<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Stephen+Evans</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Stephen+Evans"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Stephen_Evans"/>
		<updated>2026-04-20T10:22:36Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Connections_Committee_-_Application_4&amp;diff=76096</id>
		<title>OWASP Connections Committee - Application 4</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Connections_Committee_-_Application_4&amp;diff=76096"/>
				<updated>2010-01-12T18:15:30Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: Stephen Craig Evans endorsement&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;[[How to Join a Committee|Click here to return to 'How to Join a Committee' page]] &lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;width: 100%;&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(64, 88, 160) none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous; color: white;&amp;quot; colspan=&amp;quot;2&amp;quot; | &amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''COMMITTEE APPLICATION FORM'''&amp;lt;/font&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(123, 138, 189) none repeat scroll 0% 0%; width: 25%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''Applicant's Name''' &lt;br /&gt;
| align=&amp;quot;left&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 85%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; colspan=&amp;quot;1&amp;quot; | &amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;Jim Manico&amp;lt;/font&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(123, 138, 189) none repeat scroll 0% 0%; width: 25%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''Current and past OWASP Roles''' &lt;br /&gt;
| align=&amp;quot;left&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 85%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; colspan=&amp;quot;1&amp;quot; | Podcast super-star&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(123, 138, 189) none repeat scroll 0% 0%; width: 25%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''Committee Applying for''' &lt;br /&gt;
| align=&amp;quot;left&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 85%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; colspan=&amp;quot;1&amp;quot; | OWASP Connection Committee&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
Please be aware that for an application to be considered by the board, '''you MUST have 5 recommendations'''. An incomplete application will not be considered for vote. &lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br&amp;gt; &lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
&lt;br /&gt;
{| border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;width: 100%;&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(64, 88, 160) none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous; color: white;&amp;quot; colspan=&amp;quot;8&amp;quot; | &amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''COMMITTEE RECOMMENDATIONS'''&amp;lt;/font&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background: white none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous; color: white;&amp;quot; | &amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;&amp;lt;/font&amp;gt;&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(123, 138, 189) none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous; color: white;&amp;quot; | &amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Who Recommends/Name'''&amp;lt;/font&amp;gt;&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(123, 138, 189) none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous; color: white;&amp;quot; | &amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Role in OWASP'''&amp;lt;/font&amp;gt;&lt;br /&gt;
! align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(123, 138, 189) none repeat scroll 0% 0%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous; color: white;&amp;quot; | &amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Recommendation Content'''&amp;lt;/font&amp;gt;&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 3%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''1''' &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Martin Knobloch &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Dutch Chapter Leader / GEC chair &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 57%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | If anyone, then Jim is a perfect candidate for the connection committee. Not only because his work for the OWASP Podcast!&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 3%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''2''' &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Dan Cornell &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Global Membership Committee Member, San Antonio Chapter Lead &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 57%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Jim is an excellent candidate given his historical and ongoing contributions to projects such as the OWASP Podcast and ESAPI&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 3%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''3''' &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Michael Coates &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Global Membership Committee Member, AppSensor Project Lead &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 57%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Jim has done an excellent job thus far with his leadership for the OWASP podcast series and has also done a tremendous job promoting ESAPI to new developer audiences. I believe Jim would be an excellent addition to the Global Connections Committee.&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 3%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''4''' &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Brad Causey&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Global Projects Committee Co-Chair, Alabama Chapter Lead&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 57%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Jim's podcasts have assisted OWASP in raising visibility to the subject of AppSec and contributed greatly to the growth of the community. Further, Jim has served as the voice of OWASP for some time and perfeclty suited for a role in the Connections Committee. Godspeed Jim.&lt;br /&gt;
|-&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 3%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | '''5''' &lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Stephen Craig Evans&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 20%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Global Membership Committee, SoC '08 Securing WebGoat using ModSecurity&lt;br /&gt;
| align=&amp;quot;center&amp;quot; style=&amp;quot;background: rgb(204, 204, 204) none repeat scroll 0% 0%; width: 57%; -moz-background-clip: border; -moz-background-origin: padding; -moz-background-inline-policy: continuous;&amp;quot; | Jim's OWASP podcast series will go next to Gary McGraw's Silver Bullet series in the software security history books - it is that important. He will be ideal for the Connections Committee.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
----&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75641</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75641"/>
				<updated>2010-01-03T20:04:51Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project Details */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.pdf&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is be a free, open source, security static analysis tool and is architected to support any programming language that has an EBNF grammar. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 23, 2009: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
&lt;br /&gt;
Jan 02, 2010:&lt;br /&gt;
* Upload the source code to http://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/&lt;br /&gt;
* Make a QuickStart Guide for developing OSSAD (available here &amp;amp; at o2-ounceopen)&lt;br /&gt;
* Write ScrGraph module&lt;br /&gt;
* Did more Java grammar control flow statements&lt;br /&gt;
&lt;br /&gt;
Near future:&lt;br /&gt;
* Finish up the Java grammar control flow statements&lt;br /&gt;
* Start JSP implementation for The Prototype&lt;br /&gt;
&lt;br /&gt;
Less near future:&lt;br /&gt;
* Finish JSP implementation for The Prototype&lt;br /&gt;
* Start security rules format and Analysis Engine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org or stephencraig.evans@gmail.com&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{:OWASP_O2_Platform/WIKI/bottom}}&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75640</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75640"/>
				<updated>2010-01-03T20:00:51Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project Details */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.pdf&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is be a free, open source, security static analysis tool and is architected to support any programming language that has an EBNF grammar. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 23, 2009: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
&lt;br /&gt;
Jan 02, 2010:&lt;br /&gt;
* Upload the source code to http://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/&lt;br /&gt;
* Make a QuickStart Guide for developing OSSAD (available here &amp;amp; at o2-ounceopen)&lt;br /&gt;
* Write ScrGraph module&lt;br /&gt;
* Did more Java grammar control flow statements&lt;br /&gt;
&lt;br /&gt;
Near future:&lt;br /&gt;
* Finish up the Java grammar control flow statements&lt;br /&gt;
* Start JSP implementation for The Prototype&lt;br /&gt;
&lt;br /&gt;
Less near future:&lt;br /&gt;
* Finish JSP implementation for The Prototype&lt;br /&gt;
* Start security rules format and Analysis Engine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{:OWASP_O2_Platform/WIKI/bottom}}&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75639</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75639"/>
				<updated>2010-01-03T19:59:38Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: Add tasks completed for Jan 02 plus new tasks for future&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.pdf&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is be a free, open source, security static analysis tool and is architected to support any programming language that has an EBNF grammar. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule (tasks to be completed by Monday morning)'''&lt;br /&gt;
&lt;br /&gt;
Nov 23: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
* Upload to www.o2-ounceopen.com&lt;br /&gt;
* Release a new version of the project documentation&lt;br /&gt;
&lt;br /&gt;
Jan 02:&lt;br /&gt;
* Upload the source code to http://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/&lt;br /&gt;
* Make a QuickStart Guide for developing OSSAD (available here &amp;amp; at o2-ounceopen)&lt;br /&gt;
* Write ScrGraph module&lt;br /&gt;
* Did more Java grammar control flow statements&lt;br /&gt;
&lt;br /&gt;
Near future:&lt;br /&gt;
* Finish up the Java grammar control flow statements&lt;br /&gt;
* Start JSP implementation for The Prototype&lt;br /&gt;
&lt;br /&gt;
Less near future:&lt;br /&gt;
* Finish JSP implementation for The Prototype&lt;br /&gt;
* Start security rules format and Analysis Engine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{:OWASP_O2_Platform/WIKI/bottom}}&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75638</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=75638"/>
				<updated>2010-01-03T19:50:43Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Documentation */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_QuickStart_02Jan2010.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is be a free, open source, security static analysis tool and is architected to support any programming language that has an EBNF grammar. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule (tasks to be completed by Monday morning)'''&lt;br /&gt;
&lt;br /&gt;
Nov 23: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
* Upload to www.o2-ounceopen.com&lt;br /&gt;
* Release a new version of the project documentation&lt;br /&gt;
&lt;br /&gt;
Nov.30: SCR Phase 1 (SCR Builder)&lt;br /&gt;
&lt;br /&gt;
Dec.07: Complete SCR Phase 1 (SCR Builder) for Java&lt;br /&gt;
&lt;br /&gt;
Dec.14: SCR Phase 2 (SCR Composer)&lt;br /&gt;
&lt;br /&gt;
Dec.21: Complete SCR Phase 2  (SCR Composer) for Java&lt;br /&gt;
&lt;br /&gt;
Dec.28: JSP ASTBuilder, JSP SCR Phase 1&lt;br /&gt;
&lt;br /&gt;
Jan.04: Complete JSP SCR Phase 2&lt;br /&gt;
&lt;br /&gt;
After Jan.04: Convert WebGoat source code to SCR &amp;amp; debug&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
{{:OWASP_O2_Platform/WIKI/bottom}}&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73955</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73955"/>
				<updated>2009-11-22T20:42:30Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: update schedule&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is be a free, open source, security static analysis tool and is architected to support any programming language that has an EBNF grammar. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule (tasks to be completed by Monday morning)'''&lt;br /&gt;
&lt;br /&gt;
Nov 23: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
* Upload to www.o2-ounceopen.com&lt;br /&gt;
* Release a new version of the project documentation&lt;br /&gt;
&lt;br /&gt;
Nov.30: SCR Phase 1 (SCR Builder)&lt;br /&gt;
&lt;br /&gt;
Dec.07: Complete SCR Phase 1 (SCR Builder) for Java&lt;br /&gt;
&lt;br /&gt;
Dec.14: SCR Phase 2 (SCR Composer)&lt;br /&gt;
&lt;br /&gt;
Dec.21: Complete SCR Phase 2  (SCR Composer) for Java&lt;br /&gt;
&lt;br /&gt;
Dec.28: JSP ASTBuilder, JSP SCR Phase 1&lt;br /&gt;
&lt;br /&gt;
Jan.04: Complete JSP SCR Phase 2&lt;br /&gt;
&lt;br /&gt;
After Jan.04: Convert WebGoat source code to SCR &amp;amp; debug&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
{{:OWASP_O2_Platform/WIKI/bottom}}&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Global_Membership_Committee&amp;diff=73954</id>
		<title>Global Membership Committee</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Global_Membership_Committee&amp;diff=73954"/>
				<updated>2009-11-22T18:32:23Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: added link to September 24 meeting notes.&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''The Global Membership Committee was created during the OWASP EU Summit in Portugal in 11/2008.'''&lt;br /&gt;
&lt;br /&gt;
Committee Responsibilities: &lt;br /&gt;
&lt;br /&gt;
The Membership Committee recommends policies, procedures, and strategies for enhancing the membership in OWASP both numerically and qualitatively. The committee provides a written plan and recommends policies, procedures, and initiatives to assure a growing and vital membership organization. &lt;br /&gt;
&lt;br /&gt;
Membership Committee &lt;br /&gt;
&lt;br /&gt;
Board Member:[mailto:tomb@owasp.org Tom Brennan]&lt;br /&gt;
&lt;br /&gt;
Committee Chair: [mailto:dan@denimgroup.com Dan Cornell] (U.S.)&lt;br /&gt;
&lt;br /&gt;
[mailto:michael.coates@aspectsecurity.com Michael Coates] (U.S.)&lt;br /&gt;
&lt;br /&gt;
[mailto:stephencraig.evans@gmail.com Stephen Craig Evans] (U.S.)&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/How_to_Join_a_Committee How to join this committee]&lt;br /&gt;
&lt;br /&gt;
[http://lists.owasp.org/mailman/listinfo/global_membership_committee Join our mailing list]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Meeting Minutes'''&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20091022|October 22, 2009]]&lt;br /&gt;
&lt;br /&gt;
[https://docs.google.com/a/owasp.org/Doc?docid=0AVuyd6k7FXjnZGNqMm1udjNfN2trNDlyMmZr September 24, 2009]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090820|August 20, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090417|April 17, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090403|April 3, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090216|February 16, 2009]]&lt;br /&gt;
&lt;br /&gt;
[http://docs.google.com/Doc?id=d28nw9r_13cjgvrqff December 8, 2008]&lt;br /&gt;
&lt;br /&gt;
[http://docs.google.com/Doc?id=d28nw9r_8ghtmqgcj December 1, 2008]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Global_Membership_Committee-archive  Archive]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73406</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73406"/>
				<updated>2009-11-16T04:12:28Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project Details */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is be a free, open source, security static analysis tool and is architected to support any programming language that has an EBNF grammar. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-29: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
* Upload to www.o2-ounceopen.com&lt;br /&gt;
* Release a new version of the project documentation&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73405</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73405"/>
				<updated>2009-11-16T03:57:13Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project Details */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD?'''&lt;br /&gt;
&lt;br /&gt;
OSSAD will be a free, open source, software security static analysis tool and is architected to support any programming language that has an EBNF. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-29: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
* Upload to www.o2-ounceopen.com&lt;br /&gt;
* Release a new version of the project documentation&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/suggestions/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73404</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73404"/>
				<updated>2009-11-16T03:52:43Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD'''&lt;br /&gt;
&lt;br /&gt;
OSSAD will be a free, open source, software security static analysis tool and is architected to support any programming language that has an EBNF. It is for developers who know little or nothing about application security. &lt;br /&gt;
&lt;br /&gt;
Please read the project documentation, which details:&lt;br /&gt;
* Motivation&lt;br /&gt;
* Strategy&lt;br /&gt;
* Architecture&lt;br /&gt;
* Current progress&lt;br /&gt;
* What a contributor can do to help&lt;br /&gt;
&lt;br /&gt;
The project is at a nascent state and the goal is to have a working Java/JSP implementation in the 1st half of 2010 with other programming languages to quickly follow.&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-29: &lt;br /&gt;
* Fix up this page&lt;br /&gt;
* Do a first pass clean up of the source code&lt;br /&gt;
* Organize the source code structure &lt;br /&gt;
* Upload to www.o2-ounceopen.com. &lt;br /&gt;
* Release a new version of the project documentation&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
Thank you.&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73403</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73403"/>
				<updated>2009-11-16T01:59:14Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is OSSAD'''&lt;br /&gt;
&lt;br /&gt;
OSSAD is a &lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-22: Fix up this page and release a new version of the project documentation.&lt;br /&gt;
&lt;br /&gt;
Nov 23-29: Clean up the source code &amp;amp; structure and upload to www.o2-ounceopen.com. &lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/questions are welcome. &lt;br /&gt;
&lt;br /&gt;
stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73402</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73402"/>
				<updated>2009-11-16T01:54:36Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans - November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/questions are welcome. &lt;br /&gt;
&lt;br /&gt;
stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73401</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73401"/>
				<updated>2009-11-16T01:54:19Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/questions are welcome. &lt;br /&gt;
&lt;br /&gt;
stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73400</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73400"/>
				<updated>2009-11-16T01:53:57Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP.&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/questions are welcome. &lt;br /&gt;
&lt;br /&gt;
stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73399</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73399"/>
				<updated>2009-11-16T01:52:46Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
Any comments/questions are welcome. &lt;br /&gt;
&lt;br /&gt;
stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73398</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73398"/>
				<updated>2009-11-16T01:52:07Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
Any comments/questions are welcome: stephencraig.evans@owasp.org&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73397</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73397"/>
				<updated>2009-11-16T01:50:25Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73396</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73396"/>
				<updated>2009-11-16T01:49:47Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: tabs don't work - yet - so take out&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
=== Project Details  ===&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;br /&gt;
&lt;br /&gt;
==== Project Details  ====&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''FAQ'''&lt;br /&gt;
&lt;br /&gt;
1. Why?&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73395</id>
		<title>OWASP O2 Platform/Sub-Projects/OSSAD</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_O2_Platform/Sub-Projects/OSSAD&amp;diff=73395"/>
				<updated>2009-11-16T01:45:25Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: add tabs&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== Home Page ====&lt;br /&gt;
&lt;br /&gt;
OSSAD stands for One Security Static Analyzer per Developer &lt;br /&gt;
&lt;br /&gt;
=== Documentation ===&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.odt&lt;br /&gt;
* https://www.o2-ounceopen.com/files-binaries-source-and-demo/ossad/OSSAD_Security-Static-Analysis-tool_v-0.15Draft.pdf&lt;br /&gt;
&lt;br /&gt;
=== Copyright === &lt;br /&gt;
&lt;br /&gt;
The current version has been developed by Stephen Craig Evans who assigned the copyright to OWASP&lt;br /&gt;
&lt;br /&gt;
&amp;quot;I assign the copyright of the OSSAD static analysis tool to OWASP and&lt;br /&gt;
I will release its code under Apache 2.0 (Open Source license) and the&lt;br /&gt;
documents under Creative Commons 3.0 License.&lt;br /&gt;
&lt;br /&gt;
Stephen Craig Evans&lt;br /&gt;
November 15, 2009&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
-----&lt;br /&gt;
go back to the main [[OWASP O2 Platform]] page&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP_O2_Platform]]&lt;br /&gt;
&lt;br /&gt;
==== Project Details  ====&lt;br /&gt;
&lt;br /&gt;
'''What is O2'''&lt;br /&gt;
&lt;br /&gt;
O2 is a&lt;br /&gt;
&lt;br /&gt;
'''Schedule'''&lt;br /&gt;
Nov 16-22:&lt;br /&gt;
&lt;br /&gt;
Nov 23-29:&lt;br /&gt;
&lt;br /&gt;
'''FAQ'''&lt;br /&gt;
&lt;br /&gt;
1. Why?&lt;br /&gt;
&lt;br /&gt;
'''Contact'''&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Global_Membership_Committee&amp;diff=67963</id>
		<title>Global Membership Committee</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Global_Membership_Committee&amp;diff=67963"/>
				<updated>2009-08-24T15:15:23Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: Changed meeting minutes list to descending order&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''The Global Membership Committee was created during the OWASP EU Summit in Portugal in 11/2008.'''&lt;br /&gt;
&lt;br /&gt;
Committee Responsibilities: &lt;br /&gt;
&lt;br /&gt;
The Membership Committee recommends policies, procedures, and strategies for enhancing the membership in OWASP both numerically and qualitatively. The committee provides a written plan and recommends policies, procedures, and initiatives to assure a growing and vital membership organization. &lt;br /&gt;
&lt;br /&gt;
Membership Committee &lt;br /&gt;
&lt;br /&gt;
[mailto:tomb@owasp.org Tom Brennan] Global Board Member&lt;br /&gt;
&lt;br /&gt;
[mailto:Kate.Hartman@owasp.org Kate Hartman] Director of OWASP Foundation&lt;br /&gt;
&lt;br /&gt;
[mailto:dan@denimgroup.com Dan Cornell] (U.S.)&lt;br /&gt;
&lt;br /&gt;
[mailto:michael.coates@aspectsecurity.com Michael Coates] (U.S.)&lt;br /&gt;
&lt;br /&gt;
[mailto:stephencraig.evans@gmail.com Stephen Craig Evans] (U.S.)&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/How_to_Join_a_Committee How to join this committee]&lt;br /&gt;
&lt;br /&gt;
[http://lists.owasp.org/mailman/listinfo/global_membership_committee Join our mailing list]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Meeting Minutes'''&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090820|August 20, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090417|April 17, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090403|April 3, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090216|February 16, 2009]]&lt;br /&gt;
&lt;br /&gt;
[http://docs.google.com/Doc?id=d28nw9r_13cjgvrqff December 8, 2008]&lt;br /&gt;
&lt;br /&gt;
[http://docs.google.com/Doc?id=d28nw9r_8ghtmqgcj December 1, 2008]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Global_Membership_Committee-archive  Archive]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67941</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67941"/>
				<updated>2009-08-24T13:48:31Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Attendees: */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EDT) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. &lt;br /&gt;
** Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
** Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
** Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. ET (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 10:00 EDT (-4 GMT)===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67940</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67940"/>
				<updated>2009-08-24T13:47:19Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Next meeting: Thursday, September 24, 2009 - 10:00 EDT (-4 GMT) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EDT) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. &lt;br /&gt;
** Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
** Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
** Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. ET (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 10:00 EDT (-4 GMT)===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67939</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67939"/>
				<updated>2009-08-24T13:45:44Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Next meeting: Thursday, September 24, 2009 - 10 a.m. EDT (-4 GMT) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EDT) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. &lt;br /&gt;
** Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
** Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
** Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. ET (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 - 10:00 EDT (-4 GMT)===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67938</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67938"/>
				<updated>2009-08-24T13:44:43Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Next meeting: Thursday, September 24, 2009 - 10 a.m. EST */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EDT) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. &lt;br /&gt;
** Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
** Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
** Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. ET (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 - 10 a.m. EDT (-4 GMT)===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67937</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67937"/>
				<updated>2009-08-24T13:44:12Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Minutes (16:00 - 16:45 EST) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EDT) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. &lt;br /&gt;
** Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
** Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
** Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. ET (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 - 10 a.m. EST ===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67935</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67935"/>
				<updated>2009-08-24T13:33:03Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Minutes (16:00 - 16:45 EST) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EST) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. &lt;br /&gt;
** Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
** Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
** Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. EST (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 - 10 a.m. EST ===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67934</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67934"/>
				<updated>2009-08-24T13:30:53Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: 2nd version&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;br /&gt;
&lt;br /&gt;
=== Minutes (16:00 - 16:45 EST) ===&lt;br /&gt;
&lt;br /&gt;
* General catch up&lt;br /&gt;
&lt;br /&gt;
* Kate shared with the group the labor-intensive process of shipping out membership kits; including her time, the cost exceeds the available 30 USD per member.&lt;br /&gt;
&lt;br /&gt;
* Current individual membership count is just over 700 and was 652 on August 06. &lt;br /&gt;
&lt;br /&gt;
* Discussed having a Membership Committee presence at the AppSec DC conference November 10-13th. Kate volunteered to be there and do something after the initial rush of registration on the first day; note that she is the only person that can process credit cards on the spot.&lt;br /&gt;
&lt;br /&gt;
* Discussed situations that required voting and who should qualify. Electing a board member - electing a 6th Board Member has been discussed - should be done by current OWASP contributors, which include: (1) Paid Members; (2) Board Members; (3) Chapter Leaders; (4) Committee Members; and (5) Project Leaders of active projects as determined by the Global Projects Committee (if somebody belongs to more than one group, they still have only one vote). &lt;br /&gt;
&lt;br /&gt;
Excluding for board membership, other elections should have a broader base of voters - perhaps including non-member chapter meeting attendees. &lt;br /&gt;
&lt;br /&gt;
Kate will present the committee's recommendations at the next Board Meeting.&lt;br /&gt;
&lt;br /&gt;
* Discussed getting more organization supporters, focusing on conference sponsors.&lt;br /&gt;
&lt;br /&gt;
* Agreed to have a monthly meeting on the last Thursday of every month at 10 a.m. EST (United States).&lt;br /&gt;
&lt;br /&gt;
=== Next meeting: Thursday, September 24, 2009 - 10 a.m. EST ===&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67933</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67933"/>
				<updated>2009-08-24T13:26:21Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
=== Attendees: ===&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67932</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67932"/>
				<updated>2009-08-24T13:26:02Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
= Attendees: =&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67931</id>
		<title>GlobalMembershipCommittee Notes 20090820</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=GlobalMembershipCommittee_Notes_20090820&amp;diff=67931"/>
				<updated>2009-08-24T13:22:57Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: first version&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
== Meeting #6 - Thursday, August 20, 2009 ==&lt;br /&gt;
&lt;br /&gt;
Attendees:&lt;br /&gt;
&lt;br /&gt;
* Michael Coates (host)&lt;br /&gt;
* Dan Cornell&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* Stephen Craig Evans&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Image023-StephenCraigEvans.jpg&amp;diff=67790</id>
		<title>File:Image023-StephenCraigEvans.jpg</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Image023-StephenCraigEvans.jpg&amp;diff=67790"/>
				<updated>2009-08-20T23:39:05Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: uploaded &amp;quot;File:Image023-StephenCraigEvans.jpg&amp;quot;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;[[File:Image023-StephenCraigEvans.jpg]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=File:Image023-StephenCraigEvans.jpg&amp;diff=67789</id>
		<title>File:Image023-StephenCraigEvans.jpg</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=File:Image023-StephenCraigEvans.jpg&amp;diff=67789"/>
				<updated>2009-08-20T23:38:23Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: Created page with 'File:Image023-StephenCraigEvans.jpg'&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;[[File:Image023-StephenCraigEvans.jpg]]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Global_Committee_Pages&amp;diff=67788</id>
		<title>Global Committee Pages</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Global_Committee_Pages&amp;diff=67788"/>
				<updated>2009-08-20T23:21:18Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: added my name to GMC list&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;__notoc__&lt;br /&gt;
=NEW GLOBAL COMMITTEE STRUCTURE=&lt;br /&gt;
OWASP recognized the extraordinary contribution of our most active leaders by engaging them to lead a set of six new committees that report to the [https://www.owasp.org/index.php/Contact OWASP Board of Directors].  Each democratically established committee will focus on a key function or geographic region, such as OWASP projects, conferences, local chapters, membership and industry outreach.&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;width:90%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 | colspan=&amp;quot;7&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot; | '''OWASP GLOBAL COMMITTEES'''&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | OWASP GLOBAL COMMITTEE&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | [[Global Projects Committee|'''Projects''']]   &lt;br /&gt;
 | style=&amp;quot;width:14%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | [[Global Membership Committee|'''Membership''']]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | [[Global Education Committee|'''Education''']]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | [[Global Conferences Committee|'''Conferences''']]  &lt;br /&gt;
 | style=&amp;quot;width:14%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | [https://www.owasp.org/index.php/Category:Global_Industry_Committee Industry]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#f2984c&amp;quot; align=&amp;quot;center&amp;quot; | [[Global Chapter Committee|'''Chapters''']]   &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot; | Current volunteer committee members&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot; | &lt;br /&gt;
* [[:Image:Image021-Jason Li.jpg|Jason Li]] &lt;br /&gt;
* [[:Image:Image019-Matt Tesauro.jpg|Matt Tesauro]] &lt;br /&gt;
* [[:Image:Image022-Leo Cavallari.jpg|Leo Cavallari]] &lt;br /&gt;
* [[:Image:Image020-Pravir Chandra.jpg|Pravir Chandra]] &lt;br /&gt;
* [[Global_Projects_and_Tools_Committee_-_Application_2|Brad Causey]] &lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot; | &lt;br /&gt;
* [[:Image:Image018-Dan Cornell.jpg|Dan Cornell]] &lt;br /&gt;
* [[:Image:Image017-Michael Coates.jpg|Michael Coates]] &lt;br /&gt;
* [[:Image:Image023-StephenCraigEvans.jpg|Stephen Craig Evans]]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot; | &lt;br /&gt;
* [[:Image:Image007-Martin Knobloch.jpg|Martin Knobloch]]&lt;br /&gt;
* [[:Image:Image012-Mano Paul.jpg|Mano Paul]]&lt;br /&gt;
* [[:Image:Image008-Eduardo Neves.jpg|Eduardo Neves]]&lt;br /&gt;
* [[:Image:Image010-Kuai Hinjosa.jpg|Kuai Hinjosa]]&lt;br /&gt;
* [[:Image:Image011-Cecil Su.jpg|Cecil Su]] &lt;br /&gt;
* [[:Image:Image009-Fabio Cerullo.jpg|Fabio Cerullo]]&lt;br /&gt;
* [[:Global Education Committee - Application 1|Andrzej Targosz]]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot; | &lt;br /&gt;
* [[:Image:Image005-Wayne Huang.jpg|Wayne Huang]] &lt;br /&gt;
* [[:Image:Image004-Dhruv Soi.jpg|Dhruv Soi]]&lt;br /&gt;
* [[:Global Conferences Committee - Application 1|Mark Bristow]]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot; | &lt;br /&gt;
* [[:Image:Image014 Rex Booth.jpg|Rex Booth]]&lt;br /&gt;
* [[:Image:Image016-Georg Hess.jpg|Georg Hess]]&lt;br /&gt;
* [[:Image:Image013-Eoin Keary.jpg|Eoin Keary]] &lt;br /&gt;
* [[:Image:Image015-David Campbell.jpg|David Campbell]]&lt;br /&gt;
* [[Global_Industry_Committee_-_Application_1|Colin Watson]]&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot; |&lt;br /&gt;
* [[:User:Mchalmers|Matthew Chalmers]]&lt;br /&gt;
* [[User:Oshezaf|Ofer Shezaf]]&lt;br /&gt;
* [[:Image:Image002-Puneet Mehta.jpg|Puneet Mehta]]  &lt;br /&gt;
  |}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;center&amp;gt;[https://www.owasp.org/index.php/How_to_Join_a_Committee '''How to Join a Global Committee''']&amp;lt;/center&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Framework==&lt;br /&gt;
===[[Global Projects Committee|Projects]]===&lt;br /&gt;
* Drive quality improvement for OWASP Projects&lt;br /&gt;
* Manage OWASP Season of Code program&lt;br /&gt;
* Highlight strategic projects to meet the long-term mission (for example, [[ESAPI]])&lt;br /&gt;
&lt;br /&gt;
===[[Global Membership Committee|Membership]]===&lt;br /&gt;
* Increase individual membership 100% in 18 months ([https://www.owasp.org/index.php/Membership#Categories_of_Membership_.2F_Sponsorship Individuals])&lt;br /&gt;
* Increase organizational supporters 100% in 18 months ([https://www.owasp.org/index.php/Membership#Categories_of_Membership_.2F_Sponsorship Supporters])&lt;br /&gt;
* Increase university supporters 100% in 18 months&lt;br /&gt;
&lt;br /&gt;
===[[Global Conferences Committee|Conferences]]===&lt;br /&gt;
* Identify events per year to be OWASP Conferences that are the primary supporting factor for grant projects, summits and operational costs&lt;br /&gt;
&lt;br /&gt;
===[[Global Education Committee|Education]]===&lt;br /&gt;
* Establish a adoptable program that can be incorporated into Univ., and technical education programs that leverages the efforts of many at OWASP to raise the level of awareness to secure software.&lt;br /&gt;
* Obtain grants to futher our work&lt;br /&gt;
* [http://www.csis.org/component/option,com_csis_pubs/task,view/id,5157 CSIS Report]&lt;br /&gt;
&lt;br /&gt;
===[[Global Industry Committee|Industry]]===&lt;br /&gt;
* Start outreach to critical infrastructures worldwide such as:&lt;br /&gt;
** electricity generation, transmission and distribution;&lt;br /&gt;
** gas production, transport and distribution;&lt;br /&gt;
** oil and oil products production, transport and distribution;&lt;br /&gt;
** telecommunication;&lt;br /&gt;
** water supply (drinking water, waste water/sewage, stemming of surface water (e.g. dikes and sluices));&lt;br /&gt;
** agriculture, food production and distribution;&lt;br /&gt;
** heating (e.g. natural gas, fuel oil, district heating);&lt;br /&gt;
** public health (hospitals, ambulances);&lt;br /&gt;
** transportation systems (fuel supply, railway network, airports, harbors, inland shipping);&lt;br /&gt;
** financial services (banking, clearing);&lt;br /&gt;
** security services (police, military).&lt;br /&gt;
&lt;br /&gt;
''...they all use web applications...some even protect human life as well as PII and credit cards :)''&lt;br /&gt;
&lt;br /&gt;
* Identify issues or &amp;quot;efforts&amp;quot; like the Browser Working Group and others, the group should invite Industry CIO/CISO's (perhaps as a &amp;quot;value&amp;quot; of corporate membership support) to want to publicly collaborate on a document of industry needs that can add value to having the support of OWASP Foundation for the greater good of secure software, a internet based global economic platform and humanitarian needs worldwide&lt;br /&gt;
&lt;br /&gt;
===[[Global Chapter Committee|Chapters]]===&lt;br /&gt;
* Enable the support required at the local level to accomplish the overall mission and goals of the association&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Global_Membership_Committee&amp;diff=67787</id>
		<title>Global Membership Committee</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Global_Membership_Committee&amp;diff=67787"/>
				<updated>2009-08-20T23:15:04Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: added my name to list plus recent meeting data&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''The Global Membership Committee was created during the OWASP EU Summit in Portugal in 11/2008.'''&lt;br /&gt;
&lt;br /&gt;
Committee Responsibilities: &lt;br /&gt;
&lt;br /&gt;
The Membership Committee recommends policies, procedures, and strategies for enhancing the membership in OWASP both numerically and qualitatively. The committee provides a written plan and recommends policies, procedures, and initiatives to assure a growing and vital membership organization. &lt;br /&gt;
&lt;br /&gt;
Membership Committee &lt;br /&gt;
&lt;br /&gt;
[mailto:tomb@owasp.org Tom Brennan] Global Board Member&lt;br /&gt;
&lt;br /&gt;
[mailto:Kate.Hartman@owasp.org Kate Hartman] Director of OWASP Foundation&lt;br /&gt;
&lt;br /&gt;
[mailto:dan@denimgroup.com Dan Cornell] (U.S.)&lt;br /&gt;
&lt;br /&gt;
[mailto:michael.coates@aspectsecurity.com Michael Coates] (U.S.)&lt;br /&gt;
&lt;br /&gt;
[mailto:stephencraig.evans@gmail.com Stephen Craig Evans] (U.S.)&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/How_to_Join_a_Committee How to join this committee]&lt;br /&gt;
&lt;br /&gt;
[http://lists.owasp.org/mailman/listinfo/global_membership_committee Join our mailing list]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;hr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
'''Meeting Minutes'''&lt;br /&gt;
&lt;br /&gt;
[http://docs.google.com/Doc?id=d28nw9r_8ghtmqgcj December 1, 2008]&lt;br /&gt;
&lt;br /&gt;
[http://docs.google.com/Doc?id=d28nw9r_13cjgvrqff December 8, 2008]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090216|February 16, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090403|April 3, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090417|April 17, 2009]]&lt;br /&gt;
&lt;br /&gt;
[[GlobalMembershipCommittee_Notes_20090820|August 20, 2009]]&lt;br /&gt;
&lt;br /&gt;
[https://www.owasp.org/index.php/Global_Membership_Committee-archive  Archive]&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Podcast_33&amp;diff=66917</id>
		<title>Podcast 33</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Podcast_33&amp;diff=66917"/>
				<updated>2009-07-30T03:14:34Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: fixed spelling error of Paolo's name&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;'''[[OWASP_Podcast|OWASP Podcast Series]] #33'''&lt;br /&gt;
&lt;br /&gt;
OWASP Interview with Paolo Perego&amp;lt;br/&amp;gt;&lt;br /&gt;
Recorded May 13, 2009&amp;lt;br/&amp;gt;&lt;br /&gt;
Published July 25, 2009&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 [http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=300769012 http://images.apple.com/itunes/overview/images/overview-icon-itunes20081106.jpg] [http://www.owasp.org/download/jmanico/podcast.xml https://www.owasp.org/images/d/d3/Feed-icon-32x32.png] [http://www.owasp.org/download/jmanico/owasp_podcast_33.mp3 mp3]&lt;br /&gt;
&lt;br /&gt;
==Participants==&lt;br /&gt;
&amp;lt;ul&amp;gt;&lt;br /&gt;
&amp;lt;li&amp;gt;&amp;lt;b&amp;gt;Paolo Perego&amp;lt;/b&amp;gt; is the project leader and primary author of the FOSS static analysis tool, OWASP Orizon.&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;/ul&amp;gt;&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Podcast&amp;diff=66916</id>
		<title>OWASP Podcast</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Podcast&amp;diff=66916"/>
				<updated>2009-07-30T03:12:08Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: added to Paolo's entry&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== About ====&lt;br /&gt;
&lt;br /&gt;
'''OWASP Podcast Series Hosted by Jim Manico'''&lt;br /&gt;
&lt;br /&gt;
* The OWASP foundation presents the OWASP PODCAST SERIES hosted by [[User:Jmanico|Jim Manico]] from [http://www.aspectsecurity.com Aspect Security].&lt;br /&gt;
* Listen as Jim interviews OWASP volunteers, industry experts and leaders within the field of web application security. &lt;br /&gt;
* Questions? Comments? Please email [mailto:podcast@owasp.org podcast@owasp.org]&lt;br /&gt;
* Want to see the process and equipment behind the show? [https://www.owasp.org/index.php/Talk:OWASP_Podcast click here] &lt;br /&gt;
&lt;br /&gt;
&amp;lt;table border=&amp;quot;0&amp;quot;&amp;gt;&amp;lt;tr&amp;gt;&amp;lt;td&amp;gt;&lt;br /&gt;
[http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=300769012 http://www.owasp.org/download/jmanico/OWASP_Podcast_200x200.jpg]&lt;br /&gt;
&amp;lt;/td&amp;gt;&amp;lt;td align=&amp;quot;center&amp;quot; width=&amp;quot;150&amp;quot;&amp;gt;&lt;br /&gt;
Subscribe&amp;lt;br/&amp;gt;[http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=300769012 http://images.apple.com/itunes/overview/images/overview-icon-itunes20081106.jpg] [http://www.owasp.org/download/jmanico/podcast.xml https://www.owasp.org/images/d/d3/Feed-icon-32x32.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;OWASP Podcast&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Latest Shows====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot; border=&amp;quot;1&amp;quot;&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;#&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Date&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Actions&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Description&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;35&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[[Podcast_35|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Anton Chauvakin&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;34&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[[Podcast_34|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Amachi Shullman&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;33&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 25, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_33.mp3 Listen Now] | [[Podcast_33|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Paolo Perego (OWASP Orizon)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;32&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 21, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_32.mp3 Listen Now] | [[Podcast_32|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 2009 News Commentary Recorded June 11 with Arshan Dabirsiaghi, Boaz Gelbord, Jim Manico, Andrew van der Stock and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;31&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 4, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_31.mp3 Listen Now] | [[Podcast_31|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Mark Curphey&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;30&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 2, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_30.mp3 Listen Now] | [[Podcast_30|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Billy Hoffman and Matt Wood&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;29&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_29.mp3 Listen Now] | [[Podcast_29|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Justin Clarke&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;28&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 26, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_28.mp3 Listen Now] | [[Podcast_28|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Ross J. Anderson&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;27&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 26, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_27.mp3 Listen Now] | [[Podcast_27|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Rafal Los&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;26&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 17, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_26.mp3 Listen Now] | [[Podcast_26|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 2009 News Commentary Recorded May 28 with Tom Brennan, Andre Gironda, Jim Manico, Alex Smolen and Jeff Williams (part 2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;25&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 15, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_25.mp3 Listen Now] | [[Podcast_25|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with James McGovern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;24&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 12, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_24.mp3 Listen Now] | [[Podcast_24|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 2009 News Commentary Recorded May 14 with Andre Gironda, Jim Manico, Alex Smolen and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 1, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_23.mp3 Listen Now] | [[Podcast_23|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Dr. Boaz Gelbord&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 22, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_22.mp3 Listen Now] | [[Podcast_22|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Dan Cornell&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 20, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_21.ogg Listen Now] | [[Podcast_21|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Richard Stallman&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 13, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_20.mp3 Listen Now] | [[Podcast_20|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Mike Bailey&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 11, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_19.mp3 Listen Now] | [[Podcast_19|Show Notes]] &amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_18.mp3 Listen Now] | [[Podcast_18|Show Notes]] &amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Jeremiah Grossman&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 21, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_17.mp3 Listen Now] | [[Podcast_17|Show Notes]] &amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Robert Hansen&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 9, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_16.mp3 Listen Now] | [[Podcast_16|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Dave Aitel demonstrates cool&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 4, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_15.mp3 Listen Now] | [[Podcast_15|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Brian Chess talks about BSIMM&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 25, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_14.mp3 Listen Now] | [[Podcast_14|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Pravir Chandra talks about OWASP SAMM&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 23, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_13.mp3 Listen Now] | [[Podcast_13|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 11, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_12.mp3 Listen Now] | [[Podcast_12|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Ryan Barnett (OWASP ModSecurity Core Ruleset)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 4, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_11.mp3 Listen Now] | [[Podcast_11|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with MITRE (Steve Christey and Bob Martin)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 26, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_10.mp3 Listen Now] | [[Podcast_10|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Ken van Wyk&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 20, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_9.mp3 Listen Now] | [[Podcast_9|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 20, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_8.mp3 Listen Now] | [[Podcast_8|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_7.mp3 Listen Now] | [[Podcast_7|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Jeff Williams&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 24, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_6.mp3 Listen Now] | [[Podcast_6|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Roundtable with Andre Gironda, Brian Holyfield, Jim Manico, Marcin Wielgoszewski&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 15, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_5.mp3 Listen Now] | [[Podcast_5|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Gary McGraw&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 13, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_4.mp3 Listen Now] | [[Podcast_4|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Andrew van der Stock (OWASP Developers Guide)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;December 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_3.mp3 Listen Now] | [[Podcast_3|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Matt Tesauro (OWASP Live CD)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;December 20, 2008&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_2.mp3 Listen Now] | [[Podcast_2|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Stephen Craig Evans (OWASP WebGoat/ModSecurity Project)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;November 21, 2008&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_1.mp3 Listen Now] | [[Podcast_1|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;News Commentary by Arshan Dabirsiaghi, Jeremiah Grossman, Jim Manico and Jeff Williams&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Contributors and Sponsors ====&lt;br /&gt;
&lt;br /&gt;
'''Host and Executive Producer'''&lt;br /&gt;
* [[User:Jmanico|Jim Manico]]&lt;br /&gt;
&lt;br /&gt;
'''Host and Producer'''&lt;br /&gt;
* Matt Tesauro&lt;br /&gt;
&lt;br /&gt;
'''Mastering, Effects, Audio Tech, Producer'''&lt;br /&gt;
* Kevin Coons from ManaTribe &lt;br /&gt;
&lt;br /&gt;
'''News Commentary Copy Editors'''&lt;br /&gt;
* [[User:dre|Andre Gironda]] &lt;br /&gt;
* Mike Boberski&lt;br /&gt;
&lt;br /&gt;
'''Audio Editors'''&lt;br /&gt;
* [[User:Jmanico|Jim Manico]]&lt;br /&gt;
* [[User:Marcin|Marcin Wielgoszewski]]&lt;br /&gt;
* Kevin Coons from ManaTribe &lt;br /&gt;
&lt;br /&gt;
'''News Commentary Team'''&lt;br /&gt;
* Mike Boberski&lt;br /&gt;
* [[User:brennan|Tom Brennan]]&lt;br /&gt;
* Arshan Dabirsiaghi&lt;br /&gt;
* Andre Gironda&lt;br /&gt;
* [[User:Jmanico|Jim Manico]]&lt;br /&gt;
* Alex Smolen&lt;br /&gt;
* Andrew van der Stock&lt;br /&gt;
* Jeff Williams&lt;br /&gt;
&lt;br /&gt;
'''Artwork'''&lt;br /&gt;
* Larry Casey&lt;br /&gt;
* Gareth Heyes&lt;br /&gt;
&lt;br /&gt;
'''Sponsors'''&lt;br /&gt;
* The OWASP Foundation&lt;br /&gt;
* Music by [http://www.twistedmusic.com/artists/shpongle/ Shpongle] courtesy of [http://www.twistedmusic.com/ Twisted Records]&lt;br /&gt;
&lt;br /&gt;
'''Illuminati-like influence over the Podcast'''&lt;br /&gt;
* Tom Brennan&lt;br /&gt;
* Jeff Williams&lt;br /&gt;
* Dinis Druz&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [[User:Marcin|Marcin Wielgoszewski]]&lt;br /&gt;
* Tracey Schavone&lt;br /&gt;
* The OWASP Leadership eList&lt;br /&gt;
&lt;br /&gt;
==== Twitter ====&lt;br /&gt;
&lt;br /&gt;
[http://twitter.com/owasp_podcast http://twitter.com/owasp_podcast]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;twitter&amp;gt;20208646&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Artwork ====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
[http://www.owasp.org/download/jmanico/OWASP_Podcast_200x200.jpg http://www.owasp.org/download/jmanico/OWASP_Podcast_200x200.jpg]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
Larry Casey&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
[http://www.owasp.org/download/jmanico/OWASP_Podcast2_200x200.jpg http://www.owasp.org/download/jmanico/OWASP_Podcast2_200x200.jpg]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
Gareth Heyes&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Podcast&amp;diff=66914</id>
		<title>OWASP Podcast</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Podcast&amp;diff=66914"/>
				<updated>2009-07-30T03:10:02Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: Changed the spelling of Paolo's name&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== About ====&lt;br /&gt;
&lt;br /&gt;
'''OWASP Podcast Series Hosted by Jim Manico'''&lt;br /&gt;
&lt;br /&gt;
* The OWASP foundation presents the OWASP PODCAST SERIES hosted by [[User:Jmanico|Jim Manico]] from [http://www.aspectsecurity.com Aspect Security].&lt;br /&gt;
* Listen as Jim interviews OWASP volunteers, industry experts and leaders within the field of web application security. &lt;br /&gt;
* Questions? Comments? Please email [mailto:podcast@owasp.org podcast@owasp.org]&lt;br /&gt;
* Want to see the process and equipment behind the show? [https://www.owasp.org/index.php/Talk:OWASP_Podcast click here] &lt;br /&gt;
&lt;br /&gt;
&amp;lt;table border=&amp;quot;0&amp;quot;&amp;gt;&amp;lt;tr&amp;gt;&amp;lt;td&amp;gt;&lt;br /&gt;
[http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=300769012 http://www.owasp.org/download/jmanico/OWASP_Podcast_200x200.jpg]&lt;br /&gt;
&amp;lt;/td&amp;gt;&amp;lt;td align=&amp;quot;center&amp;quot; width=&amp;quot;150&amp;quot;&amp;gt;&lt;br /&gt;
Subscribe&amp;lt;br/&amp;gt;[http://itunes.apple.com/WebObjects/MZStore.woa/wa/viewPodcast?id=300769012 http://images.apple.com/itunes/overview/images/overview-icon-itunes20081106.jpg] [http://www.owasp.org/download/jmanico/podcast.xml https://www.owasp.org/images/d/d3/Feed-icon-32x32.png]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;paypal&amp;gt;OWASP Podcast&amp;lt;/paypal&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Latest Shows====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot; border=&amp;quot;1&amp;quot;&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;#&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Date&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Actions&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Description&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;35&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[[Podcast_35|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Anton Chauvakin&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;34&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;TBD&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[[Podcast_34|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Amachi Shullman&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;33&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 25, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_33.mp3 Listen Now] | [[Podcast_33|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Paolo Perego&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;32&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 21, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_32.mp3 Listen Now] | [[Podcast_32|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 2009 News Commentary Recorded June 11 with Arshan Dabirsiaghi, Boaz Gelbord, Jim Manico, Andrew van der Stock and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;31&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 4, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_31.mp3 Listen Now] | [[Podcast_31|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Mark Curphey&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;30&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;July 2, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_30.mp3 Listen Now] | [[Podcast_30|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Billy Hoffman and Matt Wood&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;29&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_29.mp3 Listen Now] | [[Podcast_29|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Justin Clarke&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;28&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 26, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_28.mp3 Listen Now] | [[Podcast_28|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Ross J. Anderson&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;27&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 26, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_27.mp3 Listen Now] | [[Podcast_27|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Rafal Los&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;26&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 17, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_26.mp3 Listen Now] | [[Podcast_26|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 2009 News Commentary Recorded May 28 with Tom Brennan, Andre Gironda, Jim Manico, Alex Smolen and Jeff Williams (part 2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;25&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 15, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_25.mp3 Listen Now] | [[Podcast_25|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with James McGovern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;24&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 12, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_24.mp3 Listen Now] | [[Podcast_24|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 2009 News Commentary Recorded May 14 with Andre Gironda, Jim Manico, Alex Smolen and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;June 1, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_23.mp3 Listen Now] | [[Podcast_23|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Dr. Boaz Gelbord&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 22, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_22.mp3 Listen Now] | [[Podcast_22|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Dan Cornell&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 20, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_21.ogg Listen Now] | [[Podcast_21|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Richard Stallman&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 13, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_20.mp3 Listen Now] | [[Podcast_20|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Mike Bailey&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;May 11, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_19.mp3 Listen Now] | [[Podcast_19|Show Notes]] &amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_18.mp3 Listen Now] | [[Podcast_18|Show Notes]] &amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Jeremiah Grossman&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 21, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_17.mp3 Listen Now] | [[Podcast_17|Show Notes]] &amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Robert Hansen&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 9, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_16.mp3 Listen Now] | [[Podcast_16|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Dave Aitel demonstrates cool&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;April 4, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_15.mp3 Listen Now] | [[Podcast_15|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Brian Chess talks about BSIMM&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 25, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_14.mp3 Listen Now] | [[Podcast_14|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Pravir Chandra talks about OWASP SAMM&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 23, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_13.mp3 Listen Now] | [[Podcast_13|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 11, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_12.mp3 Listen Now] | [[Podcast_12|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Ryan Barnett (OWASP ModSecurity Core Ruleset)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;March 4, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_11.mp3 Listen Now] | [[Podcast_11|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with MITRE (Steve Christey and Bob Martin)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 26, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_10.mp3 Listen Now] | [[Podcast_10|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Ken van Wyk&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 20, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_9.mp3 Listen Now] | [[Podcast_9|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 20, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_8.mp3 Listen Now] | [[Podcast_8|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;February 2009 News Commentary by Arshan Dabirsiaghi, Andre Gironda, Jim Manico and Jeff Williams (part 1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_7.mp3 Listen Now] | [[Podcast_7|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Jeff Williams&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 24, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_6.mp3 Listen Now] | [[Podcast_6|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Roundtable with Andre Gironda, Brian Holyfield, Jim Manico, Marcin Wielgoszewski&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 15, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_5.mp3 Listen Now] | [[Podcast_5|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Gary McGraw&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;January 13, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_4.mp3 Listen Now] | [[Podcast_4|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Andrew van der Stock (OWASP Developers Guide)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;December 30, 2009&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_3.mp3 Listen Now] | [[Podcast_3|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Matt Tesauro (OWASP Live CD)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;December 20, 2008&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_2.mp3 Listen Now] | [[Podcast_2|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;Interview with Stephen Craig Evans (OWASP WebGoat/ModSecurity Project)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;November 21, 2008&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td NOWRAP VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;[http://www.owasp.org/download/jmanico/owasp_podcast_1.mp3 Listen Now] | [[Podcast_1|Show Notes]]&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td VALIGN=&amp;quot;TOP&amp;quot;&amp;gt;News Commentary by Arshan Dabirsiaghi, Jeremiah Grossman, Jim Manico and Jeff Williams&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Contributors and Sponsors ====&lt;br /&gt;
&lt;br /&gt;
'''Host and Executive Producer'''&lt;br /&gt;
* [[User:Jmanico|Jim Manico]]&lt;br /&gt;
&lt;br /&gt;
'''Host and Producer'''&lt;br /&gt;
* Matt Tesauro&lt;br /&gt;
&lt;br /&gt;
'''Mastering, Effects, Audio Tech, Producer'''&lt;br /&gt;
* Kevin Coons from ManaTribe &lt;br /&gt;
&lt;br /&gt;
'''News Commentary Copy Editors'''&lt;br /&gt;
* [[User:dre|Andre Gironda]] &lt;br /&gt;
* Mike Boberski&lt;br /&gt;
&lt;br /&gt;
'''Audio Editors'''&lt;br /&gt;
* [[User:Jmanico|Jim Manico]]&lt;br /&gt;
* [[User:Marcin|Marcin Wielgoszewski]]&lt;br /&gt;
* Kevin Coons from ManaTribe &lt;br /&gt;
&lt;br /&gt;
'''News Commentary Team'''&lt;br /&gt;
* Mike Boberski&lt;br /&gt;
* [[User:brennan|Tom Brennan]]&lt;br /&gt;
* Arshan Dabirsiaghi&lt;br /&gt;
* Andre Gironda&lt;br /&gt;
* [[User:Jmanico|Jim Manico]]&lt;br /&gt;
* Alex Smolen&lt;br /&gt;
* Andrew van der Stock&lt;br /&gt;
* Jeff Williams&lt;br /&gt;
&lt;br /&gt;
'''Artwork'''&lt;br /&gt;
* Larry Casey&lt;br /&gt;
* Gareth Heyes&lt;br /&gt;
&lt;br /&gt;
'''Sponsors'''&lt;br /&gt;
* The OWASP Foundation&lt;br /&gt;
* Music by [http://www.twistedmusic.com/artists/shpongle/ Shpongle] courtesy of [http://www.twistedmusic.com/ Twisted Records]&lt;br /&gt;
&lt;br /&gt;
'''Illuminati-like influence over the Podcast'''&lt;br /&gt;
* Tom Brennan&lt;br /&gt;
* Jeff Williams&lt;br /&gt;
* Dinis Druz&lt;br /&gt;
* Kate Hartmann&lt;br /&gt;
* [[User:Marcin|Marcin Wielgoszewski]]&lt;br /&gt;
* Tracey Schavone&lt;br /&gt;
* The OWASP Leadership eList&lt;br /&gt;
&lt;br /&gt;
==== Twitter ====&lt;br /&gt;
&lt;br /&gt;
[http://twitter.com/owasp_podcast http://twitter.com/owasp_podcast]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;twitter&amp;gt;20208646&amp;lt;/twitter&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==== Artwork ====&lt;br /&gt;
&lt;br /&gt;
&amp;lt;table border=&amp;quot;0&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
[http://www.owasp.org/download/jmanico/OWASP_Podcast_200x200.jpg http://www.owasp.org/download/jmanico/OWASP_Podcast_200x200.jpg]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
Larry Casey&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
[http://www.owasp.org/download/jmanico/OWASP_Podcast2_200x200.jpg http://www.owasp.org/download/jmanico/OWASP_Podcast2_200x200.jpg]&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&lt;br /&gt;
Gareth Heyes&lt;br /&gt;
&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=65019</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=65019"/>
				<updated>2009-06-30T01:45:21Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 22 Jun 2009:&lt;br /&gt;
** This project was discussed at the end of [https://www.owasp.org/index.php/Podcast_26 OWASP Podcast #26]: April 2009 News Commentary Recorded May 28 with Tom Brennan, Andre Gironda, Jim Manico, Alex Smolen and Jeff Williams (part 2).&lt;br /&gt;
*** The WAF discussion starts at 43m49s to the end at 56m15s&lt;br /&gt;
*** This project is mentioned from 53m08s until 54m57s (thanks for the great plug, Jeff :-)&lt;br /&gt;
&lt;br /&gt;
* 03 May 2009:&lt;br /&gt;
** This project is the subject of the 2nd day of a 2 day training course on writing ModSecurity rules to be given by Ryan Barnett at BlackHat USA at the end of July. The announcement is [http://sourceforge.net/mailarchive/forum.php?thread_name=8A1B4B015C52A54886DF15E9A97C7FB9F5A4A375%40MONET.utopiasystems.net&amp;amp;forum_name=mod-security-users here]; an excerpt of the course description is: &amp;quot;The 2nd day of the class will mainly be spent as a hands-on lab where we will go through the OWASP Securing WebGoat with ModSecurity project which will allow you to test out the latest, cutting-edge rules concepts such as content injection and Lua.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
* 28 Apr 2009:&lt;br /&gt;
** The direct link to purchase/download the book is [http://www.lulu.com/content/paperback-book/securing-webgoat-using-modsecurity/5082126 here].&lt;br /&gt;
&lt;br /&gt;
* 12 Mar 2009:&lt;br /&gt;
** This project was discussed in the context of virtual patching by Ryan C. Barnett in [https://www.owasp.org/index.php/Podcast_12 OWASP Podcast #12] starting at the 20 minute 22 second mark until the 26 minute 10 second mark and beyond.&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=65018</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=65018"/>
				<updated>2009-06-30T01:42:34Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */  add 22 Jun news&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 22 Jun 2009:&lt;br /&gt;
** This project was discussed at the end of [https://www.owasp.org/download/jmanico/owasp_podcast_26.mp3 OWASP Podcast #26]: April 2009 News Commentary Recorded May 28 with Tom Brennan, Andre Gironda, Jim Manico, Alex Smolen and Jeff Williams (part 2).&lt;br /&gt;
*** The WAF discussion starts at 43m49s to the end at 56m15s&lt;br /&gt;
*** This project is mentioned from 53m08s until 54m57s (thanks for the great plug, Jeff :-)&lt;br /&gt;
&lt;br /&gt;
* 03 May 2009:&lt;br /&gt;
** This project is the subject of the 2nd day of a 2 day training course on writing ModSecurity rules to be given by Ryan Barnett at BlackHat USA at the end of July. The announcement is [http://sourceforge.net/mailarchive/forum.php?thread_name=8A1B4B015C52A54886DF15E9A97C7FB9F5A4A375%40MONET.utopiasystems.net&amp;amp;forum_name=mod-security-users here]; an excerpt of the course description is: &amp;quot;The 2nd day of the class will mainly be spent as a hands-on lab where we will go through the OWASP Securing WebGoat with ModSecurity project which will allow you to test out the latest, cutting-edge rules concepts such as content injection and Lua.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
* 28 Apr 2009:&lt;br /&gt;
** The direct link to purchase/download the book is [http://www.lulu.com/content/paperback-book/securing-webgoat-using-modsecurity/5082126 here].&lt;br /&gt;
&lt;br /&gt;
* 12 Mar 2009:&lt;br /&gt;
** This project was discussed in the context of virtual patching by Ryan C. Barnett in [https://www.owasp.org/index.php/Podcast_12 OWASP Podcast #12] starting at the 20 minute 22 second mark until the 26 minute 10 second mark and beyond.&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=59960</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=59960"/>
				<updated>2009-05-03T14:54:01Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */  Added May 03&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 03 May 2009:&lt;br /&gt;
** This project is the subject of the 2nd day of a 2 day training course on writing ModSecurity rules to be given by Ryan Barnett at BlackHat USA at the end of July. The announcement is [http://sourceforge.net/mailarchive/forum.php?thread_name=8A1B4B015C52A54886DF15E9A97C7FB9F5A4A375%40MONET.utopiasystems.net&amp;amp;forum_name=mod-security-users here]; an excerpt of the course description is: &amp;quot;The 2nd day of the class will mainly be spent as a hands-on lab where we will go through the OWASP Securing WebGoat with ModSecurity project which will allow you to test out the latest, cutting-edge rules concepts such as content injection and Lua.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
* 28 Apr 2009:&lt;br /&gt;
** The direct link to purchase/download the book is [http://www.lulu.com/content/paperback-book/securing-webgoat-using-modsecurity/5082126 here].&lt;br /&gt;
&lt;br /&gt;
* 12 Mar 2009:&lt;br /&gt;
** This project was discussed in the context of virtual patching by Ryan C. Barnett in [https://www.owasp.org/index.php/Podcast_12 OWASP Podcast #12] starting at the 20 minute 22 second mark until the 26 minute 10 second mark and beyond.&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=59752</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=59752"/>
				<updated>2009-05-01T07:41:56Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 28 Apr 2009:&lt;br /&gt;
** The direct link to purchase/download the book is [http://www.lulu.com/content/paperback-book/securing-webgoat-using-modsecurity/5082126 here].&lt;br /&gt;
&lt;br /&gt;
* 12 Mar 2009:&lt;br /&gt;
** This project was discussed in the context of virtual patching by Ryan C. Barnett in [https://www.owasp.org/index.php/Podcast_12 OWASP Podcast #12] starting at the 20 minute 22 second mark until the 26 minute 10 second mark and beyond.&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=59751</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=59751"/>
				<updated>2009-05-01T07:39:56Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */  Added direct book download link&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 28 Apr 2009:&lt;br /&gt;
** The direct link to purchase/download the book is [http://www.lulu.com/content/paperback-book/securing-webgoat-using-modsecurity/5082126 here.&lt;br /&gt;
&lt;br /&gt;
* 12 Mar 2009:&lt;br /&gt;
** This project was discussed in the context of virtual patching by Ryan C. Barnett in [https://www.owasp.org/index.php/Podcast_12 OWASP Podcast #12] starting at the 20 minute 22 second mark until the 26 minute 10 second mark and beyond.&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=56674</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=56674"/>
				<updated>2009-03-14T20:15:56Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */  Added March 12 entry&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 12 Mar 2009:&lt;br /&gt;
** This project was discussed in the context of virtual patching by Ryan C. Barnett in [https://www.owasp.org/index.php/Podcast_12 OWASP Podcast #12] starting at the 20 minute 22 second mark until the 26 minute 10 second mark and beyond.&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=56351</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=56351"/>
				<updated>2009-03-09T07:40:33Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;:&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=56350</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=56350"/>
				<updated>2009-03-09T07:39:21Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */  01 Mar entry &amp;amp; Feb addition&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 01 Mar 2009:&lt;br /&gt;
** This project was discussed (glowingly) by Ken van Wyk in [https://www.owasp.org/index.php/Podcast_10 OWASP Podcast #10] starting at the 16 minute 30 second mark.&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
*** Whitepaper mentioning project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot;&lt;br /&gt;
https://www.blackhat.com/presentations/bh-dc-09/Barnett/BlackHat-DC-09-Barnett-WAF-Patching-Challenge-slides.pdf&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=54999</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=54999"/>
				<updated>2009-02-19T20:26:59Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=54998</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=54998"/>
				<updated>2009-02-19T20:26:12Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: /* Project News */  add events&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 19 Feb 2009: &lt;br /&gt;
** Ryan Barnett of Breach Security gave a presentation based on this project, &amp;quot;WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity&amp;quot; at Black Hat DC 2009: http://www.blackhat.com/html/bh-dc-09/bh-dc-09-speakers.html&lt;br /&gt;
&lt;br /&gt;
* 10 Feb 2009:&lt;br /&gt;
** This project in book form can be bought or downloaded (for free) at the OWASP bookstore at &lt;br /&gt;
http://stores.lulu.com/owasp (thanks a lot to Paulo Coimbra for getting this done).&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Project_Information:template_Securing_WebGoat_using_ModSecurity&amp;diff=52865</id>
		<title>Project Information:template Securing WebGoat using ModSecurity</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Project_Information:template_Securing_WebGoat_using_ModSecurity&amp;diff=52865"/>
				<updated>2009-02-03T10:24:47Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{| style=&amp;quot;width:100%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot;&lt;br /&gt;
 ! colspan=&amp;quot;8&amp;quot; align=&amp;quot;center&amp;quot; style=&amp;quot;background:#4058A0; color:white&amp;quot;|&amp;lt;font color=&amp;quot;white&amp;quot;&amp;gt;'''PROJECT IDENTIFICATION''' &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#7B8ABD&amp;quot; align=&amp;quot;center&amp;quot;|'''Project Name'''&lt;br /&gt;
 | colspan=&amp;quot;7&amp;quot; style=&amp;quot;width:85%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''OWASP Securing WebGoat using ModSecurity Project''' &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#7B8ABD&amp;quot; align=&amp;quot;center&amp;quot;| '''Short Project Description''' &lt;br /&gt;
 | colspan=&amp;quot;7&amp;quot; style=&amp;quot;width:85%; background:#cccccc&amp;quot; align=&amp;quot;left&amp;quot;|The purpose of this project is to create custom Modsecurity rulesets that, in addition to the Core Set, will protect WebGoat 5.1 from as many of its vulnerabilities as possible (the goal is 90%) without changing one line of source code. To ensure that it will be a complete 'no touch' on WebGoat and its environment, ModSecurity will be configured on Apache server as a remote proxy server. For those vulnerabilities that cannot be prevented (partially or not at all), I will document my efforts in attempting to protect them. Business logic vulnerabilities will be particularly challenging to solve.&lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#7B8ABD&amp;quot; align=&amp;quot;center&amp;quot;|'''Project key Information'''&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Leader&amp;lt;br&amp;gt;[[User:Stephen Evans|'''Stephen Craig Evans''']]&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Contributors&amp;lt;br&amp;gt;(if applicable)&lt;br /&gt;
 | style=&amp;quot;width:10%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Mailing List&amp;lt;br&amp;gt;[https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity '''Subscribe here''']&amp;lt;br&amp;gt;[mailto:Owasp-WebGoat-using-ModSecurity(at)lists.owasp.org '''Use here''']&lt;br /&gt;
| style=&amp;quot;width:17%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|License&amp;lt;br&amp;gt;[http://creativecommons.org/licenses/by-sa/3.0/ '''Creative Commons Attribution Share Alike 3.0''']&lt;br /&gt;
 | style=&amp;quot;width:14%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Project Type&amp;lt;br&amp;gt;[[:Category:OWASP_Project#Beta Status Projects|'''Documentation''']]&lt;br /&gt;
 | style=&amp;quot;width:15%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|Sponsors&amp;lt;br&amp;gt;[[OWASP Summer of Code 2008|'''OWASP SoC 08''']]  &lt;br /&gt;
 |}&lt;br /&gt;
&lt;br /&gt;
{| style=&amp;quot;width:100%&amp;quot; border=&amp;quot;0&amp;quot; align=&amp;quot;center&amp;quot; &lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#7B8ABD; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Release Status''' &lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#7B8ABD; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Main Links'''&lt;br /&gt;
 ! align=&amp;quot;center&amp;quot; style=&amp;quot;background:#7B8ABD; color:white&amp;quot;|&amp;lt;font color=&amp;quot;black&amp;quot;&amp;gt;'''Related Projects''' &lt;br /&gt;
 |-&lt;br /&gt;
 | style=&amp;quot;width:29%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
'''[[:Category:OWASP_Project_Assessment#Beta_Quality_Documentation_Criteria|Beta Quality]]'''&amp;lt;br&amp;gt;[[:OWASP Securing WebGoat using ModSecurity Project - Assessment Frame|Please see here for complete information.]]&lt;br /&gt;
 | style=&amp;quot;width:42%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
* [[:OWASP Securing WebGoat using ModSecurity Project|Main project page]]&lt;br /&gt;
* [[:OWASP ModSecurity Securing WebGoat Section4 Sublesson 04.2|Section 4, Mitigating the WebGoat lessons]] &lt;br /&gt;
* [https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff Project wiki available as Word doc]&lt;br /&gt;
*(If appropriate, links to be added)&lt;br /&gt;
 | style=&amp;quot;width:29%; background:#cccccc&amp;quot; align=&amp;quot;center&amp;quot;|&lt;br /&gt;
[[:Category:OWASP WebGoat Project|OWASP WebGoat Project]]&lt;br /&gt;
 |}&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=52864</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=52864"/>
				<updated>2009-02-03T10:20:50Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=52863</id>
		<title>Category:OWASP Securing WebGoat using ModSecurity Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Category:OWASP_Securing_WebGoat_using_ModSecurity_Project&amp;diff=52863"/>
				<updated>2009-02-03T10:18:57Z</updated>
		
		<summary type="html">&lt;p&gt;Stephen Evans: adding some blog references to the project&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{OWASP Book|5082126}}&lt;br /&gt;
{{:Project Information:template Securing WebGoat using ModSecurity}}&lt;br /&gt;
[[Category:OWASP Project]]&lt;br /&gt;
[[Category:OWASP Document]]&lt;br /&gt;
[[Category:OWASP Download]]&lt;br /&gt;
[[Category:OWASP Beta Quality Document]]&lt;br /&gt;
&lt;br /&gt;
== Welcome to the OWASP Securing WebGoat using ModSecurity Project ==&lt;br /&gt;
&lt;br /&gt;
The purpose of the OWASP Securing WebGoat using ModSecurity Project is to use ModSecurity 2.5 to protect WebGoat 5.2 from as many of its vulnerabilities as possible (the goal is 90%).&lt;br /&gt;
&lt;br /&gt;
[http://www.owasp.org/index.php/OWASP_Securing_WebGoat_using_ModSecurity_Project Securing WebGoat using ModSecurity Project wiki v1.0]&lt;br /&gt;
&lt;br /&gt;
== Mailing List ==&lt;br /&gt;
&lt;br /&gt;
https://lists.owasp.org/mailman/listinfo/owasp-webgoat-using-modsecurity&lt;br /&gt;
&lt;br /&gt;
owasp-webgoat-using-modsecurity@lists.owasp.org&lt;br /&gt;
&lt;br /&gt;
== Project News ==&lt;br /&gt;
&lt;br /&gt;
* 31 Dec 2008:&lt;br /&gt;
** This project was discussed by Arshan Dabirsiaghi, Jeff Williams, Jeremiah Grossman, and Jim Manico in [https://www.owasp.org/index.php/Podcast_1 OWASP Podcast #1] starting at the 58 minute mark.&lt;br /&gt;
** Project member Stephen Craig Evans talks about the project as the guest of Jim Manico in [https://www.owasp.org/index.php/Podcast_2 OWASP Podcast #2].&lt;br /&gt;
&lt;br /&gt;
* 29 Nov 2008:&lt;br /&gt;
** Added Appendix D to wiki, &amp;quot;Additional important stuff&amp;quot;, which includes the wiki in a Word document ([https://www.owasp.org/index.php/Appendix_D:_Additional_important_stuff here]) and some slide decks&lt;br /&gt;
** Tested out the mailing list&lt;br /&gt;
** Sent an email to OWASP Leaders and to Kenneth van Wyck's Secure Coding list to inform them of the project and its current state&lt;br /&gt;
&lt;br /&gt;
* 16 Nov 2008 - Added 'Section 4.4: Unfinished Business' which includes discussions about concurrent file access and Lua security.&lt;br /&gt;
&lt;br /&gt;
* 06 Nov 2008 - Gave 2 project presentations at the OWASP EU Summit in Portugal.&lt;br /&gt;
&lt;br /&gt;
* 05 Nov 2008 - Finished incorporating all reviewer comments.&lt;br /&gt;
&lt;br /&gt;
* 22 Oct 2008 - Wiki updates; project near 100% completion.&lt;br /&gt;
&lt;br /&gt;
* 14 Jul 2008 - Project wiki created and under construction.&lt;br /&gt;
&lt;br /&gt;
== Mentions in the Media ==&lt;br /&gt;
&lt;br /&gt;
ModSecurity Blog&lt;br /&gt;
http://blog.modsecurity.org/2008/10/securing-webgoat-using-modsecurity.html&lt;br /&gt;
&lt;br /&gt;
OWASP EU Summit in Portugal: Thursday&lt;br /&gt;
http://denimgroup.typepad.com/denim_group/2008/11/owasp-eu-summit-in-portugal-thursday.html&lt;br /&gt;
&lt;br /&gt;
OWASP Podcast #2 Securing Webgoat with ModSecurity&lt;br /&gt;
http://manicode.blogspot.com/2008/12/owasp-podcast-2-securing-webgoat-with.html&lt;br /&gt;
&lt;br /&gt;
Waffing: ModSecurity applied&lt;br /&gt;
http://swende.se/index.php?/archives/26-Waffing-ModSecurity-applied.html&lt;br /&gt;
&lt;br /&gt;
WebGoat, Lua, and ModSecurity verses Password Guessing&lt;br /&gt;
http://blog.securitymonks.com/2009/01/10/webgoat-lua-and-modsecurity-verses-password-guessing/&lt;br /&gt;
&lt;br /&gt;
== Contacts ==&lt;br /&gt;
&lt;br /&gt;
stephencraig_dot_evans_at_gmail_dot_com&lt;/div&gt;</summary>
		<author><name>Stephen Evans</name></author>	</entry>

	</feed>