<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Packetfocus</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Packetfocus"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Packetfocus"/>
		<updated>2026-05-30T18:17:19Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=79004</id>
		<title>Huntsville Alabama</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=79004"/>
				<updated>2010-02-27T07:43:02Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Local Huntsville Alabama OWASP Chapter News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Huntsville, Alabama|extra=The chapter leader is [mailto:josh@packetfocus.com Josh Perrymon]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Huntsville_Alabama|emailarchives=http://lists.owasp.org/pipermail/owasp-Huntsvlle_Alabama}}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Huntsville, Alabama&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News - Chapter is ACTIVE  ==&lt;br /&gt;
&lt;br /&gt;
 '''Meeting Location - VERIFIED'''&lt;br /&gt;
&lt;br /&gt;
The Huntsville chapter Committee met today (Feb 27,2010) and have official secured several high quality meeting locations. The first public meeting will be held at the new SAIC(SAIC.com) location in Huntsville’s Research Park. SAIC has also mentioned that we will have continual access to the conference room depending on the number of attendees. &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
Google map link to the location [http://maps.google.com/maps?q=6723+Odyssey+Drive+Huntsville,+AL+35806].&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
TThe SAIC conference room that is currently approved will hold approximately 10-15 attendees comfortably. Other approved locations include the new CB&amp;amp;amp;S Bank downtown location, and Intergraph in Huntsville. The CB&amp;amp;amp;S conference room i will hold 12-17 and if additional space is required Intergraph has an auditorium that would be accessible. Based on other groups, we estimate 10-30 attendees for the initial March meeting (March 24, 2010) &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
 ''When the Chapter meets''&lt;br /&gt;
&lt;br /&gt;
The Huntsville OWASP Chapter will meet the third (3rd) Wednesday of every month. The first meeting will be in March 2010. However, due to spring break, the first public meeting will be re-scheduled to March 24, 2010. The normal meeting schedule will return in April, and the projected date is April 12-2010. Location will vary depending on RSVP. &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
The March 24, 2010 meeting will provide an overview of OWASP and include high level information on projects, funding, current news, future plans, and an open discussion on the local Huntsville Chapter. A&amp;amp;nbsp;short presentation on OWASP&amp;amp;nbsp;will be provided by Joshua Perrymon, who will then open the meeting to the open discussion. We urge you to attend to better understand OWASP, what the Huntsville chapter is planning, and to provide feedback on current application security issues.&lt;br /&gt;
&amp;lt;pre&amp;gt;Chapter Meeting Times/ Schedule&amp;lt;/pre&amp;gt;&lt;br /&gt;
11:30 -11:45 : Lunch / Social&amp;lt;br&amp;gt;11:45 -12:00 : Chapter News /Updates&amp;lt;br&amp;gt;12:00-:12:30-12:45 Talk (This is variable based on content and type of presenation)&amp;amp;nbsp;&amp;lt;br&amp;gt;12:45-1:00- Open Discussion / Q&amp;amp;amp;A / FeedBack for next meetings content&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
* This is a rough schedule, but we will attempt to stick to it as close as possible. If presentations are to be over an hour appropriate announcements will be made ahead of time for scheduling. We understand that everyone can't be out of the office for several hours, and want to pack as much value and content into the alloted time as possible. The goal is for each atendee to walk away with usable information and value. If we are not doing that, thencontact us and let us know how to improve our meeting process.&lt;br /&gt;
&lt;br /&gt;
 ''Potential Training/ 1-day Application Security Conference Idea''&lt;br /&gt;
&lt;br /&gt;
We have discussed having a one day conference focused on Application Security. Tracks would be based on OWASP content, projects, methods, etc and how to put it all together to create and maintain an effective application security program.&lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
Tracks/Session may be split based on technical and management focused material. This may be held Q4 2010 depending on community feedback, planning and budget. We can also start on a smaller scale to define a workable model before investing in a much larger event.&amp;amp;nbsp; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
Attendees would be charged an affordable fee of $100-$250 with proceeds from the conference going directly into the Chapters OWASP&amp;amp;nbsp;PayPal fund. Vendor space would be available to help support the event as well.&lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
Ideas/Comments may be sent to Joshua Perrymon (Josh AT PacketFocus.com)&lt;br /&gt; &lt;br /&gt;
&amp;lt;pre&amp;gt;Huntsville Chapter Board Members&amp;lt;/pre&amp;gt;&lt;br /&gt;
The Huntsville Board has been selected for 2010 and had the first planning meeting February 27, 2010 at SAIC in Huntsville. The board was selected by community security leaders from a diverse background of companies. The board represents different members from various roles in each of their respective organizations to bring broad perspective, cross-industry experience, and to ensure the chapter operates effectively and provides value back to the community. &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt; '''Board Chairman:'''&lt;br /&gt; Joshua Perrymon: ''PacketFocus''&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
'''Board Members:'''&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
*Bob Luedeman: ''CB&amp;amp;amp;S Bank'' &lt;br /&gt; &lt;br /&gt;
*Dean V. Della Pella: ''Intergraph''&lt;br /&gt; &lt;br /&gt;
*Mike Lyman: ''SAIC''&lt;br /&gt; &lt;br /&gt;
*Harold Cook: ''SAIC''&lt;br /&gt;
&lt;br /&gt;
''Current board responsibilities include:''&lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
Speaker selection, budgeting/accounting, marketing, operations, integration with other security organizations, updating content, obtaining feedback from the local community, venue selection, catering, and event planning to name a few. The overall vision is to raise application security awareness among all Huntsville companies/organizations. We also want to bridge the gap between executive and technical in relation to application security to ensure a cohesive process that works from the top down.&lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt; &lt;br /&gt;
&amp;lt;pre&amp;gt;'''Becoming a Member: Do I&amp;amp;nbsp;have to be a &amp;quot;member&amp;quot; to attend.&amp;amp;nbsp;'''&amp;lt;/pre&amp;gt;&lt;br /&gt;
The professional association of OWASP Foundation is a not-for-profit 501c3 charitable organization not associated with any commercial product or service. OWASP is an open source project dedicated to finding and fighting the causes of insecure software to be successful we need your support. OWASP individuals, supporting educational and commercial organization form an application security community that works together to create articles, methodologies, documentation, tools, and technologies (“OWASP Materials”).&lt;br /&gt;
&lt;br /&gt;
- 2009 Membership Powerpoint&amp;amp;nbsp;[http://www.owasp.org/images/3/34/OWASP_2009MembershipDrive.ppt www.owasp.org/images/3/34/OWASP_2009MembershipDrive.ppt]&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
Membership Page Link for full details:&amp;amp;nbsp;[http://www.owasp.org/index.php/Membership www.owasp.org/index.php/Membership]&lt;br /&gt;
&lt;br /&gt;
'''Membership Levels'''&lt;br /&gt;
&lt;br /&gt;
$50 -&amp;amp;nbsp;Individual Supporters&lt;br /&gt;
&lt;br /&gt;
TBD-&amp;amp;nbsp;'''Single Meeting Supporter'''&lt;br /&gt;
&lt;br /&gt;
'''$5000 -&amp;amp;nbsp;Organization Supporters'''&lt;br /&gt;
&lt;br /&gt;
'''FREE -&amp;amp;nbsp;Accredited University Supporters &amp;amp;nbsp;([http://www.ed.gov/admins/finaid/accred/index.html www.ed.gov/admins/finaid/accred/index.html] )'''&lt;br /&gt;
&lt;br /&gt;
'''FREE'''&amp;amp;nbsp;to attend a meeting&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Why Should I Become An OWASP Member or Organization Supporter''' &lt;br /&gt;
&lt;br /&gt;
OWASP provides documentation, tools, methodologies, standards, articles, and message forums (“OWASP Materials”) as a service to Internet users worldwide to help users and developers understand more about application security. OWASP makes these materials available to end users to help them acquire, build, test, and operate secure software. In addition to the benefits you receive as described above, your membership helps to support the growth of OWASP and the development of new and improved OWASP Materials. Because we are an open, non-commercial entity, we can take on projects that commercial entities driven by profit motives could not. Everyone benefits from these projects. Your support will help OWASP continue to find and fight the causes of insecure software.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;'''How Are Funds Used?''' &lt;br /&gt;
&lt;br /&gt;
OWASP is a 501c3 not-for-profit foundation, and all funds go directly to support OWASP projects, grants, chapters, and infrastructure. Our funds come from conferences, memberships, advertising, and individual and organization supporter contributions. The local chapter receives 40% of membership dues to fund overhead and growth. All records are documented, and maintained by OWASP and a local Huntsville Chapter board member.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;'''Who Must Become an OWASP Member'''? &lt;br /&gt;
&lt;br /&gt;
&amp;lt;u&amp;gt;'''Memberships are not required to use OWASP materials under each project's open source license. Also, anyone can participate in or contribute to an OWASP project without becoming a member. Your membership fees are what make the various OWASP projects possible.'''&amp;lt;/u&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;'''How Can I Become An OWASP Member?''' &lt;br /&gt;
&lt;br /&gt;
To become an OWASP Member, an individual or organization must: Agree to the terms and conditions of the OWASP Membership Agreement. Pay the appropriate membership fee, depending on what type of OWASP Membership is indicated. (See top of page for both) Keep OWASP updated with accurate contact and business profile information. Enrollment as an OWASP Member is required before a commercial license to use the materials is established. The term of the agreement is one year from the date of execution. We appreciate your interest in becoming an OWASP Member. Click the &amp;quot;Register Now&amp;quot; logo to begin the OWASP Member registration process:&lt;br /&gt;
&lt;br /&gt;
[https://guest.cvent.com/EVENTS/Register/IdentityConfirmation.aspx?e=c6554982-632d-4218-8c77-636ee772baff guest.cvent.com/EVENTS/Register/IdentityConfirmation.aspx][[Image:https://www.owasp.org/images/9/9d/Register_now.gif]] &lt;br /&gt;
&lt;br /&gt;
You can also complete the Membership Form and make your payment by mail. Please contact Kate Hartmann for information on wire transfer or other processing methods.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
 '''Quick list of useful OWASP Documentation and Projects'''&lt;br /&gt;
&lt;br /&gt;
OWASP Development Guide&lt;br /&gt; a massive document covering all aspects of web application and web service security (Assessment Criteria v1.0) &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/index.php/Category:OWASP_Guide_Project&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt; OWASP .NET Project &lt;br /&gt; http://www.owasp.org/index.php/Category:OWASP_.NET_Project&lt;br /&gt; the purpose of the this project is to provide a central repository of information and tools for software professionals that use the Microsoft .NET Framework for web applications and services. (Assessment Criteria v1.0) &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt; OWASP Testing Guide &lt;br /&gt; http://www.owasp.org/index.php/Category:OWASP_Testing_Project&lt;br /&gt; a project focused on application security testing procedures and checklists (Assessment Criteria v1.0) &lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
OWASP Top Ten Project &lt;br /&gt; http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project&lt;br /&gt; &lt;br /&gt; &lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt; OWASP Application Security Verification Standard Project &lt;br /&gt; http://www.owasp.org/index.php/Category:OWASP_Application_Security_Verification_Standard_Project&lt;br /&gt; The ASVS defines the first internationally-recognized standard for conducting application security assessments. It covers both automated and manual approaches for assessing (verifying)&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78944</id>
		<title>Huntsville Alabama</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78944"/>
				<updated>2010-02-25T06:21:07Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Huntsville, Alabama|extra=The chapter leader is [mailto:josh@packetfocus.com Josh Perrymon]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Huntsville_Alabama|emailarchives=http://lists.owasp.org/pipermail/owasp-Huntsvlle_Alabama}}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Huntsville, Alabama&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Meeting Location'''&lt;br /&gt;
&lt;br /&gt;
We are excited to announce that we have secured a steady meeting location at the SAIC facility in Huntsville, Alabama. The chapter commitee will meet Feb. to plan the first &amp;quot;Official&amp;quot; meeting in March.  Hopefully, we will add the specific SAIC meeting location link and map this week.&lt;br /&gt;
&lt;br /&gt;
'''Huntsville Chapter Commitee'''&lt;br /&gt;
&lt;br /&gt;
We are going to try ssomething a little different with the Huntsville Chapter. The main goal is to better educate the local IT community with focus on application security. But to perform this efficiently, we must first work with the community represenatives to understand the current applications security needs, education gap-analysis, etc. Basically, the commitee was formed with local IT leaders from various companies such as SAIC, Intergraph, and CB&amp;amp;S Bank to name a few. What we look for is feedback from all perspectives to drive the meeting content, and to help solve problems. Because at the end of the meeting, the attendee needs to walk away with valus and usuable information. This may be a solution to input validation, or a new way of thinking about risk and security applications.  OWASP is a 360 degree process focusing solely on application security, and we plan on promoting that through education, awareness, and improved processes. &lt;br /&gt;
&lt;br /&gt;
Security before Operations.&lt;br /&gt;
&lt;br /&gt;
 '''Wuick list of useful OWASP Documentation and Projects'''&lt;br /&gt;
&lt;br /&gt;
OWASP Development Guide&lt;br /&gt;
a massive document covering all aspects of web application and web service security (Assessment Criteria v1.0) &lt;br /&gt;
&lt;br /&gt;
http://www.owasp.org/index.php/Category:OWASP_Guide_Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP .NET Project &lt;br /&gt;
http://www.owasp.org/index.php/Category:OWASP_.NET_Project&lt;br /&gt;
the purpose of the this project is to provide a central repository of information and tools for software professionals that use the Microsoft .NET Framework for web applications and services. (Assessment Criteria v1.0) &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP Testing Guide &lt;br /&gt;
http://www.owasp.org/index.php/Category:OWASP_Testing_Project&lt;br /&gt;
a project focused on application security testing procedures and checklists (Assessment Criteria v1.0) &lt;br /&gt;
&lt;br /&gt;
OWASP Top Ten Project &lt;br /&gt;
http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
OWASP Application Security Verification Standard Project &lt;br /&gt;
http://www.owasp.org/index.php/Category:OWASP_Application_Security_Verification_Standard_Project&lt;br /&gt;
The ASVS defines the first internationally-recognized standard for conducting application security assessments. It covers both automated and manual approaches for assessing (verifying)&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78943</id>
		<title>Huntsville Alabama</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78943"/>
				<updated>2010-02-25T06:14:30Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Huntsville, Alabama|extra=The chapter leader is [mailto:josh@packetfocus.com Josh Perrymon]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Huntsville_Alabama|emailarchives=http://lists.owasp.org/pipermail/owasp-Huntsvlle_Alabama}}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Huntsville, Alabama&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Meeting Location'''&lt;br /&gt;
&lt;br /&gt;
We are excited to announce that we have secured a steady meeting location at the SAIC facility in Huntsville, Alabama. The chapter commitee will meet Feb. to plan the first &amp;quot;Official&amp;quot; meeting in March.  Hopefully, we will add the specific SAIC meeting location link and map this week.&lt;br /&gt;
&lt;br /&gt;
'''Huntsville Chapter Commitee'''&lt;br /&gt;
&lt;br /&gt;
We are going to try ssomething a little different with the Huntsville Chapter. The main goal is to better educate the local IT community with focus on application security. But to perform this efficiently, we must first work with the community represenatives to understand the current applications security needs, education gap-analysis, etc. Basically, the commitee was formed with local IT leaders from various companies such as SAIC, Intergraph, and CB&amp;amp;S Bank to name a few. What we look for is feedback from all perspectives to drive the meeting content, and to help solve problems. Because at the end of the meeting, the attendee needs to walk away with valus and usuable information. This may be a solution to input validation, or a new way of thinking about risk and security applications.  OWASP is a 360 degree process focusing solely on application security, and we plan on promoting that through education, awareness, and improved processes. &lt;br /&gt;
&lt;br /&gt;
Security before Operations.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78942</id>
		<title>Huntsville Alabama</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78942"/>
				<updated>2010-02-25T06:06:53Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Huntsville, Alabama|extra=The chapter leader is [mailto:josh@packetfocus.com Josh Perrymon]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Huntsville_Alabama|emailarchives=http://lists.owasp.org/pipermail/owasp-Huntsvlle_Alabama}}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Huntsville, Alabama&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Meeting Location'''&lt;br /&gt;
&lt;br /&gt;
We are excited to announce that we have secured a steady meeting location at the SAIC facility in Huntsville, Alabama. The chapter commitee will meet Feb. to plan the first &amp;quot;Official&amp;quot; meeting in March.  Hopefully, we will add the specific SAIC meeting location link and map this week.&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78941</id>
		<title>Huntsville Alabama</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Huntsville_Alabama&amp;diff=78941"/>
				<updated>2010-02-25T06:05:48Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Local News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Chapter Template|chaptername=Huntsville, Alabama|extra=The chapter leader is [mailto:josh@packetfocus.com Josh Perrymon]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Huntsville_Alabama|emailarchives=http://lists.owasp.org/pipermail/owasp-Huntsvlle_Alabama}}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;Huntsville, Alabama&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== Local News ==&lt;br /&gt;
&lt;br /&gt;
 '''Meeting Location'''&lt;br /&gt;
&lt;br /&gt;
We are excited to announce that we have secured a steady meeting location at the SAIC facility in Huntsville, Alabama. The chapter commitee will meet Feb. to plan the first &amp;quot;Official&amp;quot; meeting in March.  &lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Chapter]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Global_Projects_and_Tools_Committee_-_Application_2&amp;diff=60640</id>
		<title>Global Projects and Tools Committee - Application 2</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Global_Projects_and_Tools_Committee_-_Application_2&amp;diff=60640"/>
				<updated>2009-05-12T17:54:07Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;[[How to Join a Committee|Click here to return to 'How to Join a Committee' page]]&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
{| style=&amp;quot;width:100%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;2&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot;|&amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''COMMITTEE APPLICATION FORM''' &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:25%; background:#7B8ABD&amp;quot; align=&amp;quot;center&amp;quot;|'''Applicant's Name'''&lt;br /&gt;
 | colspan=&amp;quot;1&amp;quot; style=&amp;quot;width:85%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;Brad Causey&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:25%; background:#7B8ABD&amp;quot; align=&amp;quot;center&amp;quot;| '''Current and past OWASP Roles''' &lt;br /&gt;
 | colspan=&amp;quot;1&amp;quot; style=&amp;quot;width:85%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot;|OWASP OpenPGP Extensions for HTTP Reviewer&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:25%; background:#7B8ABD&amp;quot; align=&amp;quot;center&amp;quot;| '''Committee Applying for''' &lt;br /&gt;
 | colspan=&amp;quot;1&amp;quot; style=&amp;quot;width:85%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot;|Global Projects and Tools Committee&lt;br /&gt;
 |}&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
Please be aware that for an application to be considered by the board, '''you MUST have 5 recommendations'''.  &lt;br /&gt;
An incomplete application will not be considered for vote.&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
{| style=&amp;quot;width:100%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;8&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot;|&amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''COMMITTEE RECOMMENDATIONS''' &lt;br /&gt;
 |- &lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:white; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;&lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#7B8ABD; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Who Recommends/Name''' &lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#7B8ABD; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Role in OWASP'''&lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#7B8ABD; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Recommendation Content''' &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:3%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|'''1'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Arturo Busleiman (a.k.a Buanzo)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader&lt;br /&gt;
 | style=&amp;quot;width:57%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brad is an exceptional individual, a through professional. OWASP would only get better with him in the Projects and Tools Committee. I met him during OWASP EU Summit 2008 in Portugal. Matt Tesauro, himself and I worked together to give a presentation on security at the Algarve University with &amp;lt; 12 hours to spare. Brad is great at getting feedback, combining ideas. A must.&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:3%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|'''2'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rogan Dawes&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader&lt;br /&gt;
 | style=&amp;quot;width:57%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|I think Brad would make an excellent addition to the Committee. He is an exceptional individual, technically excellent as well as committed to ensuring the success of OWASP.&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:3%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|'''3'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Paolo Perego (a.k.a. thesp0nge)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader&lt;br /&gt;
 | style=&amp;quot;width:57%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brad is a passionate professionist and he is a great person to spend your time with. I think his competence and his skills can be an outstanding plus for the Projects ant Tool Commitee.&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:3%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|'''4'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dan Cornell&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Global Membership Committee Member&lt;br /&gt;
 | style=&amp;quot;width:57%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brad is a solid professional and ardent OWASP supporter.  I believe he would be an excellent addition to the Projects and Tools Committee.&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:3%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|'''5'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Joshua Perrymon&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Alabama Chapter Leader/Project Leader&lt;br /&gt;
 | style=&amp;quot;width:57%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|I have worked closely with Brad on several projects, including the Lunker phishing tool. His knowledge and understanding of IT Risk and Controls makes him a value to any project or committee. I agree he would be an excellent addition to the Projects and Tools Committee.&lt;br /&gt;
 |}&lt;br /&gt;
----&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008&amp;diff=38257</id>
		<title>OWASP EU Summit 2008</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008&amp;diff=38257"/>
				<updated>2008-09-03T16:54:58Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* CONFERENCE AGENDA  - November 6th and 7th */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;(WORK IN PROGRESS)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| &lt;br /&gt;
! width=&amp;quot;300&amp;quot; align=&amp;quot;left&amp;quot;|&lt;br /&gt;
! width=&amp;quot;200&amp;quot; align=&amp;quot;center&amp;quot; | &lt;br /&gt;
! width=&amp;quot;500&amp;quot; align=&amp;quot;center&amp;quot; | &lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot;|__TOC__&lt;br /&gt;
| align=&amp;quot;center&amp;quot;|[[Image:OWASP EU Summit Portugal 2008.jpg]]&lt;br /&gt;
| align=&amp;quot;left&amp;quot;|&lt;br /&gt;
* '''Main Links'''   &lt;br /&gt;
*   &lt;br /&gt;
*  &lt;br /&gt;
*  &lt;br /&gt;
* [[OWASP EU Summit 2008 Internals|OWASP EU Summit 2008 Internals]] &lt;br /&gt;
* [[OWASP EU Summit 2008--PRESS|Press Information]]&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
== OWASP EU SUMMIT 2008 OVERVIEW ==&lt;br /&gt;
* OWASP Summit is a worldwide gathering of OWASP leaders and Key Industry Players to: present and discuss the latest OWASP tools and documentation projects, to use Working Sessions to improve collaboration and achieve specific goals and to decide roadmaps for OWASP projects, chapters and for OWASP itself. &lt;br /&gt;
&lt;br /&gt;
* The first OWASP Summit - OWASP EU Summit Portugal 2008 - will take place in Algarve, Portugal between 4th and 7th of November 2008. The four-day event is split into a two-day conference, in which more than 40 OWASP specific presentations will be held, and two days of working sessions of open debate covering multiple projects and goals, e.g., OWASP Strategic Planning, OWASP Top 10 2009, Winter Of Code 2009, EASPI Project, Code Review Version 2, Testing Guide Version 4, OWASP Certifications, OWASP Awards, OWASP Application Security Desk Reference (ASDR), and OWASP Website.&lt;br /&gt;
&lt;br /&gt;
* If you want to know what resources OWASP has available for you, want to move on from the Top 10, Testing Guide, WebGoat and WebScarab, but don't know where to begin, the OWASP European Summit is the place to go. There, you will see presentations of the most relevant OWASP projects, meet the OWASP Leaders who made them and discuss (and help defining) the development roadmaps for 2009.&lt;br /&gt;
&lt;br /&gt;
== CONFERENCE AGENDA  - November 6th and 7th ==&lt;br /&gt;
&lt;br /&gt;
Under development. Please contact michael.coates{at}aspectsecurity.com with any questions or feedback.&lt;br /&gt;
&lt;br /&gt;
The agenda follows the successful OWASP conference two tracks format, with opening keynotes and presentations in the main auditorium, split tracks in the middle of the day, and closing pannel discussions back in the main auditorium both days. &lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;width:80%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;3&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Day 3 - November 6, 2008&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | || style=&amp;quot;width:40%; background:#BC857A&amp;quot; | Track 1:  &amp;lt;Room 1&amp;gt;&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; | Track 2: Council Room&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 08:00-09:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Registration and Coffee &amp;lt;Diamond Sponsor&amp;gt;&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:00-09:05 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Welcome to OWASP Summit Europe 2008&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:05-09:45 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Keynote: text [https://www.owasp.org/ link]&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:45-10:20 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP State of the Union&lt;br /&gt;
''Dinis Cruz''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:20-10:40 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:40-10:55 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Classic ASP Security Project&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Enigform and mod_Openpgp]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:00-11:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Corporate Application security guide&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP OpenSign Server Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:20-11:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Internationalization Guidelines&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Access Control Rules Tester Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:40-11:55 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP ASDR&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Orizon Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:00-12:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Refresh Attacks list&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Skavenger Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:20-12:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Spanish Project&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | WebScarab-NG]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:35-14:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Lunch - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:00-14:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Code Review Guide Lead&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Pantera]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:20-14:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Ruby on Rails Security Project &lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Live CD 2008]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:40-14:55 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP AppSensor&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Teachable Static Analysis Workbench]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:00-15:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Securing WebGoat using ModSecurity&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP WeBekci Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:20-15:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Positive Security&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Source Code Review OWASP Projects]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:35-15:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:00-16:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Backend Security Project&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | title]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:20-16:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Phishing Framework]] &lt;br /&gt;
''[[user link | Joshua Perrymon]], PacketFocus''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:40-16:45 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 17:00-18:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Event Title ]] Organized by &lt;br /&gt;
 |-&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 19:00-21:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | OWASP Social Gathering: Dinner and Drinks at ...&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;3&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Day 4 - November 7, 2008&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | || style=&amp;quot;width:40%; background:#BC857A&amp;quot; | Track 1:  &amp;lt;Room 1&amp;gt;&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; | Track 2: &amp;lt;Room 2 pending&amp;gt;&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 08:00-09:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Registration and Coffee &amp;lt;Diamond Sponsor&amp;gt;&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:00-09:45 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Keynote: text [https://www.owasp.org/ link]&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:45-10:20 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP Looking Forward&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:20-10:40 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:40-11:05 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Release Quality Project TBD&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | ESAPI]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:10-11:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Release Quality Project TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link |  Key OWASP projects TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:40-12:30 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP Financials &amp;amp; Operations&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:30-14:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Lunch - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:00-14:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP On the Move (OoTM), Project Management, Governance&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:00-15:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Chapter Leaders Development Update&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:00-16:50 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP next Steps, Financial Investment Plans&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:50-16:05 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:05-16:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | TBD&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 18:00-19:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Event Title ]] Organized by &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 19:00-21:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | OWASP Social Gathering: Dinner and Drinks at ...}&lt;br /&gt;
 |-&lt;br /&gt;
 |}&lt;br /&gt;
&lt;br /&gt;
Venue: &amp;lt;address&amp;gt; [http://owasp.org Google Maps Link] &lt;br /&gt;
&lt;br /&gt;
Registration is available via the OWASP Conference Cvent site at: [http://owasp.org Cvent link]&lt;br /&gt;
&lt;br /&gt;
== WORKING SESSIONS - November 4th and 5th ==&lt;br /&gt;
&lt;br /&gt;
== [[:OWASP EU Summit 2008 Training | TRAINING COURSES - November 3rd and 4th]] ==&lt;br /&gt;
{| style=&amp;quot;width:80%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Course - Number of days - Price&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;background:#F2F2F2&amp;quot; | &lt;br /&gt;
[[:OWASP EU Summit 2008 Training | Learn More Here]]&lt;br /&gt;
&lt;br /&gt;
Instructor:  &lt;br /&gt;
 |-&lt;br /&gt;
{| style=&amp;quot;width:80%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Course - Number of days - Price&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;background:#F2F2F2&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
[[:OWASP EU Summit 2008 Training | Learn More Here]]&lt;br /&gt;
&lt;br /&gt;
Instructor: &lt;br /&gt;
'''&lt;br /&gt;
 |-&lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Course - Number of days - Price&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;background:#F2F2F2&amp;quot; | &lt;br /&gt;
&lt;br /&gt;
[[:OWASP EU Summit 2008 Training | Learn More Here]]&lt;br /&gt;
&lt;br /&gt;
Instructor: &lt;br /&gt;
|-&lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Course - Number of days - Price&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;background:#F2F2F2&amp;quot; | &lt;br /&gt;
[[:OWASP EU Summit 2008 Training | Learn More Here]]&lt;br /&gt;
&lt;br /&gt;
Instructor: &lt;br /&gt;
 |-&lt;br /&gt;
 &lt;br /&gt;
 |}&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008&amp;diff=37185</id>
		<title>OWASP EU Summit 2008</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_EU_Summit_2008&amp;diff=37185"/>
				<updated>2008-08-25T16:34:51Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Provisory list of 'expenses paid' participants */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;(WORK IN PROGRESS /UNDER DISCUSSION)&lt;br /&gt;
== UPDATES ==&lt;br /&gt;
*[[OWASP EU Summit 2008 - updates|'''OWASP EU Summit 2008 - updates''']]&lt;br /&gt;
&lt;br /&gt;
== What: OWASP Summit, a conference about OWASP and for OWASP's community ==&lt;br /&gt;
=== When: 4 to 7 Nov 2008 (4 &amp;amp; 5: Meetings and Training, 6 &amp;amp; 7: Conference) === &lt;br /&gt;
=== Where: Portugal ===&lt;br /&gt;
Faro or Lisbon&lt;br /&gt;
=== Organization===&lt;br /&gt;
Dinis Cruz, Paulo Coimbra and the OWASP Summit Team - Eduardo Neves, Leonardo Cavallari Militelli, Mark Roxberry, Michael Coates, Arturo 'Buanzo' Busleiman.&lt;br /&gt;
&lt;br /&gt;
== Agenda ==&lt;br /&gt;
Theme: Present OWASP's projects, community and activities  .....     '....Connecting the dots.... &amp;quot;&lt;br /&gt;
&lt;br /&gt;
'''Day 1 &amp;amp; 2'''&lt;br /&gt;
*Training sessions (similar to what happens at the moment at the other OWASP conferences)&lt;br /&gt;
*OWASP Working Group sessions (1/2 day each) on:&lt;br /&gt;
** OWASP Governance, &amp;quot;What is OWASP's position on ....&amp;quot; &amp;amp; Action Plan for 2009&lt;br /&gt;
** ESAPI&lt;br /&gt;
** Browser Security&lt;br /&gt;
** OWASP Top 10 2009&lt;br /&gt;
&lt;br /&gt;
'''Day 3 &amp;amp; 4 Agenda:'''&lt;br /&gt;
* Presentations from AoC, SpoC and SoC Participants&lt;br /&gt;
* Presentations from 'Release' Quality OWASP projects (not included in the list above) or Key OWASP projects (like ESAPI)&lt;br /&gt;
* Presentations about OWASP : How it works, Financial reports, OotM (OWASP on the Move), new project management guidelines, local chapter finances, OWASP governance &lt;br /&gt;
* Presentation from Chapter leaders on the activities developed on their project&lt;br /&gt;
* Discussion on next steps for OWASP and focus of next OWASP financial investment plans&lt;br /&gt;
&lt;br /&gt;
Other ideas:&lt;br /&gt;
&lt;br /&gt;
* vote on 6th OWASP board member (Candidates to Apply)&lt;br /&gt;
&lt;br /&gt;
== other details==&lt;br /&gt;
&lt;br /&gt;
'''Projected Attendees:450 '''&lt;br /&gt;
* 200 with some (or all) expenses covered by OWASP&lt;br /&gt;
** 33 SoC participants&lt;br /&gt;
** 70 SoC reviewers&lt;br /&gt;
** 10 SoC Collaborators&lt;br /&gt;
** 15 AoC &amp;amp; SpoC participants&lt;br /&gt;
** 15 Chapter Leaders&lt;br /&gt;
** 8 OWASP Board &amp;amp; Employees&lt;br /&gt;
** 49 OWASP non-individual members (2x per 9k Corporate? 1x for the others?)&lt;br /&gt;
&lt;br /&gt;
=== Financial details ===&lt;br /&gt;
'''Expenses'''&lt;br /&gt;
* Accommodation &amp;amp; meals: 80,000 USD  = 400 USD per person (200x) for 3 nights accommodation  and 5 meals (3 dinners and 2 lunches)&lt;br /&gt;
* Flights &amp;amp;  Trains : 70,000 USD&lt;br /&gt;
&lt;br /&gt;
'''Revenue sources'''&lt;br /&gt;
* Tickets (for the 250 non 'OWASP invited' attendees)&lt;br /&gt;
* Training Sessions&lt;br /&gt;
* Conference sponsors&lt;br /&gt;
&lt;br /&gt;
== Provisory list of 'expenses paid' participants    ==&lt;br /&gt;
&lt;br /&gt;
 {| style=&amp;quot;width:100%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot;|&amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''PROJECTED CONFERENCE PAID ATTENDEES AND/OR SPEAKERS - NEEDS OWASP BOARD CONFIRMATION''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''NAME'''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''POSITION/REASON OF ATTENDANCE'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''COUNTRY'''&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#b3b3b3&amp;quot; align=&amp;quot;center&amp;quot;|'''DEPARTURE (AIRPORT/CITY)'''&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP BOARD MEMBERS &amp;amp; EMPLOYEES''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Williams&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, Chair, Wiki, Management&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dave Wichers &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, Conferences, Financials&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dinis Cruz &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, Firehose of Ideas and Money spender&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Tom Brennan &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, OWASP Governance&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sebastien Deleersnyder &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Board, OWASP Chapters and Projects&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Belgium&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Paulo Coimbra&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Employee, Project Manager&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Kate Hartmann&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Employee, Operations Director&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Alison McNamee&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Employee, Accounting &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Larry Casey&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Employee, Director of Information Technology &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SUMMER OF CODE 2008 PROJECT LEADERS &amp;amp; REVIEWERS''' &lt;br /&gt;
|- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Achim Hoffmann&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Skavenger Project, OWASP w3af Project  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Germany&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Frankfurt or Munich&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Alexander Fry&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Source Code Review OWASP Projects&amp;lt;br&amp;gt;OWASP Teachable Static Analysis Workbench&amp;lt;br&amp;gt;OWASP WeBekci Project  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Andrew Petukhov &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Access Control Rules Tester Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Russia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Moscow&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Arturo Alberto Busleiman &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Enigform and mod_Openpgp &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Argentina&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Carlo Pelliccioni &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Backend Security Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Italy &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Eduardo Vianna de Camargo Neves  &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Positive Security  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brazil &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Curitiba (CWB)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Eoin Keary&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Code Review Guide, Chapter Leader &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ireland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Dublin (DUB)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Esteban Ribicic&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Backend Security Project&amp;lt;br&amp;gt;OWASP Classic ASP Security Project&amp;lt;br&amp;gt;OWASP AntiSamy .NET&amp;lt;br&amp;gt;OWASP Interceptor Project - 2008 Update&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Croatia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Wien&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Fabio Cerullo&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Internationalization Guidelines Project&amp;lt;br&amp;gt;OWASP Spanish Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ireland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Frederick Donovan&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Application Security Desk Reference (ASDR) &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|United States&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Heiko Webers&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Ruby on Rails Security Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Germany&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Frankfurt&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Juan Carlos Calderon&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Internationalization Guidelines&amp;lt;br&amp;gt;OWASP Spanish Project&amp;lt;br&amp;gt;OWASP Classic ASP Security Project &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Mexico &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Justin Derry&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader &amp;amp; Project Leader, OWASP Interceptor Project &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sydney Australia&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sydney Australia &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Kevin Fuller&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Testing Guide v3&amp;lt;br&amp;gt;OWASP SQL Injector Benchmarking Project (SQLiBENCH)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sacramento Ca &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Leonardo Cavallari Militelli&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Application Security Desk Reference (ASDR)&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Brazil &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Mark Roxberry&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Leader, OWASP .NET Project&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Matt Tesauro&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP Live CD 2008&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Austin&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Matteo Meucci&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP Testing Guide&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Italy&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rome&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Matthias Rohr&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Skavenger Project &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Germany &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Michael Coates&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP AppSensor &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chicago&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Nam Nguyen&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Testing Guide v3, Python Static Analysis, OWASP Education&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Vietnam&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Ho Chi Minh City&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|P.Satish Kumar&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP Code Review Guide &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|India&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Hyderabad&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Paolo Perego&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP Orizon Project  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Italy&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Parvathy Iyer &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|OWASP Corporate Application Security Guide &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Newark (New Jersey)or Newyork (Newyork city)&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Pierre Parrend&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Reviewer, OWASP OpenSign Server Project&amp;lt;br&amp;gt;OWASP Application Security Verification Standard &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|France&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Stephen Craig Evans&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Securing WebGoat using ModSecurity &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Singapore&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Singapore&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;| &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SUMMER OF CODE 2008 SPECIAL PROJECT CONTRIBUTORS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;| &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SUMMER OF CODE 2008/LOGISTICS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sarah Cruz&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, Graphic Design &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|UK&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|London&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP SPRING OF CODE 2007 PROJECT LEADERS &amp;amp; REVIEWERS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Przemyslaw Skowron &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, Refresh Attacks List  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Poland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Joshua Perrymon&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader, OWASP LiveCD, OWASP Phishing Framework, Alabama Chapter Lead&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Birmingham,AL&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP AUTUMN OF CODE 2006 PROJECT LEADERS &amp;amp; REVIEWERS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rogan Dawes &lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, WebScarab-NG &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|South Africa&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Simon Roses Femerling&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project leader, OWASP Pantera&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Spain&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''ACTIVE PROJECT LEADERS (NOT CURRENTLY PARTICIPATING ON SOC 08)''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Alex Smolen&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;| Project leader, .NET ESAPI &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
  |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''ACTIVE CHAPTER LEADERS (NOT CURRENTLY PARTICIPATING ON SOC 08)''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Antti Laulajainen&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader, Helsinki     &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Finland&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Steve Antoniewicz&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter Board Member, NY/NJ Metro  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Kuai Hinojosa&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader, Twin-Cities &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Jim Manico&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader/founder, Hawaii&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Hawaii, USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Anahola, Island of Kauai&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Rex Booth&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Chapter leader, Washington DC  &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|USA&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|?&lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''SIGNIFICANT PAST OWASP CONTRIBUTOR (THAT IS NOT ALREADY COVERED BY ONE OF THE ABOVE CATEGORIES)''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 ! colspan=&amp;quot;7&amp;quot; align=&amp;quot;left&amp;quot; style=&amp;quot;background:white; color:black&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP NON-INDIVIDUAL MEMBERS''' &lt;br /&gt;
 |- &lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Name&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 | style=&amp;quot;width:20%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
 |- &lt;br /&gt;
 |}&lt;br /&gt;
&lt;br /&gt;
==Agenda and Presentations - November 4-7 ==&lt;br /&gt;
&lt;br /&gt;
Under development. Please contact michael.coates{at}aspectsecurity.com with any questions or feedback.&lt;br /&gt;
&lt;br /&gt;
The agenda follows the successful OWASP conference two tracks format, with opening keynotes and presentations in the main auditorium, split tracks in the middle of the day, and closing pannel discussions back in the main auditorium both days. &lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;width:80%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;3&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Day 3 - November 6, 2008&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | || style=&amp;quot;width:40%; background:#BC857A&amp;quot; | Track 1:  &amp;lt;Room 1&amp;gt;&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; | Track 2: Council Room&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 08:00-09:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Registration and Coffee &amp;lt;Diamond Sponsor&amp;gt;&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:00-09:05 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Welcome to OWASP Summit Europe 2008&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:05-09:45 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Keynote: text [https://www.owasp.org/ link]&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:45-10:20 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP State of the Union&lt;br /&gt;
''Dinis Cruz''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:20-10:40 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:40-10:55 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Classic ASP Security Project&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Enigform and mod_Openpgp]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:00-11:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Corporate Application security guide&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP OpenSign Server Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:20-11:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Internationalization Guidelines&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Access Control Rules Tester Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:40-11:55 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP ASDR&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Orizon Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:00-12:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Refresh Attacks list&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Skavenger Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:20-12:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Spanish Project&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | WebScarab-NG]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:35-14:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Lunch - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:00-14:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Code Review Guide Lead&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Pantera]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:20-14:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Ruby on Rails Security Project &lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Live CD 2008]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:40-14:55 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP AppSensor&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Teachable Static Analysis Workbench]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:00-15:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Securing WebGoat using ModSecurity&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP WeBekci Project]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:20-15:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Positive Security&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Source Code Review OWASP Projects]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:35-15:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:00-16:15 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | OWASP Backend Security Project&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | title]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:20-16:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
|-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:40-16:45 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 17:00-18:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Event Title ]] Organized by &lt;br /&gt;
 |-&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 19:00-21:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | OWASP Social Gathering: Dinner and Drinks at ...&lt;br /&gt;
 |-&lt;br /&gt;
 ! colspan=&amp;quot;3&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | Day 4 - November 7, 2008&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | || style=&amp;quot;width:40%; background:#BC857A&amp;quot; | Track 1:  &amp;lt;Room 1&amp;gt;&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; | Track 2: &amp;lt;Room 2 pending&amp;gt;&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 08:00-09:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Registration and Coffee &amp;lt;Diamond Sponsor&amp;gt;&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:00-09:45 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Keynote: text [https://www.owasp.org/ link]&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 09:45-10:20 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP Looking Forward&lt;br /&gt;
''speaker, company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:20-10:40 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 10:40-11:05 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Release Quality Project TBD&lt;br /&gt;
]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | ESAPI]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:10-11:35 || style=&amp;quot;width:40%; background:#BC857A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Release Quality Project TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 | style=&amp;quot;width:40%; background:#BCA57A&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link |  Key OWASP projects TBD]] &lt;br /&gt;
''[[user link | Speaker]], Company''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 11:40-12:30 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP Financials &amp;amp; Operations&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 12:30-14:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Lunch - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 14:00-14:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP On the Move (OoTM), Project Management, Governance&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:00-15:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | Chapter Leaders Development Update&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:00-16:50 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | OWASP next Steps, Financial Investment Plans&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 15:50-16:05 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | Break - Expo - CTF&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 16:05-16:55 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#F2F2F2&amp;quot; align=&amp;quot;center&amp;quot; | TBD&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 18:00-19:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | [[SummitEU08_link | Event Title ]] Organized by &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#7B8ABD&amp;quot; | 19:00-21:00 || colspan=&amp;quot;2&amp;quot; style=&amp;quot;width:80%; background:#C2C2C2&amp;quot; align=&amp;quot;left&amp;quot; | OWASP Social Gathering: Dinner and Drinks at ...}&lt;br /&gt;
 |-&lt;br /&gt;
 |}&lt;br /&gt;
&lt;br /&gt;
Venue: &amp;lt;address&amp;gt; [http://owasp.org Google Maps Link] &lt;br /&gt;
&lt;br /&gt;
Registration is available via the OWASP Conference Cvent site at: [http://owasp.org Cvent link]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=SpoC_007_-_OWASP_LiveCD_Project_-_Progress_Page&amp;diff=23359</id>
		<title>SpoC 007 - OWASP LiveCD Project - Progress Page</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=SpoC_007_-_OWASP_LiveCD_Project_-_Progress_Page&amp;diff=23359"/>
				<updated>2007-11-13T03:35:18Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: New page:  ----'''Features'''---- This release is the second major version of the OWASP livecd. This one is going to be called SpoCK and will begin with the version 2.2 release. The kernel and boot ...&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
----'''Features'''----&lt;br /&gt;
This release is the second major version of the OWASP livecd. This one is going to be called SpoCK and will begin with the version 2.2 release. The kernel and boot splash has remained the same in this release but a lot has changed under the hood. OWASP tools and documents can be found in the main menu under OWASP:&lt;br /&gt;
&lt;br /&gt;
Releases&lt;br /&gt;
        Tools&lt;br /&gt;
        Docs&lt;br /&gt;
Beta&lt;br /&gt;
        Tools&lt;br /&gt;
        Docs&lt;br /&gt;
Alphs&lt;br /&gt;
        Tools&lt;br /&gt;
        Docs&lt;br /&gt;
&lt;br /&gt;
The CD also contains a lot of pentest programs under the /pentest/ folder that will still need to be organized and tested. This is the same for a lot of the OWASP programs that are not already working in the menu.&lt;br /&gt;
&lt;br /&gt;
----'''Downloads'''----&lt;br /&gt;
The OWASP CD V1 downloads can be found here www.packetfocus.com/hackos&lt;br /&gt;
Version 2 &amp;quot;SpoCK&amp;quot; downloads are in the final review process and will be released Nov 14th 07 for public download.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----'''TODO'''-----&lt;br /&gt;
This version has 5x more tools and documents than v1. Now I just have to get all of the OWASP tools working then move to the /pentest/ folder. &lt;br /&gt;
&lt;br /&gt;
Update the boot graphics-  Still need to work on changing the graphics during the boot process.&lt;br /&gt;
&lt;br /&gt;
Update all of the menu links to use KPDF instead of XPDF&lt;br /&gt;
&lt;br /&gt;
Get sound working on the LiveCD&lt;br /&gt;
&lt;br /&gt;
Make menu links to new version of Metasploit 3.0&lt;br /&gt;
&lt;br /&gt;
Organize all of the VOIP tools in /pentest/&lt;br /&gt;
&lt;br /&gt;
Get the latest version of WebGoat working&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----'''Notes'''----&lt;br /&gt;
The most noticable addition to this release should be the number of OWASP projects in the menu. All of the tools haven't been configured but they are on the CD. If anyone uses the CD and would like to send instruction on getting a certain tool to work email livecd@packetfocus.com. &lt;br /&gt;
&lt;br /&gt;
Refer to the main project page for more details on the project&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=23345</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=23345"/>
				<updated>2007-11-11T16:50:13Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Features */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD Version 2.1 ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 2.1 named &amp;quot;LabRat&amp;quot; and is part of the OWASP SpoC 007 sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. &lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
V2 of the OWASP liveCD is focused on OWASP tools and Documentation. The menu structure had been built around the three (3) status levels of OWASP projects (Releases, Alpha, and Beta). Each area has been further seperated into Doc and Tools to make updates easier. Wiki pages are now linked for every tool and OWASP document.  &lt;br /&gt;
&lt;br /&gt;
==== Issues ==== &lt;br /&gt;
At this point (Nov, 9 2007) the OWASP tools and documents are on the CD but they are not all configured at this point. &lt;br /&gt;
&lt;br /&gt;
The CD doesn't have a lot of other pen-test tools in this version. &lt;br /&gt;
&lt;br /&gt;
The Boot graphics still need to be changed.&lt;br /&gt;
&lt;br /&gt;
Sounds doesn't work on some systems.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
The first step will be to ensure that all the OWASP tools and documents are present on the CD and working. Once that has been completed- then we will focus on adding traditional pen-test tools. However, the focus of this CD is OWASP resources.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
&lt;br /&gt;
Version 2.1 will be uploaded for testing by Nov 15th 2007. It's currenly working but being tested.&lt;br /&gt;
&lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://www.packetfocus.com/hackos/AOC_Labrat-ALPHA-0010.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
&lt;br /&gt;
[http://www.securitydistro.com/index.php?option=com_content&amp;amp;task=view&amp;amp;id=139&amp;amp;Itemid=32 Running An ISO In VMware]&lt;br /&gt;
&lt;br /&gt;
==== Screenshots ====&lt;br /&gt;
[http://www.securitydistro.com/index.php?option=com_expose&amp;amp;Itemid=41 LabRat 0.1 Screenshots]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Version 2.1 was sponsored by SpoC 007 &lt;br /&gt;
Version .008 and .010 were sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
&lt;br /&gt;
The BETA version v.10 is now available to download. It can be found on the PacketFocus website http://www.packetfocus.com/hackos/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
The current version is about 800mb and contains 100's of linux applications. Most of these unneeded software will be removed from the next release to minimize .iso size.&lt;br /&gt;
&lt;br /&gt;
Download via SecurityDistro&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0008.iso&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
LabRat v.2.1 *Current Beta Download&lt;br /&gt;
&lt;br /&gt;
LiveCD Based on Morphix (www.morphix.org)&lt;br /&gt;
Runs completely in Memory&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Tools:&lt;br /&gt;
WebGoat v5&lt;br /&gt;
WebScarab&lt;br /&gt;
Paros&lt;br /&gt;
JBroFuZZ&lt;br /&gt;
Cal9000&lt;br /&gt;
Nmap&lt;br /&gt;
TcpDump&lt;br /&gt;
WireShark&lt;br /&gt;
&lt;br /&gt;
Docs:&lt;br /&gt;
OWASP Guide &lt;br /&gt;
OWASP Testing Guide&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! RC1 - 12:54, 01 Feb 2007 (GMT)'''&lt;br /&gt;
&lt;br /&gt;
The RC1 version of the CD is now available for testing. The download can be found here: http://www.packetfocus.com/hackos/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
The latest version is v0.10 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version.&lt;br /&gt;
&lt;br /&gt;
Download via SecurityDistro&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0008.iso&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=23344</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=23344"/>
				<updated>2007-11-11T16:49:11Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Version 2.1 Release of OWASP LiveCD ready for testing */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD Version 2.1 ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 2.1 named &amp;quot;LabRat&amp;quot; and is part of the OWASP SpoC 007 sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. &lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
V2 of the OWASP liveCD is focused on OWASP tools and Documentation. The menu structure had been built around the three (3) status levels of OWASP projects (Releases, Alpha, and Beta). Each area has been further seperated into Doc and Tools to make updates easier. Wiki pages are now linked for every tool and OWASP document.  &lt;br /&gt;
&lt;br /&gt;
==== Issues ==== &lt;br /&gt;
At this point (Nov, 9 2007) the OWASP tools and documents are on the CD but they are not all configured at this point. &lt;br /&gt;
&lt;br /&gt;
The CD doesn't have a lot of other pen-test tools in this version. &lt;br /&gt;
&lt;br /&gt;
The Boot graphics still need to be changed.&lt;br /&gt;
&lt;br /&gt;
Sounds doesn't work on some systems.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
The first step will be to ensure that all the OWASP tools and documents are present on the CD and working. Once that has been completed- then we will focus on adding traditional pen-test tools. However, the focus of this CD is OWASP resources.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
&lt;br /&gt;
Version 2.1 will be uploaded for testing by Nov 15th 2007. It's currenly working but being tested.&lt;br /&gt;
&lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://www.packetfocus.com/hackos/AOC_Labrat-ALPHA-0010.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
&lt;br /&gt;
[http://www.securitydistro.com/index.php?option=com_content&amp;amp;task=view&amp;amp;id=139&amp;amp;Itemid=32 Running An ISO In VMware]&lt;br /&gt;
&lt;br /&gt;
==== Screenshots ====&lt;br /&gt;
[http://www.securitydistro.com/index.php?option=com_expose&amp;amp;Itemid=41 LabRat 0.1 Screenshots]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Version 2.1 was sponsored by SpoC 007 &lt;br /&gt;
Version .008 and .010 were sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
&lt;br /&gt;
The BETA version v.10 is now available to download. It can be found on the PacketFocus website http://www.packetfocus.com/hackos/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
The current version is about 800mb and contains 100's of linux applications. Most of these unneeded software will be removed from the next release to minimize .iso size.&lt;br /&gt;
&lt;br /&gt;
Download via SecurityDistro&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0008.iso&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
LabRat v.08 *Current Beta Download&lt;br /&gt;
&lt;br /&gt;
LiveCD Based on Morphix (www.morphix.org)&lt;br /&gt;
Runs completely in Memory&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Tools:&lt;br /&gt;
WebGoat v4&lt;br /&gt;
WebScarab&lt;br /&gt;
Paros&lt;br /&gt;
JBroFuZZ&lt;br /&gt;
Cal9000&lt;br /&gt;
Nmap&lt;br /&gt;
TcpDump&lt;br /&gt;
WireShark&lt;br /&gt;
&lt;br /&gt;
Docs:&lt;br /&gt;
OWASP Guide 2.0&lt;br /&gt;
OWASP Testing Guide&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! RC1 - 12:54, 01 Feb 2007 (GMT)'''&lt;br /&gt;
&lt;br /&gt;
The RC1 version of the CD is now available for testing. The download can be found here: http://www.packetfocus.com/hackos/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
The latest version is v0.10 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version.&lt;br /&gt;
&lt;br /&gt;
Download via SecurityDistro&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0008.iso&lt;br /&gt;
&lt;br /&gt;
http://downloads.securitydistro.com/labrat/AOC_Labrat-ALPHA-0010.iso&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Spring_Of_Code_2007_Applications&amp;diff=17399</id>
		<title>OWASP Spring Of Code 2007 Applications</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Spring_Of_Code_2007_Applications&amp;diff=17399"/>
				<updated>2007-03-23T15:14:20Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;This page contains project Applications to the [[OWASP_Spring_Of_Code_2007]]&lt;br /&gt;
&lt;br /&gt;
'''If you want to apply for a SpoC 007 sponsorship you HAVE TO USE THIS PAGE for your application'''&lt;br /&gt;
&lt;br /&gt;
See [[OWASP_Spring_Of_Code_2007#How_To_Participate]] for what do to one you completed your Application&lt;br /&gt;
&lt;br /&gt;
---------&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Proposed template:''' {for longer proposals, in addition to these details you can create a PDF}:&lt;br /&gt;
&lt;br /&gt;
== {Your first name or Alias} - {Project name} ==&lt;br /&gt;
Please remember that projects will be selected and funded based on how well they meet the [[OWASP_Spring_Of_Code_2007_:_Selection|Selection Criteria]].&lt;br /&gt;
&lt;br /&gt;
You can propose your project in any form you wish, but the best proposals will be well thought out, clear and concise, and reflective of your passion for the topic.  We strongly suggest that you include the following information in your proposal.&lt;br /&gt;
&lt;br /&gt;
* Your educational and professional background&lt;br /&gt;
&lt;br /&gt;
* Application security experience and accomplishments&lt;br /&gt;
&lt;br /&gt;
* Participation and leadership in open communities&lt;br /&gt;
&lt;br /&gt;
* The opportunity, challenges, issues or need your proposal addresses&lt;br /&gt;
&lt;br /&gt;
* Objectives or ways in which you will meet the goal(s)&lt;br /&gt;
&lt;br /&gt;
* Specific activities and who will carry out these activities&lt;br /&gt;
&lt;br /&gt;
* Specific deliverables and a rough project schedule so we can track progress&lt;br /&gt;
&lt;br /&gt;
* Long-term vision for the project&lt;br /&gt;
&lt;br /&gt;
* Any other reasons why you and your project should be selected&lt;br /&gt;
&lt;br /&gt;
== Buanzo - Enigform: Firefox Addon for OpenPGP signing of HTTP requests ==&lt;br /&gt;
&lt;br /&gt;
I am a 25 year old Independent security consultant from Buenos Aires, Argentina, that has contributed to the world of&lt;br /&gt;
information systems security since 1994, when BBSes and Linux still lived together.&lt;br /&gt;
&lt;br /&gt;
I quick search for buanzo on google [http://www.google.com/search?hl=en&amp;amp;q=buanzo&amp;amp;btnG=Google+Search] will provide all necessary details about my professional and community background. For comprobable experience, you could also check my Rent a Coder profile.[http://www.rentacoder.com/RentACoder/SoftwareCoders/showBioInfo.asp?lngAuthorId=735204].&lt;br /&gt;
&lt;br /&gt;
In my free time I like playing with my Punk-Pop band [http://www.purevolume.com/futurabandapunkpop], Futurabanda. [http://www.futurabanda.com.ar], and maintaining my Restaurants, Wines and Recipes site. [http://www.vivamoslavida.com.ar]. I have to admit that my first priorities are my beloved son [http://www.fotolog.com/buanzo] and my wonderful wife [http://www.fotolog.com/buanzo].&lt;br /&gt;
&lt;br /&gt;
=== Accomplishments ===&lt;br /&gt;
&lt;br /&gt;
I've contributed scripts, fixes and translations to the Nmap project. I've also acted as Expert Contributor for SANS TOP-20 2004, 2005 and 2006. I've developed &lt;br /&gt;
lots that can be found in Freshmeat, like mprl (a getty enhancement to allow remote logins from the login: prompt of the console). I've also written&lt;br /&gt;
the Unix chapter of the OISSG's Information Systems Security Assessment Framework, v0.1 [http://www.oissg.org/content/view/71/71/]. I'm currently writing&lt;br /&gt;
an Internet Draft to be proposed for RFC regarding Enigform.&lt;br /&gt;
&lt;br /&gt;
=== Community ===&lt;br /&gt;
&lt;br /&gt;
I run the official 2600 meetings site for Argentina [http://www.2600.com/meetings/pages.html], I've been proposed, but I refused, for President of the Argentinian Free Software group called SOLAR [www.solar.org.ar]. I'm an active member of the FLOSS community since 1996, having written articles in magazines http://www.net-security.org/dl/articles/Detecting_and_Understanding_rootkits.txt, made TV, radio&lt;br /&gt;
and newspaper appearances [http://codigoabierto.bitacoras.com/archivos/2005/04/01/buanzo-hacks] and led different security research groups of Spain, Mexico and Argentina. Currently I contribute time thorugh my sites, forums and blogs,&lt;br /&gt;
answering questions in mailing lists and helping coordinate some local LUGs. I do also manager the Linux Counter for Argentina [http://counter.li.org/reports/place.php?place=AR].&lt;br /&gt;
&lt;br /&gt;
=== My Project ===&lt;br /&gt;
&lt;br /&gt;
Enigform [http://enigform.mozdev.org] is a Firefox extension that enhances HTTP with OpenPGP functionality. It digitally signs outgoing HTTP requests so that a web server can authenticate&lt;br /&gt;
the identity and data of the incoming request. It is a Web Security tool because it can, if correctly implemented as any OpenPGP based technology, render man in&lt;br /&gt;
the middle attacks useless. I think OpenPGP already speaks for itself regarding eMail. Imagine the same benefits for http and web applications.&lt;br /&gt;
&lt;br /&gt;
Enigform is the reference implementation of the Internet Draft I'm working on, in discussion with members of the IETF's OpenPGP Working Group.&lt;br /&gt;
&lt;br /&gt;
Some simple PHP code is enough to make a web application Enigform-aware [http://enigformtest.buanzo.com.ar]. The Smutty PHP MVC Framework already supports Enigform [http://smutty.pu-gh.com/demo/enigform].&lt;br /&gt;
&lt;br /&gt;
=== Long Term ===&lt;br /&gt;
&lt;br /&gt;
Have the Draft be proposed as a Standards Track RFC document, have Enigform support directly in Apache and IIS, and port Enigform to other browsers&lt;br /&gt;
and/or programming languages, and also provide OpenPGP De/Encryption support.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Why should I be selected ===&lt;br /&gt;
&lt;br /&gt;
I have the experience, security awareness and means to make this project THE web security project of the decade. I am a respected member of the&lt;br /&gt;
international security community, and I firmly believe Enigform is my greatest idea so far.&lt;br /&gt;
&lt;br /&gt;
== Eoin Keary - Code review Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
I am proposing that I complete the OWASP Code review guide during this period.&lt;br /&gt;
The code review guide was started by me in 2005 and has much information on reviewing code for common vulnerabilities. It is frequently accessed (looking at the stats on the OWASP site) and therefore is useful to practitioners. &lt;br /&gt;
&lt;br /&gt;
I believe the code review guide is an integral part of the OWASP BOK (Body of Knowledge). Ensuring secure development is key to secure applications and code review is of paramount importance in this domain.&lt;br /&gt;
&lt;br /&gt;
There are many sections still to be added and more to be readjusted and rewritten to reflect the current state of the security world.&lt;br /&gt;
Much needs to be written on Web 2.0 technologies and distributed B2B technologies such as Webservices.&lt;br /&gt;
 &lt;br /&gt;
The Code review process and procedure needs also to be covered. A guide to establishing a mature code review process also needs to be done.&lt;br /&gt;
Code review methodologies also need to be discussed.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
&lt;br /&gt;
Update of the code review guide:&lt;br /&gt;
* Add additional areas relating to the code review process such as:&lt;br /&gt;
** Benefits and pitfalls&lt;br /&gt;
** Methodology&lt;br /&gt;
** The code review process&lt;br /&gt;
*** Transactional analysis&lt;br /&gt;
*** Managing the code review process&lt;br /&gt;
*** Assigning risk to findings&lt;br /&gt;
&lt;br /&gt;
** Technical guides&lt;br /&gt;
*** Language specific best practice &lt;br /&gt;
*** Java &lt;br /&gt;
*** .NET &lt;br /&gt;
*** PHP &lt;br /&gt;
*** MySQL &lt;br /&gt;
*** Stored Procs &lt;br /&gt;
*** C/C++ &lt;br /&gt;
&lt;br /&gt;
** Code review by vulnerability:&lt;br /&gt;
*** Reviewing Code for Buffer Overruns and Overflows &lt;br /&gt;
*** Reviewing Code for OS Injection&lt;br /&gt;
*** Reviewing Code for SQL Injection&lt;br /&gt;
*** Reviewing Code for Data Validation&lt;br /&gt;
*** Reviewing code for XSS issues&lt;br /&gt;
*** Reviewing Code for Error Handling&lt;br /&gt;
*** Reviewing Code for Logging Issues&lt;br /&gt;
*** Reviewing The Secure Code Environment&lt;br /&gt;
*** Reviewing code for Authorization Issues&lt;br /&gt;
*** Reviewing code for Authentication Issues&lt;br /&gt;
*** Reviewing code for Session Integrity&lt;br /&gt;
*** Reviewing code for Cross Site Request Forgery&lt;br /&gt;
*** Reviewing code for Cryptography implementation issues&lt;br /&gt;
*** Reviewing code Dangerous HTTP Methods (Deployment)&lt;br /&gt;
*** Race Conditions &lt;br /&gt;
&lt;br /&gt;
The areas of code are structured giving a brief explanation, the anti-pattern (vulnerable pattern to look for) and a suggested fix.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Why I should be sponsored for the project''':&lt;br /&gt;
&lt;br /&gt;
I used to head up the code review team as part of the application security group in fidelity investments and have 5+ years of the secure code review process. &lt;br /&gt;
I also was the lead of the Testing guide until V2 was published via the Autumn of Code. &lt;br /&gt;
&lt;br /&gt;
I have always  delivered any work I have volunteered for on time. &lt;br /&gt;
 &lt;br /&gt;
I have been involved in OWASP projects for 2/3 years now and have always been an active contributor.&lt;br /&gt;
&lt;br /&gt;
== Paolo Perego - Owasp Orizon Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
Owasp Orizon [http://www.owasp.org/index.php/Category:OWASP_Orizon_Project] Project born in 2006 as answer to the lack of common engine and library usable by opensource code review related tools.&lt;br /&gt;
&lt;br /&gt;
I'm proposing that, during the Spring of Code 2007 period, I'll complete static analisys API and java source code enforment objects.&lt;br /&gt;
&lt;br /&gt;
Sometimes a complete code review approach is not suitable for most customers who wants to harden their code which is being approaching release stage. For such a reason, I started writing Java objects that embeds most of the security checks against common web vulnerabilities (XSS, SQL injection, Session handling, ...) so that source code can be hardened with a small effort in terms of code rewriting.&lt;br /&gt;
&lt;br /&gt;
I do believe that a common set of API and a common safe coding best practices library is one of the most important goals to bring application security to the developers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
Completing the static code review API section&lt;br /&gt;
* improving programming language to XML translator&lt;br /&gt;
* improving security best practices code review scan library&lt;br /&gt;
* improving secure coding fashion best practices library&lt;br /&gt;
* writing the pattern matching scan using the aformentioned libraries&lt;br /&gt;
Writing the java source code enforment objects&lt;br /&gt;
* writing an object to handle form data values to avoid XSS&lt;br /&gt;
* writing an object to handle form data values to avoid SQL Injection&lt;br /&gt;
* writing an object to handle HttpRequest and HttpSession objects&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Why I should be sponsored for the project''':&lt;br /&gt;
Owasp Orizon is the first Owasp project I'm involved in. I'm also contributor of Owasp Italian chapter managed by Matteo Meucci and I'm talking at various speeches about application security and safe coding best practices.&lt;br /&gt;
&lt;br /&gt;
I'm a security consultant working in ethical hacking and we're approaching code review and safe topics right now.&lt;br /&gt;
I'm a developer too so I understand also the &amp;quot;dark side&amp;quot; of the problem developing code with security in mind.&lt;br /&gt;
&lt;br /&gt;
I work using the &amp;quot;release early release often&amp;quot; paradigm so to be concrete and let other people having something usable to work with.&lt;br /&gt;
&lt;br /&gt;
== Sebastien Deleersnyder - OWASP Education Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
This Education project aims to provide in building blocks of web application security information. These modules can be combined together in education tracks targeting different audiences. &lt;br /&gt;
&lt;br /&gt;
Web Application Security Education and Awareness is needed throughout the entire organization, each area and level of organizations have specific needs and requirements regarding education. A manager needs other information than a security professional or developer. Novices to the profession require other training than people with several years of experience. &lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
Currently the project goals are to create Educational Tracks: &lt;br /&gt;
* Complete the [[OWASP Education Presentation|consolidation page of OWASP presentations]] performed in the past&lt;br /&gt;
* A &amp;quot;Web Application Security Primer&amp;quot; Track for beginners (4 hours) &lt;br /&gt;
* A &amp;quot;What developers should know on Web Application Security&amp;quot; Track for developers (4 hours) &lt;br /&gt;
&lt;br /&gt;
* '''Why you should be sponsored for the project''': &lt;br /&gt;
I started the successful Belgian Chapter 3 years ago and have actively contributed to OWASP since then. I also co-organized the European conference last year in Belgium.&lt;br /&gt;
&lt;br /&gt;
This is the first separate project that I started, originating from a local demand to set up educational tracks for people that are new to Web Application Security. There are literally hundreds of presentations and an enormous amount of information on the OWASP web site. The goal of this project is to restructure pieces of that information in reusable modules that can be combined in educational tracks. It is my believe that awareness is an important cornerstone of building secure web applications, and this project will actively support that.&lt;br /&gt;
&lt;br /&gt;
If we are granted Spoc 007 participation, I will be sharing the budget with all active participants. This will be an extra motivation for project participation. I will reinvest my part in the project to set up a web conferencing / web casting solution to be used to disseminate the project results and make them available for later use.&lt;br /&gt;
&lt;br /&gt;
* '''More details''': &lt;br /&gt;
The detailed [[OWASP Education Project Roadmap|road map]] can be found here.&lt;br /&gt;
The SpoC 007 goal is to finish Sub Goals 1, 2, 3 and 4. If time permits we can start with sub goal 5.&lt;br /&gt;
&lt;br /&gt;
== Subere - OWASP JBroFuzz Project ==&lt;br /&gt;
&lt;br /&gt;
==== Overview ==== &lt;br /&gt;
&lt;br /&gt;
JBroFuzz is a stateless network protocol fuzzer that emerged from the needs of penetration testing. The purpose of this application is to provide a single, portable application that offers stable cross-platform network protocol fuzzing capabilities. At the same time, JBroFuzz attempts to keep the User Interface (UI) as intuitive as possible.&lt;br /&gt;
&lt;br /&gt;
==== Fuzzing ==== &lt;br /&gt;
&lt;br /&gt;
As seen by the emphasis given on the subject of fuzzing in the 2007 Testing Guide (v2), network protocol fuzzing serves as a fundamental cornerstone of application security testing. For this, many different categories and types of fuzzing have been defined.&lt;br /&gt;
&lt;br /&gt;
==== Objectives ==== &lt;br /&gt;
&lt;br /&gt;
JBroFuzz needs to expand and grow in order to cover network fuzzing in a more complete manner. Its modular implementation allows for the addtion of new functionality by means of independent tabs. The key tabs proposed to be added during the spring of code 2007 are (details in next section):&lt;br /&gt;
&lt;br /&gt;
* '''Open Source Tab'''&lt;br /&gt;
* '''NTLM Brute Force over HTTP/S Tab'''&lt;br /&gt;
* '''Pure HTTP/S Fuzzing using HTTPClient'''&lt;br /&gt;
* '''Blind SQL Injection Fuzzing Tab'''&lt;br /&gt;
&lt;br /&gt;
At the same time, the following existing tabs need to be updated and made more robust (details in next section):&lt;br /&gt;
&lt;br /&gt;
* '''TCP Fuzzing tab allowing graph outputs'''&lt;br /&gt;
* '''TCP Sniffing tab update thread Agent Queue'''&lt;br /&gt;
* '''Update Generators file format'''&lt;br /&gt;
* '''Include SOAP and XML fuzzing'''&lt;br /&gt;
&lt;br /&gt;
This expansion process relates to stabilising code that is presently included in JBroFuzz, thus allowing it to run for extensive periods of time (24h+) as well as adding more functionality in terms of the three new tabs.&lt;br /&gt;
&lt;br /&gt;
==== Deliverables ==== &lt;br /&gt;
&lt;br /&gt;
Based on the above, the new code elements that will be added are as follows:&lt;br /&gt;
&lt;br /&gt;
* '''Open Source Tab:''' ''Provide the ability to enumerate e-mails from newsgroups without breaching google automated search rules''&lt;br /&gt;
* '''NTLM Brute Force over HTTP/S Tab:''' ''Provide the ability to enumerate NTLM as well as brute over HTTP/S NTLM.''&lt;br /&gt;
* '''Pure HTTP/S Fuzzing:''' ''Implement a fuzzing tab utilising HTTPClient from Jakarta that will also allow for multi-threading''&lt;br /&gt;
* '''Blind SQL Fuzzing Tab''' ''Implement a tab that extracts information from a blind SQL injection point identified on web server over HTTP/HTTPS.''&lt;br /&gt;
&lt;br /&gt;
For updating existing code elements that require a partial rewrite, the following areas of focus are presented in detail: &lt;br /&gt;
&lt;br /&gt;
* '''TCP Fuzzing tab allowing graph outputs:''' ''Provide the ability to graph fuzzing results during a particular session run. This will give the ability to integrate and pickup potential fuzzing patterns.''&lt;br /&gt;
* '''TCP Sniffing tab update thread Agent Queue:''' ''Update the code of the sniffing panel in order to handle threaded agents in a more memory efficient way.''&lt;br /&gt;
* '''Update Generators file format:''' ''Update the generators file format to allow for the parsing and creation of recursive generators.''&lt;br /&gt;
* '''Include SOAP and XML fuzzing:''' ''Include an up to date list of SOAP and XML fuzzing templates.''&lt;br /&gt;
&lt;br /&gt;
Overall, the above two lists of changes should provide sufficient complexity and output for the spring of code 2007, forming a challenging implementation project.&lt;br /&gt;
&lt;br /&gt;
==== Background ==== &lt;br /&gt;
&lt;br /&gt;
In its short life, the OWASP JBroFuzz Project has attracted the interest of the online security community with a total of appr. 5000 downloads in the last months. &lt;br /&gt;
&lt;br /&gt;
Coming from a strong java background (5+ years) I decided to implement and release JBroFuzz in order to initially simplify penetrations testing processes that relate to web application and network protocol fuzzing.&lt;br /&gt;
&lt;br /&gt;
I see the spring of code 2007 as a unique opportunity to industrialise network protocol fuzzing (and in particular HTTP/S fuzzing) within a single application, residing within OWASP.&lt;br /&gt;
&lt;br /&gt;
==== Why should JBroFuzz be sponsored? ==== &lt;br /&gt;
&lt;br /&gt;
Centralising fuzzing resources into one application that has the ability to handle network protocol fuzzing over HTTP and HTTPS in a simple and intuitive manner forms an area of focus that should not be dismissed in building secure software applications.&lt;br /&gt;
&lt;br /&gt;
Keep the code platform independent adds a huge advantage. &lt;br /&gt;
&lt;br /&gt;
Receving an OWASP grant from the spring of code 2007 will trigger a share in the budget with all active participants depending on their level of involvement. This will be a direct function of the number of tabs and/or user functionality that they have assisted in implementing.&lt;br /&gt;
&lt;br /&gt;
== Joshua Perrymon - OWASP LiveCD Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
I am proposing that I complete the second version of the OWASP LiveCD during this period.&lt;br /&gt;
The first version of the LiveCD is now available and include many of the current OWASP documents and tools. I believe the LiveCD is one of the best mediums to promote OWASP tools and documentation. It is portable and already being used by thousands of security proffesionals to perform application testing and training. &lt;br /&gt;
&lt;br /&gt;
In the current state the CD is stable and contains a lot of tools. However, this is just the beginning. There is a LOT of work that needs to be completed. The entire CD experience needs to be branded using OWASP graphics. This shouls start with the boot screen and carry all the way through to the icons and desktop graphics. The CD should also inlcude the wiki and ALL the tools developed for OWASP.&lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
&lt;br /&gt;
Update of the LiveCD:&lt;br /&gt;
* Complete OWASP branding&lt;br /&gt;
* Add OWASP wiki&lt;br /&gt;
* Add encryption capabilities&lt;br /&gt;
* Add more OWASP tools&lt;br /&gt;
* Add more pen-test tools such as;&lt;br /&gt;
 VOIP, RFID, BlueTooth, Wireless, etc..&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Why I should be sponsored for the project''':&lt;br /&gt;
&lt;br /&gt;
I had the idea of the LiveCD about a year ago and have worked very hard to get the first version developed. This was driven by my vision to make all of the OWASP tools available on a portable medium. The main difference in the OWASP liveCD vs. other live CDs is going to be the regularity of updates. If sponsorship can be obtained the CD could be updated on a monthly basis. Not once a year like other liveCDs. The CD will also include specialty tools and documentation to perform VOIP, RFID,Bluetooth, and wireless security assessments.&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Spring_Of_Code_2007_Applications&amp;diff=17398</id>
		<title>OWASP Spring Of Code 2007 Applications</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Spring_Of_Code_2007_Applications&amp;diff=17398"/>
				<updated>2007-03-23T15:13:14Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;This page contains project Applications to the [[OWASP_Spring_Of_Code_2007]]&lt;br /&gt;
&lt;br /&gt;
'''If you want to apply for a SpoC 007 sponsorship you HAVE TO USE THIS PAGE for your application'''&lt;br /&gt;
&lt;br /&gt;
See [[OWASP_Spring_Of_Code_2007#How_To_Participate]] for what do to one you completed your Application&lt;br /&gt;
&lt;br /&gt;
---------&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Proposed template:''' {for longer proposals, in addition to these details you can create a PDF}:&lt;br /&gt;
&lt;br /&gt;
== {Your first name or Alias} - {Project name} ==&lt;br /&gt;
Please remember that projects will be selected and funded based on how well they meet the [[OWASP_Spring_Of_Code_2007_:_Selection|Selection Criteria]].&lt;br /&gt;
&lt;br /&gt;
You can propose your project in any form you wish, but the best proposals will be well thought out, clear and concise, and reflective of your passion for the topic.  We strongly suggest that you include the following information in your proposal.&lt;br /&gt;
&lt;br /&gt;
* Your educational and professional background&lt;br /&gt;
&lt;br /&gt;
* Application security experience and accomplishments&lt;br /&gt;
&lt;br /&gt;
* Participation and leadership in open communities&lt;br /&gt;
&lt;br /&gt;
* The opportunity, challenges, issues or need your proposal addresses&lt;br /&gt;
&lt;br /&gt;
* Objectives or ways in which you will meet the goal(s)&lt;br /&gt;
&lt;br /&gt;
* Specific activities and who will carry out these activities&lt;br /&gt;
&lt;br /&gt;
* Specific deliverables and a rough project schedule so we can track progress&lt;br /&gt;
&lt;br /&gt;
* Long-term vision for the project&lt;br /&gt;
&lt;br /&gt;
* Any other reasons why you and your project should be selected&lt;br /&gt;
&lt;br /&gt;
== Buanzo - Enigform: Firefox Addon for OpenPGP signing of HTTP requests ==&lt;br /&gt;
&lt;br /&gt;
I am a 25 year old Independent security consultant from Buenos Aires, Argentina, that has contributed to the world of&lt;br /&gt;
information systems security since 1994, when BBSes and Linux still lived together.&lt;br /&gt;
&lt;br /&gt;
I quick search for buanzo on google [http://www.google.com/search?hl=en&amp;amp;q=buanzo&amp;amp;btnG=Google+Search] will provide all necessary details about my professional and community background. For comprobable experience, you could also check my Rent a Coder profile.[http://www.rentacoder.com/RentACoder/SoftwareCoders/showBioInfo.asp?lngAuthorId=735204].&lt;br /&gt;
&lt;br /&gt;
In my free time I like playing with my Punk-Pop band [http://www.purevolume.com/futurabandapunkpop], Futurabanda. [http://www.futurabanda.com.ar], and maintaining my Restaurants, Wines and Recipes site. [http://www.vivamoslavida.com.ar]. I have to admit that my first priorities are my beloved son [http://www.fotolog.com/buanzo] and my wonderful wife [http://www.fotolog.com/buanzo].&lt;br /&gt;
&lt;br /&gt;
=== Accomplishments ===&lt;br /&gt;
&lt;br /&gt;
I've contributed scripts, fixes and translations to the Nmap project. I've also acted as Expert Contributor for SANS TOP-20 2004, 2005 and 2006. I've developed &lt;br /&gt;
lots that can be found in Freshmeat, like mprl (a getty enhancement to allow remote logins from the login: prompt of the console). I've also written&lt;br /&gt;
the Unix chapter of the OISSG's Information Systems Security Assessment Framework, v0.1 [http://www.oissg.org/content/view/71/71/]. I'm currently writing&lt;br /&gt;
an Internet Draft to be proposed for RFC regarding Enigform.&lt;br /&gt;
&lt;br /&gt;
=== Community ===&lt;br /&gt;
&lt;br /&gt;
I run the official 2600 meetings site for Argentina [http://www.2600.com/meetings/pages.html], I've been proposed, but I refused, for President of the Argentinian Free Software group called SOLAR [www.solar.org.ar]. I'm an active member of the FLOSS community since 1996, having written articles in magazines http://www.net-security.org/dl/articles/Detecting_and_Understanding_rootkits.txt, made TV, radio&lt;br /&gt;
and newspaper appearances [http://codigoabierto.bitacoras.com/archivos/2005/04/01/buanzo-hacks] and led different security research groups of Spain, Mexico and Argentina. Currently I contribute time thorugh my sites, forums and blogs,&lt;br /&gt;
answering questions in mailing lists and helping coordinate some local LUGs. I do also manager the Linux Counter for Argentina [http://counter.li.org/reports/place.php?place=AR].&lt;br /&gt;
&lt;br /&gt;
=== My Project ===&lt;br /&gt;
&lt;br /&gt;
Enigform [http://enigform.mozdev.org] is a Firefox extension that enhances HTTP with OpenPGP functionality. It digitally signs outgoing HTTP requests so that a web server can authenticate&lt;br /&gt;
the identity and data of the incoming request. It is a Web Security tool because it can, if correctly implemented as any OpenPGP based technology, render man in&lt;br /&gt;
the middle attacks useless. I think OpenPGP already speaks for itself regarding eMail. Imagine the same benefits for http and web applications.&lt;br /&gt;
&lt;br /&gt;
Enigform is the reference implementation of the Internet Draft I'm working on, in discussion with members of the IETF's OpenPGP Working Group.&lt;br /&gt;
&lt;br /&gt;
Some simple PHP code is enough to make a web application Enigform-aware [http://enigformtest.buanzo.com.ar]. The Smutty PHP MVC Framework already supports Enigform [http://smutty.pu-gh.com/demo/enigform].&lt;br /&gt;
&lt;br /&gt;
=== Long Term ===&lt;br /&gt;
&lt;br /&gt;
Have the Draft be proposed as a Standards Track RFC document, have Enigform support directly in Apache and IIS, and port Enigform to other browsers&lt;br /&gt;
and/or programming languages, and also provide OpenPGP De/Encryption support.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=== Why should I be selected ===&lt;br /&gt;
&lt;br /&gt;
I have the experience, security awareness and means to make this project THE web security project of the decade. I am a respected member of the&lt;br /&gt;
international security community, and I firmly believe Enigform is my greatest idea so far.&lt;br /&gt;
&lt;br /&gt;
== Eoin Keary - Code review Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
I am proposing that I complete the OWASP Code review guide during this period.&lt;br /&gt;
The code review guide was started by me in 2005 and has much information on reviewing code for common vulnerabilities. It is frequently accessed (looking at the stats on the OWASP site) and therefore is useful to practitioners. &lt;br /&gt;
&lt;br /&gt;
I believe the code review guide is an integral part of the OWASP BOK (Body of Knowledge). Ensuring secure development is key to secure applications and code review is of paramount importance in this domain.&lt;br /&gt;
&lt;br /&gt;
There are many sections still to be added and more to be readjusted and rewritten to reflect the current state of the security world.&lt;br /&gt;
Much needs to be written on Web 2.0 technologies and distributed B2B technologies such as Webservices.&lt;br /&gt;
 &lt;br /&gt;
The Code review process and procedure needs also to be covered. A guide to establishing a mature code review process also needs to be done.&lt;br /&gt;
Code review methodologies also need to be discussed.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
&lt;br /&gt;
Update of the code review guide:&lt;br /&gt;
* Add additional areas relating to the code review process such as:&lt;br /&gt;
** Benefits and pitfalls&lt;br /&gt;
** Methodology&lt;br /&gt;
** The code review process&lt;br /&gt;
*** Transactional analysis&lt;br /&gt;
*** Managing the code review process&lt;br /&gt;
*** Assigning risk to findings&lt;br /&gt;
&lt;br /&gt;
** Technical guides&lt;br /&gt;
*** Language specific best practice &lt;br /&gt;
*** Java &lt;br /&gt;
*** .NET &lt;br /&gt;
*** PHP &lt;br /&gt;
*** MySQL &lt;br /&gt;
*** Stored Procs &lt;br /&gt;
*** C/C++ &lt;br /&gt;
&lt;br /&gt;
** Code review by vulnerability:&lt;br /&gt;
*** Reviewing Code for Buffer Overruns and Overflows &lt;br /&gt;
*** Reviewing Code for OS Injection&lt;br /&gt;
*** Reviewing Code for SQL Injection&lt;br /&gt;
*** Reviewing Code for Data Validation&lt;br /&gt;
*** Reviewing code for XSS issues&lt;br /&gt;
*** Reviewing Code for Error Handling&lt;br /&gt;
*** Reviewing Code for Logging Issues&lt;br /&gt;
*** Reviewing The Secure Code Environment&lt;br /&gt;
*** Reviewing code for Authorization Issues&lt;br /&gt;
*** Reviewing code for Authentication Issues&lt;br /&gt;
*** Reviewing code for Session Integrity&lt;br /&gt;
*** Reviewing code for Cross Site Request Forgery&lt;br /&gt;
*** Reviewing code for Cryptography implementation issues&lt;br /&gt;
*** Reviewing code Dangerous HTTP Methods (Deployment)&lt;br /&gt;
*** Race Conditions &lt;br /&gt;
&lt;br /&gt;
The areas of code are structured giving a brief explanation, the anti-pattern (vulnerable pattern to look for) and a suggested fix.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Why I should be sponsored for the project''':&lt;br /&gt;
&lt;br /&gt;
I used to head up the code review team as part of the application security group in fidelity investments and have 5+ years of the secure code review process. &lt;br /&gt;
I also was the lead of the Testing guide until V2 was published via the Autumn of Code. &lt;br /&gt;
&lt;br /&gt;
I have always  delivered any work I have volunteered for on time. &lt;br /&gt;
 &lt;br /&gt;
I have been involved in OWASP projects for 2/3 years now and have always been an active contributor.&lt;br /&gt;
&lt;br /&gt;
== Paolo Perego - Owasp Orizon Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
Owasp Orizon [http://www.owasp.org/index.php/Category:OWASP_Orizon_Project] Project born in 2006 as answer to the lack of common engine and library usable by opensource code review related tools.&lt;br /&gt;
&lt;br /&gt;
I'm proposing that, during the Spring of Code 2007 period, I'll complete static analisys API and java source code enforment objects.&lt;br /&gt;
&lt;br /&gt;
Sometimes a complete code review approach is not suitable for most customers who wants to harden their code which is being approaching release stage. For such a reason, I started writing Java objects that embeds most of the security checks against common web vulnerabilities (XSS, SQL injection, Session handling, ...) so that source code can be hardened with a small effort in terms of code rewriting.&lt;br /&gt;
&lt;br /&gt;
I do believe that a common set of API and a common safe coding best practices library is one of the most important goals to bring application security to the developers.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
Completing the static code review API section&lt;br /&gt;
* improving programming language to XML translator&lt;br /&gt;
* improving security best practices code review scan library&lt;br /&gt;
* improving secure coding fashion best practices library&lt;br /&gt;
* writing the pattern matching scan using the aformentioned libraries&lt;br /&gt;
Writing the java source code enforment objects&lt;br /&gt;
* writing an object to handle form data values to avoid XSS&lt;br /&gt;
* writing an object to handle form data values to avoid SQL Injection&lt;br /&gt;
* writing an object to handle HttpRequest and HttpSession objects&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Why I should be sponsored for the project''':&lt;br /&gt;
Owasp Orizon is the first Owasp project I'm involved in. I'm also contributor of Owasp Italian chapter managed by Matteo Meucci and I'm talking at various speeches about application security and safe coding best practices.&lt;br /&gt;
&lt;br /&gt;
I'm a security consultant working in ethical hacking and we're approaching code review and safe topics right now.&lt;br /&gt;
I'm a developer too so I understand also the &amp;quot;dark side&amp;quot; of the problem developing code with security in mind.&lt;br /&gt;
&lt;br /&gt;
I work using the &amp;quot;release early release often&amp;quot; paradigm so to be concrete and let other people having something usable to work with.&lt;br /&gt;
&lt;br /&gt;
== SebastienDeleersnyder - OWASP Education Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
This Education project aims to provide in building blocks of web application security information. These modules can be combined together in education tracks targeting different audiences. &lt;br /&gt;
&lt;br /&gt;
Web Application Security Education and Awareness is needed throughout the entire organization, each area and level of organizations have specific needs and requirements regarding education. A manager needs other information than a security professional or developer. Novices to the profession require other training than people with several years of experience. &lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
Currently the project goals are to create Educational Tracks: &lt;br /&gt;
* Complete the [[OWASP Education Presentation|consolidation page of OWASP presentations]] performed in the past&lt;br /&gt;
* A &amp;quot;Web Application Security Primer&amp;quot; Track for beginners (4 hours) &lt;br /&gt;
* A &amp;quot;What developers should know on Web Application Security&amp;quot; Track for developers (4 hours) &lt;br /&gt;
&lt;br /&gt;
* '''Why you should be sponsored for the project''': &lt;br /&gt;
I started the successful Belgian Chapter 3 years ago and have actively contributed to OWASP since then. I also co-organized the European conference last year in Belgium.&lt;br /&gt;
&lt;br /&gt;
This is the first separate project that I started, originating from a local demand to set up educational tracks for people that are new to Web Application Security. There are literally hundreds of presentations and an enormous amount of information on the OWASP web site. The goal of this project is to restructure pieces of that information in reusable modules that can be combined in educational tracks. It is my believe that awareness is an important cornerstone of building secure web applications, and this project will actively support that.&lt;br /&gt;
&lt;br /&gt;
If we are granted Spoc 007 participation, I will be sharing the budget with all active participants. This will be an extra motivation for project participation. I will reinvest my part in the project to set up a web conferencing / web casting solution to be used to disseminate the project results and make them available for later use.&lt;br /&gt;
&lt;br /&gt;
* '''More details''': &lt;br /&gt;
The detailed [[OWASP Education Project Roadmap|road map]] can be found here.&lt;br /&gt;
The SpoC 007 goal is to finish Sub Goals 1, 2, 3 and 4. If time permits we can start with sub goal 5.&lt;br /&gt;
&lt;br /&gt;
== Subere - OWASP JBroFuzz Project ==&lt;br /&gt;
&lt;br /&gt;
==== Overview ==== &lt;br /&gt;
&lt;br /&gt;
JBroFuzz is a stateless network protocol fuzzer that emerged from the needs of penetration testing. The purpose of this application is to provide a single, portable application that offers stable cross-platform network protocol fuzzing capabilities. At the same time, JBroFuzz attempts to keep the User Interface (UI) as intuitive as possible.&lt;br /&gt;
&lt;br /&gt;
==== Fuzzing ==== &lt;br /&gt;
&lt;br /&gt;
As seen by the emphasis given on the subject of fuzzing in the 2007 Testing Guide (v2), network protocol fuzzing serves as a fundamental cornerstone of application security testing. For this, many different categories and types of fuzzing have been defined.&lt;br /&gt;
&lt;br /&gt;
==== Objectives ==== &lt;br /&gt;
&lt;br /&gt;
JBroFuzz needs to expand and grow in order to cover network fuzzing in a more complete manner. Its modular implementation allows for the addtion of new functionality by means of independent tabs. The key tabs proposed to be added during the spring of code 2007 are (details in next section):&lt;br /&gt;
&lt;br /&gt;
* '''Open Source Tab'''&lt;br /&gt;
* '''NTLM Brute Force over HTTP/S Tab'''&lt;br /&gt;
* '''Pure HTTP/S Fuzzing using HTTPClient'''&lt;br /&gt;
* '''Blind SQL Injection Fuzzing Tab'''&lt;br /&gt;
&lt;br /&gt;
At the same time, the following existing tabs need to be updated and made more robust (details in next section):&lt;br /&gt;
&lt;br /&gt;
* '''TCP Fuzzing tab allowing graph outputs'''&lt;br /&gt;
* '''TCP Sniffing tab update thread Agent Queue'''&lt;br /&gt;
* '''Update Generators file format'''&lt;br /&gt;
* '''Include SOAP and XML fuzzing'''&lt;br /&gt;
&lt;br /&gt;
This expansion process relates to stabilising code that is presently included in JBroFuzz, thus allowing it to run for extensive periods of time (24h+) as well as adding more functionality in terms of the three new tabs.&lt;br /&gt;
&lt;br /&gt;
==== Deliverables ==== &lt;br /&gt;
&lt;br /&gt;
Based on the above, the new code elements that will be added are as follows:&lt;br /&gt;
&lt;br /&gt;
* '''Open Source Tab:''' ''Provide the ability to enumerate e-mails from newsgroups without breaching google automated search rules''&lt;br /&gt;
* '''NTLM Brute Force over HTTP/S Tab:''' ''Provide the ability to enumerate NTLM as well as brute over HTTP/S NTLM.''&lt;br /&gt;
* '''Pure HTTP/S Fuzzing:''' ''Implement a fuzzing tab utilising HTTPClient from Jakarta that will also allow for multi-threading''&lt;br /&gt;
* '''Blind SQL Fuzzing Tab''' ''Implement a tab that extracts information from a blind SQL injection point identified on web server over HTTP/HTTPS.''&lt;br /&gt;
&lt;br /&gt;
For updating existing code elements that require a partial rewrite, the following areas of focus are presented in detail: &lt;br /&gt;
&lt;br /&gt;
* '''TCP Fuzzing tab allowing graph outputs:''' ''Provide the ability to graph fuzzing results during a particular session run. This will give the ability to integrate and pickup potential fuzzing patterns.''&lt;br /&gt;
* '''TCP Sniffing tab update thread Agent Queue:''' ''Update the code of the sniffing panel in order to handle threaded agents in a more memory efficient way.''&lt;br /&gt;
* '''Update Generators file format:''' ''Update the generators file format to allow for the parsing and creation of recursive generators.''&lt;br /&gt;
* '''Include SOAP and XML fuzzing:''' ''Include an up to date list of SOAP and XML fuzzing templates.''&lt;br /&gt;
&lt;br /&gt;
Overall, the above two lists of changes should provide sufficient complexity and output for the spring of code 2007, forming a challenging implementation project.&lt;br /&gt;
&lt;br /&gt;
==== Background ==== &lt;br /&gt;
&lt;br /&gt;
In its short life, the OWASP JBroFuzz Project has attracted the interest of the online security community with a total of appr. 5000 downloads in the last months. &lt;br /&gt;
&lt;br /&gt;
Coming from a strong java background (5+ years) I decided to implement and release JBroFuzz in order to initially simplify penetrations testing processes that relate to web application and network protocol fuzzing.&lt;br /&gt;
&lt;br /&gt;
I see the spring of code 2007 as a unique opportunity to industrialise network protocol fuzzing (and in particular HTTP/S fuzzing) within a single application, residing within OWASP.&lt;br /&gt;
&lt;br /&gt;
==== Why should JBroFuzz be sponsored? ==== &lt;br /&gt;
&lt;br /&gt;
Centralising fuzzing resources into one application that has the ability to handle network protocol fuzzing over HTTP and HTTPS in a simple and intuitive manner forms an area of focus that should not be dismissed in building secure software applications.&lt;br /&gt;
&lt;br /&gt;
Keep the code platform independent adds a huge advantage. &lt;br /&gt;
&lt;br /&gt;
Receving an OWASP grant from the spring of code 2007 will trigger a share in the budget with all active participants depending on their level of involvement. This will be a direct function of the number of tabs and/or user functionality that they have assisted in implementing.&lt;br /&gt;
&lt;br /&gt;
== Joshua Perrymon - OWASP LiveCD Project ==&lt;br /&gt;
* '''Executive Summary''':&lt;br /&gt;
I am proposing that I complete the second version of the OWASP LiveCD during this period.&lt;br /&gt;
The first version of the LiveCD is now available and include many of the current OWASP documents and tools. I believe the LiveCD is one of the best mediums to promote OWASP tools and documentation. It is portable and already being used by thousands of security proffesionals to perform application testing and training. &lt;br /&gt;
&lt;br /&gt;
In the current state the CD is stable and contains a lot of tools. However, this is just the beginning. There is a LOT of work that needs to be completed. The entire CD experience needs to be branded using OWASP graphics. This shouls start with the boot screen and carry all the way through to the icons and desktop graphics. The CD should also inlcude the wiki and ALL the tools developed for OWASP.&lt;br /&gt;
&lt;br /&gt;
* '''Objectives and Deliverables''':&lt;br /&gt;
&lt;br /&gt;
Update of the LiveCD:&lt;br /&gt;
*** Complete OWASP branding&lt;br /&gt;
*** Add OWASP wiki&lt;br /&gt;
** Add encryption capabilities&lt;br /&gt;
*** Add more OWASP tools&lt;br /&gt;
*** Add more pen-test tools such as;&lt;br /&gt;
&lt;br /&gt;
*** VOIP, RFID, BlueTooth, Wireless, etc..&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* '''Why I should be sponsored for the project''':&lt;br /&gt;
&lt;br /&gt;
I had the idea of the LiveCD about a year ago and have worked very hard to get the first version developed. This was driven by my vision to make all of the OWASP tools available on a portable medium. The main difference in the OWASP liveCD vs. other live CDs is going to be the regularity of updates. If sponsorship can be obtained the CD could be updated on a monthly basis. Not once a year like other liveCDs. The CD will also include specialty tools and documentation to perform VOIP, RFID,Bluetooth, and wireless security assessments.&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15715</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15715"/>
				<updated>2007-01-23T02:07:19Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Download */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 0.8 named &amp;quot;LabRat&amp;quot; and is part of the OWASP Autumn of Code sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. The CD contains the WebGoat application designed for learning about application vulnerabilities utilizing easy to follow lessons.( Version 5 will be included this month)&lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
I finally got back from holidays and spent the weekend to finish up the BETA version of the CD. It's quite large right now weighing in at 802mb so it's just big enough to use a DVD and not a CD. This will be much smaller once the first round of testing has been completed. The current release v08 seems to be fairly stable and works on most platforms I have tested on. When the CD boots up you will notice that all the OWASP tools and docs have icons on the desktop and can also be found in the programs menu. What I tried to do was follow the current OWASP  naming convention -Releases,Beta, and Alpha.This keeps everything organized and also helps adding new tools and documents.&lt;br /&gt;
 &lt;br /&gt;
==== Issues ==== &lt;br /&gt;
The CD is stable but I'm having problems starting WebGoat v4 again for some reason. I had this working on several test builds- However, when I burned the final Beta version it stopped for some reason. ( I may have corrupted a permission or something when I was chrooted back into the filesystem.)&lt;br /&gt;
&lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
I have not added tools yet other than OWASP docs and tools. Once the OWASP material is added and verified the specialty tools such as VOIP, RFID, and Wireless will be added.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
This project was sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
&lt;br /&gt;
The BETA version v.08 is now available to download. It can be found on the PacketFocus website http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso&lt;br /&gt;
The current version is about 800mb and contains 100's of linux applications. Most of these unneeded software will be removed from the next release to minimize .iso size.&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
LabRat v.08 *Current Beta Download&lt;br /&gt;
&lt;br /&gt;
LiveCD Based on Morphix (www.morphix.org)&lt;br /&gt;
Runs completely in Memory&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Tools:&lt;br /&gt;
WebGoat v4&lt;br /&gt;
WebScarab&lt;br /&gt;
Paros&lt;br /&gt;
JBroFuZZ&lt;br /&gt;
Cal9000&lt;br /&gt;
Nmap&lt;br /&gt;
TcpDump&lt;br /&gt;
WireShark&lt;br /&gt;
&lt;br /&gt;
Docs:&lt;br /&gt;
OWASP Guide 2.0&lt;br /&gt;
OWASP Testing Guide&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! - 10:00, 16 Jan 2007 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The BETA version of the CD is now available for testing. The download can be found here: Http://www.packetfocus.com/hackos&lt;br /&gt;
The latest version is v0.8 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version. &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 '''OWASP Live CD Project Created! - 10:00, 1 October 2006 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The Open Web Application Security Project is proud to announce the OWASP Live CD Project!&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15714</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15714"/>
				<updated>2007-01-23T02:06:11Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Download */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 0.8 named &amp;quot;LabRat&amp;quot; and is part of the OWASP Autumn of Code sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. The CD contains the WebGoat application designed for learning about application vulnerabilities utilizing easy to follow lessons.( Version 5 will be included this month)&lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
I finally got back from holidays and spent the weekend to finish up the BETA version of the CD. It's quite large right now weighing in at 802mb so it's just big enough to use a DVD and not a CD. This will be much smaller once the first round of testing has been completed. The current release v08 seems to be fairly stable and works on most platforms I have tested on. When the CD boots up you will notice that all the OWASP tools and docs have icons on the desktop and can also be found in the programs menu. What I tried to do was follow the current OWASP  naming convention -Releases,Beta, and Alpha.This keeps everything organized and also helps adding new tools and documents.&lt;br /&gt;
 &lt;br /&gt;
==== Issues ==== &lt;br /&gt;
The CD is stable but I'm having problems starting WebGoat v4 again for some reason. I had this working on several test builds- However, when I burned the final Beta version it stopped for some reason. ( I may have corrupted a permission or something when I was chrooted back into the filesystem.)&lt;br /&gt;
&lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
I have not added tools yet other than OWASP docs and tools. Once the OWASP material is added and verified the specialty tools such as VOIP, RFID, and Wireless will be added.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
This project was sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
&lt;br /&gt;
The BETA version v.08 is now available to download. It can be found on the PacketFocus website www.packetfocus.com/hackos&lt;br /&gt;
&lt;br /&gt;
The current version is about 800mb and contains 100's of linux applications. Most of these unneeded software will be removed from the next release to minimize .iso size.&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
LabRat v.08 *Current Beta Download&lt;br /&gt;
&lt;br /&gt;
LiveCD Based on Morphix (www.morphix.org)&lt;br /&gt;
Runs completely in Memory&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Tools:&lt;br /&gt;
WebGoat v4&lt;br /&gt;
WebScarab&lt;br /&gt;
Paros&lt;br /&gt;
JBroFuZZ&lt;br /&gt;
Cal9000&lt;br /&gt;
Nmap&lt;br /&gt;
TcpDump&lt;br /&gt;
WireShark&lt;br /&gt;
&lt;br /&gt;
Docs:&lt;br /&gt;
OWASP Guide 2.0&lt;br /&gt;
OWASP Testing Guide&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! - 10:00, 16 Jan 2007 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The BETA version of the CD is now available for testing. The download can be found here: Http://www.packetfocus.com/hackos&lt;br /&gt;
The latest version is v0.8 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version. &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 '''OWASP Live CD Project Created! - 10:00, 1 October 2006 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The Open Web Application Security Project is proud to announce the OWASP Live CD Project!&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15713</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15713"/>
				<updated>2007-01-23T02:04:00Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Features */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 0.8 named &amp;quot;LabRat&amp;quot; and is part of the OWASP Autumn of Code sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. The CD contains the WebGoat application designed for learning about application vulnerabilities utilizing easy to follow lessons.( Version 5 will be included this month)&lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
I finally got back from holidays and spent the weekend to finish up the BETA version of the CD. It's quite large right now weighing in at 802mb so it's just big enough to use a DVD and not a CD. This will be much smaller once the first round of testing has been completed. The current release v08 seems to be fairly stable and works on most platforms I have tested on. When the CD boots up you will notice that all the OWASP tools and docs have icons on the desktop and can also be found in the programs menu. What I tried to do was follow the current OWASP  naming convention -Releases,Beta, and Alpha.This keeps everything organized and also helps adding new tools and documents.&lt;br /&gt;
 &lt;br /&gt;
==== Issues ==== &lt;br /&gt;
The CD is stable but I'm having problems starting WebGoat v4 again for some reason. I had this working on several test builds- However, when I burned the final Beta version it stopped for some reason. ( I may have corrupted a permission or something when I was chrooted back into the filesystem.)&lt;br /&gt;
&lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
I have not added tools yet other than OWASP docs and tools. Once the OWASP material is added and verified the specialty tools such as VOIP, RFID, and Wireless will be added.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
This project was sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
Wait 'till its done......&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
LabRat v.08 *Current Beta Download&lt;br /&gt;
&lt;br /&gt;
LiveCD Based on Morphix (www.morphix.org)&lt;br /&gt;
Runs completely in Memory&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Tools:&lt;br /&gt;
WebGoat v4&lt;br /&gt;
WebScarab&lt;br /&gt;
Paros&lt;br /&gt;
JBroFuZZ&lt;br /&gt;
Cal9000&lt;br /&gt;
Nmap&lt;br /&gt;
TcpDump&lt;br /&gt;
WireShark&lt;br /&gt;
&lt;br /&gt;
Docs:&lt;br /&gt;
OWASP Guide 2.0&lt;br /&gt;
OWASP Testing Guide&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! - 10:00, 16 Jan 2007 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The BETA version of the CD is now available for testing. The download can be found here: Http://www.packetfocus.com/hackos&lt;br /&gt;
The latest version is v0.8 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version. &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 '''OWASP Live CD Project Created! - 10:00, 1 October 2006 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The Open Web Application Security Project is proud to announce the OWASP Live CD Project!&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15712</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15712"/>
				<updated>2007-01-23T02:00:56Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Issues */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 0.8 named &amp;quot;LabRat&amp;quot; and is part of the OWASP Autumn of Code sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. The CD contains the WebGoat application designed for learning about application vulnerabilities utilizing easy to follow lessons.( Version 5 will be included this month)&lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
I finally got back from holidays and spent the weekend to finish up the BETA version of the CD. It's quite large right now weighing in at 802mb so it's just big enough to use a DVD and not a CD. This will be much smaller once the first round of testing has been completed. The current release v08 seems to be fairly stable and works on most platforms I have tested on. When the CD boots up you will notice that all the OWASP tools and docs have icons on the desktop and can also be found in the programs menu. What I tried to do was follow the current OWASP  naming convention -Releases,Beta, and Alpha.This keeps everything organized and also helps adding new tools and documents.&lt;br /&gt;
 &lt;br /&gt;
==== Issues ==== &lt;br /&gt;
The CD is stable but I'm having problems starting WebGoat v4 again for some reason. I had this working on several test builds- However, when I burned the final Beta version it stopped for some reason. ( I may have corrupted a permission or something when I was chrooted back into the filesystem.)&lt;br /&gt;
&lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
I have not added tools yet other than OWASP docs and tools. Once the OWASP material is added and verified the specialty tools such as VOIP, RFID, and Wireless will be added.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
This project was sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
Wait 'till its done......&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! - 10:00, 16 Jan 2007 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The BETA version of the CD is now available for testing. The download can be found here: Http://www.packetfocus.com/hackos&lt;br /&gt;
The latest version is v0.8 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version. &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 '''OWASP Live CD Project Created! - 10:00, 1 October 2006 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The Open Web Application Security Project is proud to announce the OWASP Live CD Project!&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15711</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15711"/>
				<updated>2007-01-23T01:59:10Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 0.8 named &amp;quot;LabRat&amp;quot; and is part of the OWASP Autumn of Code sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. The CD contains the WebGoat application designed for learning about application vulnerabilities utilizing easy to follow lessons.( Version 5 will be included this month)&lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
I finally got back from holidays and spent the weekend to finish up the BETA version of the CD. It's quite large right now weighing in at 802mb so it's just big enough to use a DVD and not a CD. This will be much smaller once the first round of testing has been completed. The current release v08 seems to be fairly stable and works on most platforms I have tested on. When the CD boots up you will notice that all the OWASP tools and docs have icons on the desktop and can also be found in the programs menu. What I tried to do was follow the current OWASP  naming convention -Releases,Beta, and Alpha.This keeps everything organized and also helps adding new tools and documents.&lt;br /&gt;
 &lt;br /&gt;
==== Issues ==== &lt;br /&gt;
The CD is stable but I'm not having problems starting WebGoat v4 again for some reason. I had this working all weekend and on several versions I made yesterday- However, when I burned the final Beta version it stopped for some reason. ( I may have corrupted a permission or something when I was chrooted back into the filesystem.)&lt;br /&gt;
 &lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
I have not added tools yet other than OWASP docs and tools. Once the OWASP material is added and verified the specialty tools such as VOIP, RFID, and Wireless will be added.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
This project was sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
Wait 'till its done......&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! - 10:00, 16 Jan 2007 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The BETA version of the CD is now available for testing. The download can be found here: Http://www.packetfocus.com/hackos&lt;br /&gt;
The latest version is v0.8 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version. &lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 '''OWASP Live CD Project Created! - 10:00, 1 October 2006 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The Open Web Application Security Project is proud to announce the OWASP Live CD Project!&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15710</id>
		<title>Category:OWASP Live CD Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Live_CD_Project&amp;diff=15710"/>
				<updated>2007-01-23T01:57:46Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Overview ==&lt;br /&gt;
The OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides.&lt;br /&gt;
&lt;br /&gt;
==  BETA Release of OWASP LiveCD ready for testing  == &lt;br /&gt;
&lt;br /&gt;
OWASP LiveCD is ready to download. This distro is Beta Version 0.8 named &amp;quot;LabRat&amp;quot; and is part of the OWASP Autumn of Code sponsorship. The distro is focused on providing all of OWASP tools and documents on a bootable CD. The goal is to have a portable distro that can be used by professional penetration testers,security admins, Students, or anyone interested in computer security to perform work,training, or research. All you have to do is burn the .ISO to DVD or start under Vmware/Virtual PC and you will have a full Linux desktop environment loaded with OWASP tools and documents.Another instant advantage is that the CD can be distributed within testing teams and new hires to ensure everyone has the same tools without spending a week setting up a laptop. Same scenario applies for students learning computer security. The CD contains the WebGoat application designed for learning about application vulnerabilities utilizing easy to follow lessons.( Version 5 will be included this month)&lt;br /&gt;
 &lt;br /&gt;
====  Details ==== &lt;br /&gt;
I finally got back from holidays and spent the weekend to finish up the BETA version of the CD. It's quite large right now weighing in at 802mb so it's just big enough to use a DVD and not a CD. This will be much smaller once the first round of testing has been completed. The current release v08 seems to be fairly stable and works on most platforms I have tested on. When the CD boots up you will notice that all the OWASP tools and docs have icons on the desktop and can also be found in the programs menu. What I tried to do was follow the current OWASP  naming convention -Releases,Beta, and Alpha.This keeps everything organized and also helps adding new tools and documents.&lt;br /&gt;
 &lt;br /&gt;
==== Issues ==== &lt;br /&gt;
The CD is stable but I'm not having problems starting WebGoat v4 again for some reason. I had this working all weekend and on several versions I made yesterday- However, when I burned the final Beta version it stopped for some reason. ( I may have corrupted a permission or something when I was chrooted back into the filesystem.)&lt;br /&gt;
 &lt;br /&gt;
==== What's Next?==== &lt;br /&gt;
I have not added tools yet other than OWASP docs and tools. Once the OWASP material is added and verified the specialty tools such as VOIP, RFID, and Wireless will be added.&lt;br /&gt;
 &lt;br /&gt;
==== BETA TESTERS==== &lt;br /&gt;
We encourage everyone to download the .ISO and give us feedback on what we can do to make it better. Also, what tools or docs would you like to have on the CD? The URL to the mailing list is owasp-livecd@lists.owasp.org  . I can also be contacted directly - livecd@packetfocus.com&lt;br /&gt;
 &lt;br /&gt;
==== Download==== &lt;br /&gt;
The distro can be downloaded from the PacketFocus website (http://packetfocus.com/hackos/AOC_Labrat-ALPHA-0008.iso) ((800mb)) After you download it just burn it to a DVD or use something like Vmware server to try it out. Vmware is a free download now (www.vmware.com)&lt;br /&gt;
 &lt;br /&gt;
 &lt;br /&gt;
This project was sponsored by OWASP Autumn of Code 2006.&lt;br /&gt;
&lt;br /&gt;
== Download ==&lt;br /&gt;
Wait 'till its done......&lt;br /&gt;
&lt;br /&gt;
== Features ==&lt;br /&gt;
&lt;br /&gt;
== Future Development ==&lt;br /&gt;
&lt;br /&gt;
== News ==&lt;br /&gt;
&lt;br /&gt;
 '''OWASP Live CD Project Created! - 10:00, 1 October 2006 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The Open Web Application Security Project is proud to announce the OWASP Live CD Project!&lt;br /&gt;
&lt;br /&gt;
'''OWASP Live CD BETA ready for Download! - 10:00, 16 Jan 2007 (EDT)'''&lt;br /&gt;
&lt;br /&gt;
The BETA version of the CD is now available for testing. The download can be found here: Http://www.packetfocus.com/hackos&lt;br /&gt;
The latest version is v0.8 and is just around 800mb. This version has quite a few OWASP tools and documentation included. Have a look and email your ideas to livecd@packetfocus.com. We also encourage you to join the OWASP LiveCD mailing list to discuss requests for the next version.&lt;br /&gt;
&lt;br /&gt;
== Feedback and Participation: ==&lt;br /&gt;
&lt;br /&gt;
We hope you find the OWASP Live CD Project useful. Please contribute to the Project by volunteering for one of the Tasks, sending your comments, questions, and suggestions to owasp@owasp.org.  To join the OWASP Live CD Project mailing list or view the archives, please visit the [http://lists.owasp.org/mailman/listinfo/owasp-livecd subscription page.]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
== Project Contributors ==&lt;br /&gt;
&lt;br /&gt;
== Project Sponsor ==&lt;br /&gt;
&lt;br /&gt;
Live CD sponsors:&lt;br /&gt;
[http://www.packetfocus.com https://www.owasp.org/images/2/2a/LabRat_CD_Cover_logo_small.PNG]&lt;br /&gt;
[http://www.ritsgroup.com https://www.owasp.org/images/4/4b/Rits_logo_small.GIF]&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7239</id>
		<title>Category:OWASP Testing Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7239"/>
				<updated>2006-07-12T12:51:32Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Volunteers needed */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==News==&lt;br /&gt;
The first Draft of the new Testing Guide 2.0 shall be up soon.&lt;br /&gt;
Also contributors names shall be added once that is done.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Overview==&lt;br /&gt;
&lt;br /&gt;
This projects goal is to create a &amp;quot;best practices&amp;quot; penetration testing framework which users can implement in their own organizations and a &amp;quot;low level&amp;quot; penetration testing guide that describes how to find certain issues.&lt;br /&gt;
&lt;br /&gt;
== Contributors ==&lt;br /&gt;
Currently there are many people helping out when they can. &lt;br /&gt;
The Project lead is Eoin Keary. There are still lots of areas to be covered.&lt;br /&gt;
To contribute please email [mailto:eoin.keary@owasp.org Eoin]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Volunteers needed==&lt;br /&gt;
&lt;br /&gt;
'''Phase Two call for volunteers''' &lt;br /&gt;
Wed Mar 15 12:30:28 EST 2006 &lt;br /&gt;
&lt;br /&gt;
Work is underway on the 2nd phase of the testing guide, and we would love to hear from volunteers who could offer their knowledge in creating this phase. If you have knowledge and experience in application testing, and can spare a few hours a week, please do get in [mailto:eoin.keary@owasp.org touch]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&amp;lt;br&amp;gt;&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
==Testing Guide Download==&lt;br /&gt;
[[OWASP Testing Guide]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Downloads and Materials== &lt;br /&gt;
&lt;br /&gt;
You can [http://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] project releases from the OWASP download center. &lt;br /&gt;
&lt;br /&gt;
'''THE OWASP Testing Project Live CD'''&lt;br /&gt;
The OWASP testing project is currently implementing an Application security Live CD. &amp;lt;br&amp;gt;&lt;br /&gt;
LabRat Version 0.8 Alpha is just weeks away from Beta testing*.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
The aim of this CD is to have a complete testing suite on one Disk. The CD shall also contain the forthcoming OWASP Testing guide.&lt;br /&gt;
&lt;br /&gt;
The Alpha version contains the following tools/documents:&lt;br /&gt;
&lt;br /&gt;
Application:&lt;br /&gt;
*WebGoat&lt;br /&gt;
*WebScarab&lt;br /&gt;
*Cal9000&lt;br /&gt;
*Wikto/Nikto&lt;br /&gt;
&lt;br /&gt;
Infrastructure:&lt;br /&gt;
*Nmap&lt;br /&gt;
*Hping2&lt;br /&gt;
*TCPDump&lt;br /&gt;
*Yersinia&lt;br /&gt;
*MetaSploit Framework&lt;br /&gt;
*Nessus&lt;br /&gt;
&lt;br /&gt;
Misc:&lt;br /&gt;
*RFID Hacking Tools&lt;br /&gt;
*VOIP Hacking Tools&lt;br /&gt;
*OWASP Guide&lt;br /&gt;
*Footprinting and Information Gathering Tools&lt;br /&gt;
&lt;br /&gt;
The CD is being created in conjunction with Josh Perrrymon at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
He can be contacted on:&lt;br /&gt;
[mailto:josh.perrymon@packetfocus.com Josh Perrymon]&lt;br /&gt;
&lt;br /&gt;
Also you can contact myself on [mailto:eoin.keary@owasp.org Eoin Keary]&lt;br /&gt;
*If your interested in becoming a Beta tester contact Beta at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
==Newest Release==&lt;br /&gt;
 &lt;br /&gt;
December 13, 2004 - Phase One Released &lt;br /&gt;
We are glad to announce that The OWASP Testing Project Phase One has finally been released. This covers the processes involved in testing web applications:&lt;br /&gt;
&lt;br /&gt;
* The scope of what to test &lt;br /&gt;
* Principles of testing &lt;br /&gt;
* Testing techniques explained &lt;br /&gt;
* The OWASP testing framework explained. &lt;br /&gt;
&lt;br /&gt;
This document is designed to help organizations understand what comprises a testing program, and to help them identify the steps that they need to undertake to build and operate that testing program on their web application&lt;br /&gt;
&lt;br /&gt;
You can now [https://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] phase one from the OWASP download centre.&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
View the [[OWASP Testing Project Roadmap]]&lt;br /&gt;
&lt;br /&gt;
==News== &lt;br /&gt;
&lt;br /&gt;
  '''OWASP Pen Test Checklist in Italian''' &lt;br /&gt;
  Sun May 22 10:56:39 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist in Italian. Thanks to the Italian Chapter, Massimiliano and Mateo for it's great effort to have this document translated. You can download this verion in[http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.doc Word]&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
  '''Checklist ver 1.17 in Spanish''' &lt;br /&gt;
  Mon Apr 04 15:37:24 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist ver 1.17 in Spanish.Thanks to Pedro, Raul and Rogelio for it's great effort to have this document translated and to Christian by helping out with technical edition. You can download this verion [http://www.owasp.org/docroot/owasp/misc/testing_spanish.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/testing_spanish.doc Word]&lt;br /&gt;
&lt;br /&gt;
==Project Contributors== &lt;br /&gt;
&lt;br /&gt;
Contributors &lt;br /&gt;
&lt;br /&gt;
==Feedback and Participation==&lt;br /&gt;
 &lt;br /&gt;
We hope you find the information in the OWASP Testing project useful. Please contribute back to the project by sending your comments, questions, and suggestions to the OWASP Testing mailing list. Thanks!&lt;br /&gt;
&lt;br /&gt;
To join the OWASP Testing mailing list or view the archives, please visit the [http://lists.sourceforge.net/lists/listinfo/owasp-testing subscription page]. &lt;br /&gt;
&lt;br /&gt;
{{Template:Stub}}&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7238</id>
		<title>Category:OWASP Testing Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7238"/>
				<updated>2006-07-12T12:50:07Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Volunteers needed */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==News==&lt;br /&gt;
The first Draft of the new Testing Guide 2.0 shall be up soon.&lt;br /&gt;
Also contributors names shall be added once that is done.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Overview==&lt;br /&gt;
&lt;br /&gt;
This projects goal is to create a &amp;quot;best practices&amp;quot; penetration testing framework which users can implement in their own organizations and a &amp;quot;low level&amp;quot; penetration testing guide that describes how to find certain issues.&lt;br /&gt;
&lt;br /&gt;
== Contributors ==&lt;br /&gt;
Currently there are many people helping out when they can. &lt;br /&gt;
The Project lead is Eoin Keary. There are still lots of areas to be covered.&lt;br /&gt;
To contribute please email [mailto:eoin.keary@owasp.org Eoin]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Volunteers needed==&lt;br /&gt;
&lt;br /&gt;
'''Phase Two call for volunteers''' &lt;br /&gt;
Wed Mar 15 12:30:28 EST 2006 &lt;br /&gt;
&lt;br /&gt;
Work is underway on the 2nd phase of the testing guide, and we would love to hear from volunteers who could offer their knowledge in creating this phase. If you have knowledge and experience in application testing, and can spare a few hours a week, please do get in [mailto:eoin.keary@owasp.org touch]&lt;br /&gt;
&lt;br /&gt;
'''Graphics for Labrat ( Live Linux Distro )'''&lt;br /&gt;
If anyone would like to help out with the graphics for the Live Linux Distro please contact OWASP at packetfocus.com&lt;br /&gt;
This would be a great project for University or even High School students to participate in the security community.&lt;br /&gt;
The Distro was named &amp;quot;labrat&amp;quot; because it should contain all the tools necessary to perform labratory grade ethical hacking / auditing. And all of the other cool themes have been taken but other Distro's....&lt;br /&gt;
&lt;br /&gt;
==Testing Guide Download==&lt;br /&gt;
[[OWASP Testing Guide]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Downloads and Materials== &lt;br /&gt;
&lt;br /&gt;
You can [http://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] project releases from the OWASP download center. &lt;br /&gt;
&lt;br /&gt;
'''THE OWASP Testing Project Live CD'''&lt;br /&gt;
The OWASP testing project is currently implementing an Application security Live CD. &amp;lt;br&amp;gt;&lt;br /&gt;
LabRat Version 0.8 Alpha is just weeks away from Beta testing*.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
The aim of this CD is to have a complete testing suite on one Disk. The CD shall also contain the forthcoming OWASP Testing guide.&lt;br /&gt;
&lt;br /&gt;
The Alpha version contains the following tools/documents:&lt;br /&gt;
&lt;br /&gt;
Application:&lt;br /&gt;
*WebGoat&lt;br /&gt;
*WebScarab&lt;br /&gt;
*Cal9000&lt;br /&gt;
*Wikto/Nikto&lt;br /&gt;
&lt;br /&gt;
Infrastructure:&lt;br /&gt;
*Nmap&lt;br /&gt;
*Hping2&lt;br /&gt;
*TCPDump&lt;br /&gt;
*Yersinia&lt;br /&gt;
*MetaSploit Framework&lt;br /&gt;
*Nessus&lt;br /&gt;
&lt;br /&gt;
Misc:&lt;br /&gt;
*RFID Hacking Tools&lt;br /&gt;
*VOIP Hacking Tools&lt;br /&gt;
*OWASP Guide&lt;br /&gt;
*Footprinting and Information Gathering Tools&lt;br /&gt;
&lt;br /&gt;
The CD is being created in conjunction with Josh Perrrymon at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
He can be contacted on:&lt;br /&gt;
[mailto:josh.perrymon@packetfocus.com Josh Perrymon]&lt;br /&gt;
&lt;br /&gt;
Also you can contact myself on [mailto:eoin.keary@owasp.org Eoin Keary]&lt;br /&gt;
*If your interested in becoming a Beta tester contact Beta at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
==Newest Release==&lt;br /&gt;
 &lt;br /&gt;
December 13, 2004 - Phase One Released &lt;br /&gt;
We are glad to announce that The OWASP Testing Project Phase One has finally been released. This covers the processes involved in testing web applications:&lt;br /&gt;
&lt;br /&gt;
* The scope of what to test &lt;br /&gt;
* Principles of testing &lt;br /&gt;
* Testing techniques explained &lt;br /&gt;
* The OWASP testing framework explained. &lt;br /&gt;
&lt;br /&gt;
This document is designed to help organizations understand what comprises a testing program, and to help them identify the steps that they need to undertake to build and operate that testing program on their web application&lt;br /&gt;
&lt;br /&gt;
You can now [https://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] phase one from the OWASP download centre.&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
View the [[OWASP Testing Project Roadmap]]&lt;br /&gt;
&lt;br /&gt;
==News== &lt;br /&gt;
&lt;br /&gt;
  '''OWASP Pen Test Checklist in Italian''' &lt;br /&gt;
  Sun May 22 10:56:39 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist in Italian. Thanks to the Italian Chapter, Massimiliano and Mateo for it's great effort to have this document translated. You can download this verion in[http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.doc Word]&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
  '''Checklist ver 1.17 in Spanish''' &lt;br /&gt;
  Mon Apr 04 15:37:24 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist ver 1.17 in Spanish.Thanks to Pedro, Raul and Rogelio for it's great effort to have this document translated and to Christian by helping out with technical edition. You can download this verion [http://www.owasp.org/docroot/owasp/misc/testing_spanish.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/testing_spanish.doc Word]&lt;br /&gt;
&lt;br /&gt;
==Project Contributors== &lt;br /&gt;
&lt;br /&gt;
Contributors &lt;br /&gt;
&lt;br /&gt;
==Feedback and Participation==&lt;br /&gt;
 &lt;br /&gt;
We hope you find the information in the OWASP Testing project useful. Please contribute back to the project by sending your comments, questions, and suggestions to the OWASP Testing mailing list. Thanks!&lt;br /&gt;
&lt;br /&gt;
To join the OWASP Testing mailing list or view the archives, please visit the [http://lists.sourceforge.net/lists/listinfo/owasp-testing subscription page]. &lt;br /&gt;
&lt;br /&gt;
{{Template:Stub}}&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7237</id>
		<title>Category:OWASP Testing Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7237"/>
				<updated>2006-07-12T12:40:45Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Downloads and Materials */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==News==&lt;br /&gt;
The first Draft of the new Testing Guide 2.0 shall be up soon.&lt;br /&gt;
Also contributors names shall be added once that is done.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Overview==&lt;br /&gt;
&lt;br /&gt;
This projects goal is to create a &amp;quot;best practices&amp;quot; penetration testing framework which users can implement in their own organizations and a &amp;quot;low level&amp;quot; penetration testing guide that describes how to find certain issues.&lt;br /&gt;
&lt;br /&gt;
== Contributors ==&lt;br /&gt;
Currently there are many people helping out when they can. &lt;br /&gt;
The Project lead is Eoin Keary. There are still lots of areas to be covered.&lt;br /&gt;
To contribute please email [mailto:eoin.keary@owasp.org Eoin]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Volunteers needed==&lt;br /&gt;
&lt;br /&gt;
'''Phase Two call for volunteers''' &lt;br /&gt;
Wed Mar 15 12:30:28 EST 2006 &lt;br /&gt;
&lt;br /&gt;
Work is underway on the 2nd phase of the testing guide, and we would love to hear from volunteers who could offer their knowledge in creating this phase. If you have knowledge and experience in application testing, and can spare a few hours a week, please do get in [mailto:eoin.keary@owasp.org touch]&lt;br /&gt;
&lt;br /&gt;
==Testing Guide Download==&lt;br /&gt;
[[OWASP Testing Guide]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Downloads and Materials== &lt;br /&gt;
&lt;br /&gt;
You can [http://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] project releases from the OWASP download center. &lt;br /&gt;
&lt;br /&gt;
'''THE OWASP Testing Project Live CD'''&lt;br /&gt;
The OWASP testing project is currently implementing an Application security Live CD. &amp;lt;br&amp;gt;&lt;br /&gt;
LabRat Version 0.8 Alpha is just weeks away from Beta testing*.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
The aim of this CD is to have a complete testing suite on one Disk. The CD shall also contain the forthcoming OWASP Testing guide.&lt;br /&gt;
&lt;br /&gt;
The Alpha version contains the following tools/documents:&lt;br /&gt;
&lt;br /&gt;
Application:&lt;br /&gt;
*WebGoat&lt;br /&gt;
*WebScarab&lt;br /&gt;
*Cal9000&lt;br /&gt;
*Wikto/Nikto&lt;br /&gt;
&lt;br /&gt;
Infrastructure:&lt;br /&gt;
*Nmap&lt;br /&gt;
*Hping2&lt;br /&gt;
*TCPDump&lt;br /&gt;
*Yersinia&lt;br /&gt;
*MetaSploit Framework&lt;br /&gt;
*Nessus&lt;br /&gt;
&lt;br /&gt;
Misc:&lt;br /&gt;
*RFID Hacking Tools&lt;br /&gt;
*VOIP Hacking Tools&lt;br /&gt;
*OWASP Guide&lt;br /&gt;
*Footprinting and Information Gathering Tools&lt;br /&gt;
&lt;br /&gt;
The CD is being created in conjunction with Josh Perrrymon at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
He can be contacted on:&lt;br /&gt;
[mailto:josh.perrymon@packetfocus.com Josh Perrymon]&lt;br /&gt;
&lt;br /&gt;
Also you can contact myself on [mailto:eoin.keary@owasp.org Eoin Keary]&lt;br /&gt;
*If your interested in becoming a Beta tester contact Beta at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
==Newest Release==&lt;br /&gt;
 &lt;br /&gt;
December 13, 2004 - Phase One Released &lt;br /&gt;
We are glad to announce that The OWASP Testing Project Phase One has finally been released. This covers the processes involved in testing web applications:&lt;br /&gt;
&lt;br /&gt;
* The scope of what to test &lt;br /&gt;
* Principles of testing &lt;br /&gt;
* Testing techniques explained &lt;br /&gt;
* The OWASP testing framework explained. &lt;br /&gt;
&lt;br /&gt;
This document is designed to help organizations understand what comprises a testing program, and to help them identify the steps that they need to undertake to build and operate that testing program on their web application&lt;br /&gt;
&lt;br /&gt;
You can now [https://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] phase one from the OWASP download centre.&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
View the [[OWASP Testing Project Roadmap]]&lt;br /&gt;
&lt;br /&gt;
==News== &lt;br /&gt;
&lt;br /&gt;
  '''OWASP Pen Test Checklist in Italian''' &lt;br /&gt;
  Sun May 22 10:56:39 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist in Italian. Thanks to the Italian Chapter, Massimiliano and Mateo for it's great effort to have this document translated. You can download this verion in[http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.doc Word]&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
  '''Checklist ver 1.17 in Spanish''' &lt;br /&gt;
  Mon Apr 04 15:37:24 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist ver 1.17 in Spanish.Thanks to Pedro, Raul and Rogelio for it's great effort to have this document translated and to Christian by helping out with technical edition. You can download this verion [http://www.owasp.org/docroot/owasp/misc/testing_spanish.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/testing_spanish.doc Word]&lt;br /&gt;
&lt;br /&gt;
==Project Contributors== &lt;br /&gt;
&lt;br /&gt;
Contributors &lt;br /&gt;
&lt;br /&gt;
==Feedback and Participation==&lt;br /&gt;
 &lt;br /&gt;
We hope you find the information in the OWASP Testing project useful. Please contribute back to the project by sending your comments, questions, and suggestions to the OWASP Testing mailing list. Thanks!&lt;br /&gt;
&lt;br /&gt;
To join the OWASP Testing mailing list or view the archives, please visit the [http://lists.sourceforge.net/lists/listinfo/owasp-testing subscription page]. &lt;br /&gt;
&lt;br /&gt;
{{Template:Stub}}&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7236</id>
		<title>Category:OWASP Testing Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7236"/>
				<updated>2006-07-12T12:39:18Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Downloads and Materials */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==News==&lt;br /&gt;
The first Draft of the new Testing Guide 2.0 shall be up soon.&lt;br /&gt;
Also contributors names shall be added once that is done.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Overview==&lt;br /&gt;
&lt;br /&gt;
This projects goal is to create a &amp;quot;best practices&amp;quot; penetration testing framework which users can implement in their own organizations and a &amp;quot;low level&amp;quot; penetration testing guide that describes how to find certain issues.&lt;br /&gt;
&lt;br /&gt;
== Contributors ==&lt;br /&gt;
Currently there are many people helping out when they can. &lt;br /&gt;
The Project lead is Eoin Keary. There are still lots of areas to be covered.&lt;br /&gt;
To contribute please email [mailto:eoin.keary@owasp.org Eoin]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Volunteers needed==&lt;br /&gt;
&lt;br /&gt;
'''Phase Two call for volunteers''' &lt;br /&gt;
Wed Mar 15 12:30:28 EST 2006 &lt;br /&gt;
&lt;br /&gt;
Work is underway on the 2nd phase of the testing guide, and we would love to hear from volunteers who could offer their knowledge in creating this phase. If you have knowledge and experience in application testing, and can spare a few hours a week, please do get in [mailto:eoin.keary@owasp.org touch]&lt;br /&gt;
&lt;br /&gt;
==Testing Guide Download==&lt;br /&gt;
[[OWASP Testing Guide]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Downloads and Materials== &lt;br /&gt;
&lt;br /&gt;
You can [http://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] project releases from the OWASP download center. &lt;br /&gt;
&lt;br /&gt;
'''THE OWASP Testing Project Live CD'''&lt;br /&gt;
The OWASP testing project is currently implementing an Application security Live CD. &amp;lt;br&amp;gt;&lt;br /&gt;
LabRat Version 0.8 Alpha is just weeks away from Beta testing*.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
The aim of this CD is to have a complete testing suite on one Disk. The CD shall also contain the forthcoming OWASP Testing guide.&lt;br /&gt;
&lt;br /&gt;
The Alpha version contains the following tools/documents:&lt;br /&gt;
&lt;br /&gt;
Application:&lt;br /&gt;
WebGoat&lt;br /&gt;
WebScarab&lt;br /&gt;
Cal9000&lt;br /&gt;
&lt;br /&gt;
Infrastructure:&lt;br /&gt;
Nmap&lt;br /&gt;
Hping2&lt;br /&gt;
TCPDump&lt;br /&gt;
Yersinia&lt;br /&gt;
MetaSploit Framework&lt;br /&gt;
&lt;br /&gt;
Misc:&lt;br /&gt;
RFID Hacking Tools&lt;br /&gt;
VOIP Hacking Tools&lt;br /&gt;
OWASP Guide&lt;br /&gt;
&lt;br /&gt;
The CD is being created in conjunction with Josh Perrrymon at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
He can be contacted on:&lt;br /&gt;
[mailto:josh.perrymon@packetfocus.com Josh Perrymon]&lt;br /&gt;
&lt;br /&gt;
Also you can contact myself on [mailto:eoin.keary@owasp.org Eoin Keary]&lt;br /&gt;
*If your interested in becoming a Beta tester contact Beta at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
==Newest Release==&lt;br /&gt;
 &lt;br /&gt;
December 13, 2004 - Phase One Released &lt;br /&gt;
We are glad to announce that The OWASP Testing Project Phase One has finally been released. This covers the processes involved in testing web applications:&lt;br /&gt;
&lt;br /&gt;
* The scope of what to test &lt;br /&gt;
* Principles of testing &lt;br /&gt;
* Testing techniques explained &lt;br /&gt;
* The OWASP testing framework explained. &lt;br /&gt;
&lt;br /&gt;
This document is designed to help organizations understand what comprises a testing program, and to help them identify the steps that they need to undertake to build and operate that testing program on their web application&lt;br /&gt;
&lt;br /&gt;
You can now [https://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] phase one from the OWASP download centre.&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
View the [[OWASP Testing Project Roadmap]]&lt;br /&gt;
&lt;br /&gt;
==News== &lt;br /&gt;
&lt;br /&gt;
  '''OWASP Pen Test Checklist in Italian''' &lt;br /&gt;
  Sun May 22 10:56:39 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist in Italian. Thanks to the Italian Chapter, Massimiliano and Mateo for it's great effort to have this document translated. You can download this verion in[http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.doc Word]&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
  '''Checklist ver 1.17 in Spanish''' &lt;br /&gt;
  Mon Apr 04 15:37:24 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist ver 1.17 in Spanish.Thanks to Pedro, Raul and Rogelio for it's great effort to have this document translated and to Christian by helping out with technical edition. You can download this verion [http://www.owasp.org/docroot/owasp/misc/testing_spanish.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/testing_spanish.doc Word]&lt;br /&gt;
&lt;br /&gt;
==Project Contributors== &lt;br /&gt;
&lt;br /&gt;
Contributors &lt;br /&gt;
&lt;br /&gt;
==Feedback and Participation==&lt;br /&gt;
 &lt;br /&gt;
We hope you find the information in the OWASP Testing project useful. Please contribute back to the project by sending your comments, questions, and suggestions to the OWASP Testing mailing list. Thanks!&lt;br /&gt;
&lt;br /&gt;
To join the OWASP Testing mailing list or view the archives, please visit the [http://lists.sourceforge.net/lists/listinfo/owasp-testing subscription page]. &lt;br /&gt;
&lt;br /&gt;
{{Template:Stub}}&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7235</id>
		<title>Category:OWASP Testing Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Testing_Project&amp;diff=7235"/>
				<updated>2006-07-12T12:34:08Z</updated>
		
		<summary type="html">&lt;p&gt;Packetfocus: /* Downloads and Materials */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==News==&lt;br /&gt;
The first Draft of the new Testing Guide 2.0 shall be up soon.&lt;br /&gt;
Also contributors names shall be added once that is done.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Overview==&lt;br /&gt;
&lt;br /&gt;
This projects goal is to create a &amp;quot;best practices&amp;quot; penetration testing framework which users can implement in their own organizations and a &amp;quot;low level&amp;quot; penetration testing guide that describes how to find certain issues.&lt;br /&gt;
&lt;br /&gt;
== Contributors ==&lt;br /&gt;
Currently there are many people helping out when they can. &lt;br /&gt;
The Project lead is Eoin Keary. There are still lots of areas to be covered.&lt;br /&gt;
To contribute please email [mailto:eoin.keary@owasp.org Eoin]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Volunteers needed==&lt;br /&gt;
&lt;br /&gt;
'''Phase Two call for volunteers''' &lt;br /&gt;
Wed Mar 15 12:30:28 EST 2006 &lt;br /&gt;
&lt;br /&gt;
Work is underway on the 2nd phase of the testing guide, and we would love to hear from volunteers who could offer their knowledge in creating this phase. If you have knowledge and experience in application testing, and can spare a few hours a week, please do get in [mailto:eoin.keary@owasp.org touch]&lt;br /&gt;
&lt;br /&gt;
==Testing Guide Download==&lt;br /&gt;
[[OWASP Testing Guide]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Downloads and Materials== &lt;br /&gt;
&lt;br /&gt;
You can [http://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] project releases from the OWASP download center. &lt;br /&gt;
&lt;br /&gt;
'''THE OWASP Testing Project Live CD'''&lt;br /&gt;
The OWASP testing project is currently implementing an Application security Live CD. &lt;br /&gt;
LabRat Version 0.8 Alpha is just weeks away from Beta testing*.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
The aim of this CD is to have a complete testing suite on one Disk. The CD shall also contain the forthcoming OWASP Testing guide.&lt;br /&gt;
&lt;br /&gt;
The Alpha version contains the following tools/documents:&lt;br /&gt;
&lt;br /&gt;
Application:&lt;br /&gt;
WebGoat&lt;br /&gt;
WebScarab&lt;br /&gt;
Cal9000&lt;br /&gt;
&lt;br /&gt;
Infrastructure:&lt;br /&gt;
Nmap&lt;br /&gt;
Hping2&lt;br /&gt;
TCPDump&lt;br /&gt;
Yersinia&lt;br /&gt;
MetaSploit Framework&lt;br /&gt;
&lt;br /&gt;
Misc:&lt;br /&gt;
RFID Hacking Tools&lt;br /&gt;
VOIP Hacking Tools&lt;br /&gt;
OWASP Guide&lt;br /&gt;
&lt;br /&gt;
The CD is being created in conjunction with Josh Perrrymon at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
He can be contacted on:&lt;br /&gt;
[mailto:josh.perrymon@packetfocus.com Josh Perrymon]&lt;br /&gt;
&lt;br /&gt;
Also you can contact myself on [mailto:eoin.keary@owasp.org Eoin Keary]&lt;br /&gt;
*If your interested in becoming a Beta tester contact Beta at [http://www.packetfocus.com/ Packetfocus].&lt;br /&gt;
&lt;br /&gt;
==Newest Release==&lt;br /&gt;
 &lt;br /&gt;
December 13, 2004 - Phase One Released &lt;br /&gt;
We are glad to announce that The OWASP Testing Project Phase One has finally been released. This covers the processes involved in testing web applications:&lt;br /&gt;
&lt;br /&gt;
* The scope of what to test &lt;br /&gt;
* Principles of testing &lt;br /&gt;
* Testing techniques explained &lt;br /&gt;
* The OWASP testing framework explained. &lt;br /&gt;
&lt;br /&gt;
This document is designed to help organizations understand what comprises a testing program, and to help them identify the steps that they need to undertake to build and operate that testing program on their web application&lt;br /&gt;
&lt;br /&gt;
You can now [https://sourceforge.net/project/showfiles.php?group_id=64424&amp;amp;package_id=62285 download] phase one from the OWASP download centre.&lt;br /&gt;
&lt;br /&gt;
==Roadmap==&lt;br /&gt;
&lt;br /&gt;
View the [[OWASP Testing Project Roadmap]]&lt;br /&gt;
&lt;br /&gt;
==News== &lt;br /&gt;
&lt;br /&gt;
  '''OWASP Pen Test Checklist in Italian''' &lt;br /&gt;
  Sun May 22 10:56:39 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist in Italian. Thanks to the Italian Chapter, Massimiliano and Mateo for it's great effort to have this document translated. You can download this verion in[http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/OWASPWebAppPenTestList1.1_ITA.doc Word]&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
  '''Checklist ver 1.17 in Spanish''' &lt;br /&gt;
  Mon Apr 04 15:37:24 EDT 2005 &lt;br /&gt;
  I'm glad to announce we have released OWASP Pen Test Checklist ver 1.17 in Spanish.Thanks to Pedro, Raul and Rogelio for it's great effort to have this document translated and to Christian by helping out with technical edition. You can download this verion [http://www.owasp.org/docroot/owasp/misc/testing_spanish.pdf PDF] or [http://www.owasp.org/docroot/owasp/misc/testing_spanish.doc Word]&lt;br /&gt;
&lt;br /&gt;
==Project Contributors== &lt;br /&gt;
&lt;br /&gt;
Contributors &lt;br /&gt;
&lt;br /&gt;
==Feedback and Participation==&lt;br /&gt;
 &lt;br /&gt;
We hope you find the information in the OWASP Testing project useful. Please contribute back to the project by sending your comments, questions, and suggestions to the OWASP Testing mailing list. Thanks!&lt;br /&gt;
&lt;br /&gt;
To join the OWASP Testing mailing list or view the archives, please visit the [http://lists.sourceforge.net/lists/listinfo/owasp-testing subscription page]. &lt;br /&gt;
&lt;br /&gt;
{{Template:Stub}}&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project]]&lt;/div&gt;</summary>
		<author><name>Packetfocus</name></author>	</entry>

	</feed>