<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Marliehuizar</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Marliehuizar"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Marliehuizar"/>
		<updated>2026-04-07T01:44:12Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:VulnerabilityManagementInAnApplicaitonSecurityWorld_OWASPDallas_20090225.pdf&amp;diff=55651</id>
		<title>File:VulnerabilityManagementInAnApplicaitonSecurityWorld OWASPDallas 20090225.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:VulnerabilityManagementInAnApplicaitonSecurityWorld_OWASPDallas_20090225.pdf&amp;diff=55651"/>
				<updated>2009-02-27T16:04:12Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Dallas&amp;diff=54407</id>
		<title>Dallas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Dallas&amp;diff=54407"/>
				<updated>2009-02-16T16:41:30Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Dallas|extra=The chapter leader is [mailto:jdsmith@owasp.org JD Smith ]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-dallas|emailarchives=http://lists.owasp.org/pipermail/owasp-dallas}}&lt;br /&gt;
&amp;lt;paypal&amp;gt;Dallas Chapter&amp;lt;/paypal&amp;gt;&lt;br /&gt;
==Local News ==&lt;br /&gt;
&lt;br /&gt;
Dallas OWASP Chapter: February 2009 Meeting &lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group &lt;br /&gt;
&lt;br /&gt;
Date: February 25, 2009 11:30am – 1:30pm &lt;br /&gt;
&lt;br /&gt;
Location: &lt;br /&gt;
UTD Campus - Galaxy Room of the Student Union, Room SU 2.602&lt;br /&gt;
Doors open at 11:00 am.&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities. This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio: &lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications. &lt;br /&gt;
&lt;br /&gt;
Please RSVP: OWASP.DFW.RSVP@denimgroup.com&lt;br /&gt;
&lt;br /&gt;
[[Dallas_OWASP_Flyer.pdf‎]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Dallas_OWASP_Flyer.pdf&amp;diff=54406</id>
		<title>File:Dallas OWASP Flyer.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Dallas_OWASP_Flyer.pdf&amp;diff=54406"/>
				<updated>2009-02-16T16:31:13Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Dallas&amp;diff=54042</id>
		<title>Dallas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Dallas&amp;diff=54042"/>
				<updated>2009-02-11T23:23:14Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Dallas|extra=The chapter leader is [mailto:jdsmith@owasp.org JD Smith ]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-dallas|emailarchives=http://lists.owasp.org/pipermail/owasp-dallas}}&lt;br /&gt;
&amp;lt;paypal&amp;gt;Dallas Chapter&amp;lt;/paypal&amp;gt;&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
Dallas OWASP Chapter: February 2009 Meeting &lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group &lt;br /&gt;
&lt;br /&gt;
Date: February 25, 2009 11:30am – 1:30pm &lt;br /&gt;
&lt;br /&gt;
Location: &lt;br /&gt;
UTD Campus - Galaxy Room of the Student Union, Room SU 2.602&lt;br /&gt;
Doors open at 11:00 am.&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities. This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio: &lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications. &lt;br /&gt;
&lt;br /&gt;
Please RSVP: OWASP.DFW.RSVP@denimgroup.com&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:VulnerabilityManagementInAnApplicaitonSecurityWorld_OWASPSanAntonio_20090129.pdf&amp;diff=52549</id>
		<title>File:VulnerabilityManagementInAnApplicaitonSecurityWorld OWASPSanAntonio 20090129.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:VulnerabilityManagementInAnApplicaitonSecurityWorld_OWASPSanAntonio_20090129.pdf&amp;diff=52549"/>
				<updated>2009-01-30T20:31:02Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52212</id>
		<title>Dallas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52212"/>
				<updated>2009-01-27T16:53:01Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Dallas|extra=The chapter leader is [mailto:jdsmith@owasp.org JD Smith ]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-dallas|emailarchives=http://lists.owasp.org/pipermail/owasp-dallas}}&lt;br /&gt;
&amp;lt;paypal&amp;gt;Dallas Chapter&amp;lt;/paypal&amp;gt;&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
Dallas OWASP Chapter: February 2009 Meeting &lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group &lt;br /&gt;
&lt;br /&gt;
Date: February 25, 2009 11:30am – 1:30pm &lt;br /&gt;
&lt;br /&gt;
Location: &lt;br /&gt;
UTD Campus - Galaxy Room of the Student Union, Room SU 2.602&lt;br /&gt;
Doors open at 11:00 am.&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities. This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio: &lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications. &lt;br /&gt;
&lt;br /&gt;
Please RSVP: Will be updated shortly.&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52211</id>
		<title>Dallas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52211"/>
				<updated>2009-01-27T16:52:26Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Dallas|extra=The chapter leader is [mailto:jdsmith@owasp.org JD Smith ]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-dallas|emailarchives=http://lists.owasp.org/pipermail/owasp-dallas}}&lt;br /&gt;
&amp;lt;paypal&amp;gt;Dallas Chapter&amp;lt;/paypal&amp;gt;&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
Dallas OWASP Chapter: February 2009 Meeting &lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group &lt;br /&gt;
Date: February 25, 2009 11:30am – 1:30pm &lt;br /&gt;
&lt;br /&gt;
Location: &lt;br /&gt;
UTD Campus - Galaxy Room of the Student Union, Room SU 2.602&lt;br /&gt;
Doors open at 11:00 am.&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities. This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio: &lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications. &lt;br /&gt;
&lt;br /&gt;
Please RSVP: Will be updated shortly.&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52210</id>
		<title>Dallas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52210"/>
				<updated>2009-01-27T16:46:29Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Dallas|extra=The chapter leader is [mailto:jdsmith@owasp.org JD Smith ]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-dallas|emailarchives=http://lists.owasp.org/pipermail/owasp-dallas}}&lt;br /&gt;
&amp;lt;paypal&amp;gt;Dallas Chapter&amp;lt;/paypal&amp;gt;&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
Dallas OWASP Chapter: February 2009 Meeting &lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group Date: February 25, 2009 11:30am – 1:30pm &lt;br /&gt;
&lt;br /&gt;
Location: &lt;br /&gt;
UTD Campus - Galaxy Room of the Student Union, Room SU 2.602&lt;br /&gt;
Doors open at 11:00 am.&lt;br /&gt;
&lt;br /&gt;
Abstract:Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities. This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio: &lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications. &lt;br /&gt;
&lt;br /&gt;
Please RSVP: Will be updated shortly.&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52209</id>
		<title>Dallas</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Dallas&amp;diff=52209"/>
				<updated>2009-01-27T16:32:33Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Dallas|extra=The chapter leader is [mailto:jdsmith@owasp.org JD Smith ]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-dallas|emailarchives=http://lists.owasp.org/pipermail/owasp-dallas}}&lt;br /&gt;
&amp;lt;paypal&amp;gt;Dallas Chapter&amp;lt;/paypal&amp;gt;&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
Dallas OWASP Chapter: February 2009 Meeting &lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot; &lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group Date: February 25, 2009 11:30am – 1:30pm &lt;br /&gt;
&lt;br /&gt;
Location: &lt;br /&gt;
UTD Campus - Galaxy Room of the Student Union, Room SU 2.602&lt;br /&gt;
Doors open at 11:00 am.&lt;br /&gt;
&lt;br /&gt;
Abstract:Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk. Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules. In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities. This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams. Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio: &lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications. &lt;br /&gt;
&lt;br /&gt;
Please RSVP:&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=52202</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=52202"/>
				<updated>2009-01-27T14:37:52Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: January 2009 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Vulnerability Management in an Application Security World.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Cornell, Principal, Denim Group&lt;br /&gt;
Date: January 29, 2009 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:Identifying application-level vulnerabilities via penetration tests and code reviews is only the first step in actually addressing the underlying risk.  Managing vulnerabilities for applications is more challenging than dealing with traditional infrastructure-level vulnerabilities because they typically require the coordination of security teams with application development teams and require security managers to secure time from developers during already-cramped development and release schedules.  In addition, fixes require changes to custom application code and application-specific business logic rather than the patches and configuration changes that are often sufficient to address infrastructure-level vulnerabilities.&lt;br /&gt;
This presentation details many of the pitfalls organizations encounter while trying to manage application-level vulnerabilities as well as outlines strategies security teams can use for communicating with development teams.  Similarities and differences between security teams’ practice of vulnerability management and development teams’ practice of defect management will be addressed in order to facilitate healthy communication between these groups.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Dan Cornell has over ten years of experience architecting, developing and securing web-based software systems. As a Principal of Denim Group, he leads the organization’s technology team overseeing methodology development and project execution for Denim Group’s customers. He also heads the Denim Group application security research team, investigating the application of secure coding and development techniques to the improvement of web based software development methodologies. He is also the primary author of sprajax, Denim Group’s open source tool for assessing the security of AJAX-enabled web applications.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio October 2008 meeting available online here:&lt;br /&gt;
http://www.owasp.org/index.php/San_Antonio&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=46406</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=46406"/>
				<updated>2008-11-14T14:46:34Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: November 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Who do you want to mash with? Trust infrastructures for Internet mashups.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Presenter: Ravi Ganesan,Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA &lt;br /&gt;
Date: November 17,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:This talk is in two parts:&lt;br /&gt;
&lt;br /&gt;
Part 1: The University of Texas at San Antonio is announcing a new technology incubator focused on commercializing security and privacy technologies. Highlights about the incubator and how to submit a proposal will be described.&lt;br /&gt;
 &lt;br /&gt;
Part 2: Mashups are emerging as a very important web application architecture paradigm. Developers (or even the users themselves) can assemble  a uber app that  mashes data and code from myriad sources. This talk will first explore the emerging world of mashups and highlight the security problems that are raised, and motivate the need for a mashup trust infrastructure. It will then describe MashSSL a technology that can be used to solve several of the security problems of mashups.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Ravi Ganesan is Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA where he heads up the ICS Incubator.  His prior experience spans: running large complex IT operations as Vice President - Distributed Operations at Verizon Communications, leading the design, development and operations of leading edge payment systems as Vice Chair and CTO of CheckFree Corporation, and founding and running a successful start up in the security space during his tenure as Chief Executive Officer of TriCipher, Inc. He also has several publications and patents. Ravi has a Ph.D. in Computer Science from The Johns Hopkins University, Baltimore, MD, USA. You can learn more than you probably want to know about Ravi at www.findravi.com. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio October 2008 meeting available online here:&lt;br /&gt;
http://www.owasp.org/index.php/San_Antonio&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Ensuring_System_Security_Using_Data_Flow_Analysis.pdf&amp;diff=46215</id>
		<title>File:Ensuring System Security Using Data Flow Analysis.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Ensuring_System_Security_Using_Data_Flow_Analysis.pdf&amp;diff=46215"/>
				<updated>2008-11-10T16:08:37Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: San Antonio OWASP Meeting.
Presented by Jeremy Price, Southwest Research Institute&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;San Antonio OWASP Meeting.&lt;br /&gt;
Presented by Jeremy Price, Southwest Research Institute&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45840</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45840"/>
				<updated>2008-11-04T23:25:10Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: November 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Who do you want to mash with? Trust infrastructures for Internet mashups.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Presenter: Ravi Ganesan,Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA &lt;br /&gt;
Date: November 17,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:This talk is in two parts:&lt;br /&gt;
&lt;br /&gt;
Part 1: The University of Texas at San Antonio is announcing a new technology incubator focused on commercializing security and privacy technologies. Highlights about the incubator and how to submit a proposal will be described.&lt;br /&gt;
 &lt;br /&gt;
Part 2: Mashups are emerging as a very important web application architecture paradigm. Developers (or even the users themselves) can assemble  a uber app that  mashes data and code from myriad sources. This talk will first explore the emerging world of mashups and highlight the security problems that are raised, and motivate the need for a mashup trust infrastructure. It will then describe MashSSL a technology that can be used to solve several of the security problems of mashups.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Ravi Ganesan is Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA where he heads up the ICS Incubator.  His prior experience spans: running large complex IT operations as Vice President - Distributed Operations at Verizon Communications, leading the design, development and operations of leading edge payment systems as Vice Chair and CTO of CheckFree Corporation, and founding and running a successful start up in the security space during his tenure as Chief Executive Officer of TriCipher, Inc. He also has several publications and patents. Ravi has a Ph.D. in Computer Science from The Johns Hopkins University, Baltimore, MD, USA. You can learn more than you probably want to know about Ravi at www.findravi.com. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45838</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45838"/>
				<updated>2008-11-04T23:11:01Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: November 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Who do you want to mash with? Trust infrastructures for Internet mashups.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Presenter: Ravi Ganesan,Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA &lt;br /&gt;
Date: November 17,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:This talk is in two parts:&lt;br /&gt;
&lt;br /&gt;
Part 1: The University of Texas at San Antonio is announcing a new technology incubator focused on commercializing security and privacy technologies. Highlights about the incubator and how to submit a proposal will be described.&lt;br /&gt;
 &lt;br /&gt;
Part 2: Mashups are emerging as a very important web application architecture paradigm. Developers (or even the user themselves) can assemble  a uber app that  mashes data and code from myriad sources. This talk will first explore the emerging world of mashups and highlight the security problems that are raised, and motivate the need for a mashup trust infrastructure. It will then describe MashSSL a technology that can be used to solve several of the security problems of mashups.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Ravi Ganesan is Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA where he heads up the ICS Incubator.  His prior experience spans: running large complex IT operations as Vice President - Distributed Operations at Verizon Communications, leading the design, development and operations of leading edge payment systems as Vice Chair and CTO of CheckFree Corporation, and founding and running a successful start up in the security space during his tenure as Chief Executive Officer of TriCipher, Inc. He also has several publications and patents. Ravi has a Ph.D. in Computer Science from The Johns Hopkins University, Baltimore, MD, USA. You can learn more than you probably want to know about Ravi at www.findravi.com. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45810</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45810"/>
				<updated>2008-11-04T19:47:53Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: November 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Who do you want to mash with? Trust infrastructures for Internet mashups.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Presenter: Ravi Ganesan,Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA &lt;br /&gt;
Date: November 17,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:This talk is in two parts:&lt;br /&gt;
&lt;br /&gt;
Part 1: The University of Texas at San Antonio is announcing a new technology incubator focussed on commercializing security and privacy technologies. Highlights about the incubator and how to submit a proposal will be described.&lt;br /&gt;
 &lt;br /&gt;
Part 2: Mashups are emerging as a very important web application architecture paradigm. Developers (or even the user themselves) can assemble  a uber app that  mashes data and code from myriad sources. This talk will first explore the emerging world of mashups and highlight the security problems that are raised, and motivate the need for a mashup trust infrastructure. It will then describe MashSSL a technology that can be used to solve several of the security problems of mashups.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Ravi Ganesan is Research Professor and Director of Commercialization at the Institute of Cyber Security at UTSA where he heads up the ICS Incubator.  His prior experience spans: running large complex IT operations as Vice President - Distributed Operations at Verizon Communications, leading the design, development and operations of leading edge payment systems as Vice Chair and CTO of CheckFree Corporation, and founding and running a successful start up in the security space during his tenure as Chief Executive Officer of TriCipher, Inc. He also has several publications and patents. Ravi has a Ph.D. in Computer Science from The Johns Hopkins University, Baltimore, MD, USA. You can learn more than you probably want to know about Ravi at www.findravi.com. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45808</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=45808"/>
				<updated>2008-11-04T19:45:30Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: November 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: &amp;quot;Who do you want to mash with? Trust infrastructures for Internet mashups.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Presenter: Ravi Ganesan,Reseach Professor and Director of Commercialization at the Institute of Cyber Security at UTSA &lt;br /&gt;
Date: November 17,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:This talk is in two parts:&lt;br /&gt;
&lt;br /&gt;
Part 1: The University of Texas at San Antonio is announcing a new technology incubator focussed on commercializing security and privacy technologies. Highlights about the incubator and how to submit a proposal will be described.&lt;br /&gt;
 &lt;br /&gt;
Part 2: Mashups are emerging as a very important web application architecture paradigm. Developers (or even the user themselves) can assemble  a uber app that  mashes data and code from myriad sources. This talk will first explore the emerging world of mashups and highlight the security problems that are raised, and motivate the need for a mashup trust infrastructure. It will then describe MashSSL a technology that can be used to solve several of the security problems of mashups.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Ravi Ganesan is Reseach Professor and Director of Commercialization at the Institute of Cyber Security at UTSA where he heads up the ICS Incubator.  His prior experience spans: running large complex IT operations as Vice President - Distributed Operations at Verizon Communications, leading the design, development and operations of leading edge payment systems as Vice Chair and CTO of CheckFree Corporation, and founding and running a successful start up in the security space during his tenure as Chief Executive Officer of TriCipher, Inc. He also has several publications and patents. Ravi has a Ph.D. in Computer Science from The Johns Hopkins University, Baltimore, MD, USA. You can learn more than you probably want to know about Ravi at www.findravi.com. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=42484</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=42484"/>
				<updated>2008-10-07T16:23:53Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]&lt;br /&gt;
&amp;lt;paypal&amp;gt;San Antonio&amp;lt;/paypal&amp;gt;&lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: October 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: Ensuring System Security Using Data Flow Analysis&lt;br /&gt;
&lt;br /&gt;
Presenter: Jeremy Price, Senior Research Engineer at Southwest Research Institute (SwRI)&lt;br /&gt;
&lt;br /&gt;
Date: October 22,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Ensuring computer system security using user defined policies is a difficult problem.  One approach that is currently being researched is the application of system-level data flow analysis to ensure malicious code cannot infiltrate the system.  &lt;br /&gt;
&lt;br /&gt;
The data flow analysis involved with ensuring system security needs two levels of granularity: inter-process data flow analysis and intra-process data flow analysis.  The University of Texas at Austin Department of Computer Science has created a Dynamic Data Flow Analysis (DDFA) tool that implements intra-process data flow analysis.  Purdue University has created a Process Coloring (PC) system that implements the inter-process data flow analysis.  Southwest Research Institute is working with both universities to integrate the PC and DDFA technologies to implement the system level data flow analysis solution.  This talk will focus on technical details of the two different technologies and will detail example security scenarios that can be solved using these technologies.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Jeremy Price is a Senior Research Engineer at Southwest Research Institute (SwRI).  During his nine year tenure at SwRI, Mr. Price has worked on projects as varied as embedded systems, video compression, network data acquisition, and software defined radios.  Most recently, Mr. Price has been leading a research effort funded by the Intelligence Advanced Research Projects Activity (IARPA) that focuses on system-level data flow analysis for the purpose of securing computer systems.  Mr. Price's real love in the realm of computer engineering is getting his hands dirty working with the digital bits at the embedded system level.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=42132</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=42132"/>
				<updated>2008-10-06T15:05:52Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: October 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: Ensuring System Security Using Data Flow Analysis&lt;br /&gt;
&lt;br /&gt;
Presenter: Price, Senior Research Engineer at Southwest Research Institute (SwRI)&lt;br /&gt;
&lt;br /&gt;
Date: October 22,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Ensuring computer system security using user defined policies is a difficult problem.  One approach that is currently being researched is the application of system-level data flow analysis to ensure malicious code cannot infiltrate the system.  &lt;br /&gt;
&lt;br /&gt;
The data flow analysis involved with ensuring system security needs two levels of granularity: inter-process data flow analysis and intra-process data flow analysis.  The University of Texas at Austin Department of Computer Science has created a Dynamic Data Flow Analysis (DDFA) tool that implements intra-process data flow analysis.  Purdue University has created a Process Coloring (PC) system that implements the inter-process data flow analysis.  Southwest Research Institute is working with both universities to integrate the PC and DDFA technologies to implement the system level data flow analysis solution.  This talk will focus on technical details of the two different technologies and will detail example security scenarios that can be solved using these technologies.&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Jeremy Price is a Senior Research Engineer at Southwest Research Institute (SwRI).  During his nine year tenure at SwRI, Mr. Price has worked on projects as varied as embedded systems, video compression, network data acquisition, and software defined radios.  Most recently, Mr. Price has been leading a research effort funded by the Intelligence Advanced Research Projects Activity (IARPA) that focuses on system-level data flow analysis for the purpose of securing computer systems.  Mr. Price's real love in the realm of computer engineering is getting his hands dirty working with the digital bits at the embedded system level.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Django_%26_The_OWASP_Top_10.pptx&amp;diff=37600</id>
		<title>File:Django &amp; The OWASP Top 10.pptx</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Django_%26_The_OWASP_Top_10.pptx&amp;diff=37600"/>
				<updated>2008-08-29T16:11:23Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=36779</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=36779"/>
				<updated>2008-08-21T13:38:41Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: August 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: Django and the OWASP Top 10&lt;br /&gt;
&lt;br /&gt;
Presenter: Jarret Raim, Team Consultant at Denim Group, LTD.&lt;br /&gt;
&lt;br /&gt;
Date: August 27,2008 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Django is a web application framework for Python that is 'for perfectionists with deadlines'. The presentation this week will start with a short introduction to Django, its goals, architecture and theory. It will then move on to the explicit and implicit security features of the framework and how they relate to the OWASP Top 10. No prior knowledge of Django or Python is required.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Jarret Raim attained his Batchelor's degree in Computer Science from Trinity University here in San Antonio and continued on to get his Master's degree from Lehigh University in Pennsylvania. In addition to doing research in biometric security and honeypot systems, he has worked at Southwest Research Institute on a multiyear enterprise medical application for the government and is now a Team Consultant at Denim Group.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;br /&gt;
&lt;br /&gt;
[[Category:Texas]]&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Security_and_Privacy_in_an_Online_Vehicle_Infrastructure.ppt&amp;diff=34728</id>
		<title>File:Security and Privacy in an Online Vehicle Infrastructure.ppt</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Security_and_Privacy_in_an_Online_Vehicle_Infrastructure.ppt&amp;diff=34728"/>
				<updated>2008-07-25T21:17:25Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: uploaded a new version of &amp;quot;Image:Security and Privacy in an Online Vehicle Infrastructure.ppt&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Security_and_Privacy_in_an_Online_Vehicle_Infrastructure.ppt&amp;diff=34727</id>
		<title>File:Security and Privacy in an Online Vehicle Infrastructure.ppt</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Security_and_Privacy_in_an_Online_Vehicle_Infrastructure.ppt&amp;diff=34727"/>
				<updated>2008-07-25T21:15:31Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=34144</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=34144"/>
				<updated>2008-07-15T20:58:18Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: July 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: Security and Privacy in an Online Vehicle Infrastructure&lt;br /&gt;
&lt;br /&gt;
Presenter: Erhan J. Kartaltepe, MCPD, Lead Consultant at Denim Group, Ltd.&lt;br /&gt;
&lt;br /&gt;
Date: July 23rd, 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Technologies such as GPS, high-speed wireless access, and the federally-funded Vehicle Infrastructure Integration (VII) initiative are used and accepted by corporations and government entities. As businesses and public sector agencies provide more of these web-accessible services to individual consumers, new and familiar security pitfalls abound. This presentation covers current security threats and defenses, as well as recent applied research in securing these multimillion dollar infrastructures. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Erhan J. Kartaltepe is a lead consultant at the Denim Group with over eight years experience in secure software engineering, project management, and technical leadership. He has worked on mobile ad hoc network (MANET) and email security research while at Denim Group, Southwest Research Institute, and the University of Texas at San Antonio.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=33895</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=33895"/>
				<updated>2008-07-11T20:52:14Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: June 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: Security and Privacy in an Online Vehicle Infrastructure&lt;br /&gt;
&lt;br /&gt;
Presenter: Erhan J. Kartaltepe, MCPD, Lead Consultant at Denim Group, Ltd.&lt;br /&gt;
&lt;br /&gt;
Date: July 23rd, 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Technologies such as GPS, high-speed wireless access, and the federally-funded Vehicle Infrastructure Integration (VII) initiative are used and accepted by corporations and government entities. As businesses and public sector agencies provide more of these web-accessible services to individual consumers, new and familiar security pitfalls abound. This presentation covers current security threats and defenses, as well as recent applied research in securing these multimillion dollar infrastructures. &lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Erhan J. Kartaltepe is a lead consultant at the Denim Group with over eight years experience in secure software engineering, project management, and technical leadership. He has worked on mobile ad hoc network (MANET) and email security research while at Denim Group, Southwest Research Institute, and the University of Texas at San Antonio.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:TopTenStrategiestoSecureYourCode_Howard.pdf&amp;diff=32448</id>
		<title>File:TopTenStrategiestoSecureYourCode Howard.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:TopTenStrategiestoSecureYourCode_Howard.pdf&amp;diff=32448"/>
				<updated>2008-06-26T13:59:18Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=31898</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=31898"/>
				<updated>2008-06-17T19:29:43Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: June 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: Top Ten Strategies to Secure Your Code&lt;br /&gt;
&lt;br /&gt;
Presenter: Michael Howard, Principal Security Program Manager at Microsoft Corp.&lt;br /&gt;
&lt;br /&gt;
Date: June 25th, 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Many people think security knowledge is out of their grasp and that such expertise belongs only to the security high-priesthood. First, there is no such thing as a &amp;quot;security high-priesthood&amp;quot;; all software developers should have some security expertise. Second, regardless of the programming languages you use, or the operating systems you deploy on, there are some very simple rules you can follow that will help secure your applications.&lt;br /&gt;
&lt;br /&gt;
Come listen to Michael's thoughts on how to secure code based on his work with thousands of software developers inside and outside Microsoft. There are, of course, plenty of security war stories!&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Michael is a software security expert, author of several books and many papers and articles, and a frequent speaker at security-related conferences. He was notably involved in Microsoft's development and implementation of what was termed the &amp;quot;Security Development Lifecycle&amp;quot;.&lt;br /&gt;
Sodas and snacks will be provided.  Feel free to bring a brown-bag lunch.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:A_Sample_PHP_Implementation_of_Input_Validation.pdf&amp;diff=30545</id>
		<title>File:A Sample PHP Implementation of Input Validation.pdf</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:A_Sample_PHP_Implementation_of_Input_Validation.pdf&amp;diff=30545"/>
				<updated>2008-06-05T19:30:22Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=29031</id>
		<title>San Antonio</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=San_Antonio&amp;diff=29031"/>
				<updated>2008-05-07T15:51:24Z</updated>
		
		<summary type="html">&lt;p&gt;Marliehuizar: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=San Antonio|extra=The chapter leader is [mailto:dan@denimgroup.com Dan Cornell]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-sanantonio|emailarchives=http://lists.owasp.org/pipermail/owasp-sanantonio}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
San Antonio OWASP Chapter: May 2008 Meeting&lt;br /&gt;
&lt;br /&gt;
Topic: A Sample PHP Implementation of Input Validation&lt;br /&gt;
&lt;br /&gt;
Presenter: Dan Ross&lt;br /&gt;
&lt;br /&gt;
Date: May 28th, 11:30am – 1:00pm&lt;br /&gt;
&lt;br /&gt;
Location:&lt;br /&gt;
&lt;br /&gt;
San Antonio Technology Center (Web Room)&lt;br /&gt;
3463 Magic Drive&lt;br /&gt;
San Antonio, TX 78229&lt;br /&gt;
http://maps.google.com/maps?f=q&amp;amp;hl=en&amp;amp;q=3463+Magic+Drive,+San+Antonio,+TX+78229&lt;br /&gt;
&lt;br /&gt;
Abstract:&lt;br /&gt;
&lt;br /&gt;
Over half of the OWASP Top Ten are caused by improper input validation.  Failure to perform this crucial step is equivalent to malpractice. A sample implementation of input validation is presented using PHP.  In addition to being simple to use, these tools also make it difficult to programmers to forget to address this subject.&lt;br /&gt;
&lt;br /&gt;
Also discussed will be:&lt;br /&gt;
*  Tackling inherited programs which neglected input validation.&lt;br /&gt;
*  How programs should respond to bad input.&lt;br /&gt;
*  Stinger, and other open-source tools for other platforms.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
Presenter Bio:&lt;br /&gt;
&lt;br /&gt;
Dan Ross has been VP Engineering for 19 years at PIC Business Systems, which provides integrated business software for the several industries. He has led the design, development, and maintenance of many commercial web applications and programs. He has a BS in Industrial Engineering from St. Mary's University in San Antonio.&lt;br /&gt;
&lt;br /&gt;
Sodas and snacks will be provided.  Feel free to bring a brown-bag lunch.&lt;br /&gt;
&lt;br /&gt;
Please RSVP: E-mail owasprsvp@denimgroup.com  or call (210) 572-4400.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
'''Previous News'''&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2007 meeting available online here:&lt;br /&gt;
[[Image:fortify-bjenkins-AppSecStrategy-20070906.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio March 2007 meeting will be available online shortly&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_09_AgileAndSecure.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio August 2006 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_2006_08_SingleSignOn.ppt]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio June 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_06_Crypto_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio May 2006 meeting available online here: [[Image:OWASPSanAntonio_2006_05_ForcefulBrowsing_Content.pdf]].&lt;br /&gt;
&lt;br /&gt;
The slide deck from OWASP San Antonio September 2004 meeting available online here:&lt;br /&gt;
[[Image:OWASPSanAntonio_20040922.pdf]].&lt;/div&gt;</summary>
		<author><name>Marliehuizar</name></author>	</entry>

	</feed>