<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Msaario</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Msaario"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Msaario"/>
		<updated>2026-04-26T15:05:59Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=153127</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=153127"/>
				<updated>2013-06-07T12:57:02Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP EUTour2013: June 17th 2013 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:petteri.arola@owasp.org Petteri Arola] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}} &lt;br /&gt;
&lt;br /&gt;
==== Local News  ====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt; &lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki. &lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader. &lt;br /&gt;
&lt;br /&gt;
==== Suomalaista sovellusturva-asiaa  ====&lt;br /&gt;
&lt;br /&gt;
[[Oppilaitoksille|Tietoa oppilaitoksille (Information for academic institutions)]] &lt;br /&gt;
&lt;br /&gt;
[[Verkkomaksut|Ohjeita turvallisen verkkomaksuintegraation toteuttamiseen]] &lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings  ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks: &lt;br /&gt;
&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP EUTour2013: June 17th 2013  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: HTC Keilaniemi, Keilaranta 15''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 16:00-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''16:00 Registration &amp;amp; coffee''' &lt;br /&gt;
&lt;br /&gt;
'''16:15 Welcome /Petteri Arola, OWASP'''&lt;br /&gt;
&lt;br /&gt;
'''16:30 Word from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''16:45 Nokia responsible disclosure program'''&lt;br /&gt;
&lt;br /&gt;
Nokia has launched a responsible disclosure program recently. In this presentation we'll go through experiences starting and running such a program as a part of enterprise application security program.&lt;br /&gt;
&lt;br /&gt;
'''17:30 Social engineering /Gavin Ewan&amp;quot;'''&lt;br /&gt;
&lt;br /&gt;
'''19:00 Rounding up and discussion continues over food &amp;amp; drinks at same location'''&lt;br /&gt;
&lt;br /&gt;
Please register at [http://www.regonline.com/owaspeutourfinland Regonline]&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #21: April 24 2013  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: KPMG, Yrjönkatu 23 B, 6. floor''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /OWASP''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponso /Mika Laaksonen, KPMG''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 OWASP project news /Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Newsflash of new and rebooted OWASP projects.&lt;br /&gt;
&lt;br /&gt;
'''18:45 Utilizing VAHTI software development guide (VAHTI-sovelluskehitysohje) /Antti Alestalo, KPMG'''&lt;br /&gt;
&lt;br /&gt;
VAHTI software development guide was published January 2013. Antti will talk about how to best utilize this new guide. Link to the guide: http://www.vm.fi/vm/fi/04_julkaisut_ja_asiakirjat/01_julkaisut/05_valtionhallinnon_tietoturvallisuus/20130207Sovell/VAHTI_1_Sovelluskehityksen_tietoturvaohje_NETTI.pdf&lt;br /&gt;
&lt;br /&gt;
'''19:15 Database self-defence /Mika Aronen, KPMG (in place of &amp;quot;HTML5 &amp;amp; security /SC5&amp;quot;'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and discussion continues over food &amp;amp; drinks at same location'''&lt;br /&gt;
&lt;br /&gt;
Please register at [https://www.eventbrite.com/event/6240751255 Eventbrite]&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #20: December 4 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia House, Keilalahdentie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:00 Socializing time @ Nokia Lounge – Meet people &amp;amp; get to know your peer while having the opportunity to see Nokia product demos''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /OWASP + HelsinkiJS''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''18:20 Securing JavaScript based web apps /Erlend Oftedal''' &lt;br /&gt;
&lt;br /&gt;
Single page web applications move much of the application logic to the client side. We now also see applications using JavaScript on the server side. How do we handle such applications from a security perspective? What problems are introduced and how do we handle them?&lt;br /&gt;
&lt;br /&gt;
'''19:05 RESTful Security'''&lt;br /&gt;
&lt;br /&gt;
Many applications rely on web services and ws-security for integration. But for more lightweight services with simpler protocols, REST is quickly gaining popularity. How do we secure REST services? What problems do we need to be aware of?&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and free debate continues at nearby location'''&lt;br /&gt;
&lt;br /&gt;
CLOSED: Please register at [http://www.eventbrite.com/event/4856878053 Eventbrite]&lt;br /&gt;
&lt;br /&gt;
Please use the NORTH entrance when entering the Nokia campus&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #19: October 16 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Fujitsu, Valimotie 16, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponsor /Fujitsu''' &lt;br /&gt;
&lt;br /&gt;
'''18:25 Hybrid mobile application security and HTML5 with a focus on getUserMedia /Mikko Saario, Nokia''' &lt;br /&gt;
&lt;br /&gt;
Both the mobile scene via “hybrid” apps and the so-called traditional web are evolving into the same direction – are the threats doing the same? Using mainly Windows Phone 7 (and some Qt) examples and demos, Mikko will take a look at the security aspects in mobile hybrid apps. The HTML5 demo will concentrate on some newly mainstreamed technologies such as getUserMedia.&lt;br /&gt;
&lt;br /&gt;
'''19:10 Introduction to Oauth 2.0 + demo /Teemu Kääriäinen, Nixu'''&lt;br /&gt;
&lt;br /&gt;
Teemu gives an introduction about Oauth 2.0 and takes a closer look at security aspects, implementation guidelines and compares Twitter, Facebook and Google implementations.&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and free debate continues at nearby location'''&lt;br /&gt;
&lt;br /&gt;
'''Please register in Eventbrite http://www.eventbrite.com/event/4462882602''' &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #18: June 26 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Kela, Nordenskjölkinkatu 12, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor /Kela''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Helsinki Ruby Brigade intro''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Ruby on Rails security - why could it fail'''&lt;br /&gt;
&lt;br /&gt;
'''19:00 Panel discussion'''&lt;br /&gt;
&lt;br /&gt;
'''19:45 Wrap-up'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 Discussion continues in a nearby pub Hadanka'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with petteri.arola(at)owasp.org''' &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #17: March 21 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Marttakeskus, Malminrinne 1 B, 7. krs, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Coffee''' &lt;br /&gt;
&lt;br /&gt;
'''17:40 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:50 Web Application Access Control Design Excellence / Jim Manico, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Download the presentation from our file page: [[image:Developer_Top_Ten_Core_Controls_v4.1.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''19:30 Meeting ends and discussion continues over buffet and refreshments and there's a possibility to bath in sauna too''' &lt;br /&gt;
&lt;br /&gt;
'''23:00 Event ends'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with enroll(at)nixu.com''' &lt;br /&gt;
&lt;br /&gt;
== Tietoturvapäivä Turku: February 7 2012  ==&lt;br /&gt;
&lt;br /&gt;
''' Sovellusturvallisuus / Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Download the presentation from our file page: [[image:OWASP_esitys_tietoturvapäivä_Turku_20120207.pdf]]&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #16: October 18 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Hall TU2, Tuas house, Otaniementie 17, 02150, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:00 Coffee and lock picking''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP - What is it?''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Introduction to OWASP projects&amp;lt;br&amp;gt;- OWASP Top Ten, ASVS&amp;lt;br&amp;gt;&amp;lt;span class=&amp;quot;Apple-tab-span&amp;quot;&amp;gt;	&amp;lt;/span&amp;gt;- Testing guide&amp;lt;br&amp;gt;- How OWASP relates to academic world''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Download presentation from our file-page: [[Image:OWASP_presentation_for_Aalto.pdf]] &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:45 Break''' &lt;br /&gt;
&lt;br /&gt;
'''19:00 Hacking demonstrations'''&lt;br /&gt;
&lt;br /&gt;
'''19:30 - Discussion continues in a nearby public house''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with petteri.arola(at)owasp.org''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to Turku AMK students: September 12th 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Introduction to Application security and OWASP / Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
'''OWASP top 10 and hacking demos / Pekka Sillanpää, OWASP''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #15: June 15 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Itämerenkatu 11 - 13, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda ''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome, Petteri Arola, Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nokia''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 HTML5 Security, Ville Säävuori, Syneus''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 Break''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Mobile Application Security, Ari Kesäniemi and Juhani Mäkelä, Nixu''' &amp;lt;br&amp;gt; [[Image:Mobile-threat-analysis-short-presentation owasp.pdf]] &amp;lt;br&amp;gt; [[Image:Why-privacy-matters.pdf]] &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;'''19.30 - Discussion continues in a nearby public house or terrace if it's sunny''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with mikko.saario(at)nokia.com''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #14: February 22 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu Oy, Keilaranta 15, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nixu Oy''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 OpenSAMM, Pravir Chandra /Fortify''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 Break''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Threat modeling, Pravir Chandra /Fortify''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 - Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with enroll(at)nixu.com''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Download OpenSAMM presentation from opensamm.org [http://www.opensamm.org/downloads/resources/OpenSAMM-1.0.ppt] &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #13: June 8 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: KPMG, Forum, Yrjönkatu 23 B 6th floor, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:05 Word from our sponsor KPMG ''' &lt;br /&gt;
&lt;br /&gt;
'''17:15 Agile secure software development, Antti Vähä-Sipilä / Nokia Oyj''' http://www.owasp.org/images/c/c6/OWASP_AppSec_Research_2010_Agile_Prod_Sec_Mgmt_by_Vaha-Sipila.pdf &lt;br /&gt;
&lt;br /&gt;
'''18:00 ASVS (OWASP Application Security Verification Standard), Pekka Sillanpää / Nixu Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:45 ESAPI (OWASP Enterprise Security API) demo, Anssi Porttikivi / KPMG''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:ESAPI for OWASP.pdf]] &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 - Discussion continues at some nearby establishment''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with anssi.porttikivi(at)kpmg.fi''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! Locksport: April 20 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-20:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nsense Oy''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Introduction to Locksport (presentation in Finnish)''' &lt;br /&gt;
&lt;br /&gt;
'''19:00 - Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi ''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #12: March 30 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Helsingin Energia, Sähkötalo, Runeberginkatu 1, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:OWASP -12 Helsinki chapter meeting.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Helsingin Energia ''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 3 different views on information security and social media applications''' &lt;br /&gt;
&lt;br /&gt;
- information security in social media API’s, Antti Nuopponen/Nixu Oy &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Security of social media apis v1.pdf]] &lt;br /&gt;
&lt;br /&gt;
- Facebook apps, Markus Törnqvist/Fad Consulting &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Mjt owasp 2010.pdf]] &lt;br /&gt;
&lt;br /&gt;
- Payment API’s, Tuomas Toivonen/Scred &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Owasp-payment-apis.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''20.00 - Discussion continues at nearby establishment Bruuveri''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with antti##owasp.org''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automated Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Ari kesaniemi nixu manual-vs-automatic-analysis.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''19.00- Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Security in integration and ESB-OWASP 20091020.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs''' &lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava''' &lt;br /&gt;
&lt;br /&gt;
'''20:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy Helsinki Vltava watering hole at own risk &amp;amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners''' &lt;br /&gt;
&lt;br /&gt;
*Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki ''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00''' &lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan. &lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin. &lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html &lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle. &lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp;amp; sisäänpääsymaksunsa. &lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor''' &lt;br /&gt;
&lt;br /&gt;
*What OWASP is &lt;br /&gt;
*Examples of useful Tools and Documents &lt;br /&gt;
*OWASP in Finland&lt;br /&gt;
&lt;br /&gt;
Presentation: [[Image:OWASP Startups 20090115 Henri.pdf]] &lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP) &lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred''' &lt;br /&gt;
&lt;br /&gt;
*Henri Lindberg from Scred shares experiences and lessons learned &lt;br /&gt;
*How to make your web application more secure with minimal budget&lt;br /&gt;
&lt;br /&gt;
Presentation: [[Image:SDG Scred 090115.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:30 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode''' &lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code) &lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability''' &lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
'''PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen ''' &lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware''' &lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min &lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Note! Be in time, because the reception closes at 18.''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Time: 16.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen ''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''16.30 Vulnerability coordination. Juhani Eronen''' &lt;br /&gt;
&lt;br /&gt;
*CERT-FI as a vulnerability coordinator &lt;br /&gt;
*Coordination examples&lt;br /&gt;
&lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub''' &lt;br /&gt;
&lt;br /&gt;
*If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008  ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending. &lt;br /&gt;
&lt;br /&gt;
You can download the presentation here'''https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf''' &lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;amp;day=20080514#w2008051411524012715 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00 Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp;amp; Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''17.30 - 20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Hope to see as many of you as possible! &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30''' &lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break. &lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security. &lt;br /&gt;
&lt;br /&gt;
'''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Hope to see as many of you as possible! &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp;amp; RWSUG Seminar Tuesday, January 29th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.''' '''Time: 11.15 - 19.00''' &lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385 &lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf &lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only &lt;br /&gt;
&lt;br /&gt;
*11.15 Ilmoittautuminen alkaa &lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
&lt;br /&gt;
KEYNOTE &lt;br /&gt;
&lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada &lt;br /&gt;
*13.30-13.45 Kahvitauko &lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft &lt;br /&gt;
*15.30-15.45 Tauko &lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT &lt;br /&gt;
*16.30-17.15 Jazz Update IBM &lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008  ==&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors. &amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter. &amp;lt;br&amp;gt; '''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only) &amp;lt;br&amp;gt;&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation. &lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;amp;day=20071003#w2007100315112711629 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate! &lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey''' &lt;br /&gt;
&lt;br /&gt;
*Commentary on how to build secure software &lt;br /&gt;
*Thoughts on the industry&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''WELCOME!''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007  ==&lt;br /&gt;
&lt;br /&gt;
'''Date: June 5th''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.''' &lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 Welcome &amp;amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.''' &lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered: &lt;br /&gt;
&lt;br /&gt;
*XML Security Gateways &lt;br /&gt;
*Message level threats and security countermeasures in Web services &lt;br /&gt;
*OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.''' &lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.) &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''20:45 Enter Bar 52...''' --&amp;amp;gt; Enjoy (sponsored) beverages. &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007  ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen! &lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18.30 Welcome. Mikko Saario, Chapter Leader.''' &lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.''' &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf &lt;br /&gt;
&lt;br /&gt;
- Technology &lt;br /&gt;
&lt;br /&gt;
- Blacklisting &amp;amp;amp; Whitelisting &lt;br /&gt;
&lt;br /&gt;
- mod_security features &lt;br /&gt;
&lt;br /&gt;
- Do's and Don'ts &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.''' &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf &lt;br /&gt;
&lt;br /&gt;
- WAF deployment and protection strategies &lt;br /&gt;
&lt;br /&gt;
- Detection of generic web layer attacks &lt;br /&gt;
&lt;br /&gt;
- Virtual patching &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp;amp; Young  ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18:30 Welcome. What is OWASP and why OWASP Helsinki?''' &lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)''' &lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues. &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.''' &lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow... &lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders  ====&lt;br /&gt;
&lt;br /&gt;
The chapter leader is [mailto:Petteri.arola@owasp.org Petteri Arola] &lt;br /&gt;
&lt;br /&gt;
The chapter board members are [mailto:antti.laulajainen@owasp.org Antti Laulajainen], [mailto:timo@owasp.org Timo Merilainen], [mailto:mikko.saario@owasp.org Mikko Saario], and [mailto:pekka.sillanpaa@owasp.org Pekka Sillanpaa]. The Deputy members are [mailto:henri.lindberg@owasp.org Henri Lindberg] and [mailto:anssi.porttikivi@owasp.org Anssi Porttikivi] __NOTOC__ &amp;lt;headertabs /&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:Finland]] [[Category:Europe]]&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=140597</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=140597"/>
				<updated>2012-12-03T07:55:42Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Chapter Meeting #20: December 4 2012 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:petteri.arola@owasp.org Petteri Arola] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}} &lt;br /&gt;
&lt;br /&gt;
==== Local News  ====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt; &lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki. &lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader. &lt;br /&gt;
&lt;br /&gt;
==== Suomalaista sovellusturva-asiaa  ====&lt;br /&gt;
&lt;br /&gt;
[[Oppilaitoksille|Tietoa oppilaitoksille (Information for academic institutions)]] &lt;br /&gt;
&lt;br /&gt;
[[Verkkomaksut|Ohjeita turvallisen verkkomaksuintegraation toteuttamiseen]] &lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings  ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks: &lt;br /&gt;
&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #20: December 4 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia House, Keilalahdentie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:00 Socializing time @ Nokia Lounge – Meet people &amp;amp; get to know your peer while having the opportunity to see Nokia product demos''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /OWASP + HelsinkiJS''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''18:20 Securing JavaScript based web apps /Erlend Oftedal''' &lt;br /&gt;
&lt;br /&gt;
Single page web applications move much of the application logic to the client side. We now also see applications using JavaScript on the server side. How do we handle such applications from a security perspective? What problems are introduced and how do we handle them?&lt;br /&gt;
&lt;br /&gt;
'''19:05 RESTful Security'''&lt;br /&gt;
&lt;br /&gt;
Many applications rely on web services and ws-security for integration. But for more lightweight services with simpler protocols, REST is quickly gaining popularity. How do we secure REST services? What problems do we need to be aware of?&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and free debate continues at nearby location'''&lt;br /&gt;
&lt;br /&gt;
CLOSED: Please register at [http://www.eventbrite.com/event/4856878053 Eventbrite]&lt;br /&gt;
&lt;br /&gt;
Please use the NORTH entrance when entering the Nokia campus&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #19: October 16 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Fujitsu, Valimotie 16, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponsor /Fujitsu''' &lt;br /&gt;
&lt;br /&gt;
'''18:25 Hybrid mobile application security and HTML5 with a focus on getUserMedia /Mikko Saario, Nokia''' &lt;br /&gt;
&lt;br /&gt;
Both the mobile scene via “hybrid” apps and the so-called traditional web are evolving into the same direction – are the threats doing the same? Using mainly Windows Phone 7 (and some Qt) examples and demos, Mikko will take a look at the security aspects in mobile hybrid apps. The HTML5 demo will concentrate on some newly mainstreamed technologies such as getUserMedia.&lt;br /&gt;
&lt;br /&gt;
'''19:10 Introduction to Oauth 2.0 + demo /Teemu Kääriäinen, Nixu'''&lt;br /&gt;
&lt;br /&gt;
Teemu gives an introduction about Oauth 2.0 and takes a closer look at security aspects, implementation guidelines and compares Twitter, Facebook and Google implementations.&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and free debate continues at nearby location'''&lt;br /&gt;
&lt;br /&gt;
'''Please register in Eventbrite http://www.eventbrite.com/event/4462882602''' &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #18: June 26 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Kela, Nordenskjölkinkatu 12, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor /Kela''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Helsinki Ruby Brigade intro''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Ruby on Rails security - why could it fail'''&lt;br /&gt;
&lt;br /&gt;
'''19:00 Panel discussion'''&lt;br /&gt;
&lt;br /&gt;
'''19:45 Wrap-up'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 Discussion continues in a nearby pub Hadanka'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with petteri.arola(at)owasp.org''' &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #17: March 21 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Marttakeskus, Malminrinne 1 B, 7. krs, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Coffee''' &lt;br /&gt;
&lt;br /&gt;
'''17:40 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:50 Web Application Access Control Design Excellence / Jim Manico, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Download the presentation from our file page: [[image:Developer_Top_Ten_Core_Controls_v4.1.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''19:30 Meeting ends and discussion continues over buffet and refreshments and there's a possibility to bath in sauna too''' &lt;br /&gt;
&lt;br /&gt;
'''23:00 Event ends'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with enroll(at)nixu.com''' &lt;br /&gt;
&lt;br /&gt;
== Tietoturvapäivä Turku: February 7 2012  ==&lt;br /&gt;
&lt;br /&gt;
''' Sovellusturvallisuus / Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Download the presentation from our file page: [[image:OWASP_esitys_tietoturvapäivä_Turku_20120207.pdf]]&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #16: October 18 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Hall TU2, Tuas house, Otaniementie 17, 02150, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:00 Coffee and lock picking''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP - What is it?''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Introduction to OWASP projects&amp;lt;br&amp;gt;- OWASP Top Ten, ASVS&amp;lt;br&amp;gt;&amp;lt;span class=&amp;quot;Apple-tab-span&amp;quot;&amp;gt;	&amp;lt;/span&amp;gt;- Testing guide&amp;lt;br&amp;gt;- How OWASP relates to academic world''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Download presentation from our file-page: [[Image:OWASP_presentation_for_Aalto.pdf]] &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:45 Break''' &lt;br /&gt;
&lt;br /&gt;
'''19:00 Hacking demonstrations'''&lt;br /&gt;
&lt;br /&gt;
'''19:30 - Discussion continues in a nearby public house''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with petteri.arola(at)owasp.org''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to Turku AMK students: September 12th 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Introduction to Application security and OWASP / Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
'''OWASP top 10 and hacking demos / Pekka Sillanpää, OWASP''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #15: June 15 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Itämerenkatu 11 - 13, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda ''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome, Petteri Arola, Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nokia''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 HTML5 Security, Ville Säävuori, Syneus''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 Break''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Mobile Application Security, Ari Kesäniemi and Juhani Mäkelä, Nixu''' &amp;lt;br&amp;gt; [[Image:Mobile-threat-analysis-short-presentation owasp.pdf]] &amp;lt;br&amp;gt; [[Image:Why-privacy-matters.pdf]] &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;'''19.30 - Discussion continues in a nearby public house or terrace if it's sunny''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with mikko.saario(at)nokia.com''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #14: February 22 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu Oy, Keilaranta 15, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nixu Oy''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 OpenSAMM, Pravir Chandra /Fortify''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 Break''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Threat modeling, Pravir Chandra /Fortify''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 - Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with enroll(at)nixu.com''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Download OpenSAMM presentation from opensamm.org [http://www.opensamm.org/downloads/resources/OpenSAMM-1.0.ppt] &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #13: June 8 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: KPMG, Forum, Yrjönkatu 23 B 6th floor, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:05 Word from our sponsor KPMG ''' &lt;br /&gt;
&lt;br /&gt;
'''17:15 Agile secure software development, Antti Vähä-Sipilä / Nokia Oyj''' http://www.owasp.org/images/c/c6/OWASP_AppSec_Research_2010_Agile_Prod_Sec_Mgmt_by_Vaha-Sipila.pdf &lt;br /&gt;
&lt;br /&gt;
'''18:00 ASVS (OWASP Application Security Verification Standard), Pekka Sillanpää / Nixu Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:45 ESAPI (OWASP Enterprise Security API) demo, Anssi Porttikivi / KPMG''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:ESAPI for OWASP.pdf]] &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 - Discussion continues at some nearby establishment''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with anssi.porttikivi(at)kpmg.fi''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! Locksport: April 20 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-20:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nsense Oy''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Introduction to Locksport (presentation in Finnish)''' &lt;br /&gt;
&lt;br /&gt;
'''19:00 - Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi ''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #12: March 30 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Helsingin Energia, Sähkötalo, Runeberginkatu 1, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:OWASP -12 Helsinki chapter meeting.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Helsingin Energia ''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 3 different views on information security and social media applications''' &lt;br /&gt;
&lt;br /&gt;
- information security in social media API’s, Antti Nuopponen/Nixu Oy &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Security of social media apis v1.pdf]] &lt;br /&gt;
&lt;br /&gt;
- Facebook apps, Markus Törnqvist/Fad Consulting &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Mjt owasp 2010.pdf]] &lt;br /&gt;
&lt;br /&gt;
- Payment API’s, Tuomas Toivonen/Scred &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Owasp-payment-apis.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''20.00 - Discussion continues at nearby establishment Bruuveri''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with antti##owasp.org''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automated Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Ari kesaniemi nixu manual-vs-automatic-analysis.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''19.00- Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Security in integration and ESB-OWASP 20091020.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs''' &lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava''' &lt;br /&gt;
&lt;br /&gt;
'''20:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy Helsinki Vltava watering hole at own risk &amp;amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners''' &lt;br /&gt;
&lt;br /&gt;
*Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki ''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00''' &lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan. &lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin. &lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html &lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle. &lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp;amp; sisäänpääsymaksunsa. &lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor''' &lt;br /&gt;
&lt;br /&gt;
*What OWASP is &lt;br /&gt;
*Examples of useful Tools and Documents &lt;br /&gt;
*OWASP in Finland&lt;br /&gt;
&lt;br /&gt;
Presentation: [[Image:OWASP Startups 20090115 Henri.pdf]] &lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP) &lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred''' &lt;br /&gt;
&lt;br /&gt;
*Henri Lindberg from Scred shares experiences and lessons learned &lt;br /&gt;
*How to make your web application more secure with minimal budget&lt;br /&gt;
&lt;br /&gt;
Presentation: [[Image:SDG Scred 090115.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:30 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode''' &lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code) &lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability''' &lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
'''PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen ''' &lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware''' &lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min &lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Note! Be in time, because the reception closes at 18.''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Time: 16.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen ''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''16.30 Vulnerability coordination. Juhani Eronen''' &lt;br /&gt;
&lt;br /&gt;
*CERT-FI as a vulnerability coordinator &lt;br /&gt;
*Coordination examples&lt;br /&gt;
&lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub''' &lt;br /&gt;
&lt;br /&gt;
*If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008  ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending. &lt;br /&gt;
&lt;br /&gt;
You can download the presentation here'''https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf''' &lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;amp;day=20080514#w2008051411524012715 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00 Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp;amp; Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''17.30 - 20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Hope to see as many of you as possible! &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30''' &lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break. &lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security. &lt;br /&gt;
&lt;br /&gt;
'''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Hope to see as many of you as possible! &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp;amp; RWSUG Seminar Tuesday, January 29th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.''' '''Time: 11.15 - 19.00''' &lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385 &lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf &lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only &lt;br /&gt;
&lt;br /&gt;
*11.15 Ilmoittautuminen alkaa &lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
&lt;br /&gt;
KEYNOTE &lt;br /&gt;
&lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada &lt;br /&gt;
*13.30-13.45 Kahvitauko &lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft &lt;br /&gt;
*15.30-15.45 Tauko &lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT &lt;br /&gt;
*16.30-17.15 Jazz Update IBM &lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008  ==&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors. &amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter. &amp;lt;br&amp;gt; '''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only) &amp;lt;br&amp;gt;&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation. &lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;amp;day=20071003#w2007100315112711629 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate! &lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey''' &lt;br /&gt;
&lt;br /&gt;
*Commentary on how to build secure software &lt;br /&gt;
*Thoughts on the industry&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''WELCOME!''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007  ==&lt;br /&gt;
&lt;br /&gt;
'''Date: June 5th''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.''' &lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 Welcome &amp;amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.''' &lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered: &lt;br /&gt;
&lt;br /&gt;
*XML Security Gateways &lt;br /&gt;
*Message level threats and security countermeasures in Web services &lt;br /&gt;
*OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.''' &lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.) &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''20:45 Enter Bar 52...''' --&amp;amp;gt; Enjoy (sponsored) beverages. &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007  ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen! &lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18.30 Welcome. Mikko Saario, Chapter Leader.''' &lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.''' &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf &lt;br /&gt;
&lt;br /&gt;
- Technology &lt;br /&gt;
&lt;br /&gt;
- Blacklisting &amp;amp;amp; Whitelisting &lt;br /&gt;
&lt;br /&gt;
- mod_security features &lt;br /&gt;
&lt;br /&gt;
- Do's and Don'ts &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.''' &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf &lt;br /&gt;
&lt;br /&gt;
- WAF deployment and protection strategies &lt;br /&gt;
&lt;br /&gt;
- Detection of generic web layer attacks &lt;br /&gt;
&lt;br /&gt;
- Virtual patching &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp;amp; Young  ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18:30 Welcome. What is OWASP and why OWASP Helsinki?''' &lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)''' &lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues. &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.''' &lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow... &lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders  ====&lt;br /&gt;
&lt;br /&gt;
The chapter leader is [mailto:Petteri.arola@owasp.org Petteri Arola] &lt;br /&gt;
&lt;br /&gt;
The chapter board members are [mailto:antti.laulajainen@owasp.org Antti Laulajainen], [mailto:timo@owasp.org Timo Merilainen], [mailto:mikko.saario@owasp.org Mikko Saario], and [mailto:pekka.sillanpaa@owasp.org Pekka Sillanpaa]. The Deputy members are [mailto:henri.lindberg@owasp.org Henri Lindberg] and [mailto:anssi.porttikivi@owasp.org Anssi Porttikivi] __NOTOC__ &amp;lt;headertabs /&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:Finland]] [[Category:Europe]]&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=139837</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=139837"/>
				<updated>2012-11-19T11:31:51Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Chapter Meeting #20: December 4 2012 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:petteri.arola@owasp.org Petteri Arola] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}} &lt;br /&gt;
&lt;br /&gt;
==== Local News  ====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt; &lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki. &lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader. &lt;br /&gt;
&lt;br /&gt;
==== Suomalaista sovellusturva-asiaa  ====&lt;br /&gt;
&lt;br /&gt;
[[Oppilaitoksille|Tietoa oppilaitoksille (Information for academic institutions)]] &lt;br /&gt;
&lt;br /&gt;
[[Verkkomaksut|Ohjeita turvallisen verkkomaksuintegraation toteuttamiseen]] &lt;br /&gt;
&lt;br /&gt;
==== Chapter Meetings  ====&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks: &lt;br /&gt;
&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #20: December 4 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia House, Keilalahdentie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /OWASP + HelsinkiJS''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''18:20 Securing JavaScript based web apps /Erlend Oftedal''' &lt;br /&gt;
&lt;br /&gt;
Single page web applications move much of the application logic to the client side. We now also see applications using JavaScript on the server side. How do we handle such applications from a security perspective? What problems are introduced and how do we handle them?&lt;br /&gt;
&lt;br /&gt;
'''19:05 RESTful Security'''&lt;br /&gt;
&lt;br /&gt;
Many applications rely on web services and ws-security for integration. But for more lightweight services with simpler protocols, REST is quickly gaining popularity. How do we secure REST services? What problems do we need to be aware of?&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and free debate continues at nearby location'''&lt;br /&gt;
&lt;br /&gt;
Please register at [http://www.eventbrite.com/event/4856878053 Eventbrite]&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #19: October 16 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Fujitsu, Valimotie 16, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Word from our sponsor /Fujitsu''' &lt;br /&gt;
&lt;br /&gt;
'''18:25 Hybrid mobile application security and HTML5 with a focus on getUserMedia /Mikko Saario, Nokia''' &lt;br /&gt;
&lt;br /&gt;
Both the mobile scene via “hybrid” apps and the so-called traditional web are evolving into the same direction – are the threats doing the same? Using mainly Windows Phone 7 (and some Qt) examples and demos, Mikko will take a look at the security aspects in mobile hybrid apps. The HTML5 demo will concentrate on some newly mainstreamed technologies such as getUserMedia.&lt;br /&gt;
&lt;br /&gt;
'''19:10 Introduction to Oauth 2.0 + demo /Teemu Kääriäinen, Nixu'''&lt;br /&gt;
&lt;br /&gt;
Teemu gives an introduction about Oauth 2.0 and takes a closer look at security aspects, implementation guidelines and compares Twitter, Facebook and Google implementations.&lt;br /&gt;
&lt;br /&gt;
'''20:00 Official program ends and free debate continues at nearby location'''&lt;br /&gt;
&lt;br /&gt;
'''Please register in Eventbrite http://www.eventbrite.com/event/4462882602''' &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #18: June 26 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Kela, Nordenskjölkinkatu 12, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor /Kela''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Helsinki Ruby Brigade intro''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Ruby on Rails security - why could it fail'''&lt;br /&gt;
&lt;br /&gt;
'''19:00 Panel discussion'''&lt;br /&gt;
&lt;br /&gt;
'''19:45 Wrap-up'''&lt;br /&gt;
&lt;br /&gt;
'''20:00 Discussion continues in a nearby pub Hadanka'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with petteri.arola(at)owasp.org''' &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #17: March 21 2012  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Marttakeskus, Malminrinne 1 B, 7. krs, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Coffee''' &lt;br /&gt;
&lt;br /&gt;
'''17:40 Opening words /Petteri Arola, chapter leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:50 Web Application Access Control Design Excellence / Jim Manico, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Download the presentation from our file page: [[image:Developer_Top_Ten_Core_Controls_v4.1.pdf]]&lt;br /&gt;
&lt;br /&gt;
'''19:30 Meeting ends and discussion continues over buffet and refreshments and there's a possibility to bath in sauna too''' &lt;br /&gt;
&lt;br /&gt;
'''23:00 Event ends'''&lt;br /&gt;
&lt;br /&gt;
'''Please register with enroll(at)nixu.com''' &lt;br /&gt;
&lt;br /&gt;
== Tietoturvapäivä Turku: February 7 2012  ==&lt;br /&gt;
&lt;br /&gt;
''' Sovellusturvallisuus / Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
Download the presentation from our file page: [[image:OWASP_esitys_tietoturvapäivä_Turku_20120207.pdf]]&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #16: October 18 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Hall TU2, Tuas house, Otaniementie 17, 02150, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:00 Coffee and lock picking''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP - What is it?''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Introduction to OWASP projects&amp;lt;br&amp;gt;- OWASP Top Ten, ASVS&amp;lt;br&amp;gt;&amp;lt;span class=&amp;quot;Apple-tab-span&amp;quot;&amp;gt;	&amp;lt;/span&amp;gt;- Testing guide&amp;lt;br&amp;gt;- How OWASP relates to academic world''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Download presentation from our file-page: [[Image:OWASP_presentation_for_Aalto.pdf]] &amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''18:45 Break''' &lt;br /&gt;
&lt;br /&gt;
'''19:00 Hacking demonstrations'''&lt;br /&gt;
&lt;br /&gt;
'''19:30 - Discussion continues in a nearby public house''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with petteri.arola(at)owasp.org''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to Turku AMK students: September 12th 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Introduction to Application security and OWASP / Petteri Arola, OWASP''' &lt;br /&gt;
&lt;br /&gt;
'''OWASP top 10 and hacking demos / Pekka Sillanpää, OWASP''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #15: June 15 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Itämerenkatu 11 - 13, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda ''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome, Petteri Arola, Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nokia''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 HTML5 Security, Ville Säävuori, Syneus''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 Break''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Mobile Application Security, Ari Kesäniemi and Juhani Mäkelä, Nixu''' &amp;lt;br&amp;gt; [[Image:Mobile-threat-analysis-short-presentation owasp.pdf]] &amp;lt;br&amp;gt; [[Image:Why-privacy-matters.pdf]] &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;'''19.30 - Discussion continues in a nearby public house or terrace if it's sunny''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with mikko.saario(at)nokia.com''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #14: February 22 2011  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu Oy, Keilaranta 15, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nixu Oy''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 OpenSAMM, Pravir Chandra /Fortify''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 Break''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Threat modeling, Pravir Chandra /Fortify''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 - Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with enroll(at)nixu.com''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Download OpenSAMM presentation from opensamm.org [http://www.opensamm.org/downloads/resources/OpenSAMM-1.0.ppt] &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #13: June 8 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: KPMG, Forum, Yrjönkatu 23 B 6th floor, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:05 Word from our sponsor KPMG ''' &lt;br /&gt;
&lt;br /&gt;
'''17:15 Agile secure software development, Antti Vähä-Sipilä / Nokia Oyj''' http://www.owasp.org/images/c/c6/OWASP_AppSec_Research_2010_Agile_Prod_Sec_Mgmt_by_Vaha-Sipila.pdf &lt;br /&gt;
&lt;br /&gt;
'''18:00 ASVS (OWASP Application Security Verification Standard), Pekka Sillanpää / Nixu Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:45 ESAPI (OWASP Enterprise Security API) demo, Anssi Porttikivi / KPMG''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:ESAPI for OWASP.pdf]] &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 - Discussion continues at some nearby establishment''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with anssi.porttikivi(at)kpmg.fi''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! Locksport: April 20 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-20:30''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:35 Word from our sponsor Nsense Oy''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Introduction to Locksport (presentation in Finnish)''' &lt;br /&gt;
&lt;br /&gt;
'''19:00 - Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi ''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #12: March 30 2010  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Helsingin Energia, Sähkötalo, Runeberginkatu 1, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Agenda''' &amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Petteri Arola, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:OWASP -12 Helsinki chapter meeting.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Helsingin Energia ''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 3 different views on information security and social media applications''' &lt;br /&gt;
&lt;br /&gt;
- information security in social media API’s, Antti Nuopponen/Nixu Oy &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Security of social media apis v1.pdf]] &lt;br /&gt;
&lt;br /&gt;
- Facebook apps, Markus Törnqvist/Fad Consulting &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Mjt owasp 2010.pdf]] &lt;br /&gt;
&lt;br /&gt;
- Payment API’s, Tuomas Toivonen/Scred &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Owasp-payment-apis.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''20.00 - Discussion continues at nearby establishment Bruuveri''' &lt;br /&gt;
&lt;br /&gt;
'''Please register with antti##owasp.org''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #11: November 17 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nsense Oy, Ahventie 4, Espoo''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:30''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:05 Word from our sponsor Nsense Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Manual vs. Automated Code Analysis, Ari Kesäniemi, Senior Consultant, Nixu''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Ari kesaniemi nixu manual-vs-automatic-analysis.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''19.00- Sauna and refreshments from our sponsor''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Please register with ilmoittautumiset##nsense.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #10: October 20 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Tieto Oy, Ratamestarinkatu 7B, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-19:40''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Welcome Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Word from our sponsor Tieto Oy''' &lt;br /&gt;
&lt;br /&gt;
'''18:10 Distributed Services Security, Anton Panhelainen, Tieto Oy''' &lt;br /&gt;
&lt;br /&gt;
Download presentation from our file-page:[[Image:Security in integration and ESB-OWASP 20091020.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:40 Public Web Services Interface and Security, Pyry Heikkinen, Finnish Customs''' &lt;br /&gt;
&lt;br /&gt;
'''19:40 Closure and move to Vltava''' &lt;br /&gt;
&lt;br /&gt;
'''20:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy Helsinki Vltava watering hole at own risk &amp;amp;amp; cost near Helsinki Railway station&lt;br /&gt;
&lt;br /&gt;
'''Please register with Pauli Kauppila pauli.kauppila##tieto.com or Mobile +358 400 870 324''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #9: May 12 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Louhi Networks Oy, Itälahdenkatu 22 A, Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:30-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:30 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:45 Word from our sponsor Louhi Networks''' &lt;br /&gt;
&lt;br /&gt;
'''18:00 Panel discussion about application scanners''' &lt;br /&gt;
&lt;br /&gt;
*Panel members includes representatives for Nixu Oy, KPMG Oy and Louhi Networks Oy&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost at Bar 52 near meeting location&lt;br /&gt;
&lt;br /&gt;
'''Please register with Henri Lindberg henri.lindberg##louhi.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP OWASP Goes! Viestimuseo: March 29 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Varuskunta, Takakasarmi, Viestimuseontie rak. 64, 11311 Riihimäki ''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 13:00-15:00''' &lt;br /&gt;
&lt;br /&gt;
Viestimuseossa Riihimäellä, http://www.viestikiltojenliitto.fi/viestimuseo/ on maaliskuun loppuun WWII radiotiedustelua esittelevä erikoisnäyttely, josta voi löytyä ammennettavaa myös tämän päivän tietoturvatekniikoiden parissa työskenteleville. Koska OWASP:in tiimoilta löytyi kiinnostusta lähteä tutustumaan ko. näyttelyyn, museolle on varattu opastettu kierros maaliskuun viimeiselle sunnuntaille su 29.3.2009 klo 13:00 eli kokoontuminen museolla ko. aikaan. &lt;br /&gt;
&lt;br /&gt;
Museo ja näyttely ovat auki myös muina aikoina, joten jos tämä aika ei käy, paikalla voi toki käydä muulloinkin. &lt;br /&gt;
&lt;br /&gt;
Tarkemmat ajo-ohjeet ja yhteystiedot löytyvät museon kotisivuilta, http://www.viestikiltojenliitto.fi/viestimuseo/yhteystiedot.html &lt;br /&gt;
&lt;br /&gt;
Museo sijaitsee Viestirykmentin vieressä, mutta varsinaisen varuskunta-alueen ulkopuolella, joten museokäynti ei vaadi kulkulupia alueelle. &lt;br /&gt;
&lt;br /&gt;
Paikalle innostuvat hoitavat oman logistiikkaratkaisunsa &amp;amp;amp; sisäänpääsymaksunsa. &lt;br /&gt;
&lt;br /&gt;
Lisätietoja tarvittaessa timo.merilainen (ät) iki.fi &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter Meeting #8: March 12 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Samlink, Linnoitustie 9, Espoo (Leppävaara)''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-19:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 OWASP latest activities Antti Laulajainen, OWASP Helsinki Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
'''17:15 Introduction to Samlink, Jari Pirhonen, security director, Samlink''' &lt;br /&gt;
&lt;br /&gt;
'''17:30 Methodology owner’s point of view: Information security as part of software development methodology, Topi Mattila, methodology manager, Samlink''' &lt;br /&gt;
&lt;br /&gt;
'''18:15 Presentation from Finnish Tax Administration&amp;quot;, Petri Puhakainen, security director, Finnish Tax Administration''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost at Sello&lt;br /&gt;
&lt;br /&gt;
'''Please register with Jari Pirhonen jari.pirhonen##samlink.fi''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Introduction to startup firms: Thursday January 15th 2009  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ravintola Korjaamo, Töölönkatu 51, 00250 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18:00-20:00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''18:00 Introduction to OWASP by Henri Lindberg, OWASP Helsinki Active Visitor''' &lt;br /&gt;
&lt;br /&gt;
*What OWASP is &lt;br /&gt;
*Examples of useful Tools and Documents &lt;br /&gt;
*OWASP in Finland&lt;br /&gt;
&lt;br /&gt;
Presentation: [[Image:OWASP Startups 20090115 Henri.pdf]] &lt;br /&gt;
&lt;br /&gt;
(Antti Laulajainen, OWASP Helsinki Chapter Leader was originally supposed to introduce OWASP) &lt;br /&gt;
&lt;br /&gt;
'''18:15 Implementing application security in a Finnish startup by Henri Lindberg, Scred''' &lt;br /&gt;
&lt;br /&gt;
*Henri Lindberg from Scred shares experiences and lessons learned &lt;br /&gt;
*How to make your web application more secure with minimal budget&lt;br /&gt;
&lt;br /&gt;
Presentation: [[Image:SDG Scred 090115.pdf]] &lt;br /&gt;
&lt;br /&gt;
'''18:30 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Antti Laulajainen, OWASP Chapter Leader''' &lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode''' &lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code) &lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability''' &lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion''' &lt;br /&gt;
&lt;br /&gt;
'''18:30 or so''' &lt;br /&gt;
&lt;br /&gt;
*Enjoy local establishments at own risk &amp;amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
'''PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
'''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen ''' &lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware''' &lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min &lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Note! Be in time, because the reception closes at 18.''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Time: 16.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen ''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''16.30 Vulnerability coordination. Juhani Eronen''' &lt;br /&gt;
&lt;br /&gt;
*CERT-FI as a vulnerability coordinator &lt;br /&gt;
*Coordination examples&lt;br /&gt;
&lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub''' &lt;br /&gt;
&lt;br /&gt;
*If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008  ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending. &lt;br /&gt;
&lt;br /&gt;
You can download the presentation here'''https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf''' &lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;amp;day=20080514#w2008051411524012715 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00 Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp;amp; Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''17.30 - 20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Hope to see as many of you as possible! &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30''' &lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break. &lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security. &lt;br /&gt;
&lt;br /&gt;
'''Schedule''' &lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Hope to see as many of you as possible! &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp;amp; RWSUG Seminar Tuesday, January 29th 2008  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.''' '''Time: 11.15 - 19.00''' &lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385 &lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf &lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only &lt;br /&gt;
&lt;br /&gt;
*11.15 Ilmoittautuminen alkaa &lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
&lt;br /&gt;
KEYNOTE &lt;br /&gt;
&lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada &lt;br /&gt;
*13.30-13.45 Kahvitauko &lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft &lt;br /&gt;
*15.30-15.45 Tauko &lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT &lt;br /&gt;
*16.30-17.15 Jazz Update IBM &lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008  ==&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors. &amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter. &amp;lt;br&amp;gt; '''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only) &amp;lt;br&amp;gt;&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007  ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation. &lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;amp;day=20071003#w2007100315112711629 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate! &lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen''' &lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey''' &lt;br /&gt;
&lt;br /&gt;
*Commentary on how to build secure software &lt;br /&gt;
*Thoughts on the industry&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''WELCOME!''' &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007  ==&lt;br /&gt;
&lt;br /&gt;
'''Date: June 5th''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.''' &lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 Welcome &amp;amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.''' &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.''' &lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered: &lt;br /&gt;
&lt;br /&gt;
*XML Security Gateways &lt;br /&gt;
*Message level threats and security countermeasures in Web services &lt;br /&gt;
*OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.''' &lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.) &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''20:45 Enter Bar 52...''' --&amp;amp;gt; Enjoy (sponsored) beverages. &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007  ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen! &lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.''' &lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18.30 Welcome. Mikko Saario, Chapter Leader.''' &lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.''' &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf &lt;br /&gt;
&lt;br /&gt;
- Technology &lt;br /&gt;
&lt;br /&gt;
- Blacklisting &amp;amp;amp; Whitelisting &lt;br /&gt;
&lt;br /&gt;
- mod_security features &lt;br /&gt;
&lt;br /&gt;
- Do's and Don'ts &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.''' &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf &lt;br /&gt;
&lt;br /&gt;
- WAF deployment and protection strategies &lt;br /&gt;
&lt;br /&gt;
- Detection of generic web layer attacks &lt;br /&gt;
&lt;br /&gt;
- Virtual patching &lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp;amp; Young  ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463 &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''18:30 Welcome. What is OWASP and why OWASP Helsinki?''' &lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter. &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)''' &lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues. &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; '''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.''' &lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow... &lt;br /&gt;
&lt;br /&gt;
==== Helsinki OWASP Chapter Leaders  ====&lt;br /&gt;
&lt;br /&gt;
The chapter leader is [mailto:Petteri.arola@owasp.org Petteri Arola] &lt;br /&gt;
&lt;br /&gt;
The chapter board members are [mailto:antti.laulajainen@owasp.org Antti Laulajainen], [mailto:timo@owasp.org Timo Merilainen], [mailto:mikko.saario@owasp.org Mikko Saario], and [mailto:pekka.sillanpaa@owasp.org Pekka Sillanpaa]. The Deputy members are [mailto:henri.lindberg@owasp.org Henri Lindberg] and [mailto:anssi.porttikivi@owasp.org Anssi Porttikivi] __NOTOC__ &amp;lt;headertabs /&amp;gt; &lt;br /&gt;
&lt;br /&gt;
[[Category:Finland]] [[Category:Europe]]&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summit_2011_Attendee/Attendee173&amp;diff=103579</id>
		<title>Summit 2011 Attendee/Attendee173</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summit_2011_Attendee/Attendee173&amp;diff=103579"/>
				<updated>2011-02-06T14:15:05Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;OWASP 2011 Global Summit Attendee Tab&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_name1 = Mikko Saario&lt;br /&gt;
| summit_attendee_email1 = midis@ovi.com&lt;br /&gt;
| summit_attendee_wiki_username1 = &lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_company = Nokia&lt;br /&gt;
|-&lt;br /&gt;
| Project Leadership (less than 6 months old) = &lt;br /&gt;
| Project Leadership (more than 6 months old) = &lt;br /&gt;
| Release Leadership (less than 6 months old) = &lt;br /&gt;
| Release Leadership (more than 6 months old) = &lt;br /&gt;
| Project Contribution  (less than 6 months old) = &lt;br /&gt;
| Project Contribution  (more than 6 months old) = &lt;br /&gt;
| Release Contribution (less than 6 months old) =  &lt;br /&gt;
| Release Contribution (more than 6 months old) = &lt;br /&gt;
| Committee Membership = &lt;br /&gt;
| Chapter Co-Leadership = &lt;br /&gt;
| Conference Co-Leadership =  &lt;br /&gt;
| Projected Funding Cost = &lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_current_owasp_involvement_name1 =  &lt;br /&gt;
| summit_attendee_current_owasp_involvement_url_1 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_name2 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_url_2 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_name3 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_url_3 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_name4 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_url_4 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_name5 = &lt;br /&gt;
| summit_attendee_current_owasp_involvement_url_5 = &lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_reason_for_summit_participation_name1 =  &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_url_1 = &lt;br /&gt;
| notes_reason_for_participating_issues_to_be_discussed_1 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_name2 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_url_2 = &lt;br /&gt;
| notes_reason_for_participating_issues_to_be_discussed_2 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_name3 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_url_3 = &lt;br /&gt;
| notes_reason_for_participating_issues_to_be_discussed_3 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_name4 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_url_4 = &lt;br /&gt;
| notes_reason_for_participating_issues_to_be_discussed_4 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_name5 = &lt;br /&gt;
| summit_attendee_reason_for_summit_participation_url_5 = &lt;br /&gt;
| notes_reason_for_participating_issues_to_be_discussed_5 = &lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_owasp_sponsor = &lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_summit_time_paid_by_name1 =&lt;br /&gt;
| summit_attendee_summit_time_paid_by_url_1 =&lt;br /&gt;
| summit_attendee_summit_time_paid_by_name2 =&lt;br /&gt;
| summit_attendee_summit_time_paid_by_url_2 =&lt;br /&gt;
|-&lt;br /&gt;
| summit_attendee_summit_expenses_paid_by_name1 = &lt;br /&gt;
| summit_attendee_summit_expenses_paid_by_url_1 = &lt;br /&gt;
| summit_attendee_summit_expenses_paid_by_name2 = &lt;br /&gt;
| summit_attendee_summit_expenses_paid_by_url_2 =  &lt;br /&gt;
|-&lt;br /&gt;
| reason_for_sponsorship = &lt;br /&gt;
|-&lt;br /&gt;
| status = &lt;br /&gt;
|-&lt;br /&gt;
| letter sent to sponsor = &lt;br /&gt;
|-&lt;br /&gt;
| notes for Kate =   &lt;br /&gt;
|-&lt;br /&gt;
| attendee_name_mask = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Attendee173&lt;br /&gt;
| attendee_home_page = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Summit_2011_Attendee/Attendee173&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session065&amp;diff=103578</id>
		<title>Summit 2011 Working Sessions/Session065</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session065&amp;diff=103578"/>
				<updated>2011-02-06T14:02:18Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Summit 2011 Working Sessions test tab&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name1 = Colin Watson&lt;br /&gt;
| summit_session_attendee_email1 = &lt;br /&gt;
| summit_session_attendee_username1 = &lt;br /&gt;
| summit_session_attendee_company1=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed1=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name2 = Tom Neaves&lt;br /&gt;
| summit_session_attendee_email2 = tom.neaves@verizonbusiness.com&lt;br /&gt;
| summit_session_attendee_username2 = &lt;br /&gt;
| summit_session_attendee_company2= Verizon Business&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed2=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name3 = Mateo Martinez&lt;br /&gt;
| summit_session_attendee_email3 = mateo.martinez@owasp.org&lt;br /&gt;
| summit_session_attendee_username3 = &lt;br /&gt;
| summit_session_attendee_company3=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed3=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name4 = Justin Clarke&lt;br /&gt;
| summit_session_attendee_email4 = justin.clarke@owasp.org&lt;br /&gt;
| summit_session_attendee_username4 = &lt;br /&gt;
| summit_session_attendee_company4=Gotham Digital Science&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed4=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name5 = Sherif Koussa&lt;br /&gt;
| summit_session_attendee_email5 = sherif.koussa@owasp.org&lt;br /&gt;
| summit_session_attendee_username5 = &lt;br /&gt;
| summit_session_attendee_company5= Software Secured&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed5=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name6 = Vishal Garg&lt;br /&gt;
| summit_session_attendee_email6 = vishalgrg@gmail.com&lt;br /&gt;
| summit_session_attendee_username6 = &lt;br /&gt;
| summit_session_attendee_company6= AppSecure Labs&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed6=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name7 = Dan Cornell&lt;br /&gt;
| summit_session_attendee_email7 = dan@denimgroup.com&lt;br /&gt;
| summit_session_attendee_username7 = &lt;br /&gt;
| summit_session_attendee_company7=Denim Group&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed7=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name8 = Chris Eng&lt;br /&gt;
| summit_session_attendee_email8 = ceng@veracode.com&lt;br /&gt;
| summit_session_attendee_username8 = &lt;br /&gt;
| summit_session_attendee_company8= Veracode&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed8=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name9 = Jim Manico&lt;br /&gt;
| summit_session_attendee_email9 = jim@manico.net&lt;br /&gt;
| summit_session_attendee_username9 = &lt;br /&gt;
| summit_session_attendee_company9= Infrared Security&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed9=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name10 = Jack Mannino&lt;br /&gt;
| summit_session_attendee_email10 = jack@nvisiumsecurity.com&lt;br /&gt;
| summit_session_attendee_username10 = &lt;br /&gt;
| summit_session_attendee_company10= nVisium Security&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed10=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name11 = Nishi Kumar&lt;br /&gt;
| summit_session_attendee_email11 = nishi.kumar@owasp.org&lt;br /&gt;
| summit_session_attendee_username11 = &lt;br /&gt;
| summit_session_attendee_company11= FIS&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed11=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name12 = Giorgio Fedon&lt;br /&gt;
| summit_session_attendee_email12 = &lt;br /&gt;
| summit_session_attendee_username12 = gfedon&lt;br /&gt;
| summit_session_attendee_company12= Minded Security&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed12=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name13 = Steve Jensen&lt;br /&gt;
| summit_session_attendee_email13 = &lt;br /&gt;
| summit_session_attendee_username13 = &lt;br /&gt;
| summit_session_attendee_company13= BT&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed13=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name14 = Neil Matatall&lt;br /&gt;
| summit_session_attendee_email14 = neil@owasp.org&lt;br /&gt;
| summit_session_attendee_username14 = &lt;br /&gt;
| summit_session_attendee_company14= FishNet Security&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed14= &lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name15 = Abraham Kang&lt;br /&gt;
| summit_session_attendee_email15 = &lt;br /&gt;
| summit_session_attendee_username15 = &lt;br /&gt;
| summit_session_attendee_company15=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed15=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name16 = Mikko Saario&lt;br /&gt;
| summit_session_attendee_email16 = midis@ovi.com&lt;br /&gt;
| summit_session_attendee_username16 = &lt;br /&gt;
| summit_session_attendee_company16= Nokia&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed16=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name17 = &lt;br /&gt;
| summit_session_attendee_email17 = &lt;br /&gt;
| summit_session_attendee_username17 = &lt;br /&gt;
| summit_session_attendee_company17=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed17=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name18 = &lt;br /&gt;
| summit_session_attendee_email18 = &lt;br /&gt;
| summit_session_attendee_username18 = &lt;br /&gt;
| summit_session_attendee_company18=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed18=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name19 = &lt;br /&gt;
| summit_session_attendee_email19 = &lt;br /&gt;
| summit_session_attendee_username19 = &lt;br /&gt;
| summit_session_attendee_company19=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed19=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name20 = &lt;br /&gt;
| summit_session_attendee_email20 = &lt;br /&gt;
| summit_session_attendee_username20 = &lt;br /&gt;
| summit_session_attendee_company20=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed20=&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| summit_track_logo = [[Image:T._individual_projects.jpg]]&lt;br /&gt;
| summit_ws_logo = [[Image:WS._individual_projects.jpg]]&lt;br /&gt;
| summit_session_name = Mobile Security&lt;br /&gt;
| summit_session_url = http://www.owasp.org/index.php/Summit_2011_Working_Sessions/Session065&lt;br /&gt;
| mailing_list =&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| short_working_session_description= Working session to establish baseline knowledge repository for mobile security testing within OWASP&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| related_project_name1 = OWASP Mobile Security Project&lt;br /&gt;
| related_project_url_1 = http://www.owasp.org/index.php/OWASP_Mobile_Security_Project &lt;br /&gt;
&lt;br /&gt;
| related_project_name2 = &lt;br /&gt;
| related_project_url_2 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name3 = &lt;br /&gt;
| related_project_url_3 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name4 = &lt;br /&gt;
| related_project_url_4 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name5 = &lt;br /&gt;
| related_project_url_5 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| summit_session_objective_name1 =  '''Primary: Create core knowledge base on project wiki site'''&lt;br /&gt;
| summit_session_objective_name2 =  Recruit volunteers to contribute to project&lt;br /&gt;
| summit_session_objective_name3 =  Establish relationships with key players (i.e. Apple/Google/etc)&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name4 = Create the OWASP Mobile Top 10&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name5 =  &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_date_and_time = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| discussion_model = participants and attendees&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_resources = Projector, whiteboards, markers, Internet connectivity, power&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_additional_details = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name1 = Project wiki page  &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name2 = A project home page, roadmap, and action plan. Look at the OWASP Ecosystem concept to see what all you should have in place.&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name3 = OWASP Mobile Top 10&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name4 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name5 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name6 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name7 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name8 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name1 = Mike Zusman&lt;br /&gt;
| summit_session_leader_email1 = mike.zusman@intrepidusgroup.com&lt;br /&gt;
| summit_session_leader_username1 = schmoilito&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name2 = David Campbell&lt;br /&gt;
| summit_session_leader_email2 = dcampbell@owasp.org&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name3 = &lt;br /&gt;
| summit_session_leader_email3 = &lt;br /&gt;
| summit_session_leader_username3 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_leader_name1 =&lt;br /&gt;
| operational_leader_email1 =&lt;br /&gt;
| operational_leader_username1 = &lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| meeting_notes = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| session_name_mask = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Session065&lt;br /&gt;
| session_home_page = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Summit_2011_Working_Sessions/Session065&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session042&amp;diff=103577</id>
		<title>Summit 2011 Working Sessions/Session042</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session042&amp;diff=103577"/>
				<updated>2011-02-06T13:59:17Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Summit 2011 Working Sessions test tab&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name1 = Martin Knobloch&lt;br /&gt;
| summit_session_attendee_email1 = martin.knobloch@owasp.org&lt;br /&gt;
| summit_session_attendee_username1 = &lt;br /&gt;
| summit_session_attendee_company1=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed1=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name2 = Nishi Kumar&lt;br /&gt;
| summit_session_attendee_email2 = nishi.kumar@owasp.org&lt;br /&gt;
| summit_session_attendee_username2 = &lt;br /&gt;
| summit_session_attendee_company2= FIS&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed2=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name3 = Jason Taylor&lt;br /&gt;
| summit_session_attendee_email3 = jtaylor@securityinnovation.com&lt;br /&gt;
| summit_session_attendee_username3 = &lt;br /&gt;
| summit_session_attendee_company3=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed3=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name4 = Carlos Serrão&lt;br /&gt;
| summit_session_attendee_email4 = carlos.serrao@iscte.pt&lt;br /&gt;
| summit_session_attendee_username4 = &lt;br /&gt;
| summit_session_attendee_company4=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed4=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name5 = Konstantinos Papapanagiotou&lt;br /&gt;
| summit_session_attendee_email5 = Konstantinos@owasp.org&lt;br /&gt;
| summit_session_attendee_username5 = &lt;br /&gt;
| summit_session_attendee_company5=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed5=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name6 = Daniel Brzozowski&lt;br /&gt;
| summit_session_attendee_email6 = daniel@brzozowski.biz&lt;br /&gt;
| summit_session_attendee_username6 = Daniel Brzozowski&lt;br /&gt;
| summit_session_attendee_company6=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed6=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name7 = L. Gustavo C. Barbato&lt;br /&gt;
| summit_session_attendee_email7 = lgbarbato@owasp.org&lt;br /&gt;
| summit_session_attendee_username7 = Gustavo Barbato&lt;br /&gt;
| summit_session_attendee_company7= Dell&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed7=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name8 = Keith Turpin&lt;br /&gt;
| summit_session_attendee_email8 = keith.turpin@owasp.org&lt;br /&gt;
| summit_session_attendee_username8 = Keith_Turpin&lt;br /&gt;
| summit_session_attendee_company8=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed8=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name9 = Ralph Durkee&lt;br /&gt;
| summit_session_attendee_email9 = Ralph.Durkee@owasp.org&lt;br /&gt;
| summit_session_attendee_username9 = &lt;br /&gt;
| summit_session_attendee_company9= Durkee Consulting, Inc.&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed9=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name10 = Mikko Saario&lt;br /&gt;
| summit_session_attendee_email10 =  midis@ovi.com&lt;br /&gt;
| summit_session_attendee_username10 = &lt;br /&gt;
| summit_session_attendee_company10= Nokia&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed10=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name11 = &lt;br /&gt;
| summit_session_attendee_email11 = &lt;br /&gt;
| summit_session_attendee_username11 = &lt;br /&gt;
| summit_session_attendee_company11=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed11=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name12 = &lt;br /&gt;
| summit_session_attendee_email12 = &lt;br /&gt;
| summit_session_attendee_username12 = &lt;br /&gt;
| summit_session_attendee_company12=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed12=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name13 = &lt;br /&gt;
| summit_session_attendee_email13 = &lt;br /&gt;
| summit_session_attendee_username13 = &lt;br /&gt;
| summit_session_attendee_company13=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed13=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name14 = &lt;br /&gt;
| summit_session_attendee_email14 = &lt;br /&gt;
| summit_session_attendee_username14 = &lt;br /&gt;
| summit_session_attendee_company14=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed14= &lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name15 = &lt;br /&gt;
| summit_session_attendee_email15 = &lt;br /&gt;
| summit_session_attendee_username15 = &lt;br /&gt;
| summit_session_attendee_company15=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed15=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name16 = &lt;br /&gt;
| summit_session_attendee_email16 = &lt;br /&gt;
| summit_session_attendee_username16 = &lt;br /&gt;
| summit_session_attendee_company16=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed16=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name17 = &lt;br /&gt;
| summit_session_attendee_email17 = &lt;br /&gt;
| summit_session_attendee_username17 = &lt;br /&gt;
| summit_session_attendee_company17=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed17=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name18 = &lt;br /&gt;
| summit_session_attendee_email18 = &lt;br /&gt;
| summit_session_attendee_username18 = &lt;br /&gt;
| summit_session_attendee_company18=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed18=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name19 = &lt;br /&gt;
| summit_session_attendee_email19 = &lt;br /&gt;
| summit_session_attendee_username19 = &lt;br /&gt;
| summit_session_attendee_company19=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed19=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name20 = &lt;br /&gt;
| summit_session_attendee_email20 = &lt;br /&gt;
| summit_session_attendee_username20 = &lt;br /&gt;
| summit_session_attendee_company20=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed20=&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| summit_track_logo = [[Image:T._university.jpg]]&lt;br /&gt;
| summit_ws_logo = [[Image:WS._university.jpg]]&lt;br /&gt;
| summit_session_name = Developer's Security Training Package&lt;br /&gt;
| summit_session_url = http://www.owasp.org/index.php/Summit_2011_Working_Sessions/Session042&lt;br /&gt;
| mailing_list =&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| short_working_session_description= Compile a set of documents and slides to assist in the delivery of a security training class for developers&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| related_project_name1 = OWASP Development Guide, OWASP Secure Coding Practices - Quick Reference Guide, OWASP Enterprise Security API (ESAPI) Project, &lt;br /&gt;
| related_project_url_1 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name2 = OWASP Code Review Guide, &lt;br /&gt;
| related_project_url_2 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name3 = OWASP Application Security Verification Standard Project, &lt;br /&gt;
| related_project_url_3 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name4 = OWASP Testing Guide, &lt;br /&gt;
| related_project_url_4 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name5 = OWASP Top Ten Project&lt;br /&gt;
| related_project_url_5 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name1= To create an organized package that can be used by companies for the purposes of educating developers on securely coding web applications and web services&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name2 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name3 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name4 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name5 =  &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_date_and_time = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| discussion_model = participants and attendees&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_resources = Projector, whiteboards, markers, Internet connectivity, power&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_additional_details = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name1 = A curriculum for the above based on OWASP materials and a plan to build it out.&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name2 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name3 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name4 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name5 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name6 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name7 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name8 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name1 = Brad Causey&lt;br /&gt;
| summit_session_leader_email1 = bradcausey@owasp.org&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name2 = &lt;br /&gt;
| summit_session_leader_email2 = &lt;br /&gt;
| summit_session_leader_username2 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name3 = &lt;br /&gt;
| summit_session_leader_email3 = &lt;br /&gt;
| summit_session_leader_username3 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_leader_name1 =&lt;br /&gt;
| operational_leader_email1 =&lt;br /&gt;
| operational_leader_username1 = &lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| meeting_notes = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| session_name_mask = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Session042&lt;br /&gt;
| session_home_page = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Summit_2011_Working_Sessions/Session042&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session092&amp;diff=103576</id>
		<title>Summit 2011 Working Sessions/Session092</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session092&amp;diff=103576"/>
				<updated>2011-02-06T13:57:05Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Summit 2011 Working Sessions test tab&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name1 = Lucas C. Ferreira&lt;br /&gt;
| summit_session_attendee_email1 = lucas.ferreira@owasp.org&lt;br /&gt;
| summit_session_attendee_username1 = &lt;br /&gt;
| summit_session_attendee_company1=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed1=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name1 = Eoin Keary&lt;br /&gt;
| summit_session_attendee_email1 = eoin.keary@owasp.org&lt;br /&gt;
| summit_session_attendee_username1 = EoinKeary&lt;br /&gt;
| summit_session_attendee_company1=Ernst &amp;amp; Young&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed1=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name2 = Achim Hoffmann&lt;br /&gt;
| summit_session_attendee_email2 = achim@owasp.org&lt;br /&gt;
| summit_session_attendee_username2 = Achim&lt;br /&gt;
| summit_session_attendee_company2= sic[!]sec&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed2=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name3 = Steven van der Baan&lt;br /&gt;
| summit_session_attendee_email3 = steven.van.der.baan@owasp.org&lt;br /&gt;
| summit_session_attendee_username3 = &lt;br /&gt;
| summit_session_attendee_company3=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed3=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name4 = Cecil Su&lt;br /&gt;
| summit_session_attendee_email4 = cecil.su@owasp.org&lt;br /&gt;
| summit_session_attendee_username4 = &lt;br /&gt;
| summit_session_attendee_company4=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed4=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name5 = Sherif Koussa&lt;br /&gt;
| summit_session_attendee_email5 = sherif.koussa@owasp.org&lt;br /&gt;
| summit_session_attendee_username5 = &lt;br /&gt;
| summit_session_attendee_company5= Software Secured&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed5=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name6 = Matthias Rohr&lt;br /&gt;
| summit_session_attendee_email6 = m.rohr@sec-consult.com&lt;br /&gt;
| summit_session_attendee_username6 = &lt;br /&gt;
| summit_session_attendee_company6= SEC Consult&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed6=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name7 = Vishal Garg&lt;br /&gt;
| summit_session_attendee_email7 = vishalgrg@gmail.com&lt;br /&gt;
| summit_session_attendee_username7 = &lt;br /&gt;
| summit_session_attendee_company7= AppSecure Labs&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed7=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name8 = Chris Eng&lt;br /&gt;
| summit_session_attendee_email8 = ceng@veracode.com&lt;br /&gt;
| summit_session_attendee_username8 = &lt;br /&gt;
| summit_session_attendee_company8= Veracode&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed8=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name9 = Nishi Kumar&lt;br /&gt;
| summit_session_attendee_email9 = nishi.kumar@owasp.org&lt;br /&gt;
| summit_session_attendee_username9 = &lt;br /&gt;
| summit_session_attendee_company9= FIS&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed9=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name10 = Michael Coates&lt;br /&gt;
| summit_session_attendee_email10 = mcoates@mozilla.org&lt;br /&gt;
| summit_session_attendee_username10 = &lt;br /&gt;
| summit_session_attendee_company10= Mozilla&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed10=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name11 = Giorgio Fedon&lt;br /&gt;
| summit_session_attendee_email11 = &lt;br /&gt;
| summit_session_attendee_username11 = gfedon&lt;br /&gt;
| summit_session_attendee_company11=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed11=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name12 = Keith Turpin&lt;br /&gt;
| summit_session_attendee_email12 = keith.turpin@owasp.org&lt;br /&gt;
| summit_session_attendee_username12 = Keith_Turpin&lt;br /&gt;
| summit_session_attendee_company12= &lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed12=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name13 = Ofer Maor&lt;br /&gt;
| summit_session_attendee_email13 = ofer.maor@owasp.org&lt;br /&gt;
| summit_session_attendee_username13 = &lt;br /&gt;
| summit_session_attendee_company13=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed13=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name14 = Nuno Loureiro&lt;br /&gt;
| summit_session_attendee_email14 = nuno@sig9.net&lt;br /&gt;
| summit_session_attendee_username14 = &lt;br /&gt;
| summit_session_attendee_company14= SAPO&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed14= &lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name15 = Mikko Saario&lt;br /&gt;
| summit_session_attendee_email15 = midis@ovi.com&lt;br /&gt;
| summit_session_attendee_username15 = &lt;br /&gt;
| summit_session_attendee_company15= Nokia&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed15=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name16 = &lt;br /&gt;
| summit_session_attendee_email16 = &lt;br /&gt;
| summit_session_attendee_username16 = &lt;br /&gt;
| summit_session_attendee_company16=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed16=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name17 = &lt;br /&gt;
| summit_session_attendee_email17 = &lt;br /&gt;
| summit_session_attendee_username17 = &lt;br /&gt;
| summit_session_attendee_company17=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed17=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name18 = &lt;br /&gt;
| summit_session_attendee_email18 = &lt;br /&gt;
| summit_session_attendee_username18 = &lt;br /&gt;
| summit_session_attendee_company18=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed18=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name19 = &lt;br /&gt;
| summit_session_attendee_email19 = &lt;br /&gt;
| summit_session_attendee_username19 = &lt;br /&gt;
| summit_session_attendee_company19=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed19=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name20 = &lt;br /&gt;
| summit_session_attendee_email20 = &lt;br /&gt;
| summit_session_attendee_username20 = &lt;br /&gt;
| summit_session_attendee_company20=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed20=&lt;br /&gt;
|-&lt;br /&gt;
| summit_track_logo = [[Image:T._mitigation.jpg]]&lt;br /&gt;
| summit_ws_logo = [[Image:WS._mitigation.jpg]]&lt;br /&gt;
| summit_session_name = Scaling Web Application Security Testing&lt;br /&gt;
| summit_session_url = http://www.owasp.org/index.php/Summit_2011_Working_Sessions/Session092&lt;br /&gt;
| mailing_list =&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| short_working_session_description= One of the challenge that large companies have is how to scale web application security testing when hundreds if not thousands of applications need to be retested regularly. The objective of this Working Sessions is for the security teams that are trying to do this today (including Tools and Host based solutions) to exchange ideas, expose current problems and share solutions &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| related_project_name1 = &lt;br /&gt;
| related_project_url_1 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name2 = &lt;br /&gt;
| related_project_url_2 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name3 = &lt;br /&gt;
| related_project_url_3 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name4 = &lt;br /&gt;
| related_project_url_4 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name5 = &lt;br /&gt;
| related_project_url_5 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name1= &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name2 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name3 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name4 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name5 =  &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_date_and_time = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| discussion_model = participants and attendees&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_resources = Projector, whiteboards, markers, Internet connectivity, power&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_additional_details = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name1 = A white paper describing strategies for scaling application security verification programs beyond a single application at a time.  Should address achieving coverage of expected controls, depth of assurance, both automated and manual approaches, custom rules, rule management, rule deployment.&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name2 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name3 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name4 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name5 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name6 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name7 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name8 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name1 = Arian Evans&lt;br /&gt;
| summit_session_leader_email1 = &lt;br /&gt;
| summit_session_leader_username1 =&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name2 = Dinis Cruz&lt;br /&gt;
| summit_session_leader_email2 = dinis.cruz@owasp.org&lt;br /&gt;
| summit_session_leader_username2 = Dinis.cruz&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name3 = &lt;br /&gt;
| summit_session_leader_email3 = &lt;br /&gt;
| summit_session_leader_username3 =&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_leader_name1 =&lt;br /&gt;
| operational_leader_email1 =&lt;br /&gt;
| operational_leader_username1 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
| meeting_notes = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| session_name_mask = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Session092&lt;br /&gt;
| session_home_page = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Summit_2011_Working_Sessions/Session092&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session055&amp;diff=103428</id>
		<title>Summit 2011 Working Sessions/Session055</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Summit_2011_Working_Sessions/Session055&amp;diff=103428"/>
				<updated>2011-02-05T11:31:34Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: Added Mikko Saario to attendee list&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:&amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Summit 2011 Working Sessions test tab&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name1 = Tony UcedaVelez&lt;br /&gt;
| summit_session_attendee_email1 = tonyuv@owasp.org&lt;br /&gt;
| summit_session_attendee_username1 = Tony UcedaVelez&lt;br /&gt;
| summit_session_attendee_company1= VerSprite&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed1= &lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name2 = Justin Clarke&lt;br /&gt;
| summit_session_attendee_email2 = justin.clarke@owasp.org&lt;br /&gt;
| summit_session_attendee_username2 = Justin42&lt;br /&gt;
| summit_session_attendee_company2= Gotham Digital Science&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed2=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name2 = Eoin Keary&lt;br /&gt;
| summit_session_attendee_email2 = eoin.keary@owasp.org&lt;br /&gt;
| summit_session_attendee_username2 = EoinKeary&lt;br /&gt;
| summit_session_attendee_company2= Ernst &amp;amp; Young&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed2=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name3 = Sherif Koussa&lt;br /&gt;
| summit_session_attendee_email3 = sherif.koussa@owasp.org&lt;br /&gt;
| summit_session_attendee_username3 = Koussa&lt;br /&gt;
| summit_session_attendee_company3= Software Secured&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed3=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name4 = Konstantinos Papapanagiotou&lt;br /&gt;
| summit_session_attendee_email4 = Konstantinos@owasp.org&lt;br /&gt;
| summit_session_attendee_username4 = conpap&lt;br /&gt;
| summit_session_attendee_company4= Syntax IT Inc&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed4=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name5 = Vishal Garg&lt;br /&gt;
| summit_session_attendee_email5 = vishalgrg@gmail.com&lt;br /&gt;
| summit_session_attendee_username5= Vishal_Garg&lt;br /&gt;
| summit_session_attendee_company5= AppSecure Labs Ltd&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed5=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name6 = Mateo Martinez&lt;br /&gt;
| summit_session_attendee_email6 = mateo.martinez@owasp.org&lt;br /&gt;
| summit_session_attendee_username6= &lt;br /&gt;
| summit_session_attendee_company6=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed6=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name7 = Mikko Saario&lt;br /&gt;
| summit_session_attendee_email7 = midis@ovi.com&lt;br /&gt;
| summit_session_attendee_username7= &lt;br /&gt;
| summit_session_attendee_company7= Nokia&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed7=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name8 = &lt;br /&gt;
| summit_session_attendee_email8 = &lt;br /&gt;
| summit_session_attendee_username8= &lt;br /&gt;
| summit_session_attendee_company8=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed8=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name9 = &lt;br /&gt;
| summit_session_attendee_email9 = &lt;br /&gt;
| summit_session_attendee_username9= &lt;br /&gt;
| summit_session_attendee_company9=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed9=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name10 = &lt;br /&gt;
| summit_session_attendee_email10 = &lt;br /&gt;
| summit_session_attendee_username10= &lt;br /&gt;
| summit_session_attendee_company10=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed10=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name11 = &lt;br /&gt;
| summit_session_attendee_email11 = &lt;br /&gt;
| summit_session_attendee_username11= &lt;br /&gt;
| summit_session_attendee_company11=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed11=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name12 = &lt;br /&gt;
| summit_session_attendee_email12 = &lt;br /&gt;
| summit_session_attendee_username12= &lt;br /&gt;
| summit_session_attendee_company12 =&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed12=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name13 = &lt;br /&gt;
| summit_session_attendee_email13 = &lt;br /&gt;
| summit_session_attendee_username13 = &lt;br /&gt;
| summit_session_attendee_company13=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed13=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name14 = &lt;br /&gt;
| summit_session_attendee_email14 = &lt;br /&gt;
| summit_session_attendee_username14= &lt;br /&gt;
| summit_session_attendee_company14=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed14= &lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name15 = &lt;br /&gt;
| summit_session_attendee_email15 = &lt;br /&gt;
| summit_session_attendee_username15= &lt;br /&gt;
| summit_session_attendee_company15=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed15=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name16 = &lt;br /&gt;
| summit_session_attendee_email16 = &lt;br /&gt;
| summit_session_attendee_username16= &lt;br /&gt;
| summit_session_attendee_company16=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed16=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name17 = &lt;br /&gt;
| summit_session_attendee_email17 = &lt;br /&gt;
| summit_session_attendee_username17= &lt;br /&gt;
| summit_session_attendee_company17=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed17=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name18 = &lt;br /&gt;
| summit_session_attendee_email18 = &lt;br /&gt;
| summit_session_attendee_username18= &lt;br /&gt;
| summit_session_attendee_company18=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed18=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name19 = &lt;br /&gt;
| summit_session_attendee_email19 = &lt;br /&gt;
| summit_session_attendee_username19= &lt;br /&gt;
| summit_session_attendee_company19=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed19=&lt;br /&gt;
&lt;br /&gt;
| summit_session_attendee_name20 = &lt;br /&gt;
| summit_session_attendee_email20 = &lt;br /&gt;
| summit_session_attendee_username20= &lt;br /&gt;
| summit_session_attendee_company20=&lt;br /&gt;
| summit_session_attendee_notes,_reason_for_participating_and_issues_to_be discussed20=&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| summit_track_logo = [[Image:T._metrics.jpg]]&lt;br /&gt;
| summit_ws_logo = [[Image:WS._metrics.jpg]]&lt;br /&gt;
| summit_session_name = Risk Metrics&lt;br /&gt;
| summit_session_url = http://www.owasp.org/index.php/Summit_2011_Working_Sessions/Session055&lt;br /&gt;
| mailing_list =&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| short_working_session_description= We all know that you can’t control what you can’t measure and that you need to measure the right things or you won’t be steering towards the right outcome.  For this session we will define the right outcome as “low risk to an organization from vulnerabilities in applications.” This session will discuss assigning business risk to applications and it would also be great if this could be translated into monetary risk to determine if an organizations investment in applications is not too much or too little. This is a big unsolved problem so come prepared with ideas and be willing to take part in a discussion.&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| related_project_name1 = &lt;br /&gt;
| related_project_url_1 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name2 = &lt;br /&gt;
| related_project_url_2 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name3 = &lt;br /&gt;
| related_project_url_3 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name4 = &lt;br /&gt;
| related_project_url_4 = &lt;br /&gt;
&lt;br /&gt;
| related_project_name5 = &lt;br /&gt;
| related_project_url_5 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name1= Quantify business criticality of a deployed application &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name2 = Translate technical risks into business risks (speak the language of management)&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name3 = Translate technical risk into approximate financial risk&lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name4 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_objective_name5 =  &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_date_and_time = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| discussion_model = participants and attendees&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_resources = Projector, whiteboards, markers, Internet connectivity, power&lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| working_session_additional_details = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name1 = Paper describing definitions and formula for determining business criticality&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name2 = Paper translating technical language and risks into business language and monetary risk&lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name3 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name4 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name5 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name6 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name7 = &lt;br /&gt;
&lt;br /&gt;
|summit_session_deliverable_name8 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name1 = Chris Wysopal&lt;br /&gt;
| summit_session_leader_email1 = cwysopal@Veracode.com&lt;br /&gt;
| summit_session_leader_username1 = Chris Wysopal&lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name2 = &lt;br /&gt;
| summit_session_leader_email2 = &lt;br /&gt;
| summit_session_leader_username2 = &lt;br /&gt;
&lt;br /&gt;
| summit_session_leader_name3 = &lt;br /&gt;
| summit_session_leader_email3 = &lt;br /&gt;
| summit_session_leader_username3 = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| operational_leader_name1 = &lt;br /&gt;
| operational_leader_email1 = &lt;br /&gt;
| operational_leader_username1 = &lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| meeting_notes = &lt;br /&gt;
&lt;br /&gt;
|-&lt;br /&gt;
| session_name_mask = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Session055&lt;br /&gt;
| session_home_page = &amp;lt;!--Please replace DO NOT EDIT this string --&amp;gt; Summit_2011_Working_Sessions/Session055&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46038</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46038"/>
				<updated>2008-11-06T20:50:28Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting #7: Tuesday November 11 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46037</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46037"/>
				<updated>2008-11-06T20:50:13Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting #7: Tuesday November 11 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46036</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46036"/>
				<updated>2008-11-06T20:49:52Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: Tuesday November 11 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting #7: Tuesday November 11 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46035</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46035"/>
				<updated>2008-11-06T20:47:28Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: Tuesday November 11 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: Tuesday November 11 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode (The Software Assurance Forum for Excellence in Code)&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46034</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46034"/>
				<updated>2008-11-06T20:46:16Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: Tuesday November 11 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: Tuesday November 11 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Antti Vähä-Sipilä, Nokia: SAFECode'''&lt;br /&gt;
&lt;br /&gt;
*Introduction and overview of SAFECode&lt;br /&gt;
*SAFECode publications&lt;br /&gt;
&lt;br /&gt;
'''17:40 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46006</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=46006"/>
				<updated>2008-11-06T07:38:02Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: Tuesday November 11 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: Tuesday November 11 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Juhani Eronen, CERT-FI: Lifecycle of a security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45902</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45902"/>
				<updated>2008-11-05T14:58:16Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Juhani Eronen, CERT-FI: A recent security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk &amp;amp; cost [cerveza, aqua con gas, etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45900</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45900"/>
				<updated>2008-11-05T14:57:20Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Juhani Eronen, CERT-FI: A recent security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
'''18:30 or so'''&lt;br /&gt;
&lt;br /&gt;
* Enjoy local establishments at own risk :) [cerveza etc]&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45898</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45898"/>
				<updated>2008-11-05T14:55:37Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:20 Juhani Eronen, CERT-FI: A recent security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45897</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45897"/>
				<updated>2008-11-05T14:55:05Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''17:00 Welcome by Anssi Laulajainen, OWASP Chapter Leader'''&lt;br /&gt;
&lt;br /&gt;
*Current state and progress of OWASP Top 10 Finnish translation&lt;br /&gt;
&lt;br /&gt;
'''17:15 Juhani Eronen, CERT-FI: A recent security vulnerability'''&lt;br /&gt;
&lt;br /&gt;
*Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.&lt;br /&gt;
&lt;br /&gt;
'''Discussion'''&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45887</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45887"/>
				<updated>2008-11-05T14:46:46Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
i.e. something like 'the current state and progress of OWASP Top 10 Finnish translation'.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* CERT-FI: A recent security vulnerability, Microsoft MS08-067 (Vulnerability in Server Service Could Allow Remote Code Execution), its history (MS06-040) and exploitation.'''&lt;br /&gt;
&lt;br /&gt;
'''* Discussion'''&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45871</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45871"/>
				<updated>2008-11-05T14:29:25Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
i.e. something like 'the current state and progress of OWASP Top 10 Finnish translation'.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* CERT-FI: A recent security vulnerability.'''&lt;br /&gt;
&lt;br /&gt;
'''* Discussion'''&lt;br /&gt;
&lt;br /&gt;
''' PLEASE REGISTER WITH: mikko . saario at nokia . com (we have reserved snacks for 25 people)'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45870</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45870"/>
				<updated>2008-11-05T14:26:38Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11-13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17:00-18:30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
i.e. something like 'the current state and progress of OWASP Top 10 Finnish translation'.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* CERT-FI: A recent security vulnerability.'''&lt;br /&gt;
&lt;br /&gt;
'''* Discussion'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45629</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=45629"/>
				<updated>2008-11-03T14:17:42Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting, Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting: &amp;lt;TIME AND PLACE TO BE CONFIRMED&amp;gt; ==&lt;br /&gt;
&lt;br /&gt;
'''Location: TBD'''&lt;br /&gt;
&lt;br /&gt;
'''Approximate time: TBD'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
i.e. something like 'the current state and progress of OWASP Top 10 Finnish translation'.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* MAIN TOPIC'''&lt;br /&gt;
&lt;br /&gt;
''' [Sorry folks, we have had some issues locking down a main presentation, therefore this will likely move to a later date]'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=44569</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=44569"/>
				<updated>2008-10-24T11:39:54Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting, Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting, Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11 - 13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Approximate time: 17.00 - 18.30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule (working titles at this time - indicative of planned contents)'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
i.e. something like 'the current state and progress of OWASP Top 10 Finnish translation'.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* [More discussions being planned]'''&lt;br /&gt;
&lt;br /&gt;
''''' STAY TUNED!'''''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=44538</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=44538"/>
				<updated>2008-10-24T06:33:42Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting, Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Helsinki&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting, Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11 - 13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17.00 - 18.30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule (working titles at this time - indicative of planned contents)'''&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
i.e. something like 'the current state and progress of OWASP Top 10 Finnish translation'.&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''* Detailed analysis of a real-life web intrusion'''&lt;br /&gt;
&lt;br /&gt;
'''* What can be the consequences of a seemingly innocent security issue?'''&lt;br /&gt;
&lt;br /&gt;
'''* [One more discussion being planned]'''&lt;br /&gt;
&lt;br /&gt;
''''' STAY TUNED!'''''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=41730</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=41730"/>
				<updated>2008-10-01T13:54:06Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting, Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting, Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11 - 13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 17.00 - 18.30 (NEW TIME)'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule (working titles at this time - indicative of planned contents)'''&lt;br /&gt;
&lt;br /&gt;
'''* Latest OWASP updates'''&lt;br /&gt;
&lt;br /&gt;
'''* Real-life incident dissemination(s)'''&lt;br /&gt;
&lt;br /&gt;
'''* What can be the consequences of a seemingly innocent security issue?'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=41724</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=41724"/>
				<updated>2008-10-01T11:10:52Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting, Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting, Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti, Itämerenkatu 11 - 13, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
'''TBA'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=41116</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=41116"/>
				<updated>2008-09-26T12:47:18Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki Meeting, Tuesday November 11th 2008 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:antti@owasp.org Antti Laulajainen] &lt;br /&gt;
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
== Current Activities ==&lt;br /&gt;
&lt;br /&gt;
Currently OWASP Helsinki is working on the following tasks:&lt;br /&gt;
*[[Top 10 2007 Finnish]] aim to translate OWASP Top 10 list in Finnish&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Meeting, Tuesday November 11th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Nokia Ruoholahti'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
'''TBA'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Web Hacking Workshop, Tuesday September 10th 2008 ==&lt;br /&gt;
&lt;br /&gt;
'''Location: Teleware / KPMG, Laajalahdentie 23, 6. floor, reception at the ground floor, 00330 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
'''18.05 Web Hacking Workshop, Anssi Porttikivi, Senior ICT Advisor KPMG/Teleware'''&lt;br /&gt;
&lt;br /&gt;
*KPMG Oy IT Security Advisory marketing presentation 15 min&lt;br /&gt;
*Web hacking exercises and demonstrations in a laboratory class (using WebGoat and WebScarab tools)&lt;br /&gt;
&lt;br /&gt;
'''Snacks available. Send your reservations to Anssi's mail address, anssi.porttikivi@kpmg.fi. Room for 20 participants.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Note! Be in time, because the reception closes at 18.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Goes! CERT-FI, Thursday, June 12th 2008 ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Viestintävirasto, Itämerenkatu 3 A, 00180 Helsinki and One Pint Pub Santakatu 2, 00180 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 Welcome and recent activities. Antti Laulajainen '''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''16.10 Introduction of CERT-FI. Juhani Eronen, Information Security Adviser, CERT-FI'''&lt;br /&gt;
&lt;br /&gt;
     &lt;br /&gt;
'''16.30 Vulnerability coordination. Juhani Eronen'''&lt;br /&gt;
* CERT-FI as a vulnerability coordinator&lt;br /&gt;
* Coordination examples&lt;br /&gt;
     &lt;br /&gt;
'''18.00 Possibility to continue the evening at the One Pint Pub'''&lt;br /&gt;
* If someone fancies a (self-financed) beer&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Viestintävirasto asks those who wish to participate to the meeting to register in advance. For registrations please contact CERT-FI Unit Secretary Virpi Hienonen (virpi.hienonen(at)ficora.fi). The deadline is June 6, 2008.'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting/Get Together #6 Tuesday, May 13th 2008 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for attending.&lt;br /&gt;
&lt;br /&gt;
You can download the presentation here''' https://www.owasp.org/images/7/70/OWASP_HelsinkiChapter_130508.pdf&lt;br /&gt;
&lt;br /&gt;
Coverage of the event in local news (Finnish only) http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20080514#w2008051411524012715&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki and Ravintola Kaisla, Vilhonkatu 4, 00100 Helsinki'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 16.00 - 20.00'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Welcome to spring meeting 2008.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''16.00 - 16.10 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''16.10-17.00  Notes From The field, OWASP tools and usage experiences, Jarkko Holappa &amp;amp; Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''17.30 -  20.00 Drinks at Ravintola Kaisla (Bring Your Own Wallet)'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Chapter meeting #5 Tuesday, March 11th 2008 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 - 20.30'''&lt;br /&gt;
&lt;br /&gt;
Welcome to first meeting of 2008. OWASP Helsinki resumes activities after winter break.&lt;br /&gt;
&lt;br /&gt;
We are pleased to have as a speaker Technology Manager of Nokia Product Security, Alexandr Seleznyov. His topic will be current state of application security.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
'''18.30 - 18.40 OWASP update. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18.40 - 20.30 Current State of Application Security. Alexandr Seleznyov'''&lt;br /&gt;
  &lt;br /&gt;
&lt;br /&gt;
Hope to see as many of you as possible!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki &amp;amp; RWSUG Seminar Tuesday, January 29th 2008 ==&lt;br /&gt;
'''Location: IBM, Laajalahdentie 23, 00330 Helsinki.'''&lt;br /&gt;
'''Time: 11.15 - 19.00'''&lt;br /&gt;
&lt;br /&gt;
OWASP Helsinki and Rational and Websphere User Group Finland RWSUG are aiming to co-operate to raise application security awareness. OWASP Helsinki will have a presentation in RWSUG agility seminar. More information from http://www.rwsug.fi/default.asp?path=1,39,385&lt;br /&gt;
&lt;br /&gt;
'''You can download the presentation here''' https://www.owasp.org/images/c/cd/RWSUG5_Agile_Security_Management.pdf&lt;br /&gt;
&lt;br /&gt;
See program below. Most of it is Finnish only&lt;br /&gt;
*11.15       Ilmoittautuminen alkaa&lt;br /&gt;
*11.15-12.00 Buffet-lounas &lt;br /&gt;
*12.00-12.10 Tilaisuuden avaus Jussi Jutila, Puheenjohtaja, RWSUG ry&lt;br /&gt;
 &lt;br /&gt;
KEYNOTE&lt;br /&gt;
 &lt;br /&gt;
*12.10-13.30 Scaling Agile Software Development: Strategies for Applying Agile in Complex Situations Scott W. Ambler, Practice Leader Agile Development, IBM Canada&lt;br /&gt;
*13.30-13.45 Kahvitauko&lt;br /&gt;
*13.45-15.30 SOA liiketoiminnan näkökulmasta ja SOA toteutuksen näkökulmasta kansainvälisessa hankkeessa Kari Laine, IT Architect, IF ja Jarmo Laine, Senior Software Architect,Primasoft&lt;br /&gt;
*15.30-15.45 Tauko&lt;br /&gt;
*15.45-16.30 Ketterä tietoturvan hallinta ohjelmistotuotannossa Reijo Savola, VTT&lt;br /&gt;
*16.30-17.15 Jazz Update IBM&lt;br /&gt;
*17.15-19.00 Iltapalaa ja verkostoitumista IBM Forumissa&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki Introduction to ISACA Finland Thursday January 24th 2008 ==&lt;br /&gt;
OWASP Helsinki participated in ISACA Finland meeting to raise application security awareness among system auditors and inspectors.&lt;br /&gt;
&amp;lt;br&amp;gt; A presentation was held that introduced basic web techniques, some security issues, OWASP in general, OWASP projects and OWASP Helsinki chapter.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
'''You can download the presentation here''': https://www.owasp.org/images/e/e4/OWASP_ISACA_20080124.pdf (Finnish Only)&lt;br /&gt;
&amp;lt;br&amp;gt;&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
'''Location: Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
Thank you for all participants and Mark from great presentation.&lt;br /&gt;
 &lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): &lt;br /&gt;
http://mikropc.net/uutiset/index.jsp?categoryId=atk&amp;amp;day=20071003#w2007100315112711629&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome and recent Helsinki chapter activities. Antti Laulajainen'''&lt;br /&gt;
&lt;br /&gt;
'''18:40 Naked Software Security. Mark Curphey'''&lt;br /&gt;
*Commentary on how to build secure software&lt;br /&gt;
*Thoughts on the industry &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Community&amp;diff=22012</id>
		<title>OWASP Community</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Community&amp;diff=22012"/>
				<updated>2007-09-29T05:37:06Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* Events */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;This page is for people to post OWASP related events, such as chapter meetings, OWASP conferences, get-togethers, and OWASP sponsored events.&lt;br /&gt;
&lt;br /&gt;
Events from previous years are archived here:&lt;br /&gt;
* '''[[OWASP Community 2006]]'''&lt;br /&gt;
&lt;br /&gt;
This page is monitored, and items posted here will be copied to the OWASP [[Main Page]].  Please post new items in chronological order using the following format:&lt;br /&gt;
&lt;br /&gt;
 '''Mon ## (##:00h) - [[Article]]'''&lt;br /&gt;
&lt;br /&gt;
&amp;lt;!--&lt;br /&gt;
&lt;br /&gt;
CHAPTER LEADS -- please put your schedule here and we'll post a month in advance&lt;br /&gt;
&lt;br /&gt;
*** Belgium ***&lt;br /&gt;
'''Nov 20 (18:00h) - [[Belgium|Belgium Chapter Meeting]] '''&lt;br /&gt;
&lt;br /&gt;
*** OTTAWA: Rough dates ***&lt;br /&gt;
'''Sept 12 (18:00h) - [[Ottawa|Ottawa Chapter Meeting]] '''&lt;br /&gt;
'''Nov 14 (18:00h) - [[Ottawa|Ottawa Chapter Meeting]] '''&lt;br /&gt;
&lt;br /&gt;
*** BOSTON: Every first Wednesday of the month ***&lt;br /&gt;
&lt;br /&gt;
*** MELBOURNE: First Tuesday of the month ***&lt;br /&gt;
'''Jul 3 (18:00h) - [[Melbourne|Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
*** NETHERLANDS: Second Thursday of the month sometimes ***&lt;br /&gt;
'''Sept 13 (18:00h) - [[Netherlands|Netherlands chapter meeting]]'''&lt;br /&gt;
'''Dec 13 (18:00h) - [[Netherlands|Netherlands chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
*** ROCHESTER: Every third Monday of the month ***&lt;br /&gt;
&lt;br /&gt;
*** TORONTO: Every second Wednesday of the month&lt;br /&gt;
&lt;br /&gt;
*** VIRGINIA: Every second thursday of the month ***&lt;br /&gt;
&lt;br /&gt;
--&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Events==&lt;br /&gt;
'''Oct 2 (1830h) - [[Helsinki|Helsinki chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 27 (1800h) - [[New York|NY/NJ Metro chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 27 (13:00h) - [[Taiwan|Taiwan chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 13 (18:00h) - [[Netherlands|Netherlands chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 10 (18:00h) - [[Rochester|Rochester chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 7 (15:00h) [[Germany|German chapter meeting]]''' - Restart of the German Chapter&lt;br /&gt;
&lt;br /&gt;
'''Sept (12:00h) - [[Belgium|Belgium OWASP Day Event]] '''&lt;br /&gt;
&lt;br /&gt;
'''Sept 6 (18:00h) - [[Kansas_City|Kansas City Chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 5 (18:00h) - [[Chicago|Chicago Chapter Meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Sept 5 (17:00h) - [[Israel|Israeli chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''July 25 (18:00h) - [[San Jose|San Jose Chapter Meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''July 24 (17:00h) - [[Switzerland|Switzerland chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''July 14 (11:00h) - [[Turkey|Turkey chapter meeting - 1st Web Security Days]]'''&lt;br /&gt;
&lt;br /&gt;
'''July 6 (17:00h) - [[Spain|Spain chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 26 (11:30hr) - [[Austin|Austin chapter meeting]]''' - Running Web Application Scans&lt;br /&gt;
&lt;br /&gt;
'''June 22 (18:00h) - [[Belgium|Belgium chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 21 (19:00h) - [[Denver]]''' - Anti-DNS Pinning Attacks / Calculating Return on Security Investment (ROSI)&lt;br /&gt;
&lt;br /&gt;
'''June 19 (18:00h) - [[Minneapolis St Paul|Minneapolis St Paul chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 15 (17:00hr) - [[Spain|Spain chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 13 (18:30hr) - [[Kansas City|Kansas City chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 12 (18:00hr) - [[New York|NY/NJ Metro chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jun 5 (19:00h) - [[Helsinki|Helsinki chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jun 5 (18:00h) - [[Melbourne|Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jun 5 (17:30h) - [[Houston | Houston Chapter Meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 29 (9:00h) - [[http://www.owasp.org/index.php/Italy#May_29th.2C_2007_-_Seminar:_.22Software_Security.22 Italy@Firenze Tecnologia]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 29 (11:30h) - [[Austin | Austin Chapter Meeting]]''' - Bullet Proof UI - A programmer's guide to the complete idiot&amp;quot;. &lt;br /&gt;
&lt;br /&gt;
'''May 29 (18:00h) - [[Ottawa | Ottawa Chapter Meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 22 (18:30h) - [[New Zealand|1st New Zealand chapter Meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 21 (14:00h) - [[Israel|2nd OWASP Israel mini conference]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 15 (18:00h) - [[Rochester|Rochester chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 10 (18:00h) - [[Belgium|Belgium chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 9 (18:00h) - [[Toronto|Toronto chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 8 (18:00h) - [[Virginia (Northern Virginia)|Washington DC (N. VA) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 6 (11:00h) - [[Turkey|Turkey chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 2 (18:30h) - [[Boston|Boston chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 1 (18:00h) - [[Melbourne|Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 26 (11:00h) - [[San Antonio|San Antonio chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 26 (17:00h) - [[Switzerland|Switzerland chapter meeting and &amp;quot;Swiss Security Dinner&amp;quot;]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 24 (18:00h) - [[Minneapolis St Paul|Minneapolis St Paul chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 20 (19:00h) - [[Hong Kong|Hong Kong chapter meeting - Objectives for 2007]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 19 (18:00h) - [[Virginia (Northern Virginia)|Washington DC (N. VA) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 18 (17:00h) - [[San Francisco City Chapter Meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 17 (18:00h) - [[New Jersey|NY/NJ Metro chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 17 (18:00h) - [[Rochester|Rochester chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 12 (18:00h) - [[Netherlands|Netherlands chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 12 (18:00h) - [[San Jose|San Jose chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 11 (18:00h) - [[Toronto|Toronto chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 4 (18:30h) - [[Boston|Boston chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Apr 3 (18:00h) - [[Melbourne|Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 30 - [[http://www.owasp.org/index.php/Italy#March_30th.2C_2007_-_Master_in_Security_-_University_of_Rome_.22La_Sapienza.22| Italy@Master in Security at &amp;quot;La Sapienza&amp;quot;]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 28 (18:00h) - [[Washington DC|Washington DC (MD) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 28 (11:30h) - [[San Antonio|San Antonio chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
; '''Mar 27-30 - [http://www.blackhat.com Black Hat Euro]'''&lt;br /&gt;
: OWASP members receive a Euro 100 Briefings discount by inserting BH7EUASSOC in the box marked “Coupon Codes”&lt;br /&gt;
&lt;br /&gt;
'''Mar 22 (18:00h) - [[London|London chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 21-22 - [[Belgium#OWASP_Top_10_2007_Update_.28Infosecurity_Belgium.2C_21_.26_.2622_Mar_2007.29|Belgium@InfoSecurity]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 20 (18:00h) - [[Rochester|Rochester chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 14 (18:00h) - [[Toronto|Toronto chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 14 (18:00h) - [[Chicago|Chicago chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 13 (18:00h) - [[Virginia (Northern Virginia)|Washington DC (N. VA) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 8 (18:00h) - [[Ottawa|Ottawa Chapter Meeting]] '''&lt;br /&gt;
&lt;br /&gt;
'''Mar 7 (18:30h) - [[Boston|Boston chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 7 (18:30h) - [[Kansas City|Kansas City chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 6 (18:30h) - [[Philadelphia|Philadelphia chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 6 (18:30h) - [[San Francisco|San Francisco and San Jose chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 6 (18:00h) - [[Melbourne|Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 5 (11:00h) - [[New Jersey|New Jersey chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Mar 1 (11:30h) - [http://www.eusecwest.com/agenda.html EUSecWest 07: Testing Guide]'''&lt;br /&gt;
&lt;br /&gt;
; '''Feb 26-Mar 1 - [http://www.blackhat.com Black Hat DC]'''&lt;br /&gt;
: OWASP members receive a $100 Briefings discount by inserting BH7DCASSOC in the box marked “Coupon Codes”&lt;br /&gt;
&lt;br /&gt;
'''Feb 28 (18:00h) - [[Seattle|Seattle chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 27 (18:00h) - [[Edmonton|Edmonton chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 22 (18:30h) - [[Helsinki|Helsinki chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 22 (18:00h) - [[London|London chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 21 (18:30h) - [[Denver|Denver chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 19 (18:00h) - [[Rochester|Rochester chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 15 (18:00h) - [[Washington DC|Washington DC (MD) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 15 (18:00h) - [[Virginia (Northern Virginia)|Washington DC (N. VA) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 14 (18:00h) - [[Toronto|Toronto chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 13 (18:00h) - [[Ireland|Ireland chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 12 (18:30h) - [[Switzerland|Switzerland chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 7 (18:30h) - [[Boston|Boston chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 6-7 - [[Italy#February_6th-8th.2C_2007_-_InfoSecurity|Italy@InfoSecurity]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 6 (18:00h) - [[Melbourne|Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Feb 2 (14:00h) - [[Chennai|Chennai chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 31 (15:00h) - [[Mumbai|Mumbai chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 30 (11:30h) - [[Austin|Austin chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 25 (18:00h) - [[San Francisco| San Francisco chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 25 (14:30h) - [[Italy#October_25th.2C_2007_-_Isaca_Rome|Italy@ISACA Rome]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 24 (17:30h) - [[Israel#6th_OWASP_IL_meeting:_Wednesday.2C_January_24th_2007|6th OWASP Israel chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 23 (18:00h) - [[Belgium|Belgium chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 22 (18:00h) - [[Rochester|Rochester chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 17 (18:30h) - [[Denver|Denver chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 16 (17:45h) - [[Edmonton|Edmonton chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 11 (18:00h) - [[Netherlands|Netherlands chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 11 (18:30h) - [[Phoenix|Phoenix chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 11 (18:00h) - [[Virginia (Northern Virginia)|Washington DC (N. VA) chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 10 (18:00h) - [[Toronto|Toronto chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 8 (18:00h) - [[Seattle|Seattle chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''Jan 3 (18:30h) - [[Boston|Boston chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 1 - [[Melbourne | Melbourne chapter meeting]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 2 - [[Boston]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 6 - [[Turkey]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 8 - [[Virginia (Northern Virginia)|Washington DC (VA)]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 9 - [[Toronto]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 10 - [[Belgium]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 15 - [[Rochester]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 21 - [[Israel]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 22 - [[New Zealand]]'''&lt;br /&gt;
&lt;br /&gt;
'''May 29 - [[Italy]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 5 - [[Houston]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 5 - [[Melbourne]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 5 - [[Helsinki]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 12 - [[New Jersey]]'''&lt;br /&gt;
&lt;br /&gt;
'''June 15 - [[Spain]]'''&lt;br /&gt;
&lt;br /&gt;
'''July 14 - [[Turkey]]'''&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21897</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21897"/>
				<updated>2007-09-20T23:43:34Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''18:30, Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21896</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21896"/>
				<updated>2007-09-20T23:43:05Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:30, Ixonos, Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
''' '''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
''' '''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21895</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21895"/>
				<updated>2007-09-20T23:42:38Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18:30 at Ixonos premises Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
''' '''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
''' '''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21894</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21894"/>
				<updated>2007-09-20T23:20:57Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 at Ixonos premises Hitsaajankatu 20, 00810 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
''' '''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
''' '''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21893</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21893"/>
				<updated>2007-09-20T20:55:27Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, Oct 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, October 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 at Ixonos premises Hitsaajankatu 20, 008100 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21892</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21892"/>
				<updated>2007-09-20T20:55:11Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 with Mark Curphey, Tuesday, Oct 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007 with Mark Curphey, Tuesday, Oct 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 at Ixonos premises Hitsaajankatu 20, 008100 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21891</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21891"/>
				<updated>2007-09-20T20:54:35Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 with Mark Curphey, Tuesday, Oct 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 with Mark Curphey, Tuesday, Oct 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE (Application Consulting &amp;amp; Engineering) team in Europe - to visit Finland and discuss web app security with us. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 at Ixonos premises Hitsaajankatu 20, 008100 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21890</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21890"/>
				<updated>2007-09-20T20:52:31Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 with Mark Curphey, Tuesday, Oct 2 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 with Mark Curphey, Tuesday, Oct 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE team in Europe - to visit Finland and have a presentation on a web app security topic in the meeting. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
'''Time: 18.30 at Ixonos premises Hitsaajankatu 20, 008100 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
'''WELCOME!'''&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21889</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=21889"/>
				<updated>2007-09-20T20:51:36Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007, TBD */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 with Mark Curphey, Tuesday, Oct 2 2007 ==&lt;br /&gt;
&lt;br /&gt;
We are delighted to have Mark Curphey - the OWASP founder and new head of Microsoft's ACE team in Europe - to visit Finland and have a presentation on a web app security topic in the meeting. Hopefully as many as of you possible can participate!&lt;br /&gt;
&lt;br /&gt;
Time: 18.30 at Ixonos premises Hitsaajankatu 20, 008100 Helsinki.&lt;br /&gt;
&lt;br /&gt;
WELCOME!&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=20501</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=20501"/>
				<updated>2007-07-31T10:52:30Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007, Mini-conference, TBD */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, TBD ==&lt;br /&gt;
&lt;br /&gt;
Due to the chapter leader change process taking place (old one i.e. me leaving the country), all current plans are shelved for the moment. Once there is a new leader onboard, planning for the next event will resume.&lt;br /&gt;
&lt;br /&gt;
Stay tuned...&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_on_the_Move&amp;diff=19110</id>
		<title>OWASP on the Move</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_on_the_Move&amp;diff=19110"/>
				<updated>2007-06-11T10:44:34Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* Current demand */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;This new program allows local chapter or application security conferences to have OWASP presenters on site.&lt;br /&gt;
&lt;br /&gt;
This page will allow 3 parties to find each other:&lt;br /&gt;
&lt;br /&gt;
* OWASP speakers to entertain OWASP presentations and that want to see the world&lt;br /&gt;
* Local chapters or application security events that want to attract an OWASP speaker&lt;br /&gt;
* OWASP sponsors that want to support spreading the OWASP message&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Current demand ==&lt;br /&gt;
Add your demand here:&lt;br /&gt;
* [[Helsinki]] is looking for OWASP speakers on the SDLC topic for a mini-conference. Expected timing is late August, early Sept. Sponsors and potential speakers are requested to contact Mikko.&lt;br /&gt;
&lt;br /&gt;
== Current offerings ==&lt;br /&gt;
If you want to (re)do an OWASP related presentation, propose them here with your availability boundaries (timing/geographical)&lt;br /&gt;
* you?&lt;br /&gt;
&lt;br /&gt;
== OWASP on the Move Events ==&lt;br /&gt;
We already have one example in [[Belgium]] were Ivan Ristic and Dinis Cruz will come to the next chapter meeting (sponsored by F5 Networks locally).&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19036</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19036"/>
				<updated>2007-06-08T11:29:35Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, Mini-conference, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Planning is underway for a mini-conference, but as always, plans do change and this site will be updated with the latest information as soon as it becomes available!&lt;br /&gt;
&lt;br /&gt;
Stay tuned...&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19035</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19035"/>
				<updated>2007-06-08T11:29:18Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, Mini-conference, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Planning is underway for a mini-conference, but as always, plans do change and this site will be updated with the latest information as soon as it becomes available!&lt;br /&gt;
&lt;br /&gt;
Stay tuned...&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/tietoturva_docview.jsp?f_id=1186167&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19034</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19034"/>
				<updated>2007-06-08T11:26:44Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, Mini-conference, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Planning is underway for a mini-conference, but as always, plans do change and this site will be updated with the latest information as soon as it becomes available!&lt;br /&gt;
&lt;br /&gt;
Stay tuned...&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Coverage of the meeting in the local news (in Finnish): http://www.tietoviikko.fi/doc.do?f_id=1083463&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19031</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=19031"/>
				<updated>2007-06-08T07:11:23Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, Mini-conference, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Planning is underway for a mini-conference, but as always, plans do change and this site will be updated with the latest information as soon as it becomes available!&lt;br /&gt;
&lt;br /&gt;
Stay tuned...&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18880</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18880"/>
				<updated>2007-05-30T14:00:01Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP XML Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18879</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18879"/>
				<updated>2007-05-30T13:58:15Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.'''&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.'''&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP Xml Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.'''&lt;br /&gt;
&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''20:45 Enter Bar 52...'''&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18878</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18878"/>
				<updated>2007-05-30T13:56:13Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP Xml Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.&amp;lt;/B&amp;gt;&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;20:45 Enter Bar 52...&amp;lt;/B&amp;gt;&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18877</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18877"/>
				<updated>2007-05-30T13:55:37Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;.&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject. Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP Xml Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.&amp;lt;/B&amp;gt;&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;20:45 Enter Bar 52...&amp;lt;/B&amp;gt;&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18876</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18876"/>
				<updated>2007-05-30T13:53:51Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Location: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari.&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
19:00 Welcome &amp;amp; quick recap of recent OWASP activity and the Spring conference. Mikko Saario.&lt;br /&gt;
&lt;br /&gt;
19:15 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;. Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject.&lt;br /&gt;
Topics to be covered:&lt;br /&gt;
* XML Security Gateways&lt;br /&gt;
* Message level threats and security countermeasures in Web services&lt;br /&gt;
* OWASP Xml Security Gateway Evaluation Criteria Project&lt;br /&gt;
&lt;br /&gt;
20:15 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.&lt;br /&gt;
(There is a chance Alex cannot make it. In that case we will discuss SOA stuff in more detail or just head off to bar earlier.)&lt;br /&gt;
&lt;br /&gt;
20:45 Enter Bar 52...&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18702</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18702"/>
				<updated>2007-05-18T11:44:43Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Venue: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
19:00 Welcome&lt;br /&gt;
&lt;br /&gt;
19:05 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;. He will discuss SOA/WS/XML security in detailed level and provide an update of his OWASP XML GW project. Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject.&lt;br /&gt;
&lt;br /&gt;
19:40 &amp;quot;Real-life usage of OWASP tools&amp;quot;. Alexandr Seleznyov, Nokia Product Security.&lt;br /&gt;
&lt;br /&gt;
20:15 3rd presentation still open...!&lt;br /&gt;
&lt;br /&gt;
20:45 Enter Bar 52...&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18400</id>
		<title>Helsinki</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Helsinki&amp;diff=18400"/>
				<updated>2007-05-09T18:26:09Z</updated>
		
		<summary type="html">&lt;p&gt;Msaario: /* OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Helsinki|extra=The chapter leader is [mailto:Mikko.Saario@nokia.com Mikko Saario]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-helsinki|emailarchives=http://lists.owasp.org/pipermail/owasp-helsinki}}&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Welcome to the OWASP Helsinki Chapter'''&lt;br /&gt;
&lt;br /&gt;
The plan is to meet at least three to four times a year, each lasting 1,5-3 hours (more active &amp;quot;hands&amp;quot; means more meetings). This chapter is based in the capital area and therefore the meetings will be in or around Helsinki.&lt;br /&gt;
&lt;br /&gt;
If you wish to present at one of the meetings or have any other inquiries, please contact the chapter leader.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #4 Fall 2007, e.g. security &amp;amp; SDLC, TBD ==&lt;br /&gt;
&lt;br /&gt;
This will take place after the Summer holiday period, maybe September. More information to follow.&lt;br /&gt;
&lt;br /&gt;
Discussion regarding security in systems development: How to define requirements, design, etc. Stay tuned.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #3 Summer 2007: &amp;quot;SOA, Web Services &amp;amp; XML Security&amp;quot;, Tuesday, June 5th 2007 ==&lt;br /&gt;
&lt;br /&gt;
&amp;lt;B&amp;gt;Date: June 5th&lt;br /&gt;
&lt;br /&gt;
Venue: Smilehouse, Itälahdenkatu 22A (Stonesoft building), Lauttasaari&lt;br /&gt;
&lt;br /&gt;
SPACE IS LIMITED TO 30 PEOPLE, SO PLEASE DO REGISTER BEFOREHAND (i.e. send an email to chapter leader).&amp;lt;/B&amp;gt;&lt;br /&gt;
&lt;br /&gt;
19:00 Welcome&lt;br /&gt;
&lt;br /&gt;
19:05 Gunnar Peterson, CTO Arctec Group and project lead for the OWASP &amp;quot;XML Security Gateway Evaluation Criteria&amp;quot;. Topic to be announced. Gunnar will be visiting Finland to provide training via Tietoturva ry on this subject.&lt;br /&gt;
&lt;br /&gt;
19:40 2nd presentation. Presenter and topic being planned.&lt;br /&gt;
&lt;br /&gt;
20:15 3rd presentation. Presenter and topic being planned.&lt;br /&gt;
&lt;br /&gt;
20:45 Enter Bar 52...&lt;br /&gt;
--&amp;gt; Enjoy (sponsored) beverages.&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #2 Winter 2007, Web Application Firewalls, Thursday, February 22 2007 ==&lt;br /&gt;
&lt;br /&gt;
Thank you for the 29 participants, the speakers and the host - Nixu - for making this event happen!&lt;br /&gt;
&lt;br /&gt;
'''Location: Nixu, Mäkelänkatu 91, 00601 Helsinki.'''&lt;br /&gt;
&lt;br /&gt;
What are Web Application Firewalls (WAF), how do they work, what do they do and what don't they do. Discussion and sharing of experiences of various technologies and products.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.30 Welcome. Mikko Saario, Chapter Leader.'''&lt;br /&gt;
&lt;br /&gt;
Today's topic and agenda in short.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18.35 &amp;quot;Web Application Firewalls Technical Analysis&amp;quot;. Joakim Sandström, CTO nSense.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/6/6a/Owasp_waf_joakim.pdf&lt;br /&gt;
&lt;br /&gt;
	- Technology&lt;br /&gt;
&lt;br /&gt;
	- Blacklisting &amp;amp; Whitelisting&lt;br /&gt;
&lt;br /&gt;
	- mod_security features&lt;br /&gt;
&lt;br /&gt;
	- Do's and Don'ts&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19.30 &amp;quot;The Core Rule Sets&amp;quot;. Ofer Shezaf, CTO Breach Security.'''&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/f/f4/The_Core_Rule_Set_-_Ofer.pdf&lt;br /&gt;
&lt;br /&gt;
	- WAF deployment and protection strategies&lt;br /&gt;
&lt;br /&gt;
	- Detection of generic web layer attacks&lt;br /&gt;
&lt;br /&gt;
	- Virtual patching&lt;br /&gt;
&lt;br /&gt;
== OWASP Helsinki meeting #1, Tuesday, Dec 12 2006 at Ernst &amp;amp; Young ==&lt;br /&gt;
&lt;br /&gt;
The Helsinki chapter had the first meeting at Ernst &amp;amp; Young office in Elielinaukio 5 B. The agenda and the presentations for the meeting are below. We had a good turnout: 22 people were present i.e. all seats were taken - we were very happy to see all these people to be interested in application security issues.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''18:30 Welcome. What is OWASP and why OWASP Helsinki?'''&lt;br /&gt;
&lt;br /&gt;
Mikko Saario made a short presentation about OWASP and the objective for the local Helsinki chapter.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:00 Analyzing Threats (Olli Wiren; olli [at] juurihoito.org)'''&lt;br /&gt;
&lt;br /&gt;
Olli Wiren discussed application related threats and corresponding security issues.&lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/images/7/7c/Owasp-olli.pdf&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''19:45 Open discussion regarding OWASP Helsinki; what is expected or wished; how to go ahead and so forth.'''&lt;br /&gt;
&lt;br /&gt;
There was a lively discussion regarding what type of activities should be arranged in the future. More details will follow...&lt;/div&gt;</summary>
		<author><name>Msaario</name></author>	</entry>

	</feed>