1&amp;gt;Barcelona, 12 de junio de 2015&amp;lt;/font&amp;gt; ==&lt;br /&gt;
Estas conferencias, abiertas y gratuitas, reúnen desde 2006 a los profesionales del sector de la seguridad de nuestro país y se han consolidado como un evento de referencia sobre seguridad en el software.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Si desea conocer las opciones de patrocinio disponibles, contacte con [mailto:vicente.aguilera@owasp.org Vicente Aguilera].&lt;br /&gt;
 '''Patrocinador PLATINO'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
[[Image:Logo_ISEC.png|link=http://www.isecauditors.com]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=60%&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
 '''Patrocinador ORO'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Patrocinador PLATA'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Colabora'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=left&amp;gt;&lt;br /&gt;
[[Image:Logo_laSalle_URL_institucional_positiu_CAT.png|link=http://www.salleurl.edu]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
= Agenda =&lt;br /&gt;
{{:Spain/Agenda_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Localización = &lt;br /&gt;
{{:Spain/Localizacion_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Ponentes =&lt;br /&gt;
{{:Spain/Ponentes Chapter Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Formacion =&lt;br /&gt;
&lt;br /&gt;
'''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
&lt;br /&gt;
'''Formato:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejercicios prácticos. Los participantes aprenderán a identificar vulnerabilidades en sitios web específicamente diseñados  con vulnerabilidades y errores de código, explotándolas utilizando diferentes técnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnología usada en aplicaciones web.&lt;br /&gt;
*Áreas críticas en una aplicación web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
[[Image:Cerullof.jpg|150px]]&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' 200 Euros (Miembros OWASP). 250 Euros (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor información : ''' Por favor comuníquese al correo fcerullo@owasp.org&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/introduccionalaseguridadweb'''HAZ CLICK AQUI!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Patrocinadores =&lt;br /&gt;
{{:Spain/Patrocinadores_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Call For Papers =&lt;br /&gt;
{{:Spain/CFP_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;left&amp;quot;&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;right&amp;quot;&amp;gt;[http://www.owasp.org/index.php/Spain https://www.owasp.org/images/a/a0/Owasp-logo-250.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
[[Category:Spain]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195768</id>
		<title>Spain/Chapter Meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195768"/>
				<updated>2015-06-04T07:46:49Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== &amp;lt;b&amp;gt;IX OWASP Spain Chapter Meeting&amp;lt;/b&amp;gt; - &amp;lt;font size=-1&amp;gt;Barcelona, 12 de junio de 2015&amp;lt;/font&amp;gt; ==&lt;br /&gt;
Estas conferencias, abiertas y gratuitas, reúnen desde 2006 a los profesionales del sector de la seguridad de nuestro país y se han consolidado como un evento de referencia sobre seguridad en el software.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Si desea conocer las opciones de patrocinio disponibles, contacte con [mailto:vicente.aguilera@owasp.org Vicente Aguilera].&lt;br /&gt;
 '''Patrocinador PLATINO'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
[[Image:Logo_ISEC.png|link=http://www.isecauditors.com]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=60%&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
 '''Patrocinador ORO'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Patrocinador PLATA'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Colabora'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=left&amp;gt;&lt;br /&gt;
[[Image:Logo_laSalle_URL_institucional_positiu_CAT.png|link=http://www.salleurl.edu]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
= Agenda =&lt;br /&gt;
{{:Spain/Agenda_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Localización = &lt;br /&gt;
{{:Spain/Localizacion_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Ponentes =&lt;br /&gt;
{{:Spain/Ponentes Chapter Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Formacion =&lt;br /&gt;
&lt;br /&gt;
'''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
&lt;br /&gt;
'''Formato:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejercicios prácticos. Los participantes aprenderán a identificar vulnerabilidades en sitios web específicamente diseñados  con vulnerabilidades y errores de código, explotándolas utilizando diferentes técnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnología usada en aplicaciones web.&lt;br /&gt;
*Áreas críticas en una aplicación web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
[[Image:Cerullof.jpg|150px]]&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' 200 Euros (Miembros OWASP). 250 Euros (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor información : ''' Por favor comuníquese al correo fcerullo@owasp.org&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/introduccionalaseguridadweb'''HAZ CLICK AQUI!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Patrocinadores =&lt;br /&gt;
{{:Spain/Patrocinadores_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Call For Papers =&lt;br /&gt;
{{:Spain/CFP_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;left&amp;quot;&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;right&amp;quot;&amp;gt;[http://www.owasp.org/index.php/Spain https://www.owasp.org/images/a/a0/Owasp-logo-250.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
[[Category:Spain]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195766</id>
		<title>Spain/Chapter Meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195766"/>
				<updated>2015-06-04T07:42:22Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== &amp;lt;b&amp;gt;IX OWASP Spain Chapter Meeting&amp;lt;/b&amp;gt; - &amp;lt;font size=-1&amp;gt;Barcelona, 12 de junio de 2015&amp;lt;/font&amp;gt; ==&lt;br /&gt;
Estas conferencias, abiertas y gratuitas, reúnen desde 2006 a los profesionales del sector de la seguridad de nuestro país y se han consolidado como un evento de referencia sobre seguridad en el software.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Si desea conocer las opciones de patrocinio disponibles, contacte con [mailto:vicente.aguilera@owasp.org Vicente Aguilera].&lt;br /&gt;
 '''Patrocinador PLATINO'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
[[Image:Logo_ISEC.png|link=http://www.isecauditors.com]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=60%&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
 '''Patrocinador ORO'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Patrocinador PLATA'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Colabora'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=left&amp;gt;&lt;br /&gt;
[[Image:Logo_laSalle_URL_institucional_positiu_CAT.png|link=http://www.salleurl.edu]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
= Agenda =&lt;br /&gt;
{{:Spain/Agenda_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Localización = &lt;br /&gt;
{{:Spain/Localizacion_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Ponentes =&lt;br /&gt;
{{:Spain/Ponentes Chapter Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Formacion =&lt;br /&gt;
&lt;br /&gt;
'''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
&lt;br /&gt;
'''Formato:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejercicios prácticos. Los participantes aprenderán a identificar vulnerabilidades en sitios web específicamente diseñados  con vulnerabilidades y errores de código, explotándolas utilizando diferentes técnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnología usada en aplicaciones web.&lt;br /&gt;
*Áreas críticas en una aplicación web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
[[Image:Cerullof.jpg|150px]]&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor información : ''' Por favor comuníquese al correo fcerullo@owasp.org&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRO CERRADO!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Patrocinadores =&lt;br /&gt;
{{:Spain/Patrocinadores_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Call For Papers =&lt;br /&gt;
{{:Spain/CFP_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;left&amp;quot;&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;right&amp;quot;&amp;gt;[http://www.owasp.org/index.php/Spain https://www.owasp.org/images/a/a0/Owasp-logo-250.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
[[Category:Spain]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195765</id>
		<title>Spain/Chapter Meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195765"/>
				<updated>2015-06-04T07:40:33Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== &amp;lt;b&amp;gt;IX OWASP Spain Chapter Meeting&amp;lt;/b&amp;gt; - &amp;lt;font size=-1&amp;gt;Barcelona, 12 de junio de 2015&amp;lt;/font&amp;gt; ==&lt;br /&gt;
Estas conferencias, abiertas y gratuitas, reúnen desde 2006 a los profesionales del sector de la seguridad de nuestro país y se han consolidado como un evento de referencia sobre seguridad en el software.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Si desea conocer las opciones de patrocinio disponibles, contacte con [mailto:vicente.aguilera@owasp.org Vicente Aguilera].&lt;br /&gt;
 '''Patrocinador PLATINO'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
[[Image:Logo_ISEC.png|link=http://www.isecauditors.com]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=60%&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
 '''Patrocinador ORO'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Patrocinador PLATA'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Colabora'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=left&amp;gt;&lt;br /&gt;
[[Image:Logo_laSalle_URL_institucional_positiu_CAT.png|link=http://www.salleurl.edu]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
= Agenda =&lt;br /&gt;
{{:Spain/Agenda_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Localización = &lt;br /&gt;
{{:Spain/Localizacion_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Ponentes =&lt;br /&gt;
{{:Spain/Ponentes Chapter Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Formacion =&lt;br /&gt;
&lt;br /&gt;
'''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
[[Image:Cerullof.jpg|150px]]&lt;br /&gt;
El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
&lt;br /&gt;
'''Formato:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejercicios prácticos. Los participantes aprenderán a identificar vulnerabilidades en sitios web específicamente diseñados  con vulnerabilidades y errores de código, explotándolas utilizando diferentes técnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnología usada en aplicaciones web.&lt;br /&gt;
*Áreas críticas en una aplicación web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor información : ''' Por favor comuníquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRO CERRADO!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Patrocinadores =&lt;br /&gt;
{{:Spain/Patrocinadores_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Call For Papers =&lt;br /&gt;
{{:Spain/CFP_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;left&amp;quot;&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;right&amp;quot;&amp;gt;[http://www.owasp.org/index.php/Spain https://www.owasp.org/images/a/a0/Owasp-logo-250.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
[[Category:Spain]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195764</id>
		<title>Spain/Chapter Meeting</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Spain/Chapter_Meeting&amp;diff=195764"/>
				<updated>2015-06-04T07:38:24Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== &amp;lt;b&amp;gt;IX OWASP Spain Chapter Meeting&amp;lt;/b&amp;gt; - &amp;lt;font size=-1&amp;gt;Barcelona, 12 de junio de 2015&amp;lt;/font&amp;gt; ==&lt;br /&gt;
Estas conferencias, abiertas y gratuitas, reúnen desde 2006 a los profesionales del sector de la seguridad de nuestro país y se han consolidado como un evento de referencia sobre seguridad en el software.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Si desea conocer las opciones de patrocinio disponibles, contacte con [mailto:vicente.aguilera@owasp.org Vicente Aguilera].&lt;br /&gt;
 '''Patrocinador PLATINO'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
[[Image:Logo_ISEC.png|link=http://www.isecauditors.com]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=center&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td width=60%&amp;gt;&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
 '''Patrocinador ORO'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Patrocinador PLATA'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 '''Colabora'''&lt;br /&gt;
&amp;lt;table widht=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td width=20% align=left&amp;gt;&lt;br /&gt;
[[Image:Logo_laSalle_URL_institucional_positiu_CAT.png|link=http://www.salleurl.edu]]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
= Agenda =&lt;br /&gt;
{{:Spain/Agenda_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Localización = &lt;br /&gt;
{{:Spain/Localizacion_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Ponentes =&lt;br /&gt;
{{:Spain/Ponentes Chapter Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Formacion =&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Cerullof.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
'''Formato:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejercicios prácticos. Los participantes aprenderán a identificar vulnerabilidades en sitios web específicamente diseñados  con vulnerabilidades y errores de código, explotándolas utilizando diferentes técnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnología usada en aplicaciones web.&lt;br /&gt;
*Áreas críticas en una aplicación web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor información : ''' Por favor comuníquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRO CERRADO!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Patrocinadores =&lt;br /&gt;
{{:Spain/Patrocinadores_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
= Call For Papers =&lt;br /&gt;
{{:Spain/CFP_Chapter_Meeting}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=100%&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;left&amp;quot;&amp;gt;&lt;br /&gt;
[https://www.eventbrite.es/e/entradas-ix-owasp-spain-chapter-meeting-15979118975?ref=ebtn https://www.owasp.org/images/7/77/Buttoncreate.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td align=&amp;quot;right&amp;quot;&amp;gt;[http://www.owasp.org/index.php/Spain https://www.owasp.org/images/a/a0/Owasp-logo-250.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;br /&gt;
&lt;br /&gt;
[[Category:Spain]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=193397</id>
		<title>About The Open Web Application Security Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=About_The_Open_Web_Application_Security_Project&amp;diff=193397"/>
				<updated>2015-04-15T01:36:14Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Treasurer: Fabio Cerullo */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' &lt;br /&gt;
__TOC__&lt;br /&gt;
&lt;br /&gt;
==The OWASP Foundation==&lt;br /&gt;
The OWASP Foundation came online on [http://wayback.archive.org/web/*/http://www.owasp.org December 1st 2001] it was established as a not-for-profit charitable organization in the United States on April 21, 2004 to ensure the ongoing availability and support for our work at [[Main Page|OWASP]]. OWASP is an international organization and the OWASP Foundation supports OWASP efforts around the world. OWASP is an open community dedicated to enabling organizations to conceive, develop, acquire, operate, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a people, process, and technology problem because the most effective approaches to application security include improvements in all of these areas. We can be found at [[Main Page|www.owasp.org]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP is a new kind of organization. Our freedom from commercial pressures allows us to provide unbiased, practical, cost-effective information about application security. OWASP is not affiliated with any technology company, although we support the informed use of commercial security technology. Similar to many open-source software projects, OWASP produces many types of materials in a collaborative and open way. The [[OWASP Foundation]] is a not-for-profit entity that ensures the project's long-term success.&lt;br /&gt;
&lt;br /&gt;
[http://www.linkedin.com/companies/owasp https://www.owasp.org/images/9/98/Btn_cofollow_badge.png]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===OWASP Foundation Bylaws===&lt;br /&gt;
&lt;br /&gt;
The business of the OWASP Foundation Inc. is outlined in the organizational [http://en.wikipedia.org/wiki/By-law by-laws]. These by-laws govern the organization worldwide and allow the participants to understand the established process for doing so. &lt;br /&gt;
&lt;br /&gt;
[[OWASP Foundation ByLaws]]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/images/9/90/126741_OWASP_vzw_modelstatuten_v0.9_EN_REV.pdf OWASP EU Foundation ByLaws (English Translation)]&lt;br /&gt;
&lt;br /&gt;
[[Local Chapter ByLaws]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Values ==&lt;br /&gt;
&amp;lt;b&amp;gt;OPEN&amp;lt;/b&amp;gt;&lt;br /&gt;
Everything at OWASP is radically transparent from our finances to our code.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INNOVATION&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP encourages and supports innovation and experiments for solutions to software security challenges.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;GLOBAL&amp;lt;/b&amp;gt;&lt;br /&gt;
Anyone around the world is encouraged to participate in the OWASP community.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;b&amp;gt;INTEGRITY&amp;lt;/b&amp;gt;&lt;br /&gt;
OWASP is an honest and truthful, vendor neutral, global community.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Core Purpose ==&lt;br /&gt;
Be the thriving global community that drives visibility and evolution in the safety and security of the world’s software. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Code of Ethics ==&lt;br /&gt;
Each of us is expected to behave according to the principles contained in the following Code of Ethics. Breaches of the Code of Ethics may result in the foundation taking disciplinary action.&lt;br /&gt;
[https://www.owasp.org/index.php/Membership_Revocation Membership Revocation]&lt;br /&gt;
&lt;br /&gt;
* Perform all professional activities and duties in accordance with all applicable laws and the highest ethical principles;&lt;br /&gt;
* Promote the implementation of and promote compliance with standards, procedures, controls for application security;&lt;br /&gt;
* Maintain appropriate confidentiality of proprietary or otherwise sensitive information encountered in the course of professional activities;&lt;br /&gt;
* Discharge professional responsibilities with diligence and honesty;&lt;br /&gt;
* To communicate openly and honestly;&lt;br /&gt;
* Refrain from any activities which might constitute a conflict of interest or otherwise damage the reputation of employers, the information security profession, or the Association;&lt;br /&gt;
* To maintain and affirm our objectivity and independence;&lt;br /&gt;
* To reject inappropriate pressure from industry or others;&lt;br /&gt;
* Not intentionally injure or impugn the professional reputation of practice of colleagues, clients, or employers;&lt;br /&gt;
* Treat everyone with respect and dignity; and&lt;br /&gt;
* To avoid relationships that impair — or may appear to impair — OWASP's objectivity and independence.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Principles ==&lt;br /&gt;
&lt;br /&gt;
* Free &amp;amp; Open&lt;br /&gt;
* Governed by rough consensus &amp;amp; running code&lt;br /&gt;
* Abide by a code of ethics (see ethics)&lt;br /&gt;
* Not-for-profit&lt;br /&gt;
* Not driven by commercial interests&lt;br /&gt;
* Risk based approach&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==2015 Global Board Members==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
====Chairman: [[User:tgondrom|Tobias Gondrom]]====&lt;br /&gt;
&lt;br /&gt;
====Vice Chairman: [[User:jsokol|Josh Sokol]]====&lt;br /&gt;
&lt;br /&gt;
====Treasurer: [[User:Fabio.e.cerullo|Fabio Cerullo]]====&lt;br /&gt;
&lt;br /&gt;
====Secretary: [[User:Matt_Konda |Matt Konda]]====&lt;br /&gt;
&lt;br /&gt;
====Board Member: [[User:vanderaj |Andrew van der Stock]]====&lt;br /&gt;
&lt;br /&gt;
====Board Member: [[User:MichaelCoates|Michael Coates]]====&lt;br /&gt;
&lt;br /&gt;
====Board Member: [[User:Jmanico|Jim Manico]]====&lt;br /&gt;
&lt;br /&gt;
==Employees and Contractors of the OWASP Foundation==&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/HR}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* Additional [https://www.owasp.org/index.php/About_OWASP/HR staff and HR info]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Meeting Minutes==&lt;br /&gt;
The OWASP Foundation Board meets monthly.&lt;br /&gt;
&lt;br /&gt;
[[OWASP_Board_Meetings | Board meeting minutes for the record.]]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/folder/d/0B5Z9zE0hx0LNOWFIRG9reTUwOXM/edit Staff Meetings]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/folder/d/0B5Z9zE0hx0LNZ0pqZC1QWWRTM28/edit Global Initiatives Meetings]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Operational Procedures ==&lt;br /&gt;
[https://www.owasp.org/index.php/About_OWASP/Operational-Procedures Standard Operations Procedures (SOP)]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Licensing==&lt;br /&gt;
All OWASP materials are available under an approved [[OWASP Licenses|FLOSS license]]. For more information, please see the '''[[OWASP Licenses]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Participation and Membership==&lt;br /&gt;
Everyone is welcome to participate in our [https://lists.owasp.org/mailman/listinfo forums], [[projects]], [[chapters]], and [[conferences]]. OWASP is a fantastic place to learn about application security, to network, and even to build your reputation as an expert.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
If you find the OWASP materials valuable, please consider supporting our cause by becoming an OWASP member. All monies received by the OWASP Foundation go directly into supporting OWASP projects.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For more information, please see the '''[[Membership]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Projects==&lt;br /&gt;
OWASP's projects cover many aspects of application security. We build documents, tools, teaching environments, guidelines, checklists, and other materials to help organizations improve their capability to produce secure code.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
For details on all the OWASP projects, please see the '''[[:Category:OWASP Project|OWASP Project]]''' page.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Privacy Policy==&lt;br /&gt;
Given OWASP’s mission to help organizations with application security, you have the right to expect protection of any personal information that we might collect about our members.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
In general, we do not require authentication or ask visitors to reveal personal information when visiting our website. We collect Internet addresses, not the e-mail addresses, of visitors solely for use in calculating various website statistics.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We may ask for certain personal information, including name and email address from persons downloading OWASP products. This information is not divulged to any third party and is used only for the purposes of:&lt;br /&gt;
* Communicating urgent fixes in the OWASP Materials&lt;br /&gt;
* Seeking advice and feedback about OWASP Materials&lt;br /&gt;
* Inviting participation in OWASP’s consensus process and AppSec conferences&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP publishes a list of member organizations and individual members. Listing is purely voluntary and &amp;quot;opt-in.&amp;quot; Listed members can request not to be listed at any time.&lt;br /&gt;
&lt;br /&gt;
All information about you or your organization that you send us by fax or mail is physically protected. If you have any questions or concerns about our privacy policy, please contact us at [http://sl.owasp.org/contactus Submit a Inquiry]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Membership or Donations==&lt;br /&gt;
If you are interested in joining OWASP as a member, or donating funds for OWASP's efforts, please check out the [[Membership|OWASP Membership Page]].&lt;br /&gt;
&lt;br /&gt;
{{:About_OWASP/Financial_Transparency}}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Contacting OWASP==&lt;br /&gt;
The easiest way to contact the [[OWASP Foundation]] is via e-mail. If you have a question concerning a particular project, we &amp;lt;b&amp;gt;strongly&amp;lt;/b&amp;gt; recommend using the [https://lists.owasp.org/mailman/listinfo mailing list] for that project. Many questions can also be answered by [https://www.owasp.org/google/results.html searching] the [[Main Page|OWASP]] web site, so please check there first.&lt;br /&gt;
&lt;br /&gt;
Our global address for general correspondence and faxes can be sent to our physical office address, to the attention of [[User:Kate_Hartmann|Kate Hartmann]], at: &lt;br /&gt;
&lt;br /&gt;
  OWASP Foundation&lt;br /&gt;
  1200-C Agora Drive, #232&lt;br /&gt;
  Bel Air, MD 21014&lt;br /&gt;
  US&lt;br /&gt;
 +1 951-692-7703 (tel)&lt;br /&gt;
 +1 443-283-4021(fax)&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
The European correspondence address is below.&lt;br /&gt;
More information is available on the OWASP [[Europe]] page.&lt;br /&gt;
&lt;br /&gt;
  OWASP Europe VZW&lt;br /&gt;
  Leinstraat 104A&lt;br /&gt;
  B-9660 Opbrakel&lt;br /&gt;
  Belgium&lt;br /&gt;
  +1 951-692-7703 (tel)&lt;br /&gt;
  [http://sl.owasp.org/contactus Contact Us]&lt;br /&gt;
&lt;br /&gt;
  OWASP Norway Chapter&lt;br /&gt;
  [http://w2.brreg.no/enhet/sok/detalj.jsp?orgnr=994253085 Entity Record]&lt;br /&gt;
  v/Kåre Presttun&lt;br /&gt;
  c/o Mnemonic as&lt;br /&gt;
  Wergelandsveien 25&lt;br /&gt;
  0167 OSLO&lt;br /&gt;
	&lt;br /&gt;
&lt;br /&gt;
Want to chat on IRC?&lt;br /&gt;
The official #owasp channel is now live on http://irc.freenode.net ! Come on in and chat with us!&lt;br /&gt;
&lt;br /&gt;
For more information, please see the pages listed below:&lt;br /&gt;
&lt;br /&gt;
* [[Contributions]] for details about how to make contributions&lt;br /&gt;
* [[Advertising]] if you're interested in advertising on the OWASP site&lt;br /&gt;
* [[How OWASP Works]] for more information about projects and governance&lt;br /&gt;
* [[OWASP brand usage rules]] for information about using the OWASP brand&lt;br /&gt;
&lt;br /&gt;
[[Category:Popular]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193390</id>
		<title>User:Fabio.e.cerullo</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193390"/>
				<updated>2015-04-15T00:27:25Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot; style=&amp;quot;text-align:left&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! [[File:Cerullof.jpg|200px]]&lt;br /&gt;
! Fabio Cerullo is the Managing Director of Cycubix, an Information Security company that specialises in securing the applications that businesses rely on. He has extensive experience in understanding and addressing the challenges of application security from over a decade working in and with organisations across a diverse range of industries – from financial services to government departments and manufacturing.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Global Board member of the OWASP Foundation and a regular speaker at events organised by the leading Information Security associations including OWASP, ISACA and (ISC)2. He also provides commentary and insight for specialised industry media (Computer Weekly, Infosecurity magazine, SiliconRepublic.com). As an official certified instructor for (ISC)2, the global leader in information security education and certification, Fabio is responsible for training information security professionals around the world.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Certified Information Systems Security Professional (CISSP) and Certified Secure Software Lifecycle Professional (CSSLP). He holds a Master’s degree in Computer Engineering from Universidad Católica Argentina.&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193389</id>
		<title>User:Fabio.e.cerullo</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193389"/>
				<updated>2015-04-15T00:25:28Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot; style=&amp;quot;text-align:left&lt;br /&gt;
|-&lt;br /&gt;
! [[File:Cerullof.jpg|200px]]&lt;br /&gt;
! Fabio Cerullo is the Managing Director of Cycubix, an Information Security company that specialises in securing the applications that businesses rely on. He has extensive experience in understanding and addressing the challenges of application security from over a decade working in and with organisations across a diverse range of industries – from financial services to government departments and manufacturing.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Global Board member of the OWASP Foundation and a regular speaker at events organised by the leading Information Security associations including OWASP, ISACA and (ISC)2. He also provides commentary and insight for specialised industry media (Computer Weekly, Infosecurity magazine, SiliconRepublic.com). As an official certified instructor for (ISC)2, the global leader in information security education and certification, Fabio is responsible for training information security professionals around the world.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Certified Information Systems Security Professional (CISSP) and Certified Secure Software Lifecycle Professional (CSSLP). He holds a Master’s degree in Computer Engineering from Universidad Católica Argentina.&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193387</id>
		<title>User:Fabio.e.cerullo</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193387"/>
				<updated>2015-04-15T00:24:39Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! [[File:Cerullof.jpg|200px]]&lt;br /&gt;
! class=&amp;quot;wikitable&amp;quot; style=&amp;quot;text-align:left Fabio Cerullo is the Managing Director of Cycubix, an Information Security company that specialises in securing the applications that businesses rely on. He has extensive experience in understanding and addressing the challenges of application security from over a decade working in and with organisations across a diverse range of industries – from financial services to government departments and manufacturing.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Global Board member of the OWASP Foundation and a regular speaker at events organised by the leading Information Security associations including OWASP, ISACA and (ISC)2. He also provides commentary and insight for specialised industry media (Computer Weekly, Infosecurity magazine, SiliconRepublic.com). As an official certified instructor for (ISC)2, the global leader in information security education and certification, Fabio is responsible for training information security professionals around the world.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Certified Information Systems Security Professional (CISSP) and Certified Secure Software Lifecycle Professional (CSSLP). He holds a Master’s degree in Computer Engineering from Universidad Católica Argentina.&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193386</id>
		<title>User:Fabio.e.cerullo</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193386"/>
				<updated>2015-04-15T00:24:17Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! [[File:Cerullof.jpg|200px]]&lt;br /&gt;
! style=&amp;quot;text-align:left Fabio Cerullo is the Managing Director of Cycubix, an Information Security company that specialises in securing the applications that businesses rely on. He has extensive experience in understanding and addressing the challenges of application security from over a decade working in and with organisations across a diverse range of industries – from financial services to government departments and manufacturing.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Global Board member of the OWASP Foundation and a regular speaker at events organised by the leading Information Security associations including OWASP, ISACA and (ISC)2. He also provides commentary and insight for specialised industry media (Computer Weekly, Infosecurity magazine, SiliconRepublic.com). As an official certified instructor for (ISC)2, the global leader in information security education and certification, Fabio is responsible for training information security professionals around the world.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Certified Information Systems Security Professional (CISSP) and Certified Secure Software Lifecycle Professional (CSSLP). He holds a Master’s degree in Computer Engineering from Universidad Católica Argentina.&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193385</id>
		<title>User:Fabio.e.cerullo</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193385"/>
				<updated>2015-04-15T00:21:49Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! [[File:Cerullof.jpg|200px]]&lt;br /&gt;
! Fabio Cerullo is the Managing Director of Cycubix, an Information Security company that specialises in securing the applications that businesses rely on. He has extensive experience in understanding and addressing the challenges of application security from over a decade working in and with organisations across a diverse range of industries – from financial services to government departments and manufacturing.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Global Board member of the OWASP Foundation and a regular speaker at events organised by the leading Information Security associations including OWASP, ISACA and (ISC)2. He also provides commentary and insight for specialised industry media (Computer Weekly, Infosecurity magazine, SiliconRepublic.com). As an official certified instructor for (ISC)2, the global leader in information security education and certification, Fabio is responsible for training information security professionals around the world.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Certified Information Systems Security Professional (CISSP) and Certified Secure Software Lifecycle Professional (CSSLP). He holds a Master’s degree in Computer Engineering from Universidad Católica Argentina.&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193384</id>
		<title>User:Fabio.e.cerullo</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Fabio.e.cerullo&amp;diff=193384"/>
				<updated>2015-04-15T00:18:42Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! [[File:Cerullof.jpg|200px]]&lt;br /&gt;
! Fabio Cerullo is the Managing Director of Cycubix, an Information Security company that specialises in securing the applications that businesses rely on. He has extensive experience in understanding and addressing the challenges of application security from over a decade working in and with organisations across a diverse range of industries – from financial services to government departments and manufacturing.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Global Board member of the OWASP Foundation and a regular speaker at events organised by the leading Information Security associations including OWASP, ISACA and (ISC)2.  He also provides commentary and insight for specialised industry media (Computer Weekly, Infosecurity magazine, SiliconRepublic.com). As an official certified instructor for (ISC)2, the global leader in information security education and certification, Fabio is responsible for training information security professionals around the world.&lt;br /&gt;
&lt;br /&gt;
Fabio is a Certified Information Systems Security Professional (CISSP) and Certified Secure Software Lifecycle Professional (CSSLP). He holds a Master’s degree in Computer Engineering from Universidad Católica Argentina.&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=192746</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=192746"/>
				<updated>2015-04-05T21:14:07Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* CTF */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|750px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes Droguett [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru'''(Lima) : John Vargas [john.vargas@owasp.org] vía [https://docs.google.com/forms/d/1HJAwdnCxhnDjxdEOrHVBaewrkQncIB2uxHCzxEtxwug '''this Google form''']&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes Droguett [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* Santa Cruz de las Sierras, Bolivia: Daniel Torres [daniel.torres@owasp.org]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Andrea Villar&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=PATAGONIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
''Conferencias: Libres y gratuitas''&amp;lt;br&amp;gt;&lt;br /&gt;
''Entrenamiento: 250 dólares''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CTF Patagonia===&lt;br /&gt;
Competencia de hacking &amp;quot;CTF Patagonia&amp;quot;.&amp;lt;br&amp;gt;&lt;br /&gt;
Preparen, aputen,...., [http://ctf-ddn.rhcloud.com/ FUEGO!]&lt;br /&gt;
&lt;br /&gt;
===Agenda ===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| 09:00 - 10:00&lt;br /&gt;
| Acreditacion&lt;br /&gt;
| &lt;br /&gt;
|- &lt;br /&gt;
| 10:00 - 10:15&lt;br /&gt;
| Bienvenida e intoduccion a OWASP&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 10:20 - 11:00&lt;br /&gt;
| [https://www.owasp.org/index.php/LatamTour2015/VulnerabilidadesGatewayPago Vulnerabilidades en Gateways de Pago]&lt;br /&gt;
| [https://www.linkedin.com/in/ariancho Andrés Riancho]&lt;br /&gt;
|- &lt;br /&gt;
| 11:00 - 11:30&lt;br /&gt;
| Pausa para café&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 11:30 - 12:00 &lt;br /&gt;
| Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
| Marcelo Campetella&lt;br /&gt;
|-&lt;br /&gt;
| 12:00 - 12:30&lt;br /&gt;
| El mercado del Malware en las Apps de los Store para Android&lt;br /&gt;
| Claudio Caracciolo&lt;br /&gt;
|-&lt;br /&gt;
| 12:30 - 14:00&lt;br /&gt;
| Pausa para almuerzo&lt;br /&gt;
|&lt;br /&gt;
|- &lt;br /&gt;
| 14:00 - 14:40&lt;br /&gt;
| Mobile Apps and how to Pentest them&lt;br /&gt;
| Gustavo Sorondo&lt;br /&gt;
|-&lt;br /&gt;
| 14:40 - 15:10&lt;br /&gt;
| CIOs vs CISOs: OWASP al rescate &lt;br /&gt;
| Mauro Graziosi&lt;br /&gt;
|-&lt;br /&gt;
| 15:10 - 15:40&lt;br /&gt;
| Pausa para café&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 15:40 - 16:20&lt;br /&gt;
| Certificate Pinning: ¿tenemos el c...ertificado roto?&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|- &lt;br /&gt;
| 16:20 - 16:30&lt;br /&gt;
| Agradecimientos y cierre&lt;br /&gt;
|&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
''Valor del entrenamiento: u$s 250''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Entrenamiento&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| 08:00 - 12:00&lt;br /&gt;
| Hacking de aplicaciones web basado en OWASP Top 10 (Parte 1)&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|- &lt;br /&gt;
| 12:00 - 13:00&lt;br /&gt;
| Pausa para almuerzo&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 13:00 - 17:00&lt;br /&gt;
| Hacking de aplicaciones web basado en OWASP Top 10 (Parte 2)&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
'''Viernes 10'''&amp;lt;br&amp;gt;&lt;br /&gt;
Universidad Nacional del Comahue, Buenos Aires 1400, Neuquén&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
'''Sabado 11'''&amp;lt;br&amp;gt;&lt;br /&gt;
Instituto Icono, Santa Fe 355, Neuquén&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:MapaIFES.png|link=https://www.google.com.ar/maps/place/Icono+S.r.l./@-38.9517208,-68.0592463,16z/data=!4m2!3m1!1s0x960a33d10f798455:0xed1c52f760942955?hl=es-419]]&lt;br /&gt;
&lt;br /&gt;
===Afiche para difusión===&lt;br /&gt;
[[File:PosterLatamtour2015-Patagonia.jpg|link=https://www.owasp.org/images/6/60/Poster_Latamtour.pdf]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BUENOS AIRES=&lt;br /&gt;
&lt;br /&gt;
Invitamos a estudiantes, desarrolladores, expertos en seguridad informática y curiosos en general a compartir con la comunidad de OWASP un nuevo evento en Buenos Aires! Será una jornada de charlas técnicas, en un ambiente relajado e ideal para conocer otras personas interesadas en la seguridad en aplicaciones.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Inscripcion'''==&lt;br /&gt;
&lt;br /&gt;
Recuerden que es necesario [https://www.regonline.com/owasplatamtour15argentina '''inscribirse'''] para asistir. La registración es '''completamente gratis''' y es unicamente utilizada para verificar su identidad en la entrada de la Universidad.&lt;br /&gt;
&lt;br /&gt;
== '''Fecha y lugar'''==&lt;br /&gt;
&lt;br /&gt;
24 Abril 2015 - 9am (puntual!)&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.google.com.ar/maps/place/Av+Rivadavia+2258,+Buenos+Aires,+Ciudad+Aut%C3%B3noma+de+Buenos+Aires/@-34.6096561,-58.3984517,17z/data=!3m1!4b1!4m2!3m1!1s0x95bccae91dc7f349:0x3177aaca9808e637 Av. Rivadavia 2258, Ciudad Autonoma de Buenos Aires]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Charlas'''==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f; color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Hora&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Titulo&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Orador&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;9:10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Introducción a OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Fabio Cerullo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;9:35&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Steering a Bullet Train&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Santiago Kantorowicz&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;10:25&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Y ahora nos preocupamos por la privacidad? Gracias #Snowden&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Mariano M. del Rio&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;10:50&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Coffee break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;11:20&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Building a High Interaction Honeypot: Implementation and logging techniques&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Fernando Catoira&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;11:45&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;[https://www.owasp.org/index.php/LatamTour2015/VulnerabilidadesGatewayPago Vulnerabilidades en Gateways de Pago]&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;[https://www.linkedin.com/in/ariancho Andrés Riancho]&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;12:35&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Almuerzo&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;13:55&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Threat not found!&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Sheila Berta&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;14:20&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Mobile Apps and How To Pentest Them&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Gustavo Sorondo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;15:10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Coffee break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;15:40&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;HP Sponsor talk&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;16:05&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Web Security for Bitcoin Services&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Juliano Rizzo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Chile El Capítulo Chileno de OWASP], tiene el agrado de invitar a la conferencia LatamTour2015,  con el auspicio de [http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]  sede Alonso Ovalle.&lt;br /&gt;
&lt;br /&gt;
OWASP es una organización mundial sin fines de lucro dedicada a identificar y combatir las causas que hacen inseguro el software.  Revise nuestra documentación y metodologías en los [[:Category:OWASP_Project|Proyectos OWASP]] donde encontrará valioso material de aplicación práctica en los ambientes corporativos. Asista a los talleres y conferencias del LatamTour y aprenda como sacar provecho a estos recursos de libre acceso.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''HAGA CLICK AQUI PARA REGISTRARSE''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Para asistentes registrados se sortean 5 membresías, que permiten acceder gratis (o con descuento preferente) a eventos y talleres OWASP durante 12 meses.&lt;br /&gt;
Inscribase y asegure su confirmación de reserva preferente.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#4B0082&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''DETALLES DE LA CONFERENCIA (Miércoles 8 de Abril en DUOC-UC sede Alonso Ovalle Nro.1586 -Metro Moneda-)'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Horario''' &lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Modulo'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Ponente'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 09:00 - 09:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 09:30 - 10:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Bienvenida y Presentación del Evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | DUOC-UC y OWASP-Chile&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Rodrigo Cea Warner. Director de Carrera DUOC-UC. Carlos Allendes Droguett Chapter Leader OWASP Chile.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:00 - 10:50&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Bug Bounty, programs reload&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Ormeño y Freddy Grey (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoques e investigación sobre programas de BUG BOUNTY periodico a través de vectores de ataque poco convencionales.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:50 - 11:05&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 11:10 - 12:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Analizando tráfico WIFI de smartphones &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Yago Fernández H. (ESPAÑA)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Es seguro utilizar redes Wi­Fi? Intercepción on-line del tráfico wi-fi en conexiones de smartphone y tecnicas de hacking. &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:00 - 12:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Estado transparente, descentralización y confianza ¿Apoyado con Tecnología?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esteban Valenzuela Van Treek (Escritor, doctor en Historia, ex alcalde/diputado, Director de Ciencia Política U.A.Hurtado)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Potenciar el regionalismo, la descentralización y la trasparencia del pais, usando la tecnología e internet (teletrabajo, e-learning, flexibilidad laboral, innovación, etc.)&lt;br /&gt;
|-|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:35 - 13:10&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Gestionar la inversión en seguridad con OpenSAMM.     Donde Iniciar?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Allendes Droguett (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoque Tecnico y Ecónomico para maximizar el retorno de la inversión en hacking etico, pentesting, desarrollo seguro, análisis del código, pruebas de seguridad.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 13:10 - 14:50&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Break para Almorzar&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 14:50 - 15:40&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hacking efectivo: Desde una credencial hasta el Domain Admin en un solo día&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Ricardo Supo P. (PERU)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Como ganar acceso a credenciales locales de dominio y escalar privilegios hasta obtener un acceso de administrador de dominio.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 15:40 - 16:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | HTTPS: Usted, úselo bien.&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cristián Rojas, CLCERT U.de Chile&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Que riesgos acechan, aunque tengamos instalado SSL/TLS?  Año 2014 fue  intenso: Heartbleed, POODLE, y errores de implementación como el GOTO FAIL.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:30 - 16:40&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:40 - 17:20&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Seguridad Incorporada al Ciclo de Desarrollo&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Alejandro Johannes (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Principios y fundamentos para disponer de una gestión con seguridad y calidad en el Ciclo de Desarrollo de aplicaciones.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:20 - 18:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Importancia de la seguridad en el software&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hector Takami (MEXICO)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | En lo que respecta a la seguridad del software, dar importancia a proyectos como OpenSAMM e integrar estas sugerencias en un modelo de seguridad aplicativa.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:00 - 18:10&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cierre del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Sorteo de Premios&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | membresías OWASP (entre inscritos)&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Jueves 9 de Abril)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 9 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 9 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
 &amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Owasp_upb_2015.jpg|link=https://www.google.com/maps/place/Universidad+Pontificia+Bolivariana+Seccional+Bucaramanga/@7.0389574,-73.071732,14z/data=!4m2!3m1!1s0x8e6840b36653b9c5:0x4dcdbc55842151df]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===REGISTRO===&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;TOTALMENTE GRATUITO, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Register.gif|link=https://www.regonline.com/owasplatamtour15colombia]]&lt;br /&gt;
&amp;lt;!--[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']--&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 7:30 a.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Diego Ademir Duarte Santana&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP ASVS 2.0 Web Application Standard&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jhon César Arango Serna&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;IPv6 Ventaja o Amenaza&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Hugo Armando Rodriguez Vera&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Protección de Datos Personales, infracción y consecuencias&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;MundoHacker&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Ciberespionaje y Cibercrimen as a Service&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Lunch&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;14:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;German Alonso Suárez Guerrero&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP Proactive Controls&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;15:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td&amp;gt;Ronald Escalona&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Hardening del Servidor Web, enfoque práctico con jail/chroot para entornos multisitios&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;16:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Javier Orlando Mantilla P&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Seguridad en desarrollo de aplicaciones web usando Apache Tomee&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Finish Event&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con &amp;lt;b&amp;gt;transmisión vía streaming&amp;lt;/b&amp;gt; para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
&lt;br /&gt;
[[File:Santa.jpg]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Lugar: Universidad NUR&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Dirección: Av. Banzer, Victorino Rivero 100&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de la Sierra, Bolivia&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Fecha: 17 y 18 de abril del 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Mapa.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viernes 17 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | País&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
! 08:00 - 08:30&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Registro - Acreditación&lt;br /&gt;
|- &lt;br /&gt;
! 08:30 - 09:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Video: Mundo Hacker - Proyecto OWASP&lt;br /&gt;
|- &lt;br /&gt;
! 09:00 - 09:50&lt;br /&gt;
| Jaime Iván Mendoza Ribera&lt;br /&gt;
| Análisis de vulnerabilidades web&lt;br /&gt;
| Santa Cruz, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 09:50 - 10:40&lt;br /&gt;
| Cesar Roberto Cuenca Díaz&lt;br /&gt;
| Desarrollo Seguro Principios y Buenas Prácticas.&lt;br /&gt;
| La Paz, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 10:40 - 11:30&lt;br /&gt;
| Juan Pablo Barriga Sapiencia&lt;br /&gt;
| Riegos en TI&lt;br /&gt;
| Sucre, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 11:30 - 12:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|-&lt;br /&gt;
! 12:00 - 12:50 &lt;br /&gt;
| Walter Camama Menacho&lt;br /&gt;
| MiTM a nivel de browser con beef y metasploit&lt;br /&gt;
| Trinidad, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 12:50 - 13:40&lt;br /&gt;
| Leonardo Camilo Quenta Alarcon&lt;br /&gt;
| Seguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 13:40 - 14:30&lt;br /&gt;
| Deyvi Bustamante Perez&lt;br /&gt;
| Exploit development&lt;br /&gt;
| Sucre , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 14:30 - 15:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|- &lt;br /&gt;
! 15:00 - 15:50&lt;br /&gt;
| Gonzalo Nina Mamani&lt;br /&gt;
| Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web&lt;br /&gt;
| Cochabamba , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 15:50 - 16:40&lt;br /&gt;
| Hernán Marcelo Leytón Balderrama&lt;br /&gt;
| Seguridad en los Satélites de Comunicación&lt;br /&gt;
| Potosí, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 16:40 - 17:30&lt;br /&gt;
| Juan Alberto Fajardo Canaza&lt;br /&gt;
| WAF Testing Framework&lt;br /&gt;
| Potosí, Bolivia&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Sabado 18 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | País&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
! 08:00 - 08:30&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Acreditación&lt;br /&gt;
|- &lt;br /&gt;
! 09:00 - 09:50&lt;br /&gt;
| Alex Villegas y Roller Ibanez&lt;br /&gt;
| Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301&lt;br /&gt;
| Cochabamba, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 09:50 - 10:40&lt;br /&gt;
| Richard Villca Apaza&lt;br /&gt;
| Rompiendo el modelo de negocios: Debugging Android Apps&lt;br /&gt;
| La Paz, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 10:40 - 11:30&lt;br /&gt;
| Cristhian Lima Saravia&lt;br /&gt;
| Framework Pleni&lt;br /&gt;
| Cochabamba, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 11:30 - 12:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|-&lt;br /&gt;
! 12:00 - 12:50 &lt;br /&gt;
| Elvin Vidal Mollinedo Mencia&lt;br /&gt;
| Los 7 pecados de un desarrollador Web&lt;br /&gt;
| Santa Cruz, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 12:50 - 13:40&lt;br /&gt;
| Alvaro Machaca Tola&lt;br /&gt;
| Análisis de riesgos aplicando la metodología OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 13:40 - 14:30&lt;br /&gt;
| Erick Calderon Mostajo&lt;br /&gt;
| Herramientas de Aprendizaje OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 14:30 - 15:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|- &lt;br /&gt;
! 15:00 - 15:50&lt;br /&gt;
| Daniel Torres Sandi&lt;br /&gt;
| Headers seguros en HTTP&lt;br /&gt;
| Sucre , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 15:50 - 16:50&lt;br /&gt;
| Gabriel Labrada Hernandez (INTEL MEXICO)&lt;br /&gt;
| Seguridad en Hardware y los servicios en la nube&lt;br /&gt;
| Mexico&lt;br /&gt;
|-&lt;br /&gt;
! 16:50 - 17:50&lt;br /&gt;
| Jacobo Tibaquira&lt;br /&gt;
| Atacando al atacante (DRAGON JAR)&lt;br /&gt;
| Colombia&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
El evento se va a llevar a cabo en el auditorio de la Ciudad de la Investigación de la Universidad de Costa Rica. [http://goo.gl/Y64lZG'''Ver Dirección exacta''']&lt;br /&gt;
&lt;br /&gt;
[[File:Mapa-ucr-auditorio.png|800px]]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== REGISTRO ===&lt;br /&gt;
Recuerde que el ingreso al evento es totalmente gratuito, sólo debe registrarse previamente. '''El comprobante de registro será solicitado en el momento de ingresar en el auditorio'''.&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''Pulse aquí para registrarse en el evento.''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== CONFERENCIAS-LISTADO DE EXPOSITORES===&lt;br /&gt;
&lt;br /&gt;
'''Martes 21 de Abril'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
 &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Recepción y Registro De 7:30 am a 8:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;150&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:00 am a 8:10 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;OWASP Costa Rica &amp;amp;amp; UCR&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;500&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Palabras de Bienvenida&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:10-9:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Fabio Cerullo , &amp;lt;b&amp;gt;Dublin Irlanda&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Keynote: Desarrollo Rápido y Seguro de Aplicaciones  – Es posible tener las dos cosas? &amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;09:00-09:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Eduardo Rojas&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Bloques de construcción en la implementación estratégica del software seguro con SAMM&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;09:50-10:10am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:10-11:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Mauricio Oviedo&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Manejo Seguro del DNS&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
     &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:00-11:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Walter Montes&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Buenas prácticas para manejo de autenticación y sesión&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:50-1:20 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Almuerzo Libre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;1:20-2:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Randall Barnett&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Vulnerabilidades encontradas en Sistema de Control de Tráfico Nacional&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:15-3:05 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Mario Robles&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; &amp;lt;b&amp;gt;Web Application Penetration Testing&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:05-3:25 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:25-4:15 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;TBD &amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;TBD&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:15-5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Bertin Bervis&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;MiTM Attacks con DNS proxys a escala WAN el modem bajo ataque&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Palabras de cierre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las oportunidades de patrocinio &lt;br /&gt;
Cualquier consulta pueden contactar a [mailto:michael.hidalgo@owasp.org Michael Hidalgo].&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&amp;lt;b&amp;gt;Día 1&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Abril 21&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 1:30 p.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Camilo Fernandez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP Tools&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Pablo Barrera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;La verdad sobre los ataques de denegación de servicio&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:30&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Oscar Rodas y Marco To&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Avances en investigación sobre seguridad informática&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;5:15&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;Elder Guerra&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Un verdadero análisis de riesgos&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Día 2&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Abril 22&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 1:30 p.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00 PM Salon 1&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Luis Cordon&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Web Pentesting&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00 PM Salon 2&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Pablo Barrera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Server Hardening: métodos de aseguramiento de tu servidor web y los datos que contiene&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:00PM&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Concurso de Ethical Hacking&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; height=&amp;quot;30&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot;       | '''TALLERES Y CONFERENCIAS''' &lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot;                   | &lt;br /&gt;
== '''OWASP Latam Tour - Lima 2015''' == &lt;br /&gt;
&lt;br /&gt;
'''Viernes 17 de Abril''' ''(Talleres)'' &amp;lt;br&amp;gt;'''Sábado 18 de Abril''' ''(Conferencia)''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;center&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;2&amp;quot;             | '''Descripcion y Objetivo'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;left&amp;quot; height=&amp;quot;80&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; colspan=&amp;quot;2&amp;quot; | '''OWASP LATAM TOUR,''' es una gira por Latino América que promueve la seguridad en aplicaciones web en diversas instituciones, como: universidades, organismos gubernamentales, empresas de TI y entidades financieras, buscando crear conciencia sobre la seguridad en las aplicaciones y puedan tomar decisiones informadas sobre los verdaderos riesgos de seguridad.&lt;br /&gt;
&lt;br /&gt;
*Ademas del OWASP Top 10, la mayoría de los [[:Category:OWASP_Project|Proyectos OWASP]] no son ampliamente utilizados en los ambientes corporativos. En la mayoría de los casos esto no es debido a una falta de calidad en los proyectos o la documentación disponible, sino mas bien por desconocer donde se ubicaran en un Ecosistema de Seguridad de Aplicaciones empresarial. &lt;br /&gt;
&lt;br /&gt;
*Esta serie de talleres y conferencias tienen como objetivo cambiar esta situación proporcionando una explicación sobre los proyectos OWASP mas maduros y listos para ser utilizados en el ambito empresarial.&lt;br /&gt;
|}&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''LIMA PERÚ'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Viernes 17)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Viernes 17 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  '''  San Isidro '''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | Durante todo el OWASP LatamTour se estarán realizando talleres de capacitación dictados por destacados profesionales en la materia.&amp;lt;br&amp;gt; &lt;br /&gt;
'''Duracion:''' 8 horas&amp;lt;br&amp;gt; &lt;br /&gt;
'''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&amp;lt;br&amp;gt; &lt;br /&gt;
'''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&amp;lt;br&amp;gt; &lt;br /&gt;
'''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']  '''&amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''TALLER 1'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''De 0 a Ninja con Metasploit'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Dragonjar.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | El taller de 0 a Ninja con Metasploit, busca detallar el uso de la herramienta Metasploit ampliamente utilizada en auditorias de seguridad por profesionales del área, desde su instalación y puesta a punto para el trabajo, hasta el uso de sus funciones para llevar a feliz termino una auditoria en seguridad.&lt;br /&gt;
De 0 a Ninja DragonJAR&lt;br /&gt;
&lt;br /&gt;
Este curso, altamente práctico, tiene una duración de 8 horas en las que los asistentes podrán acortar la curva de aprendizaje, gracias a la transmisión de conocimientos y experiencias de los docentes, altamente calificados, con el fin de que una vez finalizado el taller puedas aplicar los conocimientos adquiridos.&lt;br /&gt;
&lt;br /&gt;
Duracion: 1 día (8 horas)&lt;br /&gt;
====De 0 a Ninja con Metasploit====&lt;br /&gt;
*Introducción a Metasploit&lt;br /&gt;
*Introducción a la linea de comandos de Metasploit&lt;br /&gt;
*Trabajando con Metasploit y sus componentes (msfconsole, msfcli, msfgui, msfweb, msfpayload, msfencode, msfvenom, etc…)&lt;br /&gt;
*Etapas de un Pentesting y las herramientas para realizarlas incluidas en Metasploit&lt;br /&gt;
*Post-Explotación, ya tengo shell … ¿ahora que hago?&lt;br /&gt;
*Trabajando con Meterpreter&lt;br /&gt;
*Trabajo colaborativo usando Armitage/Cobalt Strike&lt;br /&gt;
*Generando el informe ¿Alguna tool que pueda ayudarme?&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/DragonJAR/ Jaime Andrés Restrepo (DragonJAR)]''', es Ingeniero en Sistemas y Telecomunicaciones de la Universidad de Manizales. Information Security Researcher con más de 10 años de experiencias en Ethical Hacking, Pen Testing y Análisis Forense. Docente Universitario en Pre y Post-Grado, Speaker y Organizador de diferentes eventos de Seguridad Informática, Co-Fundador del ACK Security Conference, Fundador de DragonJAR SAS y de La Comunidad DragonJAR, una de las comunidades de seguridad informática mas grandes de habla hispana y referente en el sector. &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 9:00am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRESE AL TALLER AQUI''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''TALLER 2'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Cerullof.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
'''Format:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejecícios practicos. Los participantes aprenderán a identificar vulnerabilidades en sitios web espeficamente diseñados  con vulnerabilidades y errores de código, explotandolas utilizando diferentes tecnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnológia usada en Aplicaciones Web.&lt;br /&gt;
*Áreas criticas en una Aplicación Web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRESE AL TALLER AQUI!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''CONFERENCIAS (Sábado 18)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | Sábado 18 de Abril&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | '''Universidad Tecnológica del Peru - Esquina Av. 28 de Julio con Av. Petit Thouars, Lima – Perú'''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | '''Precio y Registro'''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | El ingreso a las conferencias es '''GRATUITO''' - El proceso de registro lo podrá ubicar en el siguiente link : &amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''EL REGISTRO SE ENCUENTRA ABIERTO!''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | '''Promociones'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;left&amp;quot; height=&amp;quot;80&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;2&amp;quot; | OFERTA ESPECIAL - Durante todo el OWASP Latam Tour el costo de la membresía anual es de solamente U$D 20. Utilice el código de descuento &amp;quot;LATAM&amp;quot; durante el proceso de registro electrónico como miembro individual en el enlace disponible a continuación.&amp;lt;br&amp;gt;&lt;br /&gt;
[http://myowasp.force.com/memberappregion Hágase MIEMBRO DE OWASP AQUÍ] &amp;lt;br&amp;gt;&lt;br /&gt;
'''Si usted aun no es miembro OWASP, por favor considere unirse a nuestra organización.'''&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | '''DETALLES DE LA JORNADA'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ''' - '''&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Ponente'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 9:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | OWASP PERU&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:00 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Presentación del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/John_Vargas John Vargas]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |   &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cyber War in Web and Mobile Applications  &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/stinguer88 Jesús González (ESP)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 11:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Desarrollo Rápido y Seguro de Aplicaciones – Es posible tener las dos cosas?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |[https://twitter.com/fcerullo Fabio Cerullo (ARG)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Seguridad en Aplicaciones Moviles&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/pITea_security Juan Pablo Quiñe]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  15:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Todos a Sh3ll34r!&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/gabsitus Gabriel Lazo]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Se verán distintas técnicas utilizadas por atacantes maliciosos para lograr subir shells y obtener acceso a servidores web.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | OWASP Zap &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/Alonso_ReYDeS Alonso Caballero]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hackeando Carros en Latinoamérica&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/DragonJAR Andrés Restrepo (COL) (DragonJAR)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Conferencia: 15 de abril de 2015 ''' ==&lt;br /&gt;
El evento más importante de la región llega nuevamente a Uruguay, OWASP Latam tour 2015!. Expositores internacionales estarán presentando conferencias sobre los temas más importantes en Seguridad en Aplicaciones.&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA REGISTRARSE AL EVENTO HAGA CLIC AQUI! - SIN COSTO''']&lt;br /&gt;
&lt;br /&gt;
'''¿Dónde?''' &lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Católica del Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738&amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Uruguay. &amp;lt;br&amp;gt;&lt;br /&gt;
Ver en [https://www.google.com/maps/place/Universidad+Cat%C3%B3lica+del+Uruguay/@-34.888694,-56.159218,17z/data=!3m1!4b1!4m2!3m1!1s0x0:0x13508c3340b76e45 Google Maps]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Conferencias: Miércoles 15 de abril''' ==&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#4B0082&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''DETALLES DE LA CONFERENCIA - Miércoles 15 de Abril (Universidad Católica del Uruguay)'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Horario''' &lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Expositor'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Titulo'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:30 - 18:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:00 - 18:45&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cristian Borghello&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Certificate Pinning: ¿tenemos el c...ertificado roto?&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esta charla pretende demostrar en vivo la explotación de distintas vulnerabilidades en una aplicación móvil de tal manera que podamos revisar las causas y consecuencias, ademas recomendar las medidas de seguridad pertinentes.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:45 - 19:15&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Edgar Salazar&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Inseguridad en Aplicaciones Móviles&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esta charla pretende demostrar en vivo la explotación de distintas vulnerabilidades en una aplicación móvil de tal manera que podamos revisar las causas y consecuencias, ademas recomendar las medidas de seguridad pertinentes.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 19:15 - 19:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 19:30 - 20:15&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Eduardo Santiago&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | (IN)secure Development&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Forget Injection and XSS&lt;br /&gt;
This lecture aims to demonstrate simple traps in web development, and bad practices in addition to some factors are likely to cause critical security flaws. We will analyze some cases and demonstrate ways to mitigate and correct such failures.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 20:15 - 21:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Ricardo Supo Picón&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hacking Efectivo&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Los dominios windows están presentes en gran cantidad de organizaciones, en estos la autenticación de usuarios esta disponible en muchos servicios. En esta charla analizaremos los distintos tipos de autenticación de windows y como  obtener credenciales locales y de dominio así mismo como a partir de una sola credencial se puede obtener más credenciales hasta obtener un administrador de dominio. Así mismo se detallará como poder realizar intrusiones masivas en red de computadores que ayudan a que un sólo hacker pueda multiplicar sus actividades y conseguir su objetivo en un sólo día, presentación de la herramienta Domainator.&lt;br /&gt;
|-|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 21:00 - 21:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Victor Rojo&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Porque la seguridad en software es tan importante?&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoque Tecnico y Ecónomico para maximizar el retorno de la inversión en hacking etico, pentesting, desarrollo seguro, análisis del código, pruebas de seguridad.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 21:30 - 22:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cierre del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Sorteo de Premios&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Jueves 16 de Abril)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 16 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | TRAINING 1: Hacking de aplicaciones web basado en OWASP Top 10 (Costo: USD 250) by Cristian Borghello&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Universidad Católica del Uruguay&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Los desarrolladores son una raza extraña. Los Pentesters viven en una burbuja. Este entrenamiento ayuda a los desarrolladores a conocer sobre seguridad en el desarrollo web y a los Pentesters a probar aplicaciones web de forma adecuada.&lt;br /&gt;
&lt;br /&gt;
Objetivos: - Conocer OWASP Top 10 (quick summary) - Aprender cómo comprobar cada vulnerabilidad desde el punto de vista del Desarrollador y del Pentester - Conocer recomendaciones desde el punto de vista del Pentester - Conocer recomendaciones desde el punto de vista del Desarrollador&lt;br /&gt;
&lt;br /&gt;
Orientado a desarrolladores, pentesters y personas relacionados con el ciclo de vida del desarrollo de software o sus pruebas de seguridad. &lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 16 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | TRAINING 2: BYOX101/Construya su propio xploit 101/Build Your Own Xploit 101 (Costo: USD 250) by Mauricio Campiglia&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Universidad Católica del Uruguay&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | ¿Alguna vez te preguntaste de dónde salen ese montón de numeritos que por arte de magia te dejan en una línea de comandos con privilegios? Esta es tu oportunidad para conocer de dónde salen y porqué están ahí y no en otro lugar. Este entrenamiento te guía desde cero hasta la creación de exploits sencillos e intermedios aprendiendo en el recorrido los por qué de cada paso. No se verán exploits de dia cero ni muy complejos, nos concentraremos en lo probado y conocido pues el objetivo es entender el proceso de creación de un exploit.&lt;br /&gt;
&lt;br /&gt;
Detalles:&lt;br /&gt;
&lt;br /&gt;
Entrenamiento mayormente práctico de creación básica de exploits para sistemas MS Windows. Se usarán ejemplos conocidos pero fiables y se crearán programas de ejemplo vulnerables a propósito.&lt;br /&gt;
&lt;br /&gt;
Conocimientos obtenidos:&lt;br /&gt;
&lt;br /&gt;
Quienes asistan entenderán el proceso de creación de un exploit entendiendo en el camino la confirmación de memoria de sistemas MS Windows y las protecciones de este sistema. ¿Por qué participar de este entrenamiento?&lt;br /&gt;
&lt;br /&gt;
    La habilidad de creación de exploits no es algo que se encuentre facilmente en un curso.&lt;br /&gt;
    Entender este proceso te da la flexibilidad de adaptarte cuando un ataque no funciona tal como te lo dieron.&lt;br /&gt;
    Desenmarañar el porqué de un montón de números sin sentido que te dan un acceso que no tienes es mágico.&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA REGISTRARSE AL EVENTO HAGA CLIC AQUI! - SIN COSTO''']&lt;br /&gt;
&lt;br /&gt;
== '''Trainings: Jueves 16 de abril de 8am a 5pm''' ==&lt;br /&gt;
&lt;br /&gt;
=== TRAINING 1: Hacking de aplicaciones web basado en OWASP Top 10 (Costo: USD 250) ===&lt;br /&gt;
&lt;br /&gt;
'''Instructor:''' Christian Borghello&lt;br /&gt;
&lt;br /&gt;
Los desarrolladores son una raza extraña. Los Pentesters viven en una burbuja. Este entrenamiento ayuda a los desarrolladores a conocer sobre seguridad en el desarrollo web y a los Pentesters a probar aplicaciones web de forma adecuada.&lt;br /&gt;
&lt;br /&gt;
Objetivos: - Conocer OWASP Top 10 (quick summary) - Aprender cómo comprobar cada vulnerabilidad desde el punto de vista del Desarrollador y del Pentester - Conocer recomendaciones desde el punto de vista del Pentester - Conocer recomendaciones desde el punto de vista del Desarrollador &lt;br /&gt;
&lt;br /&gt;
Orientado a desarrolladores, pentesters y personas relacionados con el ciclo de vida del desarrollo de software o sus pruebas de seguridad. &lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA INSCRIBIRSE HAGA CLIC AQUI!''']&lt;br /&gt;
&lt;br /&gt;
=== TRAINING 2: BYOX101/Construya su propio xploit 101/Build Your Own Xploit 101 (Costo: USD 250)  ===&lt;br /&gt;
&lt;br /&gt;
'''Instructor:''' Mauricio Campiglia&lt;br /&gt;
&lt;br /&gt;
¿Alguna vez te preguntaste de dónde salen ese montón de numeritos que por arte de magia te dejan en una línea de comandos con privilegios? Esta es tu oportunidad para conocer de dónde salen y porqué están ahí y no en otro lugar. Este  entrenamiento te guía desde cero hasta la creación de exploits sencillos e intermedios aprendiendo en el recorrido los por qué de cada paso. No se verán exploits de dia cero ni muy complejos, nos concentraremos en lo probado y conocido pues el objetivo es entender el proceso de creación de un exploit.&lt;br /&gt;
&lt;br /&gt;
'''Detalles''':&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Entrenamiento mayormente práctico de creación básica de exploits para&lt;br /&gt;
sistemas MS Windows. Se usarán ejemplos conocidos pero fiables y se crearán&lt;br /&gt;
programas de ejemplo vulnerables a propósito.&lt;br /&gt;
&lt;br /&gt;
'''Conocimientos obtenidos''':&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Quienes asistan entenderán el proceso de creación de un exploit entendiendo en el camino la confirmación de memoria de sistemas MS Windows y las protecciones de este sistema. ¿Por qué participar de este entrenamiento?&lt;br /&gt;
* La habilidad de creación de exploits no es algo que se encuentre facilmente en un curso.&lt;br /&gt;
* Entender este proceso te da la flexibilidad de adaptarte cuando un ataque no funciona tal como te lo dieron.&lt;br /&gt;
* Desenmarañar el porqué de un montón de números sin sentido que te dan un acceso que no tienes es mágico.&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA INSCRIBIRSE HAGA CLIC AQUI!''']&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd 2015''' ==&lt;br /&gt;
[[File:bwoltv.png| center |bwoltv.png ]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Registro ==&lt;br /&gt;
El registro es totalmente gratis, nos complacería mucho que nos acompañaras este día. &lt;br /&gt;
&lt;br /&gt;
Te esperamos!!!&lt;br /&gt;
 &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGISTRATE AQUI''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== UBICACIÓN ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:UbicacionLatamCaracas.png]]&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Registro 8:30 am&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot;  bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;OWASP Venezuela &amp;amp; UCV&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Palabras de Bienvenida&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:15-9:55 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Jair Garcia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt;&amp;lt;b&amp;gt;Hacking Etico: Cacería de Vulnerabilidades&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:00-9:35 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Randy Ortega&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Sessión Hijacking: Peligro en la web&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:40-11:10am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:15-11:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Michael Hidalgo (Costa Rica)&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Ataques de denegación de servicio a través de expresiones regulares: De la explotación a la corrección&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;12:00-1:30 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Almuerzo Libre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;1:35-2:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Josmell Chavarri&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Conociendo al Enemigo: Honeypots&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:15-2:40 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt; Rodrigo Bravo y Eliezer Romero&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt; &amp;lt;b&amp;gt;Programación Segura en Python&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:45-3:20 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:35-4:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Maximiliano Anlonzo (Uruguay) &amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Peligro: software en construcción&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:15-4:40 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Carlos Suárez&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Beef como framework de explotación xss&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:45-5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Palabras de cierre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= CTF =&lt;br /&gt;
&lt;br /&gt;
Do you have an interest in security or are you a security professional? Either way, you have something to gain from the OWASP Security Shepherd LATAM Tour CTF. OWASP Security Shepherd has been designed and implemented with the aim of fostering and improving security awareness among a varied skill-set demographic. This project enables users to learn or to improve upon existing manual penetration testing skills. The OWASP Security Shepherd leaders have created a customised version of the project for this CTF. This CTF is for everyone and anyone, so check it out! Just ensure that you follow these rules when you take part;&lt;br /&gt;
 &lt;br /&gt;
== CTF Rules ==  &lt;br /&gt;
- No Denial of Service Attacks.&amp;lt;br&amp;gt;&lt;br /&gt;
- No automated Scans (you might get banned).&amp;lt;br&amp;gt;&lt;br /&gt;
- Do not generate large amounts of traffic.&amp;lt;br&amp;gt;&lt;br /&gt;
- No destructive attacks (don't delete stuff).&amp;lt;br&amp;gt;&lt;br /&gt;
- Confine hacking on the tasks that are explicitly free to hack.&amp;lt;br&amp;gt;&lt;br /&gt;
- If you find a cheat or trick to solve things more easily, please report it for Bonus Points.&amp;lt;br&amp;gt;&lt;br /&gt;
- The organizers might change the rules throughout the challenge.&amp;lt;br&amp;gt;&lt;br /&gt;
- Participants breaking these rules might be penalized or excluded from the competition.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Follow the CTF twitter feed for CTF news: [https://twitter.com/LatamTourCtf https://twitter.com/LatamTourCtf]&lt;br /&gt;
&lt;br /&gt;
Enjoying the CTF? Want to contribute? More information on the project here: [https://www.owasp.org/index.php/OWASP_Security_Shepherd https://www.owasp.org/index.php/OWASP_Security_Shepherd]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=192745</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=192745"/>
				<updated>2015-04-05T21:13:30Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* CTF */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|750px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes Droguett [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru'''(Lima) : John Vargas [john.vargas@owasp.org] vía [https://docs.google.com/forms/d/1HJAwdnCxhnDjxdEOrHVBaewrkQncIB2uxHCzxEtxwug '''this Google form''']&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes Droguett [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* Santa Cruz de las Sierras, Bolivia: Daniel Torres [daniel.torres@owasp.org]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Andrea Villar&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=PATAGONIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
''Conferencias: Libres y gratuitas''&amp;lt;br&amp;gt;&lt;br /&gt;
''Entrenamiento: 250 dólares''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CTF Patagonia===&lt;br /&gt;
Competencia de hacking &amp;quot;CTF Patagonia&amp;quot;.&amp;lt;br&amp;gt;&lt;br /&gt;
Preparen, aputen,...., [http://ctf-ddn.rhcloud.com/ FUEGO!]&lt;br /&gt;
&lt;br /&gt;
===Agenda ===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| 09:00 - 10:00&lt;br /&gt;
| Acreditacion&lt;br /&gt;
| &lt;br /&gt;
|- &lt;br /&gt;
| 10:00 - 10:15&lt;br /&gt;
| Bienvenida e intoduccion a OWASP&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 10:20 - 11:00&lt;br /&gt;
| [https://www.owasp.org/index.php/LatamTour2015/VulnerabilidadesGatewayPago Vulnerabilidades en Gateways de Pago]&lt;br /&gt;
| [https://www.linkedin.com/in/ariancho Andrés Riancho]&lt;br /&gt;
|- &lt;br /&gt;
| 11:00 - 11:30&lt;br /&gt;
| Pausa para café&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 11:30 - 12:00 &lt;br /&gt;
| Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
| Marcelo Campetella&lt;br /&gt;
|-&lt;br /&gt;
| 12:00 - 12:30&lt;br /&gt;
| El mercado del Malware en las Apps de los Store para Android&lt;br /&gt;
| Claudio Caracciolo&lt;br /&gt;
|-&lt;br /&gt;
| 12:30 - 14:00&lt;br /&gt;
| Pausa para almuerzo&lt;br /&gt;
|&lt;br /&gt;
|- &lt;br /&gt;
| 14:00 - 14:40&lt;br /&gt;
| Mobile Apps and how to Pentest them&lt;br /&gt;
| Gustavo Sorondo&lt;br /&gt;
|-&lt;br /&gt;
| 14:40 - 15:10&lt;br /&gt;
| CIOs vs CISOs: OWASP al rescate &lt;br /&gt;
| Mauro Graziosi&lt;br /&gt;
|-&lt;br /&gt;
| 15:10 - 15:40&lt;br /&gt;
| Pausa para café&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 15:40 - 16:20&lt;br /&gt;
| Certificate Pinning: ¿tenemos el c...ertificado roto?&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|- &lt;br /&gt;
| 16:20 - 16:30&lt;br /&gt;
| Agradecimientos y cierre&lt;br /&gt;
|&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
''Valor del entrenamiento: u$s 250''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Entrenamiento&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| 08:00 - 12:00&lt;br /&gt;
| Hacking de aplicaciones web basado en OWASP Top 10 (Parte 1)&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|- &lt;br /&gt;
| 12:00 - 13:00&lt;br /&gt;
| Pausa para almuerzo&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 13:00 - 17:00&lt;br /&gt;
| Hacking de aplicaciones web basado en OWASP Top 10 (Parte 2)&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
'''Viernes 10'''&amp;lt;br&amp;gt;&lt;br /&gt;
Universidad Nacional del Comahue, Buenos Aires 1400, Neuquén&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
'''Sabado 11'''&amp;lt;br&amp;gt;&lt;br /&gt;
Instituto Icono, Santa Fe 355, Neuquén&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:MapaIFES.png|link=https://www.google.com.ar/maps/place/Icono+S.r.l./@-38.9517208,-68.0592463,16z/data=!4m2!3m1!1s0x960a33d10f798455:0xed1c52f760942955?hl=es-419]]&lt;br /&gt;
&lt;br /&gt;
===Afiche para difusión===&lt;br /&gt;
[[File:PosterLatamtour2015-Patagonia.jpg|link=https://www.owasp.org/images/6/60/Poster_Latamtour.pdf]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BUENOS AIRES=&lt;br /&gt;
&lt;br /&gt;
Invitamos a estudiantes, desarrolladores, expertos en seguridad informática y curiosos en general a compartir con la comunidad de OWASP un nuevo evento en Buenos Aires! Será una jornada de charlas técnicas, en un ambiente relajado e ideal para conocer otras personas interesadas en la seguridad en aplicaciones.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Inscripcion'''==&lt;br /&gt;
&lt;br /&gt;
Recuerden que es necesario [https://www.regonline.com/owasplatamtour15argentina '''inscribirse'''] para asistir. La registración es '''completamente gratis''' y es unicamente utilizada para verificar su identidad en la entrada de la Universidad.&lt;br /&gt;
&lt;br /&gt;
== '''Fecha y lugar'''==&lt;br /&gt;
&lt;br /&gt;
24 Abril 2015 - 9am (puntual!)&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.google.com.ar/maps/place/Av+Rivadavia+2258,+Buenos+Aires,+Ciudad+Aut%C3%B3noma+de+Buenos+Aires/@-34.6096561,-58.3984517,17z/data=!3m1!4b1!4m2!3m1!1s0x95bccae91dc7f349:0x3177aaca9808e637 Av. Rivadavia 2258, Ciudad Autonoma de Buenos Aires]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Charlas'''==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f; color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Hora&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Titulo&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Orador&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;9:10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Introducción a OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Fabio Cerullo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;9:35&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Steering a Bullet Train&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Santiago Kantorowicz&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;10:25&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Y ahora nos preocupamos por la privacidad? Gracias #Snowden&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Mariano M. del Rio&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;10:50&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Coffee break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;11:20&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Building a High Interaction Honeypot: Implementation and logging techniques&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Fernando Catoira&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;11:45&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;[https://www.owasp.org/index.php/LatamTour2015/VulnerabilidadesGatewayPago Vulnerabilidades en Gateways de Pago]&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;[https://www.linkedin.com/in/ariancho Andrés Riancho]&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;12:35&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Almuerzo&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;13:55&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Threat not found!&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Sheila Berta&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;14:20&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Mobile Apps and How To Pentest Them&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Gustavo Sorondo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;15:10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Coffee break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;15:40&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;HP Sponsor talk&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;16:05&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Web Security for Bitcoin Services&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Juliano Rizzo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Chile El Capítulo Chileno de OWASP], tiene el agrado de invitar a la conferencia LatamTour2015,  con el auspicio de [http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]  sede Alonso Ovalle.&lt;br /&gt;
&lt;br /&gt;
OWASP es una organización mundial sin fines de lucro dedicada a identificar y combatir las causas que hacen inseguro el software.  Revise nuestra documentación y metodologías en los [[:Category:OWASP_Project|Proyectos OWASP]] donde encontrará valioso material de aplicación práctica en los ambientes corporativos. Asista a los talleres y conferencias del LatamTour y aprenda como sacar provecho a estos recursos de libre acceso.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''HAGA CLICK AQUI PARA REGISTRARSE''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Para asistentes registrados se sortean 5 membresías, que permiten acceder gratis (o con descuento preferente) a eventos y talleres OWASP durante 12 meses.&lt;br /&gt;
Inscribase y asegure su confirmación de reserva preferente.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#4B0082&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''DETALLES DE LA CONFERENCIA (Miércoles 8 de Abril en DUOC-UC sede Alonso Ovalle Nro.1586 -Metro Moneda-)'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Horario''' &lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Modulo'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Ponente'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 09:00 - 09:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 09:30 - 10:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Bienvenida y Presentación del Evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | DUOC-UC y OWASP-Chile&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Rodrigo Cea Warner. Director de Carrera DUOC-UC. Carlos Allendes Droguett Chapter Leader OWASP Chile.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:00 - 10:50&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Bug Bounty, programs reload&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Ormeño y Freddy Grey (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoques e investigación sobre programas de BUG BOUNTY periodico a través de vectores de ataque poco convencionales.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:50 - 11:05&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 11:10 - 12:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Analizando tráfico WIFI de smartphones &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Yago Fernández H. (ESPAÑA)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Es seguro utilizar redes Wi­Fi? Intercepción on-line del tráfico wi-fi en conexiones de smartphone y tecnicas de hacking. &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:00 - 12:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Estado transparente, descentralización y confianza ¿Apoyado con Tecnología?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esteban Valenzuela Van Treek (Escritor, doctor en Historia, ex alcalde/diputado, Director de Ciencia Política U.A.Hurtado)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Potenciar el regionalismo, la descentralización y la trasparencia del pais, usando la tecnología e internet (teletrabajo, e-learning, flexibilidad laboral, innovación, etc.)&lt;br /&gt;
|-|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:35 - 13:10&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Gestionar la inversión en seguridad con OpenSAMM.     Donde Iniciar?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Allendes Droguett (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoque Tecnico y Ecónomico para maximizar el retorno de la inversión en hacking etico, pentesting, desarrollo seguro, análisis del código, pruebas de seguridad.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 13:10 - 14:50&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Break para Almorzar&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 14:50 - 15:40&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hacking efectivo: Desde una credencial hasta el Domain Admin en un solo día&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Ricardo Supo P. (PERU)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Como ganar acceso a credenciales locales de dominio y escalar privilegios hasta obtener un acceso de administrador de dominio.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 15:40 - 16:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | HTTPS: Usted, úselo bien.&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cristián Rojas, CLCERT U.de Chile&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Que riesgos acechan, aunque tengamos instalado SSL/TLS?  Año 2014 fue  intenso: Heartbleed, POODLE, y errores de implementación como el GOTO FAIL.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:30 - 16:40&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:40 - 17:20&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Seguridad Incorporada al Ciclo de Desarrollo&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Alejandro Johannes (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Principios y fundamentos para disponer de una gestión con seguridad y calidad en el Ciclo de Desarrollo de aplicaciones.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:20 - 18:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Importancia de la seguridad en el software&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hector Takami (MEXICO)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | En lo que respecta a la seguridad del software, dar importancia a proyectos como OpenSAMM e integrar estas sugerencias en un modelo de seguridad aplicativa.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:00 - 18:10&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cierre del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Sorteo de Premios&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | membresías OWASP (entre inscritos)&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Jueves 9 de Abril)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 9 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 9 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
 &amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Owasp_upb_2015.jpg|link=https://www.google.com/maps/place/Universidad+Pontificia+Bolivariana+Seccional+Bucaramanga/@7.0389574,-73.071732,14z/data=!4m2!3m1!1s0x8e6840b36653b9c5:0x4dcdbc55842151df]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===REGISTRO===&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;TOTALMENTE GRATUITO, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Register.gif|link=https://www.regonline.com/owasplatamtour15colombia]]&lt;br /&gt;
&amp;lt;!--[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']--&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 7:30 a.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Diego Ademir Duarte Santana&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP ASVS 2.0 Web Application Standard&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jhon César Arango Serna&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;IPv6 Ventaja o Amenaza&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Hugo Armando Rodriguez Vera&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Protección de Datos Personales, infracción y consecuencias&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;MundoHacker&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Ciberespionaje y Cibercrimen as a Service&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Lunch&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;14:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;German Alonso Suárez Guerrero&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP Proactive Controls&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;15:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td&amp;gt;Ronald Escalona&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Hardening del Servidor Web, enfoque práctico con jail/chroot para entornos multisitios&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;16:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Javier Orlando Mantilla P&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Seguridad en desarrollo de aplicaciones web usando Apache Tomee&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Finish Event&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con &amp;lt;b&amp;gt;transmisión vía streaming&amp;lt;/b&amp;gt; para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
&lt;br /&gt;
[[File:Santa.jpg]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Lugar: Universidad NUR&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Dirección: Av. Banzer, Victorino Rivero 100&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de la Sierra, Bolivia&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Fecha: 17 y 18 de abril del 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Mapa.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viernes 17 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | País&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
! 08:00 - 08:30&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Registro - Acreditación&lt;br /&gt;
|- &lt;br /&gt;
! 08:30 - 09:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Video: Mundo Hacker - Proyecto OWASP&lt;br /&gt;
|- &lt;br /&gt;
! 09:00 - 09:50&lt;br /&gt;
| Jaime Iván Mendoza Ribera&lt;br /&gt;
| Análisis de vulnerabilidades web&lt;br /&gt;
| Santa Cruz, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 09:50 - 10:40&lt;br /&gt;
| Cesar Roberto Cuenca Díaz&lt;br /&gt;
| Desarrollo Seguro Principios y Buenas Prácticas.&lt;br /&gt;
| La Paz, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 10:40 - 11:30&lt;br /&gt;
| Juan Pablo Barriga Sapiencia&lt;br /&gt;
| Riegos en TI&lt;br /&gt;
| Sucre, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 11:30 - 12:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|-&lt;br /&gt;
! 12:00 - 12:50 &lt;br /&gt;
| Walter Camama Menacho&lt;br /&gt;
| MiTM a nivel de browser con beef y metasploit&lt;br /&gt;
| Trinidad, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 12:50 - 13:40&lt;br /&gt;
| Leonardo Camilo Quenta Alarcon&lt;br /&gt;
| Seguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 13:40 - 14:30&lt;br /&gt;
| Deyvi Bustamante Perez&lt;br /&gt;
| Exploit development&lt;br /&gt;
| Sucre , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 14:30 - 15:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|- &lt;br /&gt;
! 15:00 - 15:50&lt;br /&gt;
| Gonzalo Nina Mamani&lt;br /&gt;
| Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web&lt;br /&gt;
| Cochabamba , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 15:50 - 16:40&lt;br /&gt;
| Hernán Marcelo Leytón Balderrama&lt;br /&gt;
| Seguridad en los Satélites de Comunicación&lt;br /&gt;
| Potosí, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 16:40 - 17:30&lt;br /&gt;
| Juan Alberto Fajardo Canaza&lt;br /&gt;
| WAF Testing Framework&lt;br /&gt;
| Potosí, Bolivia&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Sabado 18 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | País&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
! 08:00 - 08:30&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Acreditación&lt;br /&gt;
|- &lt;br /&gt;
! 09:00 - 09:50&lt;br /&gt;
| Alex Villegas y Roller Ibanez&lt;br /&gt;
| Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301&lt;br /&gt;
| Cochabamba, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 09:50 - 10:40&lt;br /&gt;
| Richard Villca Apaza&lt;br /&gt;
| Rompiendo el modelo de negocios: Debugging Android Apps&lt;br /&gt;
| La Paz, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 10:40 - 11:30&lt;br /&gt;
| Cristhian Lima Saravia&lt;br /&gt;
| Framework Pleni&lt;br /&gt;
| Cochabamba, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 11:30 - 12:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|-&lt;br /&gt;
! 12:00 - 12:50 &lt;br /&gt;
| Elvin Vidal Mollinedo Mencia&lt;br /&gt;
| Los 7 pecados de un desarrollador Web&lt;br /&gt;
| Santa Cruz, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 12:50 - 13:40&lt;br /&gt;
| Alvaro Machaca Tola&lt;br /&gt;
| Análisis de riesgos aplicando la metodología OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 13:40 - 14:30&lt;br /&gt;
| Erick Calderon Mostajo&lt;br /&gt;
| Herramientas de Aprendizaje OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 14:30 - 15:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|- &lt;br /&gt;
! 15:00 - 15:50&lt;br /&gt;
| Daniel Torres Sandi&lt;br /&gt;
| Headers seguros en HTTP&lt;br /&gt;
| Sucre , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 15:50 - 16:50&lt;br /&gt;
| Gabriel Labrada Hernandez (INTEL MEXICO)&lt;br /&gt;
| Seguridad en Hardware y los servicios en la nube&lt;br /&gt;
| Mexico&lt;br /&gt;
|-&lt;br /&gt;
! 16:50 - 17:50&lt;br /&gt;
| Jacobo Tibaquira&lt;br /&gt;
| Atacando al atacante (DRAGON JAR)&lt;br /&gt;
| Colombia&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
El evento se va a llevar a cabo en el auditorio de la Ciudad de la Investigación de la Universidad de Costa Rica. [http://goo.gl/Y64lZG'''Ver Dirección exacta''']&lt;br /&gt;
&lt;br /&gt;
[[File:Mapa-ucr-auditorio.png|800px]]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== REGISTRO ===&lt;br /&gt;
Recuerde que el ingreso al evento es totalmente gratuito, sólo debe registrarse previamente. '''El comprobante de registro será solicitado en el momento de ingresar en el auditorio'''.&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''Pulse aquí para registrarse en el evento.''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== CONFERENCIAS-LISTADO DE EXPOSITORES===&lt;br /&gt;
&lt;br /&gt;
'''Martes 21 de Abril'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
 &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Recepción y Registro De 7:30 am a 8:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;150&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:00 am a 8:10 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;OWASP Costa Rica &amp;amp;amp; UCR&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;500&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Palabras de Bienvenida&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:10-9:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Fabio Cerullo , &amp;lt;b&amp;gt;Dublin Irlanda&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Keynote: Desarrollo Rápido y Seguro de Aplicaciones  – Es posible tener las dos cosas? &amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;09:00-09:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Eduardo Rojas&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Bloques de construcción en la implementación estratégica del software seguro con SAMM&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;09:50-10:10am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:10-11:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Mauricio Oviedo&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Manejo Seguro del DNS&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
     &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:00-11:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Walter Montes&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Buenas prácticas para manejo de autenticación y sesión&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:50-1:20 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Almuerzo Libre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;1:20-2:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Randall Barnett&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Vulnerabilidades encontradas en Sistema de Control de Tráfico Nacional&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:15-3:05 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Mario Robles&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; &amp;lt;b&amp;gt;Web Application Penetration Testing&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:05-3:25 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:25-4:15 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;TBD &amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;TBD&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:15-5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Bertin Bervis&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;MiTM Attacks con DNS proxys a escala WAN el modem bajo ataque&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Palabras de cierre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las oportunidades de patrocinio &lt;br /&gt;
Cualquier consulta pueden contactar a [mailto:michael.hidalgo@owasp.org Michael Hidalgo].&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&amp;lt;b&amp;gt;Día 1&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Abril 21&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 1:30 p.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Camilo Fernandez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP Tools&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Pablo Barrera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;La verdad sobre los ataques de denegación de servicio&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:30&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Oscar Rodas y Marco To&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Avances en investigación sobre seguridad informática&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;5:15&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;Elder Guerra&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Un verdadero análisis de riesgos&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Día 2&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Abril 22&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 1:30 p.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00 PM Salon 1&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Luis Cordon&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Web Pentesting&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00 PM Salon 2&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Pablo Barrera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Server Hardening: métodos de aseguramiento de tu servidor web y los datos que contiene&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:00PM&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Concurso de Ethical Hacking&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; height=&amp;quot;30&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot;       | '''TALLERES Y CONFERENCIAS''' &lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot;                   | &lt;br /&gt;
== '''OWASP Latam Tour - Lima 2015''' == &lt;br /&gt;
&lt;br /&gt;
'''Viernes 17 de Abril''' ''(Talleres)'' &amp;lt;br&amp;gt;'''Sábado 18 de Abril''' ''(Conferencia)''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;center&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;2&amp;quot;             | '''Descripcion y Objetivo'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;left&amp;quot; height=&amp;quot;80&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; colspan=&amp;quot;2&amp;quot; | '''OWASP LATAM TOUR,''' es una gira por Latino América que promueve la seguridad en aplicaciones web en diversas instituciones, como: universidades, organismos gubernamentales, empresas de TI y entidades financieras, buscando crear conciencia sobre la seguridad en las aplicaciones y puedan tomar decisiones informadas sobre los verdaderos riesgos de seguridad.&lt;br /&gt;
&lt;br /&gt;
*Ademas del OWASP Top 10, la mayoría de los [[:Category:OWASP_Project|Proyectos OWASP]] no son ampliamente utilizados en los ambientes corporativos. En la mayoría de los casos esto no es debido a una falta de calidad en los proyectos o la documentación disponible, sino mas bien por desconocer donde se ubicaran en un Ecosistema de Seguridad de Aplicaciones empresarial. &lt;br /&gt;
&lt;br /&gt;
*Esta serie de talleres y conferencias tienen como objetivo cambiar esta situación proporcionando una explicación sobre los proyectos OWASP mas maduros y listos para ser utilizados en el ambito empresarial.&lt;br /&gt;
|}&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''LIMA PERÚ'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Viernes 17)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Viernes 17 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  '''  San Isidro '''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | Durante todo el OWASP LatamTour se estarán realizando talleres de capacitación dictados por destacados profesionales en la materia.&amp;lt;br&amp;gt; &lt;br /&gt;
'''Duracion:''' 8 horas&amp;lt;br&amp;gt; &lt;br /&gt;
'''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&amp;lt;br&amp;gt; &lt;br /&gt;
'''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&amp;lt;br&amp;gt; &lt;br /&gt;
'''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']  '''&amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''TALLER 1'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''De 0 a Ninja con Metasploit'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Dragonjar.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | El taller de 0 a Ninja con Metasploit, busca detallar el uso de la herramienta Metasploit ampliamente utilizada en auditorias de seguridad por profesionales del área, desde su instalación y puesta a punto para el trabajo, hasta el uso de sus funciones para llevar a feliz termino una auditoria en seguridad.&lt;br /&gt;
De 0 a Ninja DragonJAR&lt;br /&gt;
&lt;br /&gt;
Este curso, altamente práctico, tiene una duración de 8 horas en las que los asistentes podrán acortar la curva de aprendizaje, gracias a la transmisión de conocimientos y experiencias de los docentes, altamente calificados, con el fin de que una vez finalizado el taller puedas aplicar los conocimientos adquiridos.&lt;br /&gt;
&lt;br /&gt;
Duracion: 1 día (8 horas)&lt;br /&gt;
====De 0 a Ninja con Metasploit====&lt;br /&gt;
*Introducción a Metasploit&lt;br /&gt;
*Introducción a la linea de comandos de Metasploit&lt;br /&gt;
*Trabajando con Metasploit y sus componentes (msfconsole, msfcli, msfgui, msfweb, msfpayload, msfencode, msfvenom, etc…)&lt;br /&gt;
*Etapas de un Pentesting y las herramientas para realizarlas incluidas en Metasploit&lt;br /&gt;
*Post-Explotación, ya tengo shell … ¿ahora que hago?&lt;br /&gt;
*Trabajando con Meterpreter&lt;br /&gt;
*Trabajo colaborativo usando Armitage/Cobalt Strike&lt;br /&gt;
*Generando el informe ¿Alguna tool que pueda ayudarme?&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/DragonJAR/ Jaime Andrés Restrepo (DragonJAR)]''', es Ingeniero en Sistemas y Telecomunicaciones de la Universidad de Manizales. Information Security Researcher con más de 10 años de experiencias en Ethical Hacking, Pen Testing y Análisis Forense. Docente Universitario en Pre y Post-Grado, Speaker y Organizador de diferentes eventos de Seguridad Informática, Co-Fundador del ACK Security Conference, Fundador de DragonJAR SAS y de La Comunidad DragonJAR, una de las comunidades de seguridad informática mas grandes de habla hispana y referente en el sector. &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 9:00am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRESE AL TALLER AQUI''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''TALLER 2'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Cerullof.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
'''Format:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejecícios practicos. Los participantes aprenderán a identificar vulnerabilidades en sitios web espeficamente diseñados  con vulnerabilidades y errores de código, explotandolas utilizando diferentes tecnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnológia usada en Aplicaciones Web.&lt;br /&gt;
*Áreas criticas en una Aplicación Web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRESE AL TALLER AQUI!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''CONFERENCIAS (Sábado 18)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | Sábado 18 de Abril&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | '''Universidad Tecnológica del Peru - Esquina Av. 28 de Julio con Av. Petit Thouars, Lima – Perú'''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | '''Precio y Registro'''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | El ingreso a las conferencias es '''GRATUITO''' - El proceso de registro lo podrá ubicar en el siguiente link : &amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''EL REGISTRO SE ENCUENTRA ABIERTO!''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | '''Promociones'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;left&amp;quot; height=&amp;quot;80&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;2&amp;quot; | OFERTA ESPECIAL - Durante todo el OWASP Latam Tour el costo de la membresía anual es de solamente U$D 20. Utilice el código de descuento &amp;quot;LATAM&amp;quot; durante el proceso de registro electrónico como miembro individual en el enlace disponible a continuación.&amp;lt;br&amp;gt;&lt;br /&gt;
[http://myowasp.force.com/memberappregion Hágase MIEMBRO DE OWASP AQUÍ] &amp;lt;br&amp;gt;&lt;br /&gt;
'''Si usted aun no es miembro OWASP, por favor considere unirse a nuestra organización.'''&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | '''DETALLES DE LA JORNADA'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ''' - '''&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Ponente'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 9:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | OWASP PERU&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:00 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Presentación del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/John_Vargas John Vargas]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |   &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cyber War in Web and Mobile Applications  &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/stinguer88 Jesús González (ESP)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 11:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Desarrollo Rápido y Seguro de Aplicaciones – Es posible tener las dos cosas?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |[https://twitter.com/fcerullo Fabio Cerullo (ARG)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Seguridad en Aplicaciones Moviles&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/pITea_security Juan Pablo Quiñe]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  15:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Todos a Sh3ll34r!&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/gabsitus Gabriel Lazo]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Se verán distintas técnicas utilizadas por atacantes maliciosos para lograr subir shells y obtener acceso a servidores web.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | OWASP Zap &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/Alonso_ReYDeS Alonso Caballero]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hackeando Carros en Latinoamérica&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/DragonJAR Andrés Restrepo (COL) (DragonJAR)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Conferencia: 15 de abril de 2015 ''' ==&lt;br /&gt;
El evento más importante de la región llega nuevamente a Uruguay, OWASP Latam tour 2015!. Expositores internacionales estarán presentando conferencias sobre los temas más importantes en Seguridad en Aplicaciones.&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA REGISTRARSE AL EVENTO HAGA CLIC AQUI! - SIN COSTO''']&lt;br /&gt;
&lt;br /&gt;
'''¿Dónde?''' &lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Católica del Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738&amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Uruguay. &amp;lt;br&amp;gt;&lt;br /&gt;
Ver en [https://www.google.com/maps/place/Universidad+Cat%C3%B3lica+del+Uruguay/@-34.888694,-56.159218,17z/data=!3m1!4b1!4m2!3m1!1s0x0:0x13508c3340b76e45 Google Maps]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Conferencias: Miércoles 15 de abril''' ==&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#4B0082&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''DETALLES DE LA CONFERENCIA - Miércoles 15 de Abril (Universidad Católica del Uruguay)'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Horario''' &lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Expositor'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Titulo'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:30 - 18:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:00 - 18:45&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cristian Borghello&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Certificate Pinning: ¿tenemos el c...ertificado roto?&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esta charla pretende demostrar en vivo la explotación de distintas vulnerabilidades en una aplicación móvil de tal manera que podamos revisar las causas y consecuencias, ademas recomendar las medidas de seguridad pertinentes.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:45 - 19:15&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Edgar Salazar&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Inseguridad en Aplicaciones Móviles&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esta charla pretende demostrar en vivo la explotación de distintas vulnerabilidades en una aplicación móvil de tal manera que podamos revisar las causas y consecuencias, ademas recomendar las medidas de seguridad pertinentes.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 19:15 - 19:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 19:30 - 20:15&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Eduardo Santiago&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | (IN)secure Development&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Forget Injection and XSS&lt;br /&gt;
This lecture aims to demonstrate simple traps in web development, and bad practices in addition to some factors are likely to cause critical security flaws. We will analyze some cases and demonstrate ways to mitigate and correct such failures.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 20:15 - 21:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Ricardo Supo Picón&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hacking Efectivo&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Los dominios windows están presentes en gran cantidad de organizaciones, en estos la autenticación de usuarios esta disponible en muchos servicios. En esta charla analizaremos los distintos tipos de autenticación de windows y como  obtener credenciales locales y de dominio así mismo como a partir de una sola credencial se puede obtener más credenciales hasta obtener un administrador de dominio. Así mismo se detallará como poder realizar intrusiones masivas en red de computadores que ayudan a que un sólo hacker pueda multiplicar sus actividades y conseguir su objetivo en un sólo día, presentación de la herramienta Domainator.&lt;br /&gt;
|-|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 21:00 - 21:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Victor Rojo&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Porque la seguridad en software es tan importante?&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoque Tecnico y Ecónomico para maximizar el retorno de la inversión en hacking etico, pentesting, desarrollo seguro, análisis del código, pruebas de seguridad.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 21:30 - 22:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cierre del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Sorteo de Premios&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Jueves 16 de Abril)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 16 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | TRAINING 1: Hacking de aplicaciones web basado en OWASP Top 10 (Costo: USD 250) by Cristian Borghello&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Universidad Católica del Uruguay&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Los desarrolladores son una raza extraña. Los Pentesters viven en una burbuja. Este entrenamiento ayuda a los desarrolladores a conocer sobre seguridad en el desarrollo web y a los Pentesters a probar aplicaciones web de forma adecuada.&lt;br /&gt;
&lt;br /&gt;
Objetivos: - Conocer OWASP Top 10 (quick summary) - Aprender cómo comprobar cada vulnerabilidad desde el punto de vista del Desarrollador y del Pentester - Conocer recomendaciones desde el punto de vista del Pentester - Conocer recomendaciones desde el punto de vista del Desarrollador&lt;br /&gt;
&lt;br /&gt;
Orientado a desarrolladores, pentesters y personas relacionados con el ciclo de vida del desarrollo de software o sus pruebas de seguridad. &lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 16 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | TRAINING 2: BYOX101/Construya su propio xploit 101/Build Your Own Xploit 101 (Costo: USD 250) by Mauricio Campiglia&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Universidad Católica del Uruguay&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | ¿Alguna vez te preguntaste de dónde salen ese montón de numeritos que por arte de magia te dejan en una línea de comandos con privilegios? Esta es tu oportunidad para conocer de dónde salen y porqué están ahí y no en otro lugar. Este entrenamiento te guía desde cero hasta la creación de exploits sencillos e intermedios aprendiendo en el recorrido los por qué de cada paso. No se verán exploits de dia cero ni muy complejos, nos concentraremos en lo probado y conocido pues el objetivo es entender el proceso de creación de un exploit.&lt;br /&gt;
&lt;br /&gt;
Detalles:&lt;br /&gt;
&lt;br /&gt;
Entrenamiento mayormente práctico de creación básica de exploits para sistemas MS Windows. Se usarán ejemplos conocidos pero fiables y se crearán programas de ejemplo vulnerables a propósito.&lt;br /&gt;
&lt;br /&gt;
Conocimientos obtenidos:&lt;br /&gt;
&lt;br /&gt;
Quienes asistan entenderán el proceso de creación de un exploit entendiendo en el camino la confirmación de memoria de sistemas MS Windows y las protecciones de este sistema. ¿Por qué participar de este entrenamiento?&lt;br /&gt;
&lt;br /&gt;
    La habilidad de creación de exploits no es algo que se encuentre facilmente en un curso.&lt;br /&gt;
    Entender este proceso te da la flexibilidad de adaptarte cuando un ataque no funciona tal como te lo dieron.&lt;br /&gt;
    Desenmarañar el porqué de un montón de números sin sentido que te dan un acceso que no tienes es mágico.&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA REGISTRARSE AL EVENTO HAGA CLIC AQUI! - SIN COSTO''']&lt;br /&gt;
&lt;br /&gt;
== '''Trainings: Jueves 16 de abril de 8am a 5pm''' ==&lt;br /&gt;
&lt;br /&gt;
=== TRAINING 1: Hacking de aplicaciones web basado en OWASP Top 10 (Costo: USD 250) ===&lt;br /&gt;
&lt;br /&gt;
'''Instructor:''' Christian Borghello&lt;br /&gt;
&lt;br /&gt;
Los desarrolladores son una raza extraña. Los Pentesters viven en una burbuja. Este entrenamiento ayuda a los desarrolladores a conocer sobre seguridad en el desarrollo web y a los Pentesters a probar aplicaciones web de forma adecuada.&lt;br /&gt;
&lt;br /&gt;
Objetivos: - Conocer OWASP Top 10 (quick summary) - Aprender cómo comprobar cada vulnerabilidad desde el punto de vista del Desarrollador y del Pentester - Conocer recomendaciones desde el punto de vista del Pentester - Conocer recomendaciones desde el punto de vista del Desarrollador &lt;br /&gt;
&lt;br /&gt;
Orientado a desarrolladores, pentesters y personas relacionados con el ciclo de vida del desarrollo de software o sus pruebas de seguridad. &lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA INSCRIBIRSE HAGA CLIC AQUI!''']&lt;br /&gt;
&lt;br /&gt;
=== TRAINING 2: BYOX101/Construya su propio xploit 101/Build Your Own Xploit 101 (Costo: USD 250)  ===&lt;br /&gt;
&lt;br /&gt;
'''Instructor:''' Mauricio Campiglia&lt;br /&gt;
&lt;br /&gt;
¿Alguna vez te preguntaste de dónde salen ese montón de numeritos que por arte de magia te dejan en una línea de comandos con privilegios? Esta es tu oportunidad para conocer de dónde salen y porqué están ahí y no en otro lugar. Este  entrenamiento te guía desde cero hasta la creación de exploits sencillos e intermedios aprendiendo en el recorrido los por qué de cada paso. No se verán exploits de dia cero ni muy complejos, nos concentraremos en lo probado y conocido pues el objetivo es entender el proceso de creación de un exploit.&lt;br /&gt;
&lt;br /&gt;
'''Detalles''':&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Entrenamiento mayormente práctico de creación básica de exploits para&lt;br /&gt;
sistemas MS Windows. Se usarán ejemplos conocidos pero fiables y se crearán&lt;br /&gt;
programas de ejemplo vulnerables a propósito.&lt;br /&gt;
&lt;br /&gt;
'''Conocimientos obtenidos''':&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Quienes asistan entenderán el proceso de creación de un exploit entendiendo en el camino la confirmación de memoria de sistemas MS Windows y las protecciones de este sistema. ¿Por qué participar de este entrenamiento?&lt;br /&gt;
* La habilidad de creación de exploits no es algo que se encuentre facilmente en un curso.&lt;br /&gt;
* Entender este proceso te da la flexibilidad de adaptarte cuando un ataque no funciona tal como te lo dieron.&lt;br /&gt;
* Desenmarañar el porqué de un montón de números sin sentido que te dan un acceso que no tienes es mágico.&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA INSCRIBIRSE HAGA CLIC AQUI!''']&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd 2015''' ==&lt;br /&gt;
[[File:bwoltv.png| center |bwoltv.png ]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Registro ==&lt;br /&gt;
El registro es totalmente gratis, nos complacería mucho que nos acompañaras este día. &lt;br /&gt;
&lt;br /&gt;
Te esperamos!!!&lt;br /&gt;
 &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGISTRATE AQUI''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== UBICACIÓN ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:UbicacionLatamCaracas.png]]&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Registro 8:30 am&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot;  bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;OWASP Venezuela &amp;amp; UCV&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Palabras de Bienvenida&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:15-9:55 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Jair Garcia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt;&amp;lt;b&amp;gt;Hacking Etico: Cacería de Vulnerabilidades&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:00-9:35 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Randy Ortega&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Sessión Hijacking: Peligro en la web&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:40-11:10am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:15-11:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Michael Hidalgo (Costa Rica)&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Ataques de denegación de servicio a través de expresiones regulares: De la explotación a la corrección&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;12:00-1:30 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Almuerzo Libre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;1:35-2:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Josmell Chavarri&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Conociendo al Enemigo: Honeypots&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:15-2:40 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt; Rodrigo Bravo y Eliezer Romero&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt; &amp;lt;b&amp;gt;Programación Segura en Python&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:45-3:20 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:35-4:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Maximiliano Anlonzo (Uruguay) &amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Peligro: software en construcción&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:15-4:40 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Carlos Suárez&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Beef como framework de explotación xss&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:45-5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Palabras de cierre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= CTF =&lt;br /&gt;
&lt;br /&gt;
Do you have an interest in security or are you a security professional? Either way, you have something to gain from the OWASP Security Shepherd LATAM Tour CTF. OWASP Security Shepherd has been designed and implemented with the aim of fostering and improving security awareness among a varied skill-set demographic. This project enables users to learn or to improve upon existing manual penetration testing skills. The OWASP Security Shepherd leaders have created a customised version of the project for this CTF. This CTF is for everyone and anyone, so check it out! Just ensure that you follow these rules when you take part;&lt;br /&gt;
 &lt;br /&gt;
== CTF Rules ==  &lt;br /&gt;
- No Denial of Service Attacks.&amp;lt;br&amp;gt;&lt;br /&gt;
- No automated Scans (you might get banned).&amp;lt;br&amp;gt;&lt;br /&gt;
- Do not generate large amounts of traffic.&amp;lt;br&amp;gt;&lt;br /&gt;
- No destructive attacks (don't delete stuff).&amp;lt;br&amp;gt;&lt;br /&gt;
- Confine hacking on the tasks that are explicitly free to hack.&amp;lt;br&amp;gt;&lt;br /&gt;
- If you find a cheat or trick to solve things more easily, please report it for Bonus Points.&amp;lt;br&amp;gt;&lt;br /&gt;
- The organizers might change the rules throughout the challenge.&amp;lt;br&amp;gt;&lt;br /&gt;
- Participants breaking these rules might be penalized or excluded from the competition.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Follow the CTF twitter feed for CTF news: [https://twitter.com/LatamTourCtf]&lt;br /&gt;
&lt;br /&gt;
Enjoying the CTF? Want to contribute? More information on the project here: [https://www.owasp.org/index.php/OWASP_Security_Shepherd]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=192744</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=192744"/>
				<updated>2015-04-05T21:11:38Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|750px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes Droguett [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru'''(Lima) : John Vargas [john.vargas@owasp.org] vía [https://docs.google.com/forms/d/1HJAwdnCxhnDjxdEOrHVBaewrkQncIB2uxHCzxEtxwug '''this Google form''']&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes Droguett [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* Santa Cruz de las Sierras, Bolivia: Daniel Torres [daniel.torres@owasp.org]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Andrea Villar&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=PATAGONIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
''Conferencias: Libres y gratuitas''&amp;lt;br&amp;gt;&lt;br /&gt;
''Entrenamiento: 250 dólares''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CTF Patagonia===&lt;br /&gt;
Competencia de hacking &amp;quot;CTF Patagonia&amp;quot;.&amp;lt;br&amp;gt;&lt;br /&gt;
Preparen, aputen,...., [http://ctf-ddn.rhcloud.com/ FUEGO!]&lt;br /&gt;
&lt;br /&gt;
===Agenda ===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| 09:00 - 10:00&lt;br /&gt;
| Acreditacion&lt;br /&gt;
| &lt;br /&gt;
|- &lt;br /&gt;
| 10:00 - 10:15&lt;br /&gt;
| Bienvenida e intoduccion a OWASP&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 10:20 - 11:00&lt;br /&gt;
| [https://www.owasp.org/index.php/LatamTour2015/VulnerabilidadesGatewayPago Vulnerabilidades en Gateways de Pago]&lt;br /&gt;
| [https://www.linkedin.com/in/ariancho Andrés Riancho]&lt;br /&gt;
|- &lt;br /&gt;
| 11:00 - 11:30&lt;br /&gt;
| Pausa para café&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 11:30 - 12:00 &lt;br /&gt;
| Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
| Marcelo Campetella&lt;br /&gt;
|-&lt;br /&gt;
| 12:00 - 12:30&lt;br /&gt;
| El mercado del Malware en las Apps de los Store para Android&lt;br /&gt;
| Claudio Caracciolo&lt;br /&gt;
|-&lt;br /&gt;
| 12:30 - 14:00&lt;br /&gt;
| Pausa para almuerzo&lt;br /&gt;
|&lt;br /&gt;
|- &lt;br /&gt;
| 14:00 - 14:40&lt;br /&gt;
| Mobile Apps and how to Pentest them&lt;br /&gt;
| Gustavo Sorondo&lt;br /&gt;
|-&lt;br /&gt;
| 14:40 - 15:10&lt;br /&gt;
| CIOs vs CISOs: OWASP al rescate &lt;br /&gt;
| Mauro Graziosi&lt;br /&gt;
|-&lt;br /&gt;
| 15:10 - 15:40&lt;br /&gt;
| Pausa para café&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 15:40 - 16:20&lt;br /&gt;
| Certificate Pinning: ¿tenemos el c...ertificado roto?&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|- &lt;br /&gt;
| 16:20 - 16:30&lt;br /&gt;
| Agradecimientos y cierre&lt;br /&gt;
|&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
''Valor del entrenamiento: u$s 250''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Entrenamiento&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| 08:00 - 12:00&lt;br /&gt;
| Hacking de aplicaciones web basado en OWASP Top 10 (Parte 1)&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|- &lt;br /&gt;
| 12:00 - 13:00&lt;br /&gt;
| Pausa para almuerzo&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
| 13:00 - 17:00&lt;br /&gt;
| Hacking de aplicaciones web basado en OWASP Top 10 (Parte 2)&lt;br /&gt;
| Cristian Borghello&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
'''Viernes 10'''&amp;lt;br&amp;gt;&lt;br /&gt;
Universidad Nacional del Comahue, Buenos Aires 1400, Neuquén&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
'''Sabado 11'''&amp;lt;br&amp;gt;&lt;br /&gt;
Instituto Icono, Santa Fe 355, Neuquén&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:MapaIFES.png|link=https://www.google.com.ar/maps/place/Icono+S.r.l./@-38.9517208,-68.0592463,16z/data=!4m2!3m1!1s0x960a33d10f798455:0xed1c52f760942955?hl=es-419]]&lt;br /&gt;
&lt;br /&gt;
===Afiche para difusión===&lt;br /&gt;
[[File:PosterLatamtour2015-Patagonia.jpg|link=https://www.owasp.org/images/6/60/Poster_Latamtour.pdf]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BUENOS AIRES=&lt;br /&gt;
&lt;br /&gt;
Invitamos a estudiantes, desarrolladores, expertos en seguridad informática y curiosos en general a compartir con la comunidad de OWASP un nuevo evento en Buenos Aires! Será una jornada de charlas técnicas, en un ambiente relajado e ideal para conocer otras personas interesadas en la seguridad en aplicaciones.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Inscripcion'''==&lt;br /&gt;
&lt;br /&gt;
Recuerden que es necesario [https://www.regonline.com/owasplatamtour15argentina '''inscribirse'''] para asistir. La registración es '''completamente gratis''' y es unicamente utilizada para verificar su identidad en la entrada de la Universidad.&lt;br /&gt;
&lt;br /&gt;
== '''Fecha y lugar'''==&lt;br /&gt;
&lt;br /&gt;
24 Abril 2015 - 9am (puntual!)&amp;lt;br&amp;gt;&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.google.com.ar/maps/place/Av+Rivadavia+2258,+Buenos+Aires,+Ciudad+Aut%C3%B3noma+de+Buenos+Aires/@-34.6096561,-58.3984517,17z/data=!3m1!4b1!4m2!3m1!1s0x95bccae91dc7f349:0x3177aaca9808e637 Av. Rivadavia 2258, Ciudad Autonoma de Buenos Aires]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Charlas'''==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f; color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Hora&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Titulo&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Orador&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;9:10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Introducción a OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Fabio Cerullo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;9:35&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Steering a Bullet Train&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Santiago Kantorowicz&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;10:25&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Y ahora nos preocupamos por la privacidad? Gracias #Snowden&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Mariano M. del Rio&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;10:50&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Coffee break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;11:20&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Building a High Interaction Honeypot: Implementation and logging techniques&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Fernando Catoira&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;11:45&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;[https://www.owasp.org/index.php/LatamTour2015/VulnerabilidadesGatewayPago Vulnerabilidades en Gateways de Pago]&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;[https://www.linkedin.com/in/ariancho Andrés Riancho]&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;12:35&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Almuerzo&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;13:55&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Threat not found!&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Sheila Berta&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;14:20&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Mobile Apps and How To Pentest Them&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Gustavo Sorondo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;15:10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Coffee break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;n/a&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;15:40&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;HP Sponsor talk&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;100&amp;quot;&amp;gt;16:05&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;491&amp;quot;&amp;gt;Web Security for Bitcoin Services&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Juliano Rizzo&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Chile El Capítulo Chileno de OWASP], tiene el agrado de invitar a la conferencia LatamTour2015,  con el auspicio de [http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]  sede Alonso Ovalle.&lt;br /&gt;
&lt;br /&gt;
OWASP es una organización mundial sin fines de lucro dedicada a identificar y combatir las causas que hacen inseguro el software.  Revise nuestra documentación y metodologías en los [[:Category:OWASP_Project|Proyectos OWASP]] donde encontrará valioso material de aplicación práctica en los ambientes corporativos. Asista a los talleres y conferencias del LatamTour y aprenda como sacar provecho a estos recursos de libre acceso.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''HAGA CLICK AQUI PARA REGISTRARSE''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Para asistentes registrados se sortean 5 membresías, que permiten acceder gratis (o con descuento preferente) a eventos y talleres OWASP durante 12 meses.&lt;br /&gt;
Inscribase y asegure su confirmación de reserva preferente.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#4B0082&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''DETALLES DE LA CONFERENCIA (Miércoles 8 de Abril en DUOC-UC sede Alonso Ovalle Nro.1586 -Metro Moneda-)'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Horario''' &lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Modulo'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Ponente'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 09:00 - 09:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 09:30 - 10:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Bienvenida y Presentación del Evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | DUOC-UC y OWASP-Chile&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Rodrigo Cea Warner. Director de Carrera DUOC-UC. Carlos Allendes Droguett Chapter Leader OWASP Chile.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:00 - 10:50&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Bug Bounty, programs reload&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Ormeño y Freddy Grey (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoques e investigación sobre programas de BUG BOUNTY periodico a través de vectores de ataque poco convencionales.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:50 - 11:05&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 11:10 - 12:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Analizando tráfico WIFI de smartphones &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Yago Fernández H. (ESPAÑA)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Es seguro utilizar redes Wi­Fi? Intercepción on-line del tráfico wi-fi en conexiones de smartphone y tecnicas de hacking. &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:00 - 12:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Estado transparente, descentralización y confianza ¿Apoyado con Tecnología?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esteban Valenzuela Van Treek (Escritor, doctor en Historia, ex alcalde/diputado, Director de Ciencia Política U.A.Hurtado)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Potenciar el regionalismo, la descentralización y la trasparencia del pais, usando la tecnología e internet (teletrabajo, e-learning, flexibilidad laboral, innovación, etc.)&lt;br /&gt;
|-|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:35 - 13:10&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Gestionar la inversión en seguridad con OpenSAMM.     Donde Iniciar?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Allendes Droguett (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoque Tecnico y Ecónomico para maximizar el retorno de la inversión en hacking etico, pentesting, desarrollo seguro, análisis del código, pruebas de seguridad.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 13:10 - 14:50&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Break para Almorzar&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 14:50 - 15:40&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hacking efectivo: Desde una credencial hasta el Domain Admin en un solo día&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Ricardo Supo P. (PERU)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Como ganar acceso a credenciales locales de dominio y escalar privilegios hasta obtener un acceso de administrador de dominio.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 15:40 - 16:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | HTTPS: Usted, úselo bien.&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cristián Rojas, CLCERT U.de Chile&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Que riesgos acechan, aunque tengamos instalado SSL/TLS?  Año 2014 fue  intenso: Heartbleed, POODLE, y errores de implementación como el GOTO FAIL.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:30 - 16:40&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:40 - 17:20&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Seguridad Incorporada al Ciclo de Desarrollo&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Alejandro Johannes (CHILE)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Principios y fundamentos para disponer de una gestión con seguridad y calidad en el Ciclo de Desarrollo de aplicaciones.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:20 - 18:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Importancia de la seguridad en el software&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hector Takami (MEXICO)&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | En lo que respecta a la seguridad del software, dar importancia a proyectos como OpenSAMM e integrar estas sugerencias en un modelo de seguridad aplicativa.&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:00 - 18:10&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cierre del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Sorteo de Premios&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | membresías OWASP (entre inscritos)&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Jueves 9 de Abril)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 9 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 9 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Por Definir&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
 &amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Owasp_upb_2015.jpg|link=https://www.google.com/maps/place/Universidad+Pontificia+Bolivariana+Seccional+Bucaramanga/@7.0389574,-73.071732,14z/data=!4m2!3m1!1s0x8e6840b36653b9c5:0x4dcdbc55842151df]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===REGISTRO===&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;TOTALMENTE GRATUITO, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Register.gif|link=https://www.regonline.com/owasplatamtour15colombia]]&lt;br /&gt;
&amp;lt;!--[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']--&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 7:30 a.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Diego Ademir Duarte Santana&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP ASVS 2.0 Web Application Standard&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jhon César Arango Serna&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;IPv6 Ventaja o Amenaza&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Hugo Armando Rodriguez Vera&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Protección de Datos Personales, infracción y consecuencias&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;MundoHacker&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Ciberespionaje y Cibercrimen as a Service&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Lunch&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;14:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;German Alonso Suárez Guerrero&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP Proactive Controls&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;15:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td&amp;gt;Ronald Escalona&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Hardening del Servidor Web, enfoque práctico con jail/chroot para entornos multisitios&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;16:00&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Javier Orlando Mantilla P&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Seguridad en desarrollo de aplicaciones web usando Apache Tomee&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Finish Event&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con &amp;lt;b&amp;gt;transmisión vía streaming&amp;lt;/b&amp;gt; para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
&lt;br /&gt;
[[File:Santa.jpg]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Lugar: Universidad NUR&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Dirección: Av. Banzer, Victorino Rivero 100&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de la Sierra, Bolivia&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Fecha: 17 y 18 de abril del 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Mapa.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viernes 17 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | País&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
! 08:00 - 08:30&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Registro - Acreditación&lt;br /&gt;
|- &lt;br /&gt;
! 08:30 - 09:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Video: Mundo Hacker - Proyecto OWASP&lt;br /&gt;
|- &lt;br /&gt;
! 09:00 - 09:50&lt;br /&gt;
| Jaime Iván Mendoza Ribera&lt;br /&gt;
| Análisis de vulnerabilidades web&lt;br /&gt;
| Santa Cruz, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 09:50 - 10:40&lt;br /&gt;
| Cesar Roberto Cuenca Díaz&lt;br /&gt;
| Desarrollo Seguro Principios y Buenas Prácticas.&lt;br /&gt;
| La Paz, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 10:40 - 11:30&lt;br /&gt;
| Juan Pablo Barriga Sapiencia&lt;br /&gt;
| Riegos en TI&lt;br /&gt;
| Sucre, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 11:30 - 12:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|-&lt;br /&gt;
! 12:00 - 12:50 &lt;br /&gt;
| Walter Camama Menacho&lt;br /&gt;
| MiTM a nivel de browser con beef y metasploit&lt;br /&gt;
| Trinidad, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 12:50 - 13:40&lt;br /&gt;
| Leonardo Camilo Quenta Alarcon&lt;br /&gt;
| Seguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 13:40 - 14:30&lt;br /&gt;
| Deyvi Bustamante Perez&lt;br /&gt;
| Exploit development&lt;br /&gt;
| Sucre , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 14:30 - 15:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|- &lt;br /&gt;
! 15:00 - 15:50&lt;br /&gt;
| Gonzalo Nina Mamani&lt;br /&gt;
| Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web&lt;br /&gt;
| Cochabamba , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 15:50 - 16:40&lt;br /&gt;
| Hernán Marcelo Leytón Balderrama&lt;br /&gt;
| Seguridad en los Satélites de Comunicación&lt;br /&gt;
| Potosí, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 16:40 - 17:30&lt;br /&gt;
| Juan Alberto Fajardo Canaza&lt;br /&gt;
| WAF Testing Framework&lt;br /&gt;
| Potosí, Bolivia&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Sabado 18 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! width=&amp;quot;100&amp;quot; align=&amp;quot;center&amp;quot; | Hora&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | Expositor&lt;br /&gt;
! width=&amp;quot;450&amp;quot; align=&amp;quot;center&amp;quot; | Conferencia&lt;br /&gt;
! width=&amp;quot;150&amp;quot; align=&amp;quot;center&amp;quot; | País&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
! 08:00 - 08:30&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Acreditación&lt;br /&gt;
|- &lt;br /&gt;
! 09:00 - 09:50&lt;br /&gt;
| Alex Villegas y Roller Ibanez&lt;br /&gt;
| Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301&lt;br /&gt;
| Cochabamba, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 09:50 - 10:40&lt;br /&gt;
| Richard Villca Apaza&lt;br /&gt;
| Rompiendo el modelo de negocios: Debugging Android Apps&lt;br /&gt;
| La Paz, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 10:40 - 11:30&lt;br /&gt;
| Cristhian Lima Saravia&lt;br /&gt;
| Framework Pleni&lt;br /&gt;
| Cochabamba, Bolivia&lt;br /&gt;
|- &lt;br /&gt;
! 11:30 - 12:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|-&lt;br /&gt;
! 12:00 - 12:50 &lt;br /&gt;
| Elvin Vidal Mollinedo Mencia&lt;br /&gt;
| Los 7 pecados de un desarrollador Web&lt;br /&gt;
| Santa Cruz, Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 12:50 - 13:40&lt;br /&gt;
| Alvaro Machaca Tola&lt;br /&gt;
| Análisis de riesgos aplicando la metodología OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 13:40 - 14:30&lt;br /&gt;
| Erick Calderon Mostajo&lt;br /&gt;
| Herramientas de Aprendizaje OWASP&lt;br /&gt;
| La Paz , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 14:30 - 15:00&lt;br /&gt;
| colspan=&amp;quot;3&amp;quot; style=&amp;quot;text-align: center;&amp;quot; | Pausa para café&lt;br /&gt;
|- &lt;br /&gt;
! 15:00 - 15:50&lt;br /&gt;
| Daniel Torres Sandi&lt;br /&gt;
| Headers seguros en HTTP&lt;br /&gt;
| Sucre , Bolivia&lt;br /&gt;
|-&lt;br /&gt;
! 15:50 - 16:50&lt;br /&gt;
| Gabriel Labrada Hernandez (INTEL MEXICO)&lt;br /&gt;
| Seguridad en Hardware y los servicios en la nube&lt;br /&gt;
| Mexico&lt;br /&gt;
|-&lt;br /&gt;
! 16:50 - 17:50&lt;br /&gt;
| Jacobo Tibaquira&lt;br /&gt;
| Atacando al atacante (DRAGON JAR)&lt;br /&gt;
| Colombia&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
El evento se va a llevar a cabo en el auditorio de la Ciudad de la Investigación de la Universidad de Costa Rica. [http://goo.gl/Y64lZG'''Ver Dirección exacta''']&lt;br /&gt;
&lt;br /&gt;
[[File:Mapa-ucr-auditorio.png|800px]]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== REGISTRO ===&lt;br /&gt;
Recuerde que el ingreso al evento es totalmente gratuito, sólo debe registrarse previamente. '''El comprobante de registro será solicitado en el momento de ingresar en el auditorio'''.&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''Pulse aquí para registrarse en el evento.''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== CONFERENCIAS-LISTADO DE EXPOSITORES===&lt;br /&gt;
&lt;br /&gt;
'''Martes 21 de Abril'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
 &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Recepción y Registro De 7:30 am a 8:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;150&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:00 am a 8:10 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;OWASP Costa Rica &amp;amp;amp; UCR&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;500&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Palabras de Bienvenida&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;8:10-9:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Fabio Cerullo , &amp;lt;b&amp;gt;Dublin Irlanda&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Keynote: Desarrollo Rápido y Seguro de Aplicaciones  – Es posible tener las dos cosas? &amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;09:00-09:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Eduardo Rojas&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Bloques de construcción en la implementación estratégica del software seguro con SAMM&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;09:50-10:10am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:10-11:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Mauricio Oviedo&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Manejo Seguro del DNS&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
     &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:00-11:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Walter Montes&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Buenas prácticas para manejo de autenticación y sesión&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:50-1:20 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Almuerzo Libre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;1:20-2:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Randall Barnett&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Vulnerabilidades encontradas en Sistema de Control de Tráfico Nacional&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:15-3:05 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Mario Robles&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; &amp;lt;b&amp;gt;Web Application Penetration Testing&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:05-3:25 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:25-4:15 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;TBD &amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;TBD&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:15-5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Bertin Bervis&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;MiTM Attacks con DNS proxys a escala WAN el modem bajo ataque&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Palabras de cierre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=== PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las oportunidades de patrocinio &lt;br /&gt;
Cualquier consulta pueden contactar a [mailto:michael.hidalgo@owasp.org Michael Hidalgo].&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&amp;lt;b&amp;gt;Día 1&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Abril 21&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 1:30 p.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Camilo Fernandez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;OWASP Tools&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:00&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Pablo Barrera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;La verdad sobre los ataques de denegación de servicio&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:30&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Oscar Rodas y Marco To&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Avances en investigación sobre seguridad informática&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;5:15&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;Elder Guerra&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#FFFFFF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Un verdadero análisis de riesgos&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Día 2&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Abril 22&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Register from 1:30 p.m.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00 PM Salon 1&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Luis Cordon&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Web Pentesting&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:00 PM Salon 2&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Pablo Barrera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;b&amp;gt;Server Hardening: métodos de aseguramiento de tu servidor web y los datos que contiene&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:00PM&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Concurso de Ethical Hacking&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; height=&amp;quot;30&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot;       | '''TALLERES Y CONFERENCIAS''' &lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot;                   | &lt;br /&gt;
== '''OWASP Latam Tour - Lima 2015''' == &lt;br /&gt;
&lt;br /&gt;
'''Viernes 17 de Abril''' ''(Talleres)'' &amp;lt;br&amp;gt;'''Sábado 18 de Abril''' ''(Conferencia)''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;center&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;2&amp;quot;             | '''Descripcion y Objetivo'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;left&amp;quot; height=&amp;quot;80&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; colspan=&amp;quot;2&amp;quot; | '''OWASP LATAM TOUR,''' es una gira por Latino América que promueve la seguridad en aplicaciones web en diversas instituciones, como: universidades, organismos gubernamentales, empresas de TI y entidades financieras, buscando crear conciencia sobre la seguridad en las aplicaciones y puedan tomar decisiones informadas sobre los verdaderos riesgos de seguridad.&lt;br /&gt;
&lt;br /&gt;
*Ademas del OWASP Top 10, la mayoría de los [[:Category:OWASP_Project|Proyectos OWASP]] no son ampliamente utilizados en los ambientes corporativos. En la mayoría de los casos esto no es debido a una falta de calidad en los proyectos o la documentación disponible, sino mas bien por desconocer donde se ubicaran en un Ecosistema de Seguridad de Aplicaciones empresarial. &lt;br /&gt;
&lt;br /&gt;
*Esta serie de talleres y conferencias tienen como objetivo cambiar esta situación proporcionando una explicación sobre los proyectos OWASP mas maduros y listos para ser utilizados en el ambito empresarial.&lt;br /&gt;
|}&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''LIMA PERÚ'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Viernes 17)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Viernes 17 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  '''  San Isidro '''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | Durante todo el OWASP LatamTour se estarán realizando talleres de capacitación dictados por destacados profesionales en la materia.&amp;lt;br&amp;gt; &lt;br /&gt;
'''Duracion:''' 8 horas&amp;lt;br&amp;gt; &lt;br /&gt;
'''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&amp;lt;br&amp;gt; &lt;br /&gt;
'''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&amp;lt;br&amp;gt; &lt;br /&gt;
'''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']  '''&amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''TALLER 1'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''De 0 a Ninja con Metasploit'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Dragonjar.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | El taller de 0 a Ninja con Metasploit, busca detallar el uso de la herramienta Metasploit ampliamente utilizada en auditorias de seguridad por profesionales del área, desde su instalación y puesta a punto para el trabajo, hasta el uso de sus funciones para llevar a feliz termino una auditoria en seguridad.&lt;br /&gt;
De 0 a Ninja DragonJAR&lt;br /&gt;
&lt;br /&gt;
Este curso, altamente práctico, tiene una duración de 8 horas en las que los asistentes podrán acortar la curva de aprendizaje, gracias a la transmisión de conocimientos y experiencias de los docentes, altamente calificados, con el fin de que una vez finalizado el taller puedas aplicar los conocimientos adquiridos.&lt;br /&gt;
&lt;br /&gt;
Duracion: 1 día (8 horas)&lt;br /&gt;
====De 0 a Ninja con Metasploit====&lt;br /&gt;
*Introducción a Metasploit&lt;br /&gt;
*Introducción a la linea de comandos de Metasploit&lt;br /&gt;
*Trabajando con Metasploit y sus componentes (msfconsole, msfcli, msfgui, msfweb, msfpayload, msfencode, msfvenom, etc…)&lt;br /&gt;
*Etapas de un Pentesting y las herramientas para realizarlas incluidas en Metasploit&lt;br /&gt;
*Post-Explotación, ya tengo shell … ¿ahora que hago?&lt;br /&gt;
*Trabajando con Meterpreter&lt;br /&gt;
*Trabajo colaborativo usando Armitage/Cobalt Strike&lt;br /&gt;
*Generando el informe ¿Alguna tool que pueda ayudarme?&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/DragonJAR/ Jaime Andrés Restrepo (DragonJAR)]''', es Ingeniero en Sistemas y Telecomunicaciones de la Universidad de Manizales. Information Security Researcher con más de 10 años de experiencias en Ethical Hacking, Pen Testing y Análisis Forense. Docente Universitario en Pre y Post-Grado, Speaker y Organizador de diferentes eventos de Seguridad Informática, Co-Fundador del ACK Security Conference, Fundador de DragonJAR SAS y de La Comunidad DragonJAR, una de las comunidades de seguridad informática mas grandes de habla hispana y referente en el sector. &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 9:00am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRESE AL TALLER AQUI''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: #4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt;'''TALLER 2'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Taller''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Introducción a la Seguridad en Aplicaciones Web'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | [[Image:Cerullof.jpg|150px]]&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; |  El contenido está alineado al OWASP TOP 10, documento referente sobre los riesgos de seguridad de las Aplicaciones Web.&lt;br /&gt;
'''Format:'''&lt;br /&gt;
&lt;br /&gt;
El taller combina la teoría y ejecícios practicos. Los participantes aprenderán a identificar vulnerabilidades en sitios web espeficamente diseñados  con vulnerabilidades y errores de código, explotandolas utilizando diferentes tecnicas y herramientas libres en un entorno controlado.&lt;br /&gt;
&lt;br /&gt;
'''Audiencia:''' IT Staff, Managers, System Architects, Information Security Professionals, Developers, QA Professionals.&lt;br /&gt;
&lt;br /&gt;
'''Duración:''' 1 día - (8 horas)&lt;br /&gt;
&lt;br /&gt;
'''Material a entregar:'''&lt;br /&gt;
&lt;br /&gt;
- Material Impreso&amp;lt;br&amp;gt;&lt;br /&gt;
- OWASP Live CD incluyendo las herramientas utilizadas.&amp;lt;br&amp;gt;&lt;br /&gt;
- Certificado de Participación (CPE Points)&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Introducción a la Seguridad de Aplicaciones Web. ====&lt;br /&gt;
Los temas a cubrir son:&lt;br /&gt;
&lt;br /&gt;
*Introducción a la Seguridad de Aplicaciones Web.&lt;br /&gt;
*Tecnológia usada en Aplicaciones Web.&lt;br /&gt;
*Áreas criticas en una Aplicación Web.&lt;br /&gt;
**Inyección&lt;br /&gt;
**Cross Site Scripting (XSS).&lt;br /&gt;
**Broken Authentication and Session Management.&lt;br /&gt;
**Insecure Direct Object References.&lt;br /&gt;
**Cross Site Request Forgery.&lt;br /&gt;
**Security Misconfiguration.&lt;br /&gt;
**Insecure Cryptographic Storage.&lt;br /&gt;
**Failure to restrict URL Access.&lt;br /&gt;
**Insufficient Transport Layer Protection.&lt;br /&gt;
**Unvalidated Redirects and Forwards.&lt;br /&gt;
**Secure Software Development Lifecycle (SSDLC)&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''Perﬁl del Trainer : '''&lt;br /&gt;
&lt;br /&gt;
'''[https://twitter.com/fcerullo Fabio Cerullo]''', más de 10 años de experiencia en el campo de seguridad de la información adquirida a través de una amplia gama de industrias. Como CEO y Fundador de Cycubix, que ayuda a los clientes de todo el mundo mediante la evaluación de la seguridad de las aplicaciones desarrolladas internamente o por terceros, la definición de políticas y normas, la implementación de iniciativas de gestión de riesgos, así como la capacitación sobre el tema para desarrolladores, auditores , ejecutivos y profesionales de la seguridad. &amp;lt;br&amp;gt;&lt;br /&gt;
Como miembro de la Fundación OWASP, Fabio es parte de la Comisión de Educación Global, cuya misión es proporcionar formación y servicios educativos a las empresas, los gobiernos y las instituciones educativas en la seguridad de la aplicación, y ha sido nombrado Líder del Capítulo OWASP Irlanda desde principios de 2010.&lt;br /&gt;
Posee una Maestría en Ingeniería Informática por la UCA y se ha obtenido los certificados CISSP y CSSLP por (ISC)2. &amp;lt;br&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
* '''Duracion:''' 8 horas (El taller iniciará a las 09:00 am y finaliza a las 6:00pm)&lt;br /&gt;
&lt;br /&gt;
* '''Precio:''' U$S200 (Miembros OWASP). $250 (Público en General).&lt;br /&gt;
  &lt;br /&gt;
* '''Para mayor informacion : ''' Por favor comuniquese al correo owasp.peru@gmail.com&lt;br /&gt;
&lt;br /&gt;
* '''Link de Registro''':  [https://www.regonline.com/owasplatamtour15lima'''REGISTRESE AL TALLER AQUI!''']  '''&amp;lt;br&amp;gt; &amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''CONFERENCIAS (Sábado 18)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:80%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | Sábado 18 de Abril&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | '''Universidad Tecnológica del Peru - Esquina Av. 28 de Julio con Av. Petit Thouars, Lima – Perú'''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | '''Precio y Registro'''&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#EEEEEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | El ingreso a las conferencias es '''GRATUITO''' - El proceso de registro lo podrá ubicar en el siguiente link : &amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''EL REGISTRO SE ENCUENTRA ABIERTO!''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#CCCCEE;&amp;quot; colspan=&amp;quot;2&amp;quot; | '''Promociones'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;left&amp;quot; height=&amp;quot;80&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;2&amp;quot; | OFERTA ESPECIAL - Durante todo el OWASP Latam Tour el costo de la membresía anual es de solamente U$D 20. Utilice el código de descuento &amp;quot;LATAM&amp;quot; durante el proceso de registro electrónico como miembro individual en el enlace disponible a continuación.&amp;lt;br&amp;gt;&lt;br /&gt;
[http://myowasp.force.com/memberappregion Hágase MIEMBRO DE OWASP AQUÍ] &amp;lt;br&amp;gt;&lt;br /&gt;
'''Si usted aun no es miembro OWASP, por favor considere unirse a nuestra organización.'''&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | '''DETALLES DE LA JORNADA'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ''' - '''&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Ponente'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 9:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | OWASP PERU&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:00 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Presentación del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/John_Vargas John Vargas]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |   &lt;br /&gt;
|-&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 10:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cyber War in Web and Mobile Applications  &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/stinguer88 Jesús González (ESP)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 11:30 am&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Desarrollo Rápido y Seguro de Aplicaciones – Es posible tener las dos cosas?&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |[https://twitter.com/fcerullo Fabio Cerullo (ARG)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 12:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Seguridad en Aplicaciones Moviles&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/pITea_security Juan Pablo Quiñe]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  15:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Todos a Sh3ll34r!&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/gabsitus Gabriel Lazo]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Se verán distintas técnicas utilizadas por atacantes maliciosos para lograr subir shells y obtener acceso a servidores web.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 16:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | OWASP Zap &lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/Alonso_ReYDeS Alonso Caballero]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hackeando Carros en Latinoamérica&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | [https://twitter.com/DragonJAR Andrés Restrepo (COL) (DragonJAR)]&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; |  &lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Conferencia: 15 de abril de 2015 ''' ==&lt;br /&gt;
El evento más importante de la región llega nuevamente a Uruguay, OWASP Latam tour 2015!. Expositores internacionales estarán presentando conferencias sobre los temas más importantes en Seguridad en Aplicaciones.&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA REGISTRARSE AL EVENTO HAGA CLIC AQUI! - SIN COSTO''']&lt;br /&gt;
&lt;br /&gt;
'''¿Dónde?''' &lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Católica del Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738&amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Uruguay. &amp;lt;br&amp;gt;&lt;br /&gt;
Ver en [https://www.google.com/maps/place/Universidad+Cat%C3%B3lica+del+Uruguay/@-34.888694,-56.159218,17z/data=!3m1!4b1!4m2!3m1!1s0x0:0x13508c3340b76e45 Google Maps]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Conferencias: Miércoles 15 de abril''' ==&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:90%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;40&amp;quot; bgcolor=&amp;quot;#4B0082&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''DETALLES DE LA CONFERENCIA - Miércoles 15 de Abril (Universidad Católica del Uruguay)'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Horario''' &lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Expositor'''&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Titulo'''&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 17:30 - 18:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Acreditación&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:00 - 18:45&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cristian Borghello&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Certificate Pinning: ¿tenemos el c...ertificado roto?&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esta charla pretende demostrar en vivo la explotación de distintas vulnerabilidades en una aplicación móvil de tal manera que podamos revisar las causas y consecuencias, ademas recomendar las medidas de seguridad pertinentes.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 18:45 - 19:15&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Edgar Salazar&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Inseguridad en Aplicaciones Móviles&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Esta charla pretende demostrar en vivo la explotación de distintas vulnerabilidades en una aplicación móvil de tal manera que podamos revisar las causas y consecuencias, ademas recomendar las medidas de seguridad pertinentes.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 19:15 - 19:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Coffee - Break&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 19:30 - 20:15&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Carlos Eduardo Santiago&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | (IN)secure Development&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Forget Injection and XSS&lt;br /&gt;
This lecture aims to demonstrate simple traps in web development, and bad practices in addition to some factors are likely to cause critical security flaws. We will analyze some cases and demonstrate ways to mitigate and correct such failures.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 20:15 - 21:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Ricardo Supo Picón&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Hacking Efectivo&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Los dominios windows están presentes en gran cantidad de organizaciones, en estos la autenticación de usuarios esta disponible en muchos servicios. En esta charla analizaremos los distintos tipos de autenticación de windows y como  obtener credenciales locales y de dominio así mismo como a partir de una sola credencial se puede obtener más credenciales hasta obtener un administrador de dominio. Así mismo se detallará como poder realizar intrusiones masivas en red de computadores que ayudan a que un sólo hacker pueda multiplicar sus actividades y conseguir su objetivo en un sólo día, presentación de la herramienta Domainator.&lt;br /&gt;
|-|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 21:00 - 21:30&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Victor Rojo&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | ¿Porque la seguridad en software es tan importante?&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Enfoque Tecnico y Ecónomico para maximizar el retorno de la inversión en hacking etico, pentesting, desarrollo seguro, análisis del código, pruebas de seguridad.&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:10%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | 21:30 - 22:00&lt;br /&gt;
| style=&amp;quot;width:27%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Cierre del evento&lt;br /&gt;
| style=&amp;quot;width:23%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | Sorteo de Premios&lt;br /&gt;
| style=&amp;quot;width:40%&amp;quot; valign=&amp;quot;middle&amp;quot; height=&amp;quot;30&amp;quot; bgcolor=&amp;quot;#CCEEEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
|}&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
{|style=&amp;quot;vertical-align:top;width:90%;background-color:#white;padding:10px;border:1px solid silver;&amp;quot; align=&amp;quot;center&amp;quot; cellspacing=&amp;quot;5&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4B0082;&amp;quot; colspan=&amp;quot;6&amp;quot; | &amp;lt;span style=&amp;quot;color:#ffffff&amp;quot;&amp;gt; '''TALLERES (Jueves 16 de Abril)'''&amp;lt;/span&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Fecha''' &lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Tema'''&lt;br /&gt;
| style=&amp;quot;width:20%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Lugar'''&lt;br /&gt;
| style=&amp;quot;width:30%&amp;quot; valign=&amp;quot;middle&amp;quot;  bgcolor=&amp;quot;#CCCCEE&amp;quot; align=&amp;quot;center&amp;quot; colspan=&amp;quot;0&amp;quot; | '''Detalles'''&lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 16 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | TRAINING 1: Hacking de aplicaciones web basado en OWASP Top 10 (Costo: USD 250) by Cristian Borghello&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Universidad Católica del Uruguay&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Los desarrolladores son una raza extraña. Los Pentesters viven en una burbuja. Este entrenamiento ayuda a los desarrolladores a conocer sobre seguridad en el desarrollo web y a los Pentesters a probar aplicaciones web de forma adecuada.&lt;br /&gt;
&lt;br /&gt;
Objetivos: - Conocer OWASP Top 10 (quick summary) - Aprender cómo comprobar cada vulnerabilidad desde el punto de vista del Desarrollador y del Pentester - Conocer recomendaciones desde el punto de vista del Pentester - Conocer recomendaciones desde el punto de vista del Desarrollador&lt;br /&gt;
&lt;br /&gt;
Orientado a desarrolladores, pentesters y personas relacionados con el ciclo de vida del desarrollo de software o sus pruebas de seguridad. &lt;br /&gt;
|-&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;center&amp;quot; | ''' Jueves 16 de Abril '''&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | TRAINING 2: BYOX101/Construya su propio xploit 101/Build Your Own Xploit 101 (Costo: USD 250) by Mauricio Campiglia&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | Universidad Católica del Uruguay&lt;br /&gt;
| valign=&amp;quot;middle&amp;quot; bgcolor=&amp;quot;#EEEEEE&amp;quot; align=&amp;quot;left&amp;quot; | ¿Alguna vez te preguntaste de dónde salen ese montón de numeritos que por arte de magia te dejan en una línea de comandos con privilegios? Esta es tu oportunidad para conocer de dónde salen y porqué están ahí y no en otro lugar. Este entrenamiento te guía desde cero hasta la creación de exploits sencillos e intermedios aprendiendo en el recorrido los por qué de cada paso. No se verán exploits de dia cero ni muy complejos, nos concentraremos en lo probado y conocido pues el objetivo es entender el proceso de creación de un exploit.&lt;br /&gt;
&lt;br /&gt;
Detalles:&lt;br /&gt;
&lt;br /&gt;
Entrenamiento mayormente práctico de creación básica de exploits para sistemas MS Windows. Se usarán ejemplos conocidos pero fiables y se crearán programas de ejemplo vulnerables a propósito.&lt;br /&gt;
&lt;br /&gt;
Conocimientos obtenidos:&lt;br /&gt;
&lt;br /&gt;
Quienes asistan entenderán el proceso de creación de un exploit entendiendo en el camino la confirmación de memoria de sistemas MS Windows y las protecciones de este sistema. ¿Por qué participar de este entrenamiento?&lt;br /&gt;
&lt;br /&gt;
    La habilidad de creación de exploits no es algo que se encuentre facilmente en un curso.&lt;br /&gt;
    Entender este proceso te da la flexibilidad de adaptarte cuando un ataque no funciona tal como te lo dieron.&lt;br /&gt;
    Desenmarañar el porqué de un montón de números sin sentido que te dan un acceso que no tienes es mágico.&lt;br /&gt;
&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA REGISTRARSE AL EVENTO HAGA CLIC AQUI! - SIN COSTO''']&lt;br /&gt;
&lt;br /&gt;
== '''Trainings: Jueves 16 de abril de 8am a 5pm''' ==&lt;br /&gt;
&lt;br /&gt;
=== TRAINING 1: Hacking de aplicaciones web basado en OWASP Top 10 (Costo: USD 250) ===&lt;br /&gt;
&lt;br /&gt;
'''Instructor:''' Christian Borghello&lt;br /&gt;
&lt;br /&gt;
Los desarrolladores son una raza extraña. Los Pentesters viven en una burbuja. Este entrenamiento ayuda a los desarrolladores a conocer sobre seguridad en el desarrollo web y a los Pentesters a probar aplicaciones web de forma adecuada.&lt;br /&gt;
&lt;br /&gt;
Objetivos: - Conocer OWASP Top 10 (quick summary) - Aprender cómo comprobar cada vulnerabilidad desde el punto de vista del Desarrollador y del Pentester - Conocer recomendaciones desde el punto de vista del Pentester - Conocer recomendaciones desde el punto de vista del Desarrollador &lt;br /&gt;
&lt;br /&gt;
Orientado a desarrolladores, pentesters y personas relacionados con el ciclo de vida del desarrollo de software o sus pruebas de seguridad. &lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA INSCRIBIRSE HAGA CLIC AQUI!''']&lt;br /&gt;
&lt;br /&gt;
=== TRAINING 2: BYOX101/Construya su propio xploit 101/Build Your Own Xploit 101 (Costo: USD 250)  ===&lt;br /&gt;
&lt;br /&gt;
'''Instructor:''' Mauricio Campiglia&lt;br /&gt;
&lt;br /&gt;
¿Alguna vez te preguntaste de dónde salen ese montón de numeritos que por arte de magia te dejan en una línea de comandos con privilegios? Esta es tu oportunidad para conocer de dónde salen y porqué están ahí y no en otro lugar. Este  entrenamiento te guía desde cero hasta la creación de exploits sencillos e intermedios aprendiendo en el recorrido los por qué de cada paso. No se verán exploits de dia cero ni muy complejos, nos concentraremos en lo probado y conocido pues el objetivo es entender el proceso de creación de un exploit.&lt;br /&gt;
&lt;br /&gt;
'''Detalles''':&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Entrenamiento mayormente práctico de creación básica de exploits para&lt;br /&gt;
sistemas MS Windows. Se usarán ejemplos conocidos pero fiables y se crearán&lt;br /&gt;
programas de ejemplo vulnerables a propósito.&lt;br /&gt;
&lt;br /&gt;
'''Conocimientos obtenidos''':&amp;lt;br /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Quienes asistan entenderán el proceso de creación de un exploit entendiendo en el camino la confirmación de memoria de sistemas MS Windows y las protecciones de este sistema. ¿Por qué participar de este entrenamiento?&lt;br /&gt;
* La habilidad de creación de exploits no es algo que se encuentre facilmente en un curso.&lt;br /&gt;
* Entender este proceso te da la flexibilidad de adaptarte cuando un ataque no funciona tal como te lo dieron.&lt;br /&gt;
* Desenmarañar el porqué de un montón de números sin sentido que te dan un acceso que no tienes es mágico.&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''PARA INSCRIBIRSE HAGA CLIC AQUI!''']&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd 2015''' ==&lt;br /&gt;
[[File:bwoltv.png| center |bwoltv.png ]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Registro ==&lt;br /&gt;
El registro es totalmente gratis, nos complacería mucho que nos acompañaras este día. &lt;br /&gt;
&lt;br /&gt;
Te esperamos!!!&lt;br /&gt;
 &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGISTRATE AQUI''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== UBICACIÓN ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:UbicacionLatamCaracas.png]]&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table width=&amp;quot;804&amp;quot; border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Registro 8:30 am&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;96&amp;quot;  bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:00 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;212&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;OWASP Venezuela &amp;amp; UCV&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;482&amp;quot; bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Palabras de Bienvenida&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;9:15-9:55 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Jair Garcia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt;&amp;lt;b&amp;gt;Hacking Etico: Cacería de Vulnerabilidades&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:00-9:35 am&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt; Randy Ortega&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Sessión Hijacking: Peligro en la web&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;10:40-11:10am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;11:15-11:50 am&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Michael Hidalgo (Costa Rica)&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Ataques de denegación de servicio a través de expresiones regulares: De la explotación a la corrección&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;12:00-1:30 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Almuerzo Libre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;1:35-2:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Josmell Chavarri&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Conociendo al Enemigo: Honeypots&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:15-2:40 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt; Rodrigo Bravo y Eliezer Romero&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; &amp;gt; &amp;lt;b&amp;gt;Programación Segura en Python&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;2:45-3:20 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Coffee Break&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;3:35-4:10 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Maximiliano Anlonzo (Uruguay) &amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Peligro: software en construcción&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:15-4:40 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;Carlos Suárez&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td bgcolor=&amp;quot;#CED7EF&amp;quot;&amp;gt;&amp;lt;b&amp;gt;Beef como framework de explotación xss&amp;lt;/b&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
    &amp;lt;tr&amp;gt;&lt;br /&gt;
	&amp;lt;td bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;4:45-5:00 pm&amp;lt;/td&amp;gt;&lt;br /&gt;
      &amp;lt;td colspan=&amp;quot;3&amp;quot; bgcolor=&amp;quot;#FBF1D7&amp;quot; style=&amp;quot;text-align: center&amp;quot;&amp;gt;Palabras de cierre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= CTF =&lt;br /&gt;
&lt;br /&gt;
Do you have an interest in security or are you a security professional? Either way, you have something to gain from the OWASP Security Shepherd LATAM Tour CTF. OWASP Security Shepherd has been designed and implemented with the aim of fostering and improving security awareness among a varied skill-set demographic. This project enables users to learn or to improve upon existing manual penetration testing skills. The OWASP Security Shepherd leaders have created a customised version of the project for this CTF. This CTF is for everyone and anyone, so check it out! Just ensure that you follow these rules when you take part;&lt;br /&gt;
 &lt;br /&gt;
 CTF Rules &lt;br /&gt;
- No Denial of Service Attacks.&lt;br /&gt;
- No automated Scans (you might get banned).&lt;br /&gt;
- Do not generate large amounts of traffic.&lt;br /&gt;
- No destructive attacks (don't delete stuff).&lt;br /&gt;
- Confine hacking on the tasks that are explicitly free to hack.&lt;br /&gt;
- If you find a cheat or trick to solve things more easily, please report it for Bonus Points.&lt;br /&gt;
- The organizers might change the rules throughout the challenge.&lt;br /&gt;
- Participants breaking these rules might be penalized or excluded from the competition.&lt;br /&gt;
&lt;br /&gt;
 Follow the CTF twitter feed for CTF news: https://twitter.com/LatamTourCtf&lt;br /&gt;
 Enjoying the CTF? Want to contribute? More information on the project here: https://www.owasp.org/index.php/OWASP_Security_Shepherd&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015_Sponsors&amp;diff=192051</id>
		<title>LatamTour2015 Sponsors</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015_Sponsors&amp;diff=192051"/>
				<updated>2015-03-24T17:41:16Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
== Platinum Sponsors ==&lt;br /&gt;
&lt;br /&gt;
[[Image: Akamai-Logo-Faster-Forward-RGB.jpeg‎|300px|link= http://spanish.akamai.com/enes//]] [[Image: Best_Resolution_-_Final_Logo.jpg‎|300px|link= http://www.checkmarx.com//]]                   [[Image: Logohp2015.png‎|150px|link= http://www8.hp.com/us/en/software-solutions/enterprise-security.html//]]&lt;br /&gt;
&lt;br /&gt;
== Gold Sponsors ==&lt;br /&gt;
&lt;br /&gt;
== Silver Sponsors ==&lt;br /&gt;
&lt;br /&gt;
[[Image: Logo_inzafe.png‎|200px|link= http://inzafe.cl]]&lt;br /&gt;
&lt;br /&gt;
== Coffee Break Sponsor ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Educational Supporters ==&lt;br /&gt;
&lt;br /&gt;
[[Image:LogoUPB.png ‎|200px|link=http://www.upb.edu.co/]]&lt;br /&gt;
[[Image:Logo_Uncoma.png ‎|200px|link=http://www.uncoma.edu.ar/]]&lt;br /&gt;
[[Image:DUOCUC.jpg|250px|link=http://www.duoc.cl/]]&lt;br /&gt;
[[Image:UCUDAL.jpg|200px|link=http://www.ucu.edu.uy//]]&lt;br /&gt;
[[Image:Logo_UTP_2015.png|200px|link=http://www.utp.edu.pe/]]&lt;br /&gt;
&lt;br /&gt;
-&lt;br /&gt;
[[Image:logo-ug.png|200px|link=https://www.galileo.edu/]]&lt;br /&gt;
[[Image:universidad-marina-mercante-200x200.jpg|200px|link=http://www.udemm.edu.ar/]]&lt;br /&gt;
[[Image:Logo_NUR.jpg|200px|link=http://www.nur.edu//]]&lt;br /&gt;
[[Image:Ucv-logo.jpg |150px|link=http://www.ucv.ve///]]&lt;br /&gt;
[[Image:Logoucostarica.jpg ‎|150px|link=http://www.ucr.ac.cr/acerca-u/campus.html/]]&lt;br /&gt;
&lt;br /&gt;
[[Image: Fontlogo.png‎|300px|link=http://securityresearch.ie/]]&lt;br /&gt;
&lt;br /&gt;
== Community Supporters ==&lt;br /&gt;
&amp;amp;nbsp;&lt;br /&gt;
&amp;amp;nbsp;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
-&lt;br /&gt;
[[Image:Logo-segu-info-alta.jpg|250px|link=http://www.segu-info.com.ar/]]&lt;br /&gt;
[[Image:dragonjar.png|250px|link=http://www.dragonjar.org/]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Supporting Partners ==&lt;br /&gt;
&lt;br /&gt;
[[Image:MUNDO_HACKER_LOGO.jpg|250px|link=http://www.mundohacker.es/]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=189994</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=189994"/>
				<updated>2015-02-19T22:54:28Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|750px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st-22nd 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===REGISTRO===&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;totalmente gratuito, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&lt;br /&gt;
Diego Ademir Duarte Santana | &amp;lt;b&amp;gt;OWASP ASVS 2.0 Web Application Standard&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Jhon César Arango Serna | &amp;lt;b&amp;gt;IPv6 Ventaja o Amenaza&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Javier Orlando Mantilla P. | &amp;lt;b&amp;gt;Seguridad en desarrollo de aplicaciones web usando Apache Tomee&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Hugo Armando Rodriguez Vera | &amp;lt;b&amp;gt;Por definir tema (Leyes y Seguridad Informática)&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Ronald Escalona | &amp;lt;b&amp;gt;Hardening del Servidor Web, enfoque práctico con jail/chroot para entornos multisitios&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
German Alonso Suárez Guerrero | &amp;lt;b&amp;gt;OWASP Proactive Controls&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;u&amp;gt;Si te interesa participar como CONFERENCISTA, puedes escribir a [mailto:dadhemir@owasp.org dadhemir@owasp.org]&amp;lt;/u&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Horario&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
08:15 a 12:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
14:00 a 18:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con &amp;lt;b&amp;gt;transmisión vía streaming&amp;lt;/b&amp;gt; para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
&lt;br /&gt;
[[File:Santa.jpg]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Lugar: Universidad NUR&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Dirección: Av. Banzer, Victorino Rivero 100&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de la Sierra, Bolivia&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Fecha: 17 y 18 de abril del 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Mapa.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f;&lt;br /&gt;
	color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Nro&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Nombre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Ciudad&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Tema&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;25&amp;quot;&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Alvaro Machaca Tola&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;187&amp;quot;&amp;gt;La Paz ,Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;321&amp;quot;&amp;gt;Análisis de riesgos aplicando la metodología OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Deyvi Bustamante Perez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sucre , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Exploit development&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Walter Camama Menacho&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Trinidad, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;MiTM a nivel de browser con beef y metasploit&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Leonardo Camilo Quenta Alarcon&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Seguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Hernán Marcelo Leytón Balderrama&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Potosí, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Seguridad en los Satélites de Comunicación&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jaime Iván Mendoza Ribera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Santa Cruz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Análisis de vulnerabilidades web&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Juan Pablo Barriga Sapiencia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sucre , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Riesgos en TI&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Richard Villca Apaza&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Rompiendo el modelo de negocios: Debugging Android Apps&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Alex Villegas y Roller Ibanez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cochabamba , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Daniel Torres Sandi&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sucre , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Headers seguros en HTTP&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Gonzalo Nina Mamani&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cochabamba , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cristhian Lima Saravia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cochabamba, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Framework Pleni&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Elvin Vidal Mollinedo Mencia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Santa Cruz de la Sierra, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Los 7 pecados de un desarrollador Web&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Erick Calderon Mostajo&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Herramientas de Aprendizaje OWASP.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Dennis Ariel Ruiz Vasquez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Whitehat vs Blackhat&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Juan Alberto Fajardo Canaza&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Potosí, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;WAF Testing Framework&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Gabriel Labrada Hernandez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Mexico&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Seguridad en Hardware y los servicios en la nube&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jaime Andres Restrepo Gomez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Colombia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Hackeando carros en Latinoamérica&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Católica del Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Uruguay. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
[[File:BannerLatamTourVenezuela.jpg| center |BannerLatamTourVenezuela.jpg ]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGISTRATE''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== UBICACIÓN ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:UbicacionLatamCaracas.png]]&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f;&lt;br /&gt;
	color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Hora&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Nombre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Ciudad&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Tema&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;25&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;187&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;321&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=189993</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=189993"/>
				<updated>2015-02-19T22:52:37Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|750px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st-22nd 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===REGISTRO===&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;totalmente gratuito, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===CONFERENCIAS===&lt;br /&gt;
&lt;br /&gt;
Diego Ademir Duarte Santana | &amp;lt;b&amp;gt;OWASP ASVS 2.0 Web Application Standard&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Jhon César Arango Serna | &amp;lt;b&amp;gt;IPv6 Ventaja o Amenaza&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Javier Orlando Mantilla P. | &amp;lt;b&amp;gt;Seguridad en desarrollo de aplicaciones web usando Apache Tomee&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Hugo Armando Rodriguez Vera | &amp;lt;b&amp;gt;Por definir tema (Leyes y Seguridad Informática)&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Ronald Escalona | &amp;lt;b&amp;gt;Hardening del Servidor Web, enfoque práctico con jail/chroot para entornos multisitios&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
German Alonso Suárez Guerrero | &amp;lt;b&amp;gt;OWASP Proactive Controls&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;b&amp;gt;Tendremos algunas otras sorpresas más relacionadas con SEGURIDAD INFORMÁTICA Y CIBERSEGURIDAD !!!!&amp;lt;/b&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;!--&amp;lt;u&amp;gt;Si te interesa participar como CONFERENCISTA, puedes escribir a [mailto:dadhemir@owasp.org dadhemir@owasp.org]&amp;lt;/u&amp;gt;--!&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Horario&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
08:15 a 12:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
14:00 a 18:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con &amp;lt;b&amp;gt;transmisión vía streaming&amp;lt;/b&amp;gt; para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===PATROCINIO===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
&lt;br /&gt;
[[File:Santa.jpg]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Lugar: Universidad NUR&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Dirección: Av. Banzer, Victorino Rivero 100&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de la Sierra, Bolivia&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Fecha: 17 y 18 de abril del 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[[File:Mapa.jpg]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f;&lt;br /&gt;
	color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Nro&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Nombre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Ciudad&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Tema&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;25&amp;quot;&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;Alvaro Machaca Tola&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;187&amp;quot;&amp;gt;La Paz ,Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;321&amp;quot;&amp;gt;Análisis de riesgos aplicando la metodología OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Deyvi Bustamante Perez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sucre , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Exploit development&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Walter Camama Menacho&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Trinidad, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;MiTM a nivel de browser con beef y metasploit&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Leonardo Camilo Quenta Alarcon&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Seguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Hernán Marcelo Leytón Balderrama&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Potosí, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Seguridad en los Satélites de Comunicación&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jaime Iván Mendoza Ribera&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Santa Cruz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Análisis de vulnerabilidades web&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Juan Pablo Barriga Sapiencia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sucre , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Riesgos en TI&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Richard Villca Apaza&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Rompiendo el modelo de negocios: Debugging Android Apps&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Alex Villegas y Roller Ibanez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cochabamba , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Daniel Torres Sandi&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sucre , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Headers seguros en HTTP&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Gonzalo Nina Mamani&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cochabamba , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cristhian Lima Saravia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Cochabamba, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Framework Pleni&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Elvin Vidal Mollinedo Mencia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Santa Cruz de la Sierra, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Los 7 pecados de un desarrollador Web&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Erick Calderon Mostajo&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Herramientas de Aprendizaje OWASP.&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Dennis Ariel Ruiz Vasquez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;La Paz , Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Whitehat vs Blackhat&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Juan Alberto Fajardo Canaza&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Potosí, Bolivia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;WAF Testing Framework&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Gabriel Labrada Hernandez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Mexico&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Seguridad en Hardware y los servicios en la nube&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Jaime Andres Restrepo Gomez&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Colombia&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Hackeando carros en Latinoamérica&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Católica del Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Uruguay. &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
[[File:BannerLatamTourVenezuela.jpg| center |BannerLatamTourVenezuela.jpg ]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGISTRATE''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== UBICACIÓN ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:UbicacionLatamCaracas.png]]&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table width=&amp;quot;761&amp;quot; border=&amp;quot;1&amp;quot; cellpadding=&amp;quot;0&amp;quot; cellspacing=&amp;quot;0&amp;quot; &amp;gt;&lt;br /&gt;
  &amp;lt;tr style=&amp;quot;background-color: #30608f;&lt;br /&gt;
	color:#FFF;&amp;quot;&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Hora&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Nombre&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Ciudad&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;Tema&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;25&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;200&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;187&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td width=&amp;quot;321&amp;quot;&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
  &amp;lt;tr&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
    &amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
  &amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015_Sponsors&amp;diff=188950</id>
		<title>LatamTour2015 Sponsors</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015_Sponsors&amp;diff=188950"/>
				<updated>2015-02-03T10:56:04Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
== Platinum Sponsors ==&lt;br /&gt;
&lt;br /&gt;
[[Image: Akamai-Logo-Faster-Forward-RGB.jpeg‎|300px|link= http://spanish.akamai.com/enes//]]&lt;br /&gt;
&lt;br /&gt;
== Gold Sponsors ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Silver Sponsors ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Coffee Break Sponsor ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Educational Supporters ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Image:LogoUPB.png ‎|200px|link=http://www.upb.edu.co/]]&lt;br /&gt;
[[Image:Logo_Uncoma.png ‎|200px|link=http://www.uncoma.edu.ar/]]&lt;br /&gt;
[[Image:EPG-UTP.JPG|200px|link=http://www.postgradoutp.edu.pe]]&lt;br /&gt;
[[Image:DUOCUC.jpg|200px|link=http://www.duoc.cl/]]&lt;br /&gt;
[[Image:UCUDAL.jpg|200px|link=http://www.ucu.edu.uy//]]&lt;br /&gt;
&lt;br /&gt;
-&lt;br /&gt;
[[Image:logo-ug.png|200px|link=https://www.galileo.edu/]]&lt;br /&gt;
[[Image:universidad-marina-mercante-200x200.jpg|200px|link=http://www.udemm.edu.ar/]]&lt;br /&gt;
[[Image:Logo_NUR.jpg|200px|link=http://www.nur.edu//]]&lt;br /&gt;
[[Image:Ucv-logo.jpg |150px|link=http://www.ucv.ve///]]&lt;br /&gt;
[[Image:Logoucostarica.jpg ‎|150px|link=http://www.ucr.ac.cr/acerca-u/campus.html/]]&lt;br /&gt;
&lt;br /&gt;
== Community Supporters ==&lt;br /&gt;
&amp;amp;nbsp;&lt;br /&gt;
&amp;amp;nbsp;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
-&lt;br /&gt;
[[Image:Logo-segu-info-alta.jpg|250px|link=http://www.segu-info.com.ar/]]&lt;br /&gt;
[[Image:dragonjar.png|250px|link=http://www.dragonjar.org/]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188949</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188949"/>
				<updated>2015-02-03T10:55:25Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|750px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Registro===&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']&amp;lt;br&amp;gt;&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;totalmente gratuito, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Agenda===&lt;br /&gt;
&lt;br /&gt;
HORARIO (Pendiente por definir charlas)&lt;br /&gt;
&lt;br /&gt;
08:00 a 12:00&amp;lt;br&amp;gt;&lt;br /&gt;
14:00 a 18:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con transmisión vía streaming para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
=='''Santa Cruz de las Sierras: April, 17th-18th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.nur.edu/scz/ Universidad Nur Sede Santa Cruz]&lt;br /&gt;
&lt;br /&gt;
Av. Cristo Redentor N° 100&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de las Sierras , Bolivia&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
•	Alvaro Machaca Tola La Paz ,Bolivia - '''Análisis de riesgos aplicando la metodología OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Deyvi Bustamante Perez Sucre , Bolivia -  '''Exploit development'''&lt;br /&gt;
&lt;br /&gt;
•	Walter Camama Menacho Trinidad, Bolivia - '''MiTM a nivel de browser con beef y metasploit'''&lt;br /&gt;
&lt;br /&gt;
•	Leonardo Camilo Quenta Alarcon La Paz, Bolivia - S'''eguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Hernán Marcelo Leytón Balderrama Potosí, Bolivia - '''Seguridad en los Satélites de Comunicación'''&lt;br /&gt;
&lt;br /&gt;
•	Jaime Iván Mendoza Ribera Santa Cruz, Bolivia - '''Análisis de vulnerabilidades web'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Pablo Barriga Sapiencia Sucre , Bolivia - '''Riesgos en TI'''&lt;br /&gt;
&lt;br /&gt;
•	Richard Villca Apaza, La Paz, Bolivia – '''Rompiendo el modelo de negocios: Debugging Android Apps'''&lt;br /&gt;
&lt;br /&gt;
•	Alex Villegas y Roller Ibanez  Cochabamba , Bolivia- '''Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301'''&lt;br /&gt;
&lt;br /&gt;
•	Daniel Torres Sandi Sucre , Bolivia - '''Headers seguros en HTTP'''&lt;br /&gt;
&lt;br /&gt;
•	Gonzalo Nina Mamani Cochabamba , Bolivia – '''Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
•	Cristhian Lima Saravia Cochabamba, Bolivia - '''Framework Pleni'''&lt;br /&gt;
&lt;br /&gt;
•	Elvin Vidal Mollinedo Mencia Santa Cruz de la Sierra, Bolivia - '''Los 7 pecados de un desarrollador Web'''&lt;br /&gt;
&lt;br /&gt;
•	Erick Calderon Mostajo La Paz, Bolivia - '''Herramientas de Aprendizaje OWASP.'''&lt;br /&gt;
&lt;br /&gt;
•	Dennis Ariel Ruiz Vasquez La Paz , Bolivia - '''Whitehat vs Blackhat'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Alberto Fajardo Canaza, Potosí, Bolivia - '''WAF Testing Framework'''&lt;br /&gt;
&lt;br /&gt;
•	Gabriel Labrada Hernandez,  Mexico - '''Seguridad en Hardware y los servicios en la nube Rodolfo Ceceña Solano Ensenada-Mexico - Same Origin policy y html injection'''&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Urugua, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188948</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188948"/>
				<updated>2015-02-03T10:55:14Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|700px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Registro===&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']&amp;lt;br&amp;gt;&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;totalmente gratuito, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Agenda===&lt;br /&gt;
&lt;br /&gt;
HORARIO (Pendiente por definir charlas)&lt;br /&gt;
&lt;br /&gt;
08:00 a 12:00&amp;lt;br&amp;gt;&lt;br /&gt;
14:00 a 18:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con transmisión vía streaming para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
=='''Santa Cruz de las Sierras: April, 17th-18th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.nur.edu/scz/ Universidad Nur Sede Santa Cruz]&lt;br /&gt;
&lt;br /&gt;
Av. Cristo Redentor N° 100&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de las Sierras , Bolivia&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
•	Alvaro Machaca Tola La Paz ,Bolivia - '''Análisis de riesgos aplicando la metodología OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Deyvi Bustamante Perez Sucre , Bolivia -  '''Exploit development'''&lt;br /&gt;
&lt;br /&gt;
•	Walter Camama Menacho Trinidad, Bolivia - '''MiTM a nivel de browser con beef y metasploit'''&lt;br /&gt;
&lt;br /&gt;
•	Leonardo Camilo Quenta Alarcon La Paz, Bolivia - S'''eguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Hernán Marcelo Leytón Balderrama Potosí, Bolivia - '''Seguridad en los Satélites de Comunicación'''&lt;br /&gt;
&lt;br /&gt;
•	Jaime Iván Mendoza Ribera Santa Cruz, Bolivia - '''Análisis de vulnerabilidades web'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Pablo Barriga Sapiencia Sucre , Bolivia - '''Riesgos en TI'''&lt;br /&gt;
&lt;br /&gt;
•	Richard Villca Apaza, La Paz, Bolivia – '''Rompiendo el modelo de negocios: Debugging Android Apps'''&lt;br /&gt;
&lt;br /&gt;
•	Alex Villegas y Roller Ibanez  Cochabamba , Bolivia- '''Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301'''&lt;br /&gt;
&lt;br /&gt;
•	Daniel Torres Sandi Sucre , Bolivia - '''Headers seguros en HTTP'''&lt;br /&gt;
&lt;br /&gt;
•	Gonzalo Nina Mamani Cochabamba , Bolivia – '''Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
•	Cristhian Lima Saravia Cochabamba, Bolivia - '''Framework Pleni'''&lt;br /&gt;
&lt;br /&gt;
•	Elvin Vidal Mollinedo Mencia Santa Cruz de la Sierra, Bolivia - '''Los 7 pecados de un desarrollador Web'''&lt;br /&gt;
&lt;br /&gt;
•	Erick Calderon Mostajo La Paz, Bolivia - '''Herramientas de Aprendizaje OWASP.'''&lt;br /&gt;
&lt;br /&gt;
•	Dennis Ariel Ruiz Vasquez La Paz , Bolivia - '''Whitehat vs Blackhat'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Alberto Fajardo Canaza, Potosí, Bolivia - '''WAF Testing Framework'''&lt;br /&gt;
&lt;br /&gt;
•	Gabriel Labrada Hernandez,  Mexico - '''Seguridad en Hardware y los servicios en la nube Rodolfo Ceceña Solano Ensenada-Mexico - Same Origin policy y html injection'''&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Urugua, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188947</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188947"/>
				<updated>2015-02-03T10:55:02Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|800px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Registro===&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']&amp;lt;br&amp;gt;&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;totalmente gratuito, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Agenda===&lt;br /&gt;
&lt;br /&gt;
HORARIO (Pendiente por definir charlas)&lt;br /&gt;
&lt;br /&gt;
08:00 a 12:00&amp;lt;br&amp;gt;&lt;br /&gt;
14:00 a 18:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con transmisión vía streaming para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
=='''Santa Cruz de las Sierras: April, 17th-18th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.nur.edu/scz/ Universidad Nur Sede Santa Cruz]&lt;br /&gt;
&lt;br /&gt;
Av. Cristo Redentor N° 100&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de las Sierras , Bolivia&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
•	Alvaro Machaca Tola La Paz ,Bolivia - '''Análisis de riesgos aplicando la metodología OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Deyvi Bustamante Perez Sucre , Bolivia -  '''Exploit development'''&lt;br /&gt;
&lt;br /&gt;
•	Walter Camama Menacho Trinidad, Bolivia - '''MiTM a nivel de browser con beef y metasploit'''&lt;br /&gt;
&lt;br /&gt;
•	Leonardo Camilo Quenta Alarcon La Paz, Bolivia - S'''eguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Hernán Marcelo Leytón Balderrama Potosí, Bolivia - '''Seguridad en los Satélites de Comunicación'''&lt;br /&gt;
&lt;br /&gt;
•	Jaime Iván Mendoza Ribera Santa Cruz, Bolivia - '''Análisis de vulnerabilidades web'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Pablo Barriga Sapiencia Sucre , Bolivia - '''Riesgos en TI'''&lt;br /&gt;
&lt;br /&gt;
•	Richard Villca Apaza, La Paz, Bolivia – '''Rompiendo el modelo de negocios: Debugging Android Apps'''&lt;br /&gt;
&lt;br /&gt;
•	Alex Villegas y Roller Ibanez  Cochabamba , Bolivia- '''Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301'''&lt;br /&gt;
&lt;br /&gt;
•	Daniel Torres Sandi Sucre , Bolivia - '''Headers seguros en HTTP'''&lt;br /&gt;
&lt;br /&gt;
•	Gonzalo Nina Mamani Cochabamba , Bolivia – '''Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
•	Cristhian Lima Saravia Cochabamba, Bolivia - '''Framework Pleni'''&lt;br /&gt;
&lt;br /&gt;
•	Elvin Vidal Mollinedo Mencia Santa Cruz de la Sierra, Bolivia - '''Los 7 pecados de un desarrollador Web'''&lt;br /&gt;
&lt;br /&gt;
•	Erick Calderon Mostajo La Paz, Bolivia - '''Herramientas de Aprendizaje OWASP.'''&lt;br /&gt;
&lt;br /&gt;
•	Dennis Ariel Ruiz Vasquez La Paz , Bolivia - '''Whitehat vs Blackhat'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Alberto Fajardo Canaza, Potosí, Bolivia - '''WAF Testing Framework'''&lt;br /&gt;
&lt;br /&gt;
•	Gabriel Labrada Hernandez,  Mexico - '''Seguridad en Hardware y los servicios en la nube Rodolfo Ceceña Solano Ensenada-Mexico - Same Origin policy y html injection'''&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Urugua, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188946</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188946"/>
				<updated>2015-02-03T10:54:44Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[Image:Banner_latam_2015.jpg ‎|600px|link=https://www.owasp.org/index.php/LatamTour2015]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli via [https://docs.google.com/forms/d/1ncVFYKsBv6aUsf3WBI657yRHUQLkazjkT9VMu4Vdp9I/viewform '''this Google form''']&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/bucaramanga Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Seccional Bucaramanga &amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bloque K - 605 &amp;lt;br&amp;gt;&lt;br /&gt;
[http://goo.gl/EwBpTu'''Mapa :: Ubicación del evento''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Registro===&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''Pulsa aquí para registrarte al evento''']&amp;lt;br&amp;gt;&lt;br /&gt;
Recuerde que el ingreso al evento es &amp;lt;b&amp;gt;totalmente gratuito, sólo debe registrarse previamente&amp;lt;/b&amp;gt;.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
===Agenda===&lt;br /&gt;
&lt;br /&gt;
HORARIO (Pendiente por definir charlas)&lt;br /&gt;
&lt;br /&gt;
08:00 a 12:00&amp;lt;br&amp;gt;&lt;br /&gt;
14:00 a 18:00&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Se contará con transmisión vía streaming para las personas ubicadas fuera de la ciudad.&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta pueden escribir a [mailto:dadhemir@owasp.org Diego Ademir Duarte Santana] .&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
=='''Santa Cruz de las Sierras: April, 17th-18th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.nur.edu/scz/ Universidad Nur Sede Santa Cruz]&lt;br /&gt;
&lt;br /&gt;
Av. Cristo Redentor N° 100&amp;lt;br&amp;gt;&lt;br /&gt;
Santa Cruz de las Sierras , Bolivia&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15bolivia'''REGISTARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== LISTADO DE SPEAKERS ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
•	Alvaro Machaca Tola La Paz ,Bolivia - '''Análisis de riesgos aplicando la metodología OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Deyvi Bustamante Perez Sucre , Bolivia -  '''Exploit development'''&lt;br /&gt;
&lt;br /&gt;
•	Walter Camama Menacho Trinidad, Bolivia - '''MiTM a nivel de browser con beef y metasploit'''&lt;br /&gt;
&lt;br /&gt;
•	Leonardo Camilo Quenta Alarcon La Paz, Bolivia - S'''eguridad en sistemas financieros. Buenas prácticas de programación y aplicación de pruebas de penetración OWASP'''&lt;br /&gt;
&lt;br /&gt;
•	Hernán Marcelo Leytón Balderrama Potosí, Bolivia - '''Seguridad en los Satélites de Comunicación'''&lt;br /&gt;
&lt;br /&gt;
•	Jaime Iván Mendoza Ribera Santa Cruz, Bolivia - '''Análisis de vulnerabilidades web'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Pablo Barriga Sapiencia Sucre , Bolivia - '''Riesgos en TI'''&lt;br /&gt;
&lt;br /&gt;
•	Richard Villca Apaza, La Paz, Bolivia – '''Rompiendo el modelo de negocios: Debugging Android Apps'''&lt;br /&gt;
&lt;br /&gt;
•	Alex Villegas y Roller Ibanez  Cochabamba , Bolivia- '''Gestión de continuidad del negocio un enfoque resilente basado en el estándar ISO 22301'''&lt;br /&gt;
&lt;br /&gt;
•	Daniel Torres Sandi Sucre , Bolivia - '''Headers seguros en HTTP'''&lt;br /&gt;
&lt;br /&gt;
•	Gonzalo Nina Mamani Cochabamba , Bolivia – '''Sistema para la recolección de información orientado a la mejora en la evaluación de seguridad en aplicaciones Web'''&lt;br /&gt;
&lt;br /&gt;
•	Cristhian Lima Saravia Cochabamba, Bolivia - '''Framework Pleni'''&lt;br /&gt;
&lt;br /&gt;
•	Elvin Vidal Mollinedo Mencia Santa Cruz de la Sierra, Bolivia - '''Los 7 pecados de un desarrollador Web'''&lt;br /&gt;
&lt;br /&gt;
•	Erick Calderon Mostajo La Paz, Bolivia - '''Herramientas de Aprendizaje OWASP.'''&lt;br /&gt;
&lt;br /&gt;
•	Dennis Ariel Ruiz Vasquez La Paz , Bolivia - '''Whitehat vs Blackhat'''&lt;br /&gt;
&lt;br /&gt;
•	Juan Alberto Fajardo Canaza, Potosí, Bolivia - '''WAF Testing Framework'''&lt;br /&gt;
&lt;br /&gt;
•	Gabriel Labrada Hernandez,  Mexico - '''Seguridad en Hardware y los servicios en la nube Rodolfo Ceceña Solano Ensenada-Mexico - Same Origin policy y html injection'''&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. 8 de Octubre 2738, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600 Montevideo, Urugua, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015_Sponsors&amp;diff=188466</id>
		<title>LatamTour2015 Sponsors</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015_Sponsors&amp;diff=188466"/>
				<updated>2015-01-23T20:38:19Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Community Supporters */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
&lt;br /&gt;
== Platinum Sponsors ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Gold Sponsors ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Silver Sponsors ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Coffee Break Sponsor ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Educational Supporters ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Community Supporters ==&lt;br /&gt;
&amp;amp;nbsp;&lt;br /&gt;
&amp;amp;nbsp;&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
-&lt;br /&gt;
[[Image:Logo-segu-info-alta.jpg|200px|link=http://www.segu-info.com.ar/]]&lt;br /&gt;
[[Image:dragonjar.png|200px|link=http://www.dragonjar.org/]]&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188465</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188465"/>
				<updated>2015-01-23T20:33:28Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[File:Banner_latam_2015.jpg]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* Santa Cruz, '''Bolivia''': April 17th -18th 2015 &lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli [martin.tartarelli@owasp.org]&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
===Registrarse===&lt;br /&gt;
Los interesados en asistir al evento deben registrarse en:&amp;lt;br&amp;gt; &lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia https://www.regonline.com/owasplatamtour15patagonia]&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Speakers===&lt;br /&gt;
'''Viernes 10 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Andres Riancho - Análisis de seguridad en aplicaciones WEB&amp;lt;br&amp;gt;&lt;br /&gt;
Claudio Caracciolo - El mercado del Malware en las Apps de los Store para Android&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Certificate Pinning: ¿tenemos el c...ertificado roto?&amp;lt;br&amp;gt;&lt;br /&gt;
Gustavo Sorondo - Mobile Apps and how to Pentest them&amp;lt;br&amp;gt;&lt;br /&gt;
Marcelo Campetella - Aspectos Legales de la Seguridad informática&amp;lt;br&amp;gt;&lt;br /&gt;
Mauro Graziosi - CIOs vs CISOs: OWASP al rescate&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===Training===&lt;br /&gt;
'''Sabado 11 de abril'''&amp;lt;br&amp;gt;&lt;br /&gt;
Cristian Borghello - Hacking de aplicaciones web basado en OWASP Top 10&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
===¿Dónde?===&lt;br /&gt;
&lt;br /&gt;
[[File:Ubicacion.png|link=https://www.google.com.ar/maps/place/38%C2%B056'26.2%22S+68%C2%B003'15.5%22W/@-38.940623,-68.054305,228m/data=!3m2!1e3!4b1!4m2!3m1!1s0x0:0x0]]&lt;br /&gt;
&lt;br /&gt;
===Patrocinio===&lt;br /&gt;
Los interesados en participar con un stand en el evento y su logo en la página del Tour (entre otras posibilidades), pueden revisar las &lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf oportunidades de patrocinio]&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
Cualquier consulta no duden en escribir a [mailto:gaston.toth@owasp.org Gaston Toth] o a [mailto:diego.dinardo@patagoniasec.com.ar Diego Di Nardo].&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''RESITARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/portal/page?_pageid=954,1&amp;amp;_dad=portal&amp;amp;_schema=PORTAL Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bucaramanga&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=BOLIVIA=&lt;br /&gt;
=='''Santa Cruz de las Sierras: April, 17th-18th 2015'''==&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Avenida 8 de Octubre, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188078</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=188078"/>
				<updated>2015-01-14T15:35:44Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[File:Banner_latam_2015.jpg]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPERS &amp;amp; TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli [martin.tartarelli@owasp.org]&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://faiweb.uncoma.edu.ar/ Facultad de Informatica. Universidad de Comahue]&amp;lt;br&amp;gt;&lt;br /&gt;
Salón Azul de la Biblioteca &amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires 1400&amp;lt;br&amp;gt;&lt;br /&gt;
(8300) Neuquén&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
'''Fechas'''&lt;br /&gt;
*10/4: Conferencias libres y gratuitas. &lt;br /&gt;
*11/4: Curso &amp;quot;Hacking de aplicaciones web basado en OWASP Top 10&amp;quot;, por Cristian Borghello.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''RESITARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/portal/page?_pageid=954,1&amp;amp;_dad=portal&amp;amp;_schema=PORTAL Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bucaramanga&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Avenida 8 de Octubre, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=187941</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=187941"/>
				<updated>2015-01-12T23:08:20Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Questions */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[File:Banner_latam_2015.jpg]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to andrea.villar@owasp.org / fcerullo@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPAERS &amp;amp; CALL FOR TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli [martin.tartarelli@owasp.org]&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://faiweb.uncoma.edu.ar/ Facultad de Informatica. Universidad de Comahue]&amp;lt;br&amp;gt;&lt;br /&gt;
Salón Azul de la Biblioteca &amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires 1400&amp;lt;br&amp;gt;&lt;br /&gt;
(8300) Neuquén&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
'''Fechas'''&lt;br /&gt;
*10/4: Conferencias libres y gratuitas. &lt;br /&gt;
*11/4: Curso &amp;quot;Hacking de aplicaciones web basado en OWASP Top 10&amp;quot;, por Cristian Borghello.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''RESITARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/portal/page?_pageid=954,1&amp;amp;_dad=portal&amp;amp;_schema=PORTAL Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bucaramanga&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Avenida 8 de Octubre, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=187940</id>
		<title>LatamTour2015</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=LatamTour2015&amp;diff=187940"/>
				<updated>2015-01-12T23:07:19Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Do you want to give a talk or a training session in Latin America? */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__NOTOC__ &lt;br /&gt;
&lt;br /&gt;
[[File:Banner_latam_2015.jpg]]&lt;br /&gt;
&lt;br /&gt;
=WELCOME= &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Schedule''' ==&lt;br /&gt;
 &lt;br /&gt;
* Santiago, '''Chile''': April, 8th-9th 2015&lt;br /&gt;
* Patagonia, '''Argentina''': April, 10th-11th 2015&lt;br /&gt;
* Bucaramanga, '''Colombia''': April, 14th 2015&lt;br /&gt;
* Montevideo, '''Uruguay''': April, 15th-16th 2015&lt;br /&gt;
* Lima, '''Peru''': April, 17th-18th 2015&lt;br /&gt;
* San Jose, '''Costa Rica''': April, 21st 2015&lt;br /&gt;
* Guatemala, '''Guatemala''': April, 21st-22nd 2015&lt;br /&gt;
* Buenos Aires, '''Argentina''': April, 23rd-24th 2015&lt;br /&gt;
* Caracas, '''Venezuela''': April, 23rd-24th 2015&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''REGISTRATION IS NOW OPEN, PLEASE CHECK THE LOCATION TAB YOU ARE INTERESTED IN'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Latam Tour Objective''' ==&lt;br /&gt;
&lt;br /&gt;
The OWASP Latam Tour objective is to raise awareness about application security in the Latin America region, so that people and organizations can make informed decisions about true application security risks. Everyone is free to participate in OWASP and all of our materials are available under a free and open software license.&lt;br /&gt;
&lt;br /&gt;
We are proposing a chapters conference driven model in which the sessions are free for everybody and the costs are supported by a mix of funding i.e. OWASP Foundation, local chapter budget, external sponsorship, etc. 1-day training sessions are also offered in some tour stops. These sessions’ fees are $ 200USD for OWASP members and $ 250 USD for non-members (group discounts may apply).&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=='''Who Should Attend the Latam Tour?'''==&lt;br /&gt;
&lt;br /&gt;
*Application Developers &lt;br /&gt;
*Application Testers and Quality Assurance &lt;br /&gt;
*Application Project Management and Staff &lt;br /&gt;
*Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff &lt;br /&gt;
*Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance &lt;br /&gt;
*Security Managers and Staff &lt;br /&gt;
*Executives, Managers, and Staff Responsible for IT Security Governance &lt;br /&gt;
*IT Professionals Interesting in Improving IT Security&lt;br /&gt;
*Anyone interested in learning about or promoting Web Application Security&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Become an OWASP Member''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
As part of the OWASP Latam Tour, you could '''become an OWASP Member by ONLY paying 20 U$D'''. Show your support and become an OWASP member today!&lt;br /&gt;
&lt;br /&gt;
[[Image:Join_button.jpg|100px|link=http://sl.owasp.org/newmember]]  [[Image:Renewal.jpg |100px|link=http://sl.owasp.org/renewmember]]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Questions''' ==&lt;br /&gt;
&lt;br /&gt;
*If you have any questions about the Latam Tour 2015, please send an email to laura.grau@owasp.org&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
== '''Social Media''' ==&lt;br /&gt;
&lt;br /&gt;
'''[http://twitter.com/search?q=%23LATAMTOUR #Latamtour]''' hashtag for your tweets for Latam Tour (What are [http://hashtags.org/ hashtags]?) &lt;br /&gt;
&lt;br /&gt;
'''@AppSecLatam Twitter Feed ([http://twitter.com/AppSecLatam follow us on Twitter!])''' &amp;lt;twitter&amp;gt;34534108&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= CALL FOR PAPAERS &amp;amp; CALL FOR TRAININGS =&lt;br /&gt;
&lt;br /&gt;
== '''Do you want to give a talk or a training session in Latin America?''' ==&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please send your proposals to the corresponding chapter leader before February 1st 2015:'''&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* '''Argentina''' (Buenos Aires): Martin Tartarelli [martin.tartarelli@owasp.org]&lt;br /&gt;
* '''Argentina''' (Patagonia): Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* '''Colombia''': Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* '''Costa Rica''': Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* '''Chile''': Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* '''Guatemala''': Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* '''Peru''': John Vargas [john.vargas@owasp.org]&lt;br /&gt;
* '''Uruguay''': Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* '''Venezuela''': Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
''By your submission you agree to the [https://www.owasp.org/images/4/4f/AppSec_Latam_2015_Speaker_Agreement.pdf '''OWASP Speaker Agreement'''] or [https://www.owasp.org/images/f/fa/LatamTour_2015_Training_Instructor_Agreement.pdf ‎'''Instructor Agreement'''].&lt;br /&gt;
&lt;br /&gt;
=TEAM=&lt;br /&gt;
&lt;br /&gt;
'''Chapter Leaders'''&lt;br /&gt;
&lt;br /&gt;
* Bucaramanga, Colombia: Diego Ademir Duarte [dadhemir@owasp.org]&lt;br /&gt;
* Santiago, Chile: Carlos Allendes [carlos.allendes@owasp.org]&lt;br /&gt;
* Guatemala, Guatemala: Pablo Barrera [pbarrera@gmail.com]&lt;br /&gt;
* San Jose, Costa Rica: Michael Hidalgo [michael.hidalgo@owasp.org]&lt;br /&gt;
* Montevideo, Uruguay: Mateo Martinez [mateo.martinez@owasp.org]&lt;br /&gt;
* Caracas, Venezuela: Edgar Salazar [edgar.salazar@owasp.org]&lt;br /&gt;
* Buenos Aires, Argentina: Martin Tartarelli [martin.tartarelli@gmail.com]&lt;br /&gt;
* Patagonia, Argentina: Gaston Toth [gaston.toth@owasp.org]&lt;br /&gt;
* Lima, Peru: John Vargas [john.vargas@owasp.org]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Operations'''&lt;br /&gt;
&lt;br /&gt;
*[[User:Fabio.e.cerullo|Fabio Cerullo]], &amp;lt;br&amp;gt;&lt;br /&gt;
* Laura Grau&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [https://www.owasp.org/index.php/User:Kelly_Santalucia Kelly Santalucia]&lt;br /&gt;
&lt;br /&gt;
=ARGENTINA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=='''Patagonia: April, 10th-11th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://faiweb.uncoma.edu.ar/ Facultad de Informatica. Universidad de Comahue]&amp;lt;br&amp;gt;&lt;br /&gt;
Salón Azul de la Biblioteca &amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires 1400&amp;lt;br&amp;gt;&lt;br /&gt;
(8300) Neuquén&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
'''Fechas'''&lt;br /&gt;
*10/4: Conferencias libres y gratuitas. &lt;br /&gt;
*11/4: Curso &amp;quot;Hacking de aplicaciones web basado en OWASP Top 10&amp;quot;, por Cristian Borghello.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15patagonia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== '''Buenos Aires: April, 23rd-24th 2015'''==&lt;br /&gt;
&lt;br /&gt;
[http://www.udemm.edu.ar/ Universidad de la Marina Mercante]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Rivadavia 2258&amp;lt;br&amp;gt;&lt;br /&gt;
Buenos Aires, C &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15argentina '''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=CHILE=&lt;br /&gt;
&lt;br /&gt;
=='''Santiago: April, 8th-9th 2015'''==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.duoc.cl/escuela/escuela-de-informatica-y-telecomunicaciones Duoc UC]&amp;lt;br&amp;gt;&lt;br /&gt;
Alonso Ovalle Nro.1586&amp;lt;br&amp;gt;&lt;br /&gt;
Santiago de Chile&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15chile'''RESITARTION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COLOMBIA=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== '''Bucaramanga: April, 14th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.upb.edu.co/portal/page?_pageid=954,1&amp;amp;_dad=portal&amp;amp;_schema=PORTAL Universidad Pontifica Bolivariana]&amp;lt;br&amp;gt;&lt;br /&gt;
Autopista Piedecuesta Kilometro 7 &amp;lt;br&amp;gt;&lt;br /&gt;
Bucaramanga&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15colombia'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=COSTA RICA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''San Jose: April, 21st 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucr.ac.cr/acerca-u/campus.html Universidad de Costa Rica]&amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad universitaria Rodrigo Facio Brenes&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15costarica'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=GUATEMALA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Ciudad de Guatemala: April, 21st-22nd 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.galileo.edu/ Universidad Galileo]&amp;lt;br&amp;gt;&lt;br /&gt;
4A Calle 7a. Avenida, calle Dr. Eduardo Suger Cofiño, &amp;lt;br&amp;gt;&lt;br /&gt;
Ciudad de Guatemala 01010&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15guatemala'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=PERU=&lt;br /&gt;
&lt;br /&gt;
==  '''Lima: April, 17th-18th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.utp.edu.pe/ Escuela de Postgrado de la Universidad Tecnológica del Perú - UTP]&amp;lt;br&amp;gt;&lt;br /&gt;
Av. Petit Thouars 313-355&amp;lt;br&amp;gt;&lt;br /&gt;
Cercado de Lima&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15lima'''REGISTRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=URUGUAY=&lt;br /&gt;
&lt;br /&gt;
== '''Montevideo: April 15th-16th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
[http://www.ucu.edu.uy/ Universidad Catolica de Uruguay]&amp;lt;br&amp;gt;&lt;br /&gt;
Avenida 8 de Octubre, &amp;lt;br&amp;gt;&lt;br /&gt;
Montevideo 11600, &amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15uruguay'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=VENEZUELA=&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
== '''Caracas: April, 23rd-24th 2015''' ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[http://www.ucv.ve/ Universidad Central de Venezuela]&amp;lt;br&amp;gt;&lt;br /&gt;
Facultad de Ciencias &amp;lt;br&amp;gt;&lt;br /&gt;
Auditórium Tobías Lasser&amp;lt;br&amp;gt;&lt;br /&gt;
Paseo Los Ilustres Urb. Valle Abajo. &amp;lt;br&amp;gt;&lt;br /&gt;
1040 Caracas&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
[https://www.regonline.com/owasplatamtour15venezuela'''REGSITRATION IS NOW OPEN''']&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=SPONSORS=&lt;br /&gt;
&lt;br /&gt;
==We are looking for Sponsors for the Latam Tour 2015==&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
This is a truly unique opportunity to increase your brand recognition as a company dedicated to the highest standards of professional technology &amp;amp; security in the Latin-America region but also internationally throughout the world while supporting the continued activities conducted by OWASP worldwide.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* ''' Sponsorship benefits for organizations specializing in IT &amp;amp; Security:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to use the latest technological trends for professional training / development&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your business development strategy with leading information from the security industry&lt;br /&gt;
** Get networking and headhunting opportunities with world-class specialists and professionals&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Increase your image as a professional company through this unique branding opportunity&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
* '''Sponsorship benefits for organizations utilizing the internet in their business:'''&lt;br /&gt;
&lt;br /&gt;
** Opportunity to increase the international brand awareness and conduct business networking&lt;br /&gt;
** Strengthen your company strategy by learning the latest trends in web software security&lt;br /&gt;
** Improve your service development by understanding the latest trends in security issues &amp;amp; risks&lt;br /&gt;
** Contribute to information society as a company by developing safe and secure services&lt;br /&gt;
** Get the chance to interact with high-need discerning users to improve product development&lt;br /&gt;
** Opportunity to brand your company as one that focuses on the highest standards in technology&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Make your company part of the conversation. Become a sponsor of the tour today! [https://www.owasp.org/images/5/5f/Latam_Tour_2015_Sponsorship_Opportunities.pdf'''SPONSOR OPPORTUNITIES''']&lt;br /&gt;
[https://www.owasp.org/images/6/67/Latam_Tour_2015_Oportunidades_de_Patrocinio.pdf '''OPORTUNIDADES DE PATROCINIO''']&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;headertabs /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
{{:LatamTour2015 Sponsors}}&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Code_Kids_2015_Ideas&amp;diff=185023</id>
		<title>OWASP Code Kids 2015 Ideas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Code_Kids_2015_Ideas&amp;diff=185023"/>
				<updated>2014-11-10T09:25:29Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;=Task Categories=&lt;br /&gt;
&lt;br /&gt;
The tasks are grouped into the categories described below. '''Please make sure each task is assigned a category.'''&lt;br /&gt;
&lt;br /&gt;
'''Code:''' Tasks related to writing or refactoring code.&lt;br /&gt;
&lt;br /&gt;
'''Documentation/Training:''' Tasks related to creating/editing documents and helping others learn more&lt;br /&gt;
&lt;br /&gt;
'''Outreach/Research:''' Tasks related to community management, outreach/marketing, or studying problems and recommending solutions&lt;br /&gt;
&lt;br /&gt;
'''Quality Assurance:''' Tasks related to testing and ensuring code is of high quality&lt;br /&gt;
&lt;br /&gt;
'''User Interface:''' Tasks related to user experience research or user interface design and interaction&lt;br /&gt;
&lt;br /&gt;
== OWASP ZAP ==&lt;br /&gt;
&lt;br /&gt;
=== OWASP ZAP Task 1 ===&lt;br /&gt;
&lt;br /&gt;
'''Brief description:'''&lt;br /&gt;
&lt;br /&gt;
Write a blogpost about CMS-scnanning techniques, this will include web-apps fingerprinting methods, vulnerability checking using on-line databases and a survey of existing tools.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Documentation &lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
A professional blogpost that will be published on OWASP website &lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Good understanding of web security basics, Knowledge on how do CMSs work and good writing skills.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Abdelhadi&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== OWASP ZAP Task 2 ===&lt;br /&gt;
&lt;br /&gt;
'''Brief description:'''&lt;br /&gt;
&lt;br /&gt;
Rebuild the CMSscanner GUI including a progress bar that shows scanning progress and a textzone to display tried strings and paths used by the scanner in real time &lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code/Design&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
New GUI with progress bar and displaying paths when scanning &lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Java language, GUI design.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Abdelhadi&lt;br /&gt;
&lt;br /&gt;
=== OWASP ZAP Task 3 ===&lt;br /&gt;
&lt;br /&gt;
'''Brief description:'''&lt;br /&gt;
&lt;br /&gt;
In this task you are required to reproduce vulnerabilities in OWASP web goat using Owasp ZAP and zest scripts. The chosen challenge must be solved using ZAP and the resolution must be stored as a zest script. This task should help documenting of web goat and providing some working examples of Mozilla Zest scripts.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Zest scripts which reproduces some of the vulnerabilities challange of Owasp WebGoat.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Comfortable in Javascript and HTML. Good understanding of Application Security and related vulnerabilities.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Alessandro Secco&lt;br /&gt;
&lt;br /&gt;
== OWASP OWTF ==&lt;br /&gt;
&lt;br /&gt;
=== OWASP OWTF Task 1 ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Task description&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Eg. Code Category&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Describe the expected results of the task&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Comfortable in PHP, HTML and possibly Javascript. Good understanding of Application Security and related vulnerabilities. &lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' XXXXXX&lt;br /&gt;
&lt;br /&gt;
== OWASP WIKI ==&lt;br /&gt;
&lt;br /&gt;
=== Task 1: Latam Tour 2015 logo ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Design a new logo for the Latam Tour 2015. The logo must resemble previous editions of the Tour and represent the Latin America region. It would be better if the new logo is based on the OWASP logo. As a reference, here is the Latam Tour 2014 Logo:&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/images/f/f3/OWASP_Latam_Tour_Logo_2014.png&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Design&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Latam Tour 2015 logo in either psd or jpeg format.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Familiarity with Photoshop/GIMP or any other designing software.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Fabio Cerullo&lt;br /&gt;
&lt;br /&gt;
== OWASP WebGoatPHP ==&lt;br /&gt;
&lt;br /&gt;
=== Task 1: Implement &amp;quot;remember me&amp;quot; feature ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Implement a secure &amp;quot;Remember me&amp;quot; feature in user login form using cookies. At present the remember me check box is present in the form but it does nothing.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
If user checks the &amp;quot;remember me&amp;quot; check box when logging in, then the user will not be required to login every time he visits the application within X days.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Comfortable in PHP, HTML and possibly Javascript. Good understanding of Application Security and related vulnerabilities. &lt;br /&gt;
&lt;br /&gt;
'''Reference:'''&lt;br /&gt;
&lt;br /&gt;
https://github.com/shivamdixit/WebGoatPHP/issues/45&lt;br /&gt;
&lt;br /&gt;
'''Code:'''&lt;br /&gt;
&lt;br /&gt;
app/control/user/login.php&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Task 2: Make workshop mode dashboard responsive ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
In workshop mode of the application, the side panel of admin dashboard is not responsive i.e it does not fits well in smaller size screen resolutions. If the screen size is small the side panel should shrink into a smaller panel preferably at the bottom of the application.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Panel perfectly adjusts on small screen resolutions.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
CSS (media queries), HTML&lt;br /&gt;
&lt;br /&gt;
'''Reference:'''&lt;br /&gt;
&lt;br /&gt;
https://github.com/shivamdixit/WebGoatPHP/issues/26&lt;br /&gt;
&lt;br /&gt;
'''Code:'''&lt;br /&gt;
&lt;br /&gt;
style/dashboard.css&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Task 3: WebGoatPHP logo ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Design a new logo for the application. The logo must resemble various aspects of the application. It would be better if the new logo is based on the OWASP logo. &lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Design&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
WebGoatPHP logo in either psd or jpeg format.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Familiarity with Photoshop/GIMP or any other designing software.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
=== Task 4: WebGoatPHP deployment screencast ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Deploy the application on the local server without using vagrant and record a screencast of the process. Upload to a video streaming service and comment link on the melange for mentor to review.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
The screencast should clearly contain all the steps required for the deployment and how to troubleshoot most common errors in the whole process.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Familiarity with an operating system (Linux/Windows)&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Task 5: Create a SQL injection challenge ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Single user mode of WebGoatPHP consist of set of challenges. These challenges simulate various real world security vulnerabilities in web applications. You have to add a challenge under category &amp;quot;Injection Attacks&amp;quot; which simulates a SQL injection vulnerability in single user mode. The input data must be of type string and the challenge should mimic some real world scenario.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
A challenge which helps user understand SQLi vulnerability by allowing him to exploit the vulnerability.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Comfortable in PHP, HTML and possibly Javascript. Good understanding of Application Security and related vulnerabilities. &lt;br /&gt;
&lt;br /&gt;
'''Reference:'''&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/index.php/SQL_Injection&lt;br /&gt;
&lt;br /&gt;
https://github.com/shivamdixit/WebGoatPHP/blob/master/README.md#adding-a-lessonchallenge&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Task 6-20: WebGoatPHP challenges screencast series ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
In this task you are required to record screencast of how to solve a particular single user mode challenge. The screencast should start by providing an overview of the vulnerability that will be exploited, then step by step instructions on how to exploit the vulnerability. The screencast should conclude on a note that how to avoid this vulnerability in your application. The length of the screencast would vary according to the challenge but it should neither be too long nor too short.&lt;br /&gt;
&lt;br /&gt;
Task    - Screencast of challenge.....&lt;br /&gt;
&lt;br /&gt;
Task 6  - HTTP Basic&lt;br /&gt;
&lt;br /&gt;
Task 7  - Using Access Control Matrix&lt;br /&gt;
&lt;br /&gt;
Task 8  - Business Layer Access Control&lt;br /&gt;
&lt;br /&gt;
Task 9  - Path Based Access Control&lt;br /&gt;
&lt;br /&gt;
Task 10 - Same Origin Policy Protection&lt;br /&gt;
&lt;br /&gt;
Task 11 - Forgot Password&lt;br /&gt;
&lt;br /&gt;
Task 12 - Discover clues in HTML&lt;br /&gt;
&lt;br /&gt;
Task 13 - JS Obfuscation&lt;br /&gt;
&lt;br /&gt;
Task 14 - XSS 1 (Reflected)&lt;br /&gt;
&lt;br /&gt;
Task 15 - XSS 2 (Stored)&lt;br /&gt;
&lt;br /&gt;
Task 16 - XSS 3 (DOM)&lt;br /&gt;
&lt;br /&gt;
Task 17 - Fail Open Authentication&lt;br /&gt;
&lt;br /&gt;
Task 18 - Log Spoofing&lt;br /&gt;
&lt;br /&gt;
Task 19 - Numeric SQL Injection&lt;br /&gt;
&lt;br /&gt;
Task 20 - XPATH injection&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
A screencast explaining the vulnerability involved in a particular challenge.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Comfortable in PHP, HTML and possibly Javascript. Good understanding of Application Security and related vulnerabilities. &lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
== OWASP CSRF Protector ==&lt;br /&gt;
&lt;br /&gt;
=== Task 1-2: CSRF Protector logo ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Design logos for the for CSRF Protector Project, possibly two versions one for php library and another one for Apache module.&lt;br /&gt;
Both of them should resemble OWASP logo.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Design&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
OWASP CSRF Protector logo in either psd or jpeg format.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Familiarity with Photoshop/GIMP or any other designing software.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Minhaz&lt;br /&gt;
&lt;br /&gt;
=== Task 3: Porting CSRF Protector PHP Wiki (from Github) to OWASP Wiki ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Currently we have wiki on how to use and deploy, at github. The task is to port them to OWASP Wiki as well so that it can be accessed directly.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Documentation&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Wiki for CSRF Protector php library in OWASP.ORG .&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Familiarity with wiki.&lt;br /&gt;
&lt;br /&gt;
'''Reference'''&lt;br /&gt;
&lt;br /&gt;
[https://github.com/mebjas/CSRF-Protector-PHP/wiki Github wiki for CSRF Protector php]&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Minhaz&lt;br /&gt;
&lt;br /&gt;
=== Task 4: Porting mod_csrfprotector Wiki (from Github) to OWASP Wiki ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Currently we have wiki on how to use and deploy, at github. The task is to port them to OWASP Wiki as well so that it can be accessed directly.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Documentation&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Wiki for mod_csrfprotector library in OWASP.ORG .&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Familiarity with wiki.&lt;br /&gt;
&lt;br /&gt;
'''References'''&lt;br /&gt;
&lt;br /&gt;
[https://github.com/mebjas/mod_csrfprotector/wiki Github wiki for mod_csrfprotector]&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Minhaz&lt;br /&gt;
&lt;br /&gt;
=== Task 5-6: Create screencasts on how to deploy both version of CSRF Protector individually ===&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Create two screencasts, one for each, which explains how to deploy CSRF Protector in your existing web application.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Screencast&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Screencasts explaining how to use CSRF Protector with existing web applications.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Experience with php, HTML, and Apache (for mod_csrfprotector)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Minhaz&lt;br /&gt;
&lt;br /&gt;
== OWASP Code Review Project ==&lt;br /&gt;
 https://www.owasp.org/index.php/OWASP_Code_review_V2_Project&lt;br /&gt;
&lt;br /&gt;
=== Task 1: Code Samples ===&lt;br /&gt;
&lt;br /&gt;
'''Brief Explanation:'''&lt;br /&gt;
&lt;br /&gt;
Code review guide has example code in .Net and Java and in some cases C++. We also want to include sample code in PHP and Ruby. We have existing example code in Java, .Net c#.&lt;br /&gt;
&lt;br /&gt;
'''Task Category:'''&lt;br /&gt;
&lt;br /&gt;
Code&lt;br /&gt;
&lt;br /&gt;
'''Expected Results:'''&lt;br /&gt;
&lt;br /&gt;
Follow existing code samples we need you to create Ruby and PHP where needed. All work will be shown in code review guide wiki. Please review code samples in code review guide wiki.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
php, and or Ruby&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Larry Conklin, Gary Robinson&lt;br /&gt;
&lt;br /&gt;
=== Task 1.1: Code Samples ===&lt;br /&gt;
Session Handling. Need php and Java code examples&lt;br /&gt;
 https://www.owasp.org/index.php/CRV2_SessionHandling&lt;br /&gt;
&lt;br /&gt;
=== Task 1.2: Code Samples ===&lt;br /&gt;
Input validation. Need php code examples&lt;br /&gt;
 https://www.owasp.org/index.php/CRV2_InputValIntro&lt;br /&gt;
&lt;br /&gt;
=== Task 1.3: Code Samples ===&lt;br /&gt;
Handling Error Messages. Need pho code examples&lt;br /&gt;
 https://www.owasp.org/index.php/CRV2_ErrorHandlingMessages&lt;br /&gt;
&lt;br /&gt;
=== Task 1.4: Code Samples ===&lt;br /&gt;
Persistent – The Anti pattern. Need Ruby code examples.&lt;br /&gt;
 https://www.owasp.org/index.php/CRV2_RevCodePersistentAntiPatternRuby&lt;br /&gt;
&lt;br /&gt;
=== Task 1.5: Code Samples ===&lt;br /&gt;
Reflected - The Anti pattern. Need Ruby code examples.&lt;br /&gt;
 https://www.owasp.org/index.php/CRV2_RevCodeReflectedAntiPatternIRuby&lt;br /&gt;
&lt;br /&gt;
=== Task 1.6: Code Samples ===&lt;br /&gt;
Ruby - AntiPatttern&lt;br /&gt;
 https://www.owasp.org/index.php/CRV2_AntiPatternPHP&lt;br /&gt;
&lt;br /&gt;
=== Task 2: Documentation ===&lt;br /&gt;
Reviewing by Technical Control&lt;br /&gt;
 https://www.owasp.org/index.php/OWASP_Code_review_V2_Table_of_Contents#Reviewing_by_Technical_Control&lt;br /&gt;
&lt;br /&gt;
Reviewing by Vulnerability&lt;br /&gt;
 https://www.owasp.org/index.php/OWASP_Code_review_V2_Table_of_Contents#Reviewing_by_Vulnerability&lt;br /&gt;
We need content from last two sections pulled from the wiki and added to a word doc and if possible have the content put into the following word doc template. Email me and I will send you the word template.&lt;br /&gt;
&lt;br /&gt;
We realize that all of the content will not easily fit into the word template but they can do the best they can and that will be fine with us. We only have three rules.&lt;br /&gt;
&lt;br /&gt;
Don’t delete anything even if you don’t agree with it.&lt;br /&gt;
Don’t add anything unless it is well marked that you added it.&lt;br /&gt;
Have fun and please ask questions. Please remember we have full time jobs and families. We will answer questions but maybe not as quickly as you would like. Yea, we are old grouchy men.&lt;br /&gt;
&lt;br /&gt;
'''Knowledge Prerequisites:'''&lt;br /&gt;
&lt;br /&gt;
Basic understanding wiki editing, word understanding and ability to format text.&lt;br /&gt;
&lt;br /&gt;
'''Mentors:''' Larry Conklin, Gary Robinson&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=185022</id>
		<title>Google Code In 2014</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=185022"/>
				<updated>2014-11-10T09:17:39Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Mentors */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[File:Googlecodeinlogo.JPG]]&lt;br /&gt;
&lt;br /&gt;
=Welcome To OWASP!!=&lt;br /&gt;
&lt;br /&gt;
Hi there! if you are a young, fierce and creative youngster looking for action and hacking adventures this is your place.&lt;br /&gt;
OWASP is an organization that create awareness providing learning tools to programmers and developers on how to code secure and avoid being hacked.&lt;br /&gt;
&lt;br /&gt;
Many of the tasks you will find in this page are about 'hacking' and protecting web applications.&lt;br /&gt;
&lt;br /&gt;
If you want to learn more about web security and how to protect web applications and software from 'evil' hackers, this is a great place to be.&lt;br /&gt;
&lt;br /&gt;
Be sure to read carefully all the rules related to the Google Code In program and talk to your parents or legal guardian about your participation. We strongly advise you to check the [http://www.google-melange.com/gci/document/show/gci_program/google/gci2014/terms_and_conditions Google Code-in Terms &amp;amp; Conditions].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
You can contact us on the [https://groups.google.com/forum/#!forum/owasp-gci OWASP Google Code-in discussion group] or via IRC on freenode (channel #owasp-gci) if you have any questions about the program. The Google Code-in 2014 contest will run from '''December 1, 2014 to January 19, 2015'''.&lt;br /&gt;
&lt;br /&gt;
=Task Categories=&lt;br /&gt;
&lt;br /&gt;
The tasks are grouped into the following categories:&lt;br /&gt;
&lt;br /&gt;
'''Code:''' Tasks related to writing or refactoring code.&lt;br /&gt;
&lt;br /&gt;
'''Documentation/Training:''' Tasks related to creating/editing documents and helping others learn more&lt;br /&gt;
&lt;br /&gt;
'''Outreach/Research:''' Tasks related to community management, outreach/marketing, or studying problems and recommending solutions&lt;br /&gt;
&lt;br /&gt;
'''Quality Assurance:''' Tasks related to testing and ensuring code is of high quality&lt;br /&gt;
&lt;br /&gt;
'''User Interface:''' Tasks related to user experience research or user interface design and interaction&lt;br /&gt;
&lt;br /&gt;
=Participating Projects=&lt;br /&gt;
&lt;br /&gt;
You could check the full list of participating projects and suggested tasks in the URL below:&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/index.php/GCI2014_Ideas&lt;br /&gt;
&lt;br /&gt;
=Mentors=&lt;br /&gt;
&lt;br /&gt;
The mentors confirmed for GCI 2014 are:&lt;br /&gt;
&lt;br /&gt;
- Lucas Ferreira&lt;br /&gt;
&lt;br /&gt;
- Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
- Azzeddine Ramrami&lt;br /&gt;
&lt;br /&gt;
- Alessandro Secco&lt;br /&gt;
&lt;br /&gt;
- Abraham Aranguren&lt;br /&gt;
&lt;br /&gt;
- Kevin Wall&lt;br /&gt;
&lt;br /&gt;
- Simon Bennetts&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;br /&gt;
&lt;br /&gt;
- Mateo Martinez&lt;br /&gt;
&lt;br /&gt;
- Ramana Subramanyam&lt;br /&gt;
&lt;br /&gt;
- Aalekh Nigam&lt;br /&gt;
&lt;br /&gt;
- Cornel Punga&lt;br /&gt;
&lt;br /&gt;
- Cosmin Stefan&lt;br /&gt;
&lt;br /&gt;
- Rauf Butt&lt;br /&gt;
&lt;br /&gt;
- Pulasthi Mahawithana&lt;br /&gt;
&lt;br /&gt;
=Org Admin=&lt;br /&gt;
&lt;br /&gt;
- Kate Hartmann&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=185010</id>
		<title>Google Code In 2014</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=185010"/>
				<updated>2014-11-09T18:29:05Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Welcome To OWASP!! */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[File:Googlecodeinlogo.JPG]]&lt;br /&gt;
&lt;br /&gt;
=Welcome To OWASP!!=&lt;br /&gt;
&lt;br /&gt;
Hi there! if you are a young, fierce and creative youngster looking for action and hacking adventures this is your place.&lt;br /&gt;
OWASP is an organization that create awareness providing learning tools to programmers and developers on how to code secure and avoid being hacked.&lt;br /&gt;
&lt;br /&gt;
Many of the tasks you will find in this page are about 'hacking' and protecting web applications.&lt;br /&gt;
&lt;br /&gt;
If you want to learn more about web security and how to protect web applications and software from 'evil' hackers, this is a great place to be.&lt;br /&gt;
&lt;br /&gt;
Be sure to read carefully all the rules related to the Google Code In program and talk to your parents or legal guardian about your participation. We strongly advise you to check the [http://www.google-melange.com/gci/document/show/gci_program/google/gci2014/terms_and_conditions Google Code-in Terms &amp;amp; Conditions].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
You can contact us on the [https://groups.google.com/forum/#!forum/owasp-gci OWASP Google Code-in discussion group] or via IRC on freenode (channel #owasp-gci) if you have any questions about the program. The Google Code-in 2014 contest will run from '''December 1, 2014 to January 19, 2015'''.&lt;br /&gt;
&lt;br /&gt;
=Task Categories=&lt;br /&gt;
&lt;br /&gt;
The tasks are grouped into the following categories:&lt;br /&gt;
&lt;br /&gt;
'''Code:''' Tasks related to writing or refactoring code.&lt;br /&gt;
&lt;br /&gt;
'''Documentation/Training:''' Tasks related to creating/editing documents and helping others learn more&lt;br /&gt;
&lt;br /&gt;
'''Outreach/Research:''' Tasks related to community management, outreach/marketing, or studying problems and recommending solutions&lt;br /&gt;
&lt;br /&gt;
'''Quality Assurance:''' Tasks related to testing and ensuring code is of high quality&lt;br /&gt;
&lt;br /&gt;
'''User Interface:''' Tasks related to user experience research or user interface design and interaction&lt;br /&gt;
&lt;br /&gt;
=Participating Projects=&lt;br /&gt;
&lt;br /&gt;
You could check the full list of participating projects and suggested tasks in the URL below:&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/index.php/GCI2014_Ideas&lt;br /&gt;
&lt;br /&gt;
=Mentors=&lt;br /&gt;
&lt;br /&gt;
The mentors confirmed for GCI 2014 are:&lt;br /&gt;
&lt;br /&gt;
- Lucas Ferreira&lt;br /&gt;
&lt;br /&gt;
- Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
- Azzeddine Ramrami&lt;br /&gt;
&lt;br /&gt;
- Alessandro Secco&lt;br /&gt;
&lt;br /&gt;
- Abraham Aranguren&lt;br /&gt;
&lt;br /&gt;
- Kevin Wall&lt;br /&gt;
&lt;br /&gt;
- Simon Bennetts&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;br /&gt;
&lt;br /&gt;
- Mateo Martinez&lt;br /&gt;
&lt;br /&gt;
- Ramana Subramanyam&lt;br /&gt;
&lt;br /&gt;
- Aalekh Nigam&lt;br /&gt;
&lt;br /&gt;
- Cornel Punga&lt;br /&gt;
&lt;br /&gt;
=Org Admin=&lt;br /&gt;
&lt;br /&gt;
- Kate Hartmann&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=184977</id>
		<title>Google Code In 2014</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=184977"/>
				<updated>2014-11-08T01:37:17Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: /* Mentors */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[File:Googlecodeinlogo.JPG]]&lt;br /&gt;
&lt;br /&gt;
=Welcome To OWASP!!=&lt;br /&gt;
&lt;br /&gt;
Hi there! if you are a young, fierce and creative youngster looking for action and hacking adventures this is your place.&lt;br /&gt;
OWASP is an organization that create awareness providing learning tools to programmers and developers on how to code secure and avoid being hacked.&lt;br /&gt;
&lt;br /&gt;
Many of the tasks you will find in this page are about 'hacking' and protecting web applications.&lt;br /&gt;
&lt;br /&gt;
If you want to learn more about web security and how to protect web applications and software from 'evil' hackers, this is a great place to be.&lt;br /&gt;
&lt;br /&gt;
Be sure to read carefully all the rules related to the Google Code In program and talk to your parents or legal guardian about your participation. We strongly advise you to check the [http://www.google-melange.com/gci/document/show/gci_program/google/gci2014/terms_and_conditions Google Code-in Terms &amp;amp; Conditions].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
You can contact us on the [https://groups.google.com/forum/#!forum/owasp-gci OWASP Google Code-in discussion group] if you have any questions about the program. The Google Code-in 2014 contest will run from '''December 1, 2014 to January 19, 2015'''.&lt;br /&gt;
&lt;br /&gt;
=Task Categories=&lt;br /&gt;
&lt;br /&gt;
The tasks are grouped into the following categories:&lt;br /&gt;
&lt;br /&gt;
'''Code:''' Tasks related to writing or refactoring code.&lt;br /&gt;
&lt;br /&gt;
'''Documentation/Training:''' Tasks related to creating/editing documents and helping others learn more&lt;br /&gt;
&lt;br /&gt;
'''Outreach/Research:''' Tasks related to community management, outreach/marketing, or studying problems and recommending solutions&lt;br /&gt;
&lt;br /&gt;
'''Quality Assurance:''' Tasks related to testing and ensuring code is of high quality&lt;br /&gt;
&lt;br /&gt;
'''User Interface:''' Tasks related to user experience research or user interface design and interaction&lt;br /&gt;
&lt;br /&gt;
=Participating Projects=&lt;br /&gt;
&lt;br /&gt;
You could check the full list of participating projects and suggested tasks in the URL below:&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/index.php/GCI2014_Ideas&lt;br /&gt;
&lt;br /&gt;
=Mentors=&lt;br /&gt;
&lt;br /&gt;
The mentors confirmed for GCI 2014 are:&lt;br /&gt;
&lt;br /&gt;
- Lucas Ferreira&lt;br /&gt;
&lt;br /&gt;
- Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
- Azzeddine Ramrami&lt;br /&gt;
&lt;br /&gt;
- Alessandro Secco&lt;br /&gt;
&lt;br /&gt;
- Abraham Aranguren&lt;br /&gt;
&lt;br /&gt;
- Kevin Wall&lt;br /&gt;
&lt;br /&gt;
- Simon Bennetts&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;br /&gt;
&lt;br /&gt;
- Mateo Martinez&lt;br /&gt;
&lt;br /&gt;
- Ramana Subramanyam&lt;br /&gt;
&lt;br /&gt;
- Aalekh Nigam&lt;br /&gt;
&lt;br /&gt;
- Cornel Punga&lt;br /&gt;
&lt;br /&gt;
=Org Admin=&lt;br /&gt;
&lt;br /&gt;
- Kate Hartmann&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=184965</id>
		<title>Google Code In 2014</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=184965"/>
				<updated>2014-11-07T18:25:17Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[File:Googlecodeinlogo.JPG]]&lt;br /&gt;
&lt;br /&gt;
=Welcome To OWASP!!=&lt;br /&gt;
&lt;br /&gt;
Hi there! if you are a young, fierce and creative youngster looking for action and hacking adventures this is your place.&lt;br /&gt;
OWASP is an organization that create awareness providing learning tools to programmers and developers on how to code secure and avoid being hacked.&lt;br /&gt;
&lt;br /&gt;
Many of the tasks you will find in this page are about 'hacking' and protecting web applications.&lt;br /&gt;
&lt;br /&gt;
If you want to learn more about web security and how to protect web applications and software from 'evil' hackers, this is a great place to be.&lt;br /&gt;
&lt;br /&gt;
Be sure to read carefully all the rules related to the Google Code In program and talk to your parents or legal guardian about your participation. We strongly advise you to check the [http://www.google-melange.com/gci/document/show/gci_program/google/gci2014/terms_and_conditions Google Code-in Terms &amp;amp; Conditions].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
You can contact us on the [https://groups.google.com/forum/#!forum/owasp-gci OWASP Google Code-in discussion group] if you have any questions about the program. The Google Code-in 2014 contest will run from '''December 1, 2014 to January 19, 2015'''.&lt;br /&gt;
&lt;br /&gt;
=Task Categories=&lt;br /&gt;
&lt;br /&gt;
The tasks are grouped into the following categories:&lt;br /&gt;
&lt;br /&gt;
'''Code:''' Tasks related to writing or refactoring code.&lt;br /&gt;
&lt;br /&gt;
'''Documentation/Training:''' Tasks related to creating/editing documents and helping others learn more&lt;br /&gt;
&lt;br /&gt;
'''Outreach/Research:''' Tasks related to community management, outreach/marketing, or studying problems and recommending solutions&lt;br /&gt;
&lt;br /&gt;
'''Quality Assurance:''' Tasks related to testing and ensuring code is of high quality&lt;br /&gt;
&lt;br /&gt;
'''User Interface:''' Tasks related to user experience research or user interface design and interaction&lt;br /&gt;
&lt;br /&gt;
=Participating Projects=&lt;br /&gt;
&lt;br /&gt;
You could check the full list of participating projects and suggested tasks in the URL below:&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/index.php/GCI2014_Ideas&lt;br /&gt;
&lt;br /&gt;
=Mentors=&lt;br /&gt;
&lt;br /&gt;
The mentors confirmed for GCI 2014 are:&lt;br /&gt;
&lt;br /&gt;
- Lucas Ferreira&lt;br /&gt;
&lt;br /&gt;
- Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
- Azzeddine Ramrami&lt;br /&gt;
&lt;br /&gt;
- Alessandro Secco&lt;br /&gt;
&lt;br /&gt;
- Abraham Aranguren&lt;br /&gt;
&lt;br /&gt;
- Kevin Wall&lt;br /&gt;
&lt;br /&gt;
- Simon Bennetts&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;br /&gt;
&lt;br /&gt;
- Mateo Martinez&lt;br /&gt;
&lt;br /&gt;
=Org Admin=&lt;br /&gt;
&lt;br /&gt;
- Kate Hartmann&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=184964</id>
		<title>Google Code In 2014</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Google_Code_In_2014&amp;diff=184964"/>
				<updated>2014-11-07T18:24:59Z</updated>
		
		<summary type="html">&lt;p&gt;Fabio.e.cerullo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
[[File:Googlecodeinlogo.JPG]]&lt;br /&gt;
&lt;br /&gt;
=Welcome To OWASP!!=&lt;br /&gt;
&lt;br /&gt;
Hi there! if you are a young, fierce and creative youngster looking for action and hacking adventures this is your place.&lt;br /&gt;
OWASP is an organization that create awareness providing learning tools to programmers and developers on how to code secure and avoid being hacked.&lt;br /&gt;
&lt;br /&gt;
Many of the tasks you will find in this page are about 'hacking' and protecting web applications.&lt;br /&gt;
&lt;br /&gt;
If you want to learn more about web security and how to protect web applications and software from 'evil' hackers, this is a great place to be.&lt;br /&gt;
&lt;br /&gt;
Be sure to read carefully all the rules related to the Google Code In program and talk to your parents or legal guardian about your participation. We strongly advise you to check the [http://www.google-melange.com/gci/document/show/gci_program/google/gci2014/terms_and_conditions Google Code-in Terms &amp;amp; Conditions].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
You can contact us on the [https://groups.google.com/forum/#!forum/owasp-gci OWASP Google Code-in discussion group] if you have any questions about the program. The Google Code-in 2014 contest will run from '''December 1, 2014 to January 19, 2015'''.&lt;br /&gt;
&lt;br /&gt;
=Task Categories=&lt;br /&gt;
&lt;br /&gt;
The tasks are grouped into the following categories:&lt;br /&gt;
&lt;br /&gt;
'''Code:''' Tasks related to writing or refactoring code.&lt;br /&gt;
&lt;br /&gt;
'''Documentation/Training:''' Tasks related to creating/editing documents and helping others learn more&lt;br /&gt;
&lt;br /&gt;
'''Outreach/Research:''' Tasks related to community management, outreach/marketing, or studying problems and recommending solutions&lt;br /&gt;
&lt;br /&gt;
'''Quality Assurance:''' Tasks related to testing and ensuring code is of high quality&lt;br /&gt;
&lt;br /&gt;
'''User Interface:''' Tasks related to user experience research or user interface design and interaction&lt;br /&gt;
&lt;br /&gt;
=Participating Projects=&lt;br /&gt;
&lt;br /&gt;
You could check the full list of participating projects and suggested tasks in the URL below:&lt;br /&gt;
&lt;br /&gt;
https://www.owasp.org/index.php/GCI2014_Ideas&lt;br /&gt;
&lt;br /&gt;
=Mentors=&lt;br /&gt;
&lt;br /&gt;
The mentors confirmed for GCI 2014 are:&lt;br /&gt;
&lt;br /&gt;
- Lucas Ferreira&lt;br /&gt;
&lt;br /&gt;
- Shivam Dixit&lt;br /&gt;
&lt;br /&gt;
- Azzeddine Ramrami&lt;br /&gt;
&lt;br /&gt;
- Alessandro Secco&lt;br /&gt;
&lt;br /&gt;
- Abraham Aranguren&lt;br /&gt;
&lt;br /&gt;
- Kevin Wall&lt;br /&gt;
&lt;br /&gt;
- Simon Bennetts&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;br /&gt;
&lt;br /&gt;
=Org Admin=&lt;br /&gt;
&lt;br /&gt;
- Kate Hartmann&lt;br /&gt;
&lt;br /&gt;
- Fabio Cerullo&lt;/div&gt;</summary>
		<author><name>Fabio.e.cerullo</name></author>	</entry>

	</feed>