This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "OWASP Day KL 2011"

From OWASP
Jump to: navigation, search
 
(82 intermediate revisions by the same user not shown)
Line 1: Line 1:
[[Category:Malaysia]]
+
__NOTOC__
 +
 
 +
{|
 +
|-
 +
! align="center" width="50" | <br>
 +
! align="center" width="50" | <br>
 +
|-
 +
| align="center" | [[Image:owaspday.png|center]]  
 +
| align="center" |
 +
<br>
 +
 
 +
|}
 +
 
 +
=Welcome=
 +
 
 +
=== OWASP DAY KL 2011 - Malaysia  ===
  
__NOTOC__
+
[http://www.owasp.org/index.php/Malaysia OWASP Malaysia] will host '''OWASP Day KL 2011''' in Kuala Lumpur, Malaysia from Sep. 20 to Sep. 21, 2011 and colloborate with UniKL-MIIT &amp; OSDCMY. The events will gather OWASP leaders, security experts, executives, technical thought leaders, developers, scientists and researchers from Malaysia and around the world for in-depth discussions of cutting-edge application security issues. The summit will draw participation from major Malaysia and global organizations across various verticals including government, information technology, services and consulting, telecommunications, finance, e-commerce, Internet, universities and research institutes. About 200 people are expected to attend the events. exhibition and lunch will be held at the summit, providing sufficient networking opportunities.
[[Image:owaspday2011.png|center|500px|thumb]]  
 
  
 +
Official Invitation Letter for OWASP Day KL 2011 [http://owasp.csscmiit.com/docs/invitation%20letter%20owasp%20day%202011.pdf English] &amp; [http://owasp.csscmiit.com/docs/Surat%20jemputan%20OWASPDAYKL%202011.pdf Malay].
  
  
==== Welcome ====
 
  
=== OWASP DAY KL 2011 - Malaysia ===
+
'''For the events day we have limited OWASP T-shirt from OWASP Foundation for the most twitter using hash-tag #owaspmy. We will calculate your twitter base on twitter status.'''
  
[http://www.owasp.org/index.php/Malaysia OWASP Malaysia] will host '''OWASP Day KL 2011''' in Kuala Lumpur, Malaysia from Sep. 20 to Sep. 21, 2011 and colloborate with UniKL-MIIT & OSDCMY. The events will gather OWASP leaders, security experts, executives, technical thought leaders, developers, scientists and researchers from Malaysia and around the world for in-depth discussions of cutting-edge application security issues. The summit will draw participation from major Malaysia and global organizations across various verticals including government, information technology, services and consulting, telecommunications, finance, e-commerce, Internet, universities and research institutes. About 200 people are expected to attend the events. exhibition and lunch will be held at the summit, providing sufficient networking opportunities.
+
'''FaceBook Event Page''' [https://www.facebook.com/event.php?eid=103809379720876 OWASP Day KL 2011]
 +
<br>
  
 +
=Registration=
  
==== Registration  ====
+
[https://docs.google.com/spreadsheet/viewform?formkey=dFNNQXhvY1poZWVsdFdxVUduWmZFWEE6MQ Registration Now Open!!!]  
[https://docs.google.com/spreadsheet/viewform?formkey=dFNNQXhvY1poZWVsdFdxVUduWmZFWEE6MQ Registration Now Open!!!]
 
  
[http://owasp.csscmiit.com/owaspRegistration.html For more detail on the fee and workshop]
+
[http://owasp.csscmiit.com/owaspRegistration.html For more detail on the fee and workshop]  
  
 
'''Who Should Attend OWASP Day KL 2011:'''  
 
'''Who Should Attend OWASP Day KL 2011:'''  
Line 27: Line 42:
 
*Security Managers and Staff  
 
*Security Managers and Staff  
 
*Executives, Managers, and Staff Responsible for IT Security Governance  
 
*Executives, Managers, and Staff Responsible for IT Security Governance  
*IT Professionals Interesting in Improving IT Security
+
*IT Professionals Interesting in Improving IT Security  
*Lecturer & Student it IT field
+
*Lecturer &amp; Student it IT field
 +
 
 +
All the attendee will be provided Attendee Certificate by UniKL &amp; OWASP Malaysia
 +
 
 +
=Keynotes=
  
All the attendee will be provided Attendee Certificate by UniKL & OWASP Malaysia
+
[[Image:Adli.jpg]]
  
==== Keynotes  ====
+
'''Adli Wahid'''
  
===  ===
+
Adli Wahid of Cybersecurity Malaysia VP CyberSecurity Responsive Services on a day to day basis. Our team provide incident handling service for anything related to .MY, watch and warn activities, and co-ordination with other security teams (FIRST, APCERT), research groups (i.e. The Honeynet Project) and interest groups (i.e. APWG, ShadowServer).
  
 +
He specializes in malware, phishing and visualization and has designed and co-ordinated cyber drill exercise at the national and regional level.
  
 +
===  ===
  
==== CFP and CFT ====
+
=CFP and CFT=
  
=== OWASP DAY KL 2011 ===
+
=== OWASP DAY KL 2011 ===
  
=== CALL FOR Presentation ===
+
=== CALL FOR Presentation ===
  
 
OWASP Day KL 2011 Conference will be a major international forum for the presentation of research results, cutting-edge ideas and in-depth discussions in the field of application security. OWASP Day KL 2011 Conference invites application security researchers, thought leaders and developers worldwide to submit papers for the opportunity of presenting to expected participants.  
 
OWASP Day KL 2011 Conference will be a major international forum for the presentation of research results, cutting-edge ideas and in-depth discussions in the field of application security. OWASP Day KL 2011 Conference invites application security researchers, thought leaders and developers worldwide to submit papers for the opportunity of presenting to expected participants.  
Line 61: Line 82:
 
To make a submission:  
 
To make a submission:  
  
[https://spreadsheets1.google.com/spreadsheet/viewform?formkey=dHFKaVZVT2pDLVZtdnBySEp3S0pKaHc6MQ Call For Presentation]
+
=== [https://spreadsheets1.google.com/spreadsheet/viewform?formkey=dHFKaVZVT2pDLVZtdnBySEp3S0pKaHc6MQ Call For Presentation] '''CLOSED''' ===
 
 
  
Each talk should be limited to 40 minutes, followed by a 5 minute question session.  
+
<br> Each talk should be limited to 40 minutes, followed by a 5 minute question session.  
  
 
*Submission deadline: August 20, 2011.  
 
*Submission deadline: August 20, 2011.  
Line 70: Line 90:
 
*Presentation slides due: September 20, 2011.
 
*Presentation slides due: September 20, 2011.
  
=== CALL FOR Training ===
+
=== CALL FOR Training ===
 +
 
 +
In-conjunction with OWASP Day KL 2011 also provided workshop. It will separate day with the seminar and will conduct 1 full day. It will 3 major topic on the workshop.
 +
 
 +
*SQL Injection (Secure &amp; Prevent)
 +
*Penetration Tester
 +
*IT Audit
 +
 
 +
=== [https://spreadsheets1.google.com/spreadsheet/viewform?formkey=dHFKaVZVT2pDLVZtdnBySEp3S0pKaHc6MQ Call For Training] '''CLOSED''' ===
 +
 
 +
*All the speaker &amp; trainers will be given Speaker Honor Cert from UniKL &amp; OWASP Malaysia
 +
 
 +
=Speaker=
 +
 
 +
[[Image:Suhasdesai.jpg]] <br>'''Suhas Desai'''
 +
 
 +
A distinguished Senior Consultant of Aujas Networks, At Aujas, he is handling Mobile Security Services. He is responsible for growth of Mobile Security Services. His extensive experience in Mobile Technology spreads across iApps Security, Mobile PKI, Mobile Apps (Android, J2ME), USSD/DSTK Apps, Mobile VAS, SIM card and Mobile Payment’s Security services. Prior to joining Aujas Networks, he has worked with Tech Mahindra. A frequent speaker at prominent industry and customer forums, Desai has been on technical advisory committees for prestigious National and International conferences. He has delivered over 350 conference talks on software &amp; mobile security across the globe including OSSPAC’09, Singapore; INTEROP 2009, Mumbai; STeP-IN 2010 Bangalore; MOSC 2010, Kuala Lumpur; OSBizConference 2010, Malaysia; ‘Mobile VAS in Growth Markets summit’, 2010, Dubai&nbsp;; ClubHack 2009, Pune; c0c0n 2010, Cochin and ‘4th Mobile Commerce Summit ASIA’, 2011, Kuala Lumpur. He is a proud author of several research papers for reputed journals and magazines in Security, RFID and Image Processing domain. He also contributes features for Linux for You, Linux+ and Linux Journal magazines.
 +
 
 +
[[Image:Azizan2.jpg]] <br> '''Ahmad Azizan Idris'''
 +
 
 +
Ahmad Azizan graduated from International Islamic University Malaysia with Bachelor's Degree in Computer Science and is currently working as an Intrusion Analyst in Malaysia Computer Emergency Response Team (MyCERT) at CyberSecurity Malaysia. His works mainly concentrated in incident handling, malware analysis, security tools development and other security-related stuff. Currently he involves heavily in mitigating client-side attack specifically on Malicious PDF analysis.
 +
 
 +
[[Image:Azrilazam.jpg]] <br>'''Azam Abdul Rahim'''
 +
 
 +
Azril azam is currently works as the Global Response Center Development Team Leader with the International Multilateral Partnership Against Cyber Threats (IMPACT), an International Telecommunication Union (ITU) cybersecurity agenda agency. Previously, azril works as the senior researcher with MIMOS Berhad specialized in x86 system virtualization, trusted computing, and computer forensics. He is currently a GIAC certified forensics analyst and also the EC COUNCIL certified security instructor. He has wrote several papers pertain to system security, computer forensics and system virtualization. He also a firm believer in OSS where till this date has wrote several security software under the GNU license. His computer forensics software project called FIRST has won several international and demostic awards including gold award for invention at ITEX 2006 and best Malaysian open source software 2006. Currently at his sparetime, he is in the final stage in completing the next OSS project
 +
 
 +
[[Image:Erazuddin.png|200px|Erazuddin.png]] <br> '''Errazudin Ishak'''
 +
 
 +
Errazudin holds a Master`s degree in Computer Science (Software Engineering) and works as Solution Architect at Mimos Berhad, A Malaysia government research agency, in ICT and frontier technology. His job focuses on web application developement, deployment, performance and stability. He has spoken at several meetups and conferene and has worked with various back-end and web technologies. In his free time he loves to emulate Richard Gasquet`s backhand on court.
 +
 
 +
[[Image:Walterwong.jpg|200px|Walterwong.jpg]] <br> '''Walter Wong'''
 +
 
 +
Walter is a technical lead for Gain Secure based in Malaysia. The company specialized for providing secure application development and user experience (UX) consultation services to customers. Walter is a Microsoft MVP for developer security. Research on application development security is Walter's personal interest. He also successfully discovered many websites vulnerabilities including some high traffic websites over the past few years. Walter often speaks at technical conferences such as Visual Studio 2010 Launch, TechEd SEA, Security Symposium, TechNet/MSDN, Tech Insights and more.
 +
 
 +
[[Image:Haris.jpg]] <br>'''Harisfazillah Jamel'''
 +
 
 +
[[Image:hafiz.png|200px]] <br>'''Mohd Hafiz Tabrani'''
  
In-conjunction with OWASP Day KL 2011  also provided workshop. It will separate day with the seminar and will conduct 1 full day. It will 3 major topic on the workshop.
+
Mohd Hafiz Tabrani currently works as Senior Intrusion Analysis for Malaysia Computer Emergency and Response Team (MyCERT) under umbrella of CyberSecurity Malaysia. Prior to that, he worked as an Intrusion Analyst at MyCERT department. His education background comprises of Degree in Computer Science from National University of Malaysia in 2000.
  
* SQL Injection (Secure & Prevent)
+
Hafiz has been involved in the computer security field for over 5 years. His area of focus and interest is network security, honeynet, websecurity and malware analysis. He also engages in several penetration-testing exercises and to provide solutions for any vulnerability detected. Moreover, he is recognized for conducting numbers of training for organizations to talk on topics ranging from introduction to advanced security courses. He also involved as a GSOC (Google Summer of Code) mentor for Honeynet Project during 2010 mentoring on PHP Sandbox. He is also main contributor for CyberSecurity Malaysia Honeynet Project’s blog. He currently holds a GPEN certification from SANS Institute.
* Penetration Tester
 
* IT Audit
 
  
[https://spreadsheets1.google.com/spreadsheet/viewform?formkey=dHFKaVZVT2pDLVZtdnBySEp3S0pKaHc6MQ Call For Training]
+
[[Image:Adnan1.jpg|200px|Adnan1.jpg]] <br>'''Adnan Mohd Shukor'''
  
*All the speaker & trainers will be given Speaker Honor Cert from UniKL & OWASP Malaysia
+
Adnan Mohd Shukor is an Intrusion Analyst at Malaysian Computer Emergency Response Team (MyCERT), CyberSecurity Malaysia. His Education background comprises of Degree in Information Technology, majoring in Security Technology from Multimedia University. He is also a GIAC Certified Penetration Tester (GPEN), GIAC Certified Incident Handler (GCIH) and member of the SANS Advisory Board since 2009.
  
==== Agenda  ====
+
In the IT security line of work, he has plenty of experience in aspects of network security, penetration testing, web security, client side security, honeypot technology, system development and automation. He has contributed a lot in open source projects especially related to security and he is also the founder of DontPhishMe and MyPHPIPS
  
=== Preliminary Program ===
+
[[Image:Alip.jpg|200px|Alip.jpg]] <br>'''Alip Aswalid Asri'''
 
*[[File:day1.png]]
 
*[[File:day2.png]]
 
  
=== Final Program ===
+
Alip Aswalid bin Asri is an Intrusion Analyst at Malaysian Computer Emergency Response Team (MyCERT), CyberSecurity Malaysia. His works mainly concentrated in Incident Handling, Website Security, Penetration Testing and Security Tools Development. He is also familiar in web development using Ruby on Rails and PHP.
  
 +
[[Image:Syedzai.jpg|200px|Syedzai.jpg]] <br>'''Syed Zainudeen Mohd Shaid'''
  
The final program will be available before September 2011.  
+
Syed Zainudeen Mohd Shaid is a member of Information Assurance and Security Research Group (IASRG) in Universiti Teknologi Malaysia (UTM). With a Software Reverse Engineering background, he is now active in Malware Research and Penetration Testing. He also does training on Ethical Hacking and give talks on Computer &amp; Internet Security. He is currently the Web Security Advisor for UTM.
 +
 
 +
[[Image:ridzuan.jpg]] <br>'''Mohd Ridzuan Isa'''
  
 +
Mr. Mohd Ridzuan Isa was born in october 1978, entered IIUM for the programme of Bachelor of Engineering in Mechatronics, despite knowing his passion lies with computers. Graduated in 2004, he gained employment with UniKL-BMI. Since then, he dabbled in the arcane world of unix and linux, lived on the bleeding edge with knoppix, kanotix and sidux. These days, he's slowing down a bit, opting for Linux Mint for desktop and Debian stable and testing for server setups. Picked up CCNA instructor certificate along the way, he is currently on an infrastructure design research team for private cloud service. 
 
<br>  
 
<br>  
  
==== Sponsors ====
+
[[Image:amir.jpg]]<br>'''Amir Haris Ahmad'''
 +
 
 +
Amir Haris Ahmad is a visionary in information technology and computer security fields, with particular interest in DNS technology and IPv6. Prior joining Localhost SDN BHD, He was a Senior Researcher at .my DOMAIN REGISTRY, doing research on DNS Security Extension (DNSSEC). A familiar trainer for DNSSEC workshop in Malaysia and some international training events. Amir's extensive technical background includes computer security, DNS, UNIX operating systems, IPv6, and software development in C/C++, ruby and web technology (rails3). He was also a speaker on DNSSEC related topics at few conferences such as MOSC, MYGOSSCON and Hack in The Box (SIGINT-HITB2010KL). At Localhost he is currently head his own development team on some potential projects that involve new technology such as DNS/DNSSEC appliance for .my registry (MYNIC). A registered member of Internet Society Malaysia Chapter (ISOC), Malaysian National Computer Confederation (MNCC), The Open Web Application Security Project (OWASP) and Information Security Professional Association of Malaysia (ISPA). At mean time Amir holds M.Sc, CNE6, GSEC, GCIH, LPIC1, CiSE, NCLA & MCP. He also will be presenting at APECTEL44, talking about DNSSEC related topic.
 +
 
 +
<br>
 +
=Agenda=
 +
 
 +
=== Final Program ===
 +
 
 +
== Day 1 - 20 September 2011  ==
  
=== Sponsor US! ===
+
***'''Reminder: Workshop participants please bring your laptop during the workshop sessions'''
 +
 
 +
{| border="1" width="507" frame="hsides"
 +
|- bgcolor="#FF6600"
 +
| width="73" height="43" | <span class="style5">Time</span>
 +
| width="153" | <div align="center" class="style2">'''Web Security: Analysis and Incident Handling on web Attack/Incident by Adnan Mohd Shukor &amp; Alip Aswalid Asri'''</div>
 +
| width="129" | <div align="center" class="style2">
 +
'''[https://www.owasp.org/images/f/f7/Itaudit.pdf Introduction IT Audit &amp; Assesment] by Harisfazellah Jamel'''
 +
</div>
 +
| width="124" | <div align="center" class="style2">
 +
'''Introduction to Ethical Web Application Hacking "Pentest" by Syed Zainudeen Mohd Shaid'''
 +
</div>
 +
|- bgcolor="#99CC99"
 +
| height="37" | 8.00a.m
 +
| colspan="3" | <div align="center">Registration (Level 7) </div> <div align="center"></div>
 +
|-
 +
| height="37" | 8.30a.m
 +
| <div align="center">Lab 706</div>
 +
| <div align="center">Lab 707</div>
 +
| <div align="center">Lab 708</div>
 +
|- bgcolor="#99FF33"
 +
| height="36" | 10.00a.m
 +
| colspan="3" | <div align="center">Morning break (Level 7)</div>
 +
|-
 +
| height="34" | 10.20a.m
 +
| <div align="center">Lab 706</div>
 +
| <div align="center">Lab 707</div>
 +
| <div align="center">Lab 708</div>
 +
|- bgcolor="#CCCC99"
 +
| height="33" | 1.00p.m
 +
| colspan="3" | <div align="center">Lunch (Level 7)</div>
 +
|-
 +
| height="33" | 2.00p.m
 +
| <div align="center">Lab 706</div>
 +
| <div align="center">Lab 707</div>
 +
| <div align="center">Lab 708</div>
 +
|- bgcolor="#CCCC70"
 +
| height="35" | 3.45p.m
 +
| colspan="3" | <div align="center">Tea Break (Level 7)</div>
 +
|-
 +
| height="39" | 4.00p.m
 +
| <div align="center">Lab 706</div>
 +
| <div align="center">Lab 707</div>
 +
| <div align="center">Lab 708</div>
 +
|- bgcolor="#CC66CC"
 +
| height="38" | 5.30p.m
 +
| colspan="3" | <div align="center">Training Ended</div>
 +
|}
 +
 
 +
== ***Reminder: Workshop participants please bring your laptop during the workshop sessions <br>  ==
 +
 
 +
== Day 2 - 21 September  ==
 +
 
 +
{| border="1" width="557"
 +
|- bgcolor="#CC6600"
 +
| width="59" | '''Time'''
 +
| width="333" | '''Activity'''
 +
| width="143" | '''Location'''
 +
|- bgcolor="#33FF99"
 +
! 8.00a.m
 +
! Registration
 +
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#66FFFF"
 +
! 8.30a.m
 +
!
 +
Opening Ceremony
 +
 
 +
Recitation of Dua’<br>
 +
 
 +
Welcoming Speech by Dr Shahrul Niza<br>
 +
 
 +
Opening Speech by Mohd Fazli Azran
 +
 
 +
Appointment of UniKL MIIT as OWASP EDUCATION SUPPORTER
 +
 
 +
Montage &amp; UNIKL-MIIT
 +
 
 +
Keynote Speech by Adli Wahid
 +
 
 +
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#CCFF66"
 +
! 9.45a.m
 +
! colspan="2" | Morning Break (Corridor Bestari Lecture Hall Lvl 2, VVIP at Lvl 29, Banquet Room)
 +
|- bgcolor="#99FF66"
 +
! 10.00a.m
 +
!
 +
Suhas Desai
 +
 
 +
''"Mitigating Security Risk in Mobile Payment Application"''
 +
 
 +
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#99FF66"
 +
! 10.45a.m
 +
!
 +
Ahmad Azizan
 +
 
 +
''"Gallus: Analyzing Malicious PDF"''
  
We are still soliciting sponsors for the OWASP Day KL 2011. An exhibit hall will be held for vendor booths and presentations.  
+
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#99FF66"
 +
! 11.30a.m
 +
!
 +
Azril Azam Abdul Rahim
  
----
+
''"Identify, Mitigate &amp; Prevent DDOS Attack via libNetFilters Que"''
  
New in 2011, we are offering exclusive OWASP Day KL 2011 Sponsorships to provide additional benefits and streamline the planning process for our most supportive organizations.  
+
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#99FF66"
 +
! 12.15p.m
 +
!
 +
Mohd Hafiz Tabrani
  
Please [mailto:[email protected] contact us] directly if you have any related question.
+
''"pKaji: Suspicious PHP Script Analyzer"''
  
 
<br>  
 
<br>  
  
'''Intented Sponsors:'''
+
!
 +
Bestari Lecture Hall, Lvl 2
  
 +
|- bgcolor="#CCFF66"
 +
! 1.00
 +
! colspan="2" |
 +
Lunch Corridor Bestari Lecture Hall Lvl 2, VVIP at Lvl 29, Banquet Room
  
==== Team  ====
+
|- bgcolor="#99FF66"
 +
! 2.00p.m
 +
!
 +
Errazudin Ishak
  
*[mailto:secretariat@osdc.my Contact us]
+
''"[http://phpcoe.mimos.my/2011/09/rise-of-the-planet-of-the-anonymous-owasp-day-kuala-lumpur-2011/ Rise of the Planet of Anonymous]"''
  
=== Members (in alphabetical order)  ===
+
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#99FF66"
 +
! 2.45p.m
 +
!
 +
Walter Wong
  
OWASP Malaysia representative:
+
''"[https://www.owasp.org/images/4/4d/Tipsandtrick.pdf Tips and Tricks To Secure .Net Web Application]"''
  
*[mailto:fazli@owasp.org Mohd Fazli Azran (Chapter Leader)]
+
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#CCFF66"
 +
! 3.40p.m
 +
! colspan="2" |
 +
Tea Break Corridor Bestari Lecture Hall Lvl 2, VVIP at Lvl 29, Banquet Room
  
UniKL representative:
+
|- bgcolor="#99FF66"
 +
! 3.45p.m
 +
!
 +
Mohd Redzuan Isa
  
*[mailto:[email protected] Hamidon Katan (Advisor)]
+
''"Cloud Computing: Covering Our Bases"''
*[mailto:[email protected] Herny Ramadhani Mohd Husni (Project Leader)]
 
*[mailto:[email protected] Shafiza Mohd Shariff (Deputy Project Leader)]
 
*[mailto:[email protected] Norhaiza Ya Abdullah (Secretary)]
 
*[mailto:[email protected] Dalilah Abdullah (Treasury)]
 
*[mailto:[email protected] Husna Sarirah Husin (Committee Members)]
 
*[mailto:[email protected] Wan Hazimah Wan Ismail (Committee Members)]
 
  
OSDCMY representative :
+
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#99FF66"
 +
! 4.30p.m
 +
!
 +
Amir Haris Ahmad
  
*[mailto:[email protected] Khairunnajah Abd Kadir (Project Manager)]
+
''"DNS Security"''
*[mailto:[email protected] Harisfazillah Jamel (Promotion & Advertising]
 
*[mailto:[email protected] Hidzuan Hashim (Committee Members)]
 
*[mailto:[email protected] Mohd Rizal Mohd Shahari (Committee Members)]
 
*[mailto:[email protected] Sharuzzaman Ahmat Raslan (Committee Members)]
 
  
+
! Bestari Lecture Hall, Lvl 2
 +
|- bgcolor="#CC00FF"
 +
| 5.30p.m
 +
! colspan="2" | End of Events
 +
|}
  
 +
=== Preliminary Program  ===
  
==== Expenses  ====
+
*[[Image:Day1.png]]
 +
*[[Image:Day2.png]]
  
=== Registration Fee  ===
+
The final program will be available before September 2011.
  
If you are neither an OWASP member nor an OWASP Malaysia chapter member, please feel free to join us!
+
<br>
  
It is free for all OWASP Paid members and all OWASP Malaysia Paid chapter members.
+
=Sponsors=
<table width="550" border="1" align="left" style="border-left-color: #89017D; border-bottom-color: #89017D; border-right-color: #89017D; border-top-color: #89017D; background-color: #EF7900; color: #000;">
 
  
      <tr>
+
=== Sponsor US!  ===
  
        <th width="249" bgcolor="#EF7900" scope="col">Event</th>
+
[[Image:Csm.jpg]] [http://www.cybersecurity.my <br>'''CyberSecurity Malaysia'''<br>]
  
        <th width="141" bgcolor="#EF7900" scope="col"><p align="center">Early Bird</p>
+
[[Image:Mycert.jpg]] [http://www.mycert.org.my <br>'''Malaysia Computer Emergency Respond Team'''<br>]
  
          <p>(Before 6 Sept 2011)</p></th>
+
[[Image:Eccouncilmy.jpg]] [http://eccouncilapac.org <br>'''EC-Council APAC'''<br>]
  
        <th width="138" bgcolor="#EF7900" scope="col"><p>Normal</p>
+
[[Image:Pandamy.jpg]] [http://apac.pandasecurity.com/index.php?option=com_content&view=article&id=86&Itemid=2 <br>'''Panda Malaysia'''<br>]
  
          <p>(From 6 Sept 2011)</p></th>
+
[[Image:Lpi.png]] [http://www.lpi.org <br>'''Linux Professional Institute''']
  
       
+
[[Image:Unikl.jpg]] [http://www.unikl.edu.my <br>'''University Kuala Lumpur''']
  
      </tr>
+
[http:///www.csscmiit.com '''Computer Security System Club by Student UniKL-MIIT'''<br>]
  
      <tr>
+
[[Image:Osdcmy.jpg]] [http://www.osdc.my <br>'''Open Source Developer Community Malaysia'''<br>]
  
        <td bgcolor="#FFFFFF"><p>1. Seminar </p>
+
----
  
          <p> a. Member <br />
+
New in 2011, we are offering exclusive OWASP Day KL 2011 Sponsorships to provide additional benefits and streamline the planning process for our most supportive organizations.  
  
            b. Non-Member </p></td>
+
Please [mailto:[email protected] contact us] directly if you have any related question.  
  
        <td bgcolor="#0084B0"><p>&nbsp;</p>
+
<br>  
  
          <p>Free <br />
+
'''Intented Sponsors:'''
  
            MYR 58</p></td>
+
<br>  
  
        <td bgcolor="#FFFFFF" style="text-align: left"><p>&nbsp;</p>
+
=Team=
  
          <p>Free<br />
+
*[mailto:[email protected] Contact us]
  
            MYR 68</p></td>
+
=== Members  ===
  
      </tr>
+
OWASP Malaysia representative:
  
      <tr>
+
*[mailto:[email protected] Mohd Fazli Azran (Chapter Leader)]
  
        <td bgcolor="#FFFFFF"><p>2. Workshop </p>
+
UniKL representative:
 +
 
 +
*[mailto:herny@miit.unikl.edu.my Hamidon Katan (Advisor)]
 +
*[mailto:[email protected] Herny Ramadhani Mohd Husni (Project Leader)]
 +
*[mailto:[email protected] Shafiza Mohd Shariff (Deputy Project Leader)]
 +
*[mailto:[email protected] Norhaiza Ya Abdullah (Secretary)]
 +
*[mailto:[email protected] Dalilah Abdullah (Treasurer)]
 +
*[mailto:[email protected] Husna Sarirah Husin (Committee Members)]
 +
*[mailto:[email protected] Wan Hazimah Wan Ismail (Committee Members)]
 +
 
 +
OSDCMY representative&nbsp;:
 +
 
 +
*[mailto:[email protected] Khairunnajah Abd Kadir (Project Manager)]
 +
*[mailto:[email protected] Harisfazillah Jamel (Promotion &amp; Advertising]
 +
*[mailto:[email protected] Hidzuan Hashim (Committee Members)]
 +
*[mailto:[email protected] Mohd Rizal Mohd Shahari (Committee Members)]
 +
*[mailto:[email protected] Sharuzzaman Ahmat Raslan (Committee Members)]
 +
 
 +
AJK Student:
  
          <p>a. SQL Injection<br />
+
*[mailto:shootdatarget@gmail.com Ahmad Amran Bin Ahmad (Project Manager)]
 +
*[mailto:[email protected] Amirul Adli Bin Zaimal (Committee Members)]
 +
*[mailto:[email protected] Mohamad Ridhwan Bin Mohiddin (Committee Members)]
 +
*[mailto:[email protected] Mohamed Ridzuan Bin Frosh Khan (Committee Members)]
 +
*[mailto:[email protected] Mohd Syafiq Bin Azizan (Committee Members)]
 +
*[mailto:[email protected] Muhammad Haziq Bin Muhammad Badri (Committee Members)]
 +
*[mailto:[email protected] Nur Ainnadjla Binti Mohd Baharudin (Committee Members)]
 +
*[mailto:[email protected] Nur Marini Binti Azhan (Committee Members)]
 +
*[mailto:[email protected] Nurul Akmal Binti Mohamad Ramli (Committee Members)]
 +
*[mailto:[email protected] Norfarishah Bin Zaini (Committee Members)]
 +
*[mailto:[email protected] Norhafizah Binti Nizar (Committee Members)]
 +
*[mailto:[email protected] Qamar Syams Bin Borian (Committee Members)]
  
            b. Penetration Testing<br />
+
<br>  
  
            c. IT Audit</p></td>
+
<br>  
  
        <td bgcolor="#0084B0" style="text-align: left"><p>&nbsp;</p>
+
=Expenses=
  
          <p>MYR 198<br />
+
=== Registration Fee  ===
  
            MYR 198<br />
+
If you are neither an OWASP member nor an OWASP Malaysia chapter member, please feel free to join us!
  
            MYR 198</p></td>
+
It is free for all OWASP Paid members and all OWASP Malaysia Paid chapter members.
  
        <td bgcolor="#FFFFFF" style="text-align: left"><p>&nbsp;</p>
+
{| border="1" align="left" width="550" style="border-left-color: #89017D; border-bottom-color: #89017D; border-right-color: #89017D; border-top-color: #89017D; background-color: #EF7900; color: #000;"
 +
|-
 +
! bgcolor="#EF7900" width="249" scope="col" | Event
 +
! bgcolor="#EF7900" width="141" scope="col" |
 +
Early Bird
  
          <p>MYR 228<br />
+
(Before 10 Sept 2011)
  
            MYR 228<br />
+
! bgcolor="#EF7900" width="138" scope="col" |
 +
Normal
  
            MYR 228</p></td>
+
(From 10 Sept 2011)
  
      </tr>
+
|-
 +
| bgcolor="#FFFFFF" |
 +
1. Seminar
  
      <tr>
+
a. Member <br> b. Non-Member
  
        <td bgcolor="#FFFFFF"><p>3.Workshop and Seminar</p></td>
+
| bgcolor="#0084B0" |
 +
&nbsp;
  
        <td bgcolor="#0084B0" style="text-align: left"><p>MYR 239</p></td>
+
Free <br> MYR 58
  
        <td bgcolor="#FFFFFF" style="text-align: left"><p>MYR 279</p></td>
+
| bgcolor="#FFFFFF" style="text-align: left" |
 +
&nbsp;
  
      </tr>
+
Free<br> MYR 68
  
    </table>
+
|-
 +
| bgcolor="#FFFFFF" |
 +
2. Workshop
  
    <p class="clearfloat">&nbsp;</p>
+
a. Analysis &amp; Incident Handling<br> b. Web Application Hacking (Pentest) <br> c. IT Audit &amp; Assement
  
<p>
+
| bgcolor="#0084B0" style="text-align: left" |
<br><br/>
+
&nbsp;
<br><br/>
 
<br><br/>
 
<br><br/>
 
<br><br/>
 
<br><br/>
 
<br><br/>
 
Please  ensure that the information given are correct before submission.<br/>
 
  
Our staff  will send confirmation email and payment MUST be made within 5 working days.<br/>
+
MYR 198<br> MYR 198<br> MYR 198
  
      Method of  payment:<br/>
+
| bgcolor="#FFFFFF" style="text-align: left" |
 +
&nbsp;
  
      A) cash  deposit.<br/>
+
MYR 228<br> MYR 228<br> MYR 228
  
      B) cheque  deposit . <br/>
+
|-
 +
| bgcolor="#FFFFFF" |
 +
3.Workshop and Seminar
  
      C) online  money transfer.</p>
+
| bgcolor="#0084B0" style="text-align: left" |
 +
MYR 239
  
    <p><strong>ACCOUNT DETAIL:</strong><br />
+
| bgcolor="#FFFFFF" style="text-align: left" |
 +
MYR 279
  
      <strong>INSTITUT INFOTECH  MARA SDN BHD</strong><br />
+
|}
  
      <strong>14260000004107</strong><br />
+
&nbsp;
  
      <strong>CIMB BANK</strong></p>
+
<br><br> <br><br> <br><br> <br><br> <br><br> <br><br> <br><br> Please ensure that the information given are correct before submission.<br> Our staff will send confirmation email and payment MUST be made within 5 working days.<br> Method of payment:<br> A) cash deposit.<br> B) LO &amp; PO for government only.<br> C) cheque deposit . <br> D) online money transfer.
  
    <p>For more inquiries on payment, please contact:<br />
+
<br>  
  
      [mailto:[email protected] Mrs Dalilah bt Abdullah]<br /></p>
+
'''ACCOUNT DETAIL:'''<br> '''INSTITUT INFOTECH MARA SDN BHD'''<br> '''14260000004107'''<br> '''CIMB BANK'''
 +
 
 +
For more inquiries on payment, please contact:<br> [mailto:[email protected] Mrs Dalilah bt Abdullah]<br> No. Telephone&nbsp;: +603-21754363 / +60321754365 / +60321754370 / +60321754210<br> No. Fax&nbsp;: +603-21754441<br>  
  
 
=== Accommodation  ===
 
=== Accommodation  ===
  
Please check the local hotel website for detail information. For more details please check at logistic tab.
+
Please check the local hotel website for detail information. For more details please check at logistic tab.  
  
==== Logistics ====
+
=Logistics=
  
 
=== Venue  ===
 
=== Venue  ===
  
Universiti Kuala Lumpur
+
Universiti Kuala Lumpur  
  
 
+
<br> website: http://www.unikl.edu.my  
website: http://www.unikl.edu.my
 
  
 
=== Hotel  ===
 
=== Hotel  ===
Line 282: Line 507:
 
For the Hotel suggested near at the venue area:  
 
For the Hotel suggested near at the venue area:  
  
*[http://www.sheraton.com/imperialkualalumpur Sheraton Imperial]
+
*[http://www.sheraton.com/imperialkualalumpur Sheraton Imperial]  
*[https://www.theregency.com.my Regency]
+
*[https://www.theregency.com.my Regency]  
*[http://kualalumpur.concordehotelsresorts.com/ Concorde]
+
*[http://kualalumpur.concordehotelsresorts.com/ Concorde]  
*[http://www.shangri-la.com/en/property/kualalumpur/shangrila Shangri-La]
+
*[http://www.shangri-la.com/en/property/kualalumpur/shangrila Shangri-La]  
 
*[http://www.marriott.com/hotels/travel/kulrn-renaissance-kuala-lumpur-hotel/ Renaissance]
 
*[http://www.marriott.com/hotels/travel/kulrn-renaissance-kuala-lumpur-hotel/ Renaissance]
 +
 
=== Travel  ===
 
=== Travel  ===
  
Line 294: Line 520:
 
*For detailed information on obtaining a business visa for this event, please refer to [http://my.embassyinformation.com Malaysia embassy]
 
*For detailed information on obtaining a business visa for this event, please refer to [http://my.embassyinformation.com Malaysia embassy]
  
<headertabs />
+
<headertabs />  
 +
 
 +
[[Category:Malaysia]]

Latest revision as of 00:24, 5 January 2012




Owaspday.png


OWASP DAY KL 2011 - Malaysia

OWASP Malaysia will host OWASP Day KL 2011 in Kuala Lumpur, Malaysia from Sep. 20 to Sep. 21, 2011 and colloborate with UniKL-MIIT & OSDCMY. The events will gather OWASP leaders, security experts, executives, technical thought leaders, developers, scientists and researchers from Malaysia and around the world for in-depth discussions of cutting-edge application security issues. The summit will draw participation from major Malaysia and global organizations across various verticals including government, information technology, services and consulting, telecommunications, finance, e-commerce, Internet, universities and research institutes. About 200 people are expected to attend the events. exhibition and lunch will be held at the summit, providing sufficient networking opportunities.

Official Invitation Letter for OWASP Day KL 2011 English & Malay.


For the events day we have limited OWASP T-shirt from OWASP Foundation for the most twitter using hash-tag #owaspmy. We will calculate your twitter base on twitter status.

FaceBook Event Page OWASP Day KL 2011

Registration Now Open!!!

For more detail on the fee and workshop

Who Should Attend OWASP Day KL 2011:

  • Application Developers
  • Application Testers and Quality Assurance
  • Application Project Management and Staff
  • Chief Information Officers, Chief Information Security Officers, Chief Technology Officers, Deputies, Associates and Staff
  • Chief Financial Officers, Auditors, and Staff Responsible for IT Security Oversight and Compliance
  • Security Managers and Staff
  • Executives, Managers, and Staff Responsible for IT Security Governance
  • IT Professionals Interesting in Improving IT Security
  • Lecturer & Student it IT field

All the attendee will be provided Attendee Certificate by UniKL & OWASP Malaysia

Adli.jpg

Adli Wahid

Adli Wahid of Cybersecurity Malaysia VP CyberSecurity Responsive Services on a day to day basis. Our team provide incident handling service for anything related to .MY, watch and warn activities, and co-ordination with other security teams (FIRST, APCERT), research groups (i.e. The Honeynet Project) and interest groups (i.e. APWG, ShadowServer).

He specializes in malware, phishing and visualization and has designed and co-ordinated cyber drill exercise at the national and regional level.

OWASP DAY KL 2011

CALL FOR Presentation

OWASP Day KL 2011 Conference will be a major international forum for the presentation of research results, cutting-edge ideas and in-depth discussions in the field of application security. OWASP Day KL 2011 Conference invites application security researchers, thought leaders and developers worldwide to submit papers for the opportunity of presenting to expected participants.

The topics we are seeking include, but are not limited to:

  1. Web Application Security
  2. Mobile Application Security
  3. Cloud Application Security
  4. Software and Architecture Patterns for Application Security
  5. Metrics for Application Security
  6. OWASP Tools and Projects
  7. Secure Coding Practices (J2EE/.NET)
  8. Application Security Testing
  9. New Attacks and Defense
  10. Other subjects related to OWASP and Application Security

To make a submission:

Call For Presentation CLOSED


Each talk should be limited to 40 minutes, followed by a 5 minute question session.

  • Submission deadline: August 20, 2011.
  • Notification of acceptance: August 22, 2011.
  • Presentation slides due: September 20, 2011.

CALL FOR Training

In-conjunction with OWASP Day KL 2011 also provided workshop. It will separate day with the seminar and will conduct 1 full day. It will 3 major topic on the workshop.

  • SQL Injection (Secure & Prevent)
  • Penetration Tester
  • IT Audit

Call For Training CLOSED

  • All the speaker & trainers will be given Speaker Honor Cert from UniKL & OWASP Malaysia

Suhasdesai.jpg
Suhas Desai

A distinguished Senior Consultant of Aujas Networks, At Aujas, he is handling Mobile Security Services. He is responsible for growth of Mobile Security Services. His extensive experience in Mobile Technology spreads across iApps Security, Mobile PKI, Mobile Apps (Android, J2ME), USSD/DSTK Apps, Mobile VAS, SIM card and Mobile Payment’s Security services. Prior to joining Aujas Networks, he has worked with Tech Mahindra. A frequent speaker at prominent industry and customer forums, Desai has been on technical advisory committees for prestigious National and International conferences. He has delivered over 350 conference talks on software & mobile security across the globe including OSSPAC’09, Singapore; INTEROP 2009, Mumbai; STeP-IN 2010 Bangalore; MOSC 2010, Kuala Lumpur; OSBizConference 2010, Malaysia; ‘Mobile VAS in Growth Markets summit’, 2010, Dubai ; ClubHack 2009, Pune; c0c0n 2010, Cochin and ‘4th Mobile Commerce Summit ASIA’, 2011, Kuala Lumpur. He is a proud author of several research papers for reputed journals and magazines in Security, RFID and Image Processing domain. He also contributes features for Linux for You, Linux+ and Linux Journal magazines.

Azizan2.jpg
Ahmad Azizan Idris

Ahmad Azizan graduated from International Islamic University Malaysia with Bachelor's Degree in Computer Science and is currently working as an Intrusion Analyst in Malaysia Computer Emergency Response Team (MyCERT) at CyberSecurity Malaysia. His works mainly concentrated in incident handling, malware analysis, security tools development and other security-related stuff. Currently he involves heavily in mitigating client-side attack specifically on Malicious PDF analysis.

Azrilazam.jpg
Azam Abdul Rahim

Azril azam is currently works as the Global Response Center Development Team Leader with the International Multilateral Partnership Against Cyber Threats (IMPACT), an International Telecommunication Union (ITU) cybersecurity agenda agency. Previously, azril works as the senior researcher with MIMOS Berhad specialized in x86 system virtualization, trusted computing, and computer forensics. He is currently a GIAC certified forensics analyst and also the EC COUNCIL certified security instructor. He has wrote several papers pertain to system security, computer forensics and system virtualization. He also a firm believer in OSS where till this date has wrote several security software under the GNU license. His computer forensics software project called FIRST has won several international and demostic awards including gold award for invention at ITEX 2006 and best Malaysian open source software 2006. Currently at his sparetime, he is in the final stage in completing the next OSS project

Erazuddin.png
Errazudin Ishak

Errazudin holds a Master`s degree in Computer Science (Software Engineering) and works as Solution Architect at Mimos Berhad, A Malaysia government research agency, in ICT and frontier technology. His job focuses on web application developement, deployment, performance and stability. He has spoken at several meetups and conferene and has worked with various back-end and web technologies. In his free time he loves to emulate Richard Gasquet`s backhand on court.

Walterwong.jpg
Walter Wong

Walter is a technical lead for Gain Secure based in Malaysia. The company specialized for providing secure application development and user experience (UX) consultation services to customers. Walter is a Microsoft MVP for developer security. Research on application development security is Walter's personal interest. He also successfully discovered many websites vulnerabilities including some high traffic websites over the past few years. Walter often speaks at technical conferences such as Visual Studio 2010 Launch, TechEd SEA, Security Symposium, TechNet/MSDN, Tech Insights and more.

Haris.jpg
Harisfazillah Jamel

Hafiz.png
Mohd Hafiz Tabrani

Mohd Hafiz Tabrani currently works as Senior Intrusion Analysis for Malaysia Computer Emergency and Response Team (MyCERT) under umbrella of CyberSecurity Malaysia. Prior to that, he worked as an Intrusion Analyst at MyCERT department. His education background comprises of Degree in Computer Science from National University of Malaysia in 2000.

Hafiz has been involved in the computer security field for over 5 years. His area of focus and interest is network security, honeynet, websecurity and malware analysis. He also engages in several penetration-testing exercises and to provide solutions for any vulnerability detected. Moreover, he is recognized for conducting numbers of training for organizations to talk on topics ranging from introduction to advanced security courses. He also involved as a GSOC (Google Summer of Code) mentor for Honeynet Project during 2010 mentoring on PHP Sandbox. He is also main contributor for CyberSecurity Malaysia Honeynet Project’s blog. He currently holds a GPEN certification from SANS Institute.

Adnan1.jpg
Adnan Mohd Shukor

Adnan Mohd Shukor is an Intrusion Analyst at Malaysian Computer Emergency Response Team (MyCERT), CyberSecurity Malaysia. His Education background comprises of Degree in Information Technology, majoring in Security Technology from Multimedia University. He is also a GIAC Certified Penetration Tester (GPEN), GIAC Certified Incident Handler (GCIH) and member of the SANS Advisory Board since 2009.

In the IT security line of work, he has plenty of experience in aspects of network security, penetration testing, web security, client side security, honeypot technology, system development and automation. He has contributed a lot in open source projects especially related to security and he is also the founder of DontPhishMe and MyPHPIPS

Alip.jpg
Alip Aswalid Asri

Alip Aswalid bin Asri is an Intrusion Analyst at Malaysian Computer Emergency Response Team (MyCERT), CyberSecurity Malaysia. His works mainly concentrated in Incident Handling, Website Security, Penetration Testing and Security Tools Development. He is also familiar in web development using Ruby on Rails and PHP.

Syedzai.jpg
Syed Zainudeen Mohd Shaid

Syed Zainudeen Mohd Shaid is a member of Information Assurance and Security Research Group (IASRG) in Universiti Teknologi Malaysia (UTM). With a Software Reverse Engineering background, he is now active in Malware Research and Penetration Testing. He also does training on Ethical Hacking and give talks on Computer & Internet Security. He is currently the Web Security Advisor for UTM.

Ridzuan.jpg
Mohd Ridzuan Isa

Mr. Mohd Ridzuan Isa was born in october 1978, entered IIUM for the programme of Bachelor of Engineering in Mechatronics, despite knowing his passion lies with computers. Graduated in 2004, he gained employment with UniKL-BMI. Since then, he dabbled in the arcane world of unix and linux, lived on the bleeding edge with knoppix, kanotix and sidux. These days, he's slowing down a bit, opting for Linux Mint for desktop and Debian stable and testing for server setups. Picked up CCNA instructor certificate along the way, he is currently on an infrastructure design research team for private cloud service.

Amir.jpg
Amir Haris Ahmad

Amir Haris Ahmad is a visionary in information technology and computer security fields, with particular interest in DNS technology and IPv6. Prior joining Localhost SDN BHD, He was a Senior Researcher at .my DOMAIN REGISTRY, doing research on DNS Security Extension (DNSSEC). A familiar trainer for DNSSEC workshop in Malaysia and some international training events. Amir's extensive technical background includes computer security, DNS, UNIX operating systems, IPv6, and software development in C/C++, ruby and web technology (rails3). He was also a speaker on DNSSEC related topics at few conferences such as MOSC, MYGOSSCON and Hack in The Box (SIGINT-HITB2010KL). At Localhost he is currently head his own development team on some potential projects that involve new technology such as DNS/DNSSEC appliance for .my registry (MYNIC). A registered member of Internet Society Malaysia Chapter (ISOC), Malaysian National Computer Confederation (MNCC), The Open Web Application Security Project (OWASP) and Information Security Professional Association of Malaysia (ISPA). At mean time Amir holds M.Sc, CNE6, GSEC, GCIH, LPIC1, CiSE, NCLA & MCP. He also will be presenting at APECTEL44, talking about DNSSEC related topic.


Final Program

Day 1 - 20 September 2011

      • Reminder: Workshop participants please bring your laptop during the workshop sessions
Time
Web Security: Analysis and Incident Handling on web Attack/Incident by Adnan Mohd Shukor & Alip Aswalid Asri

Introduction IT Audit & Assesment by Harisfazellah Jamel

Introduction to Ethical Web Application Hacking "Pentest" by Syed Zainudeen Mohd Shaid

8.00a.m
Registration (Level 7)
8.30a.m
Lab 706
Lab 707
Lab 708
10.00a.m
Morning break (Level 7)
10.20a.m
Lab 706
Lab 707
Lab 708
1.00p.m
Lunch (Level 7)
2.00p.m
Lab 706
Lab 707
Lab 708
3.45p.m
Tea Break (Level 7)
4.00p.m
Lab 706
Lab 707
Lab 708
5.30p.m
Training Ended

***Reminder: Workshop participants please bring your laptop during the workshop sessions

Day 2 - 21 September

Time Activity Location
8.00a.m Registration Bestari Lecture Hall, Lvl 2
8.30a.m

Opening Ceremony

Recitation of Dua’

Welcoming Speech by Dr Shahrul Niza

Opening Speech by Mohd Fazli Azran

Appointment of UniKL MIIT as OWASP EDUCATION SUPPORTER

Montage & UNIKL-MIIT

Keynote Speech by Adli Wahid

Bestari Lecture Hall, Lvl 2
9.45a.m Morning Break (Corridor Bestari Lecture Hall Lvl 2, VVIP at Lvl 29, Banquet Room)
10.00a.m

Suhas Desai

"Mitigating Security Risk in Mobile Payment Application"

Bestari Lecture Hall, Lvl 2
10.45a.m

Ahmad Azizan

"Gallus: Analyzing Malicious PDF"

Bestari Lecture Hall, Lvl 2
11.30a.m

Azril Azam Abdul Rahim

"Identify, Mitigate & Prevent DDOS Attack via libNetFilters Que"

Bestari Lecture Hall, Lvl 2
12.15p.m

Mohd Hafiz Tabrani

"pKaji: Suspicious PHP Script Analyzer"


Bestari Lecture Hall, Lvl 2

1.00

Lunch Corridor Bestari Lecture Hall Lvl 2, VVIP at Lvl 29, Banquet Room

2.00p.m

Errazudin Ishak

"Rise of the Planet of Anonymous"

Bestari Lecture Hall, Lvl 2
2.45p.m

Walter Wong

"Tips and Tricks To Secure .Net Web Application"

Bestari Lecture Hall, Lvl 2
3.40p.m

Tea Break Corridor Bestari Lecture Hall Lvl 2, VVIP at Lvl 29, Banquet Room

3.45p.m

Mohd Redzuan Isa

"Cloud Computing: Covering Our Bases"

Bestari Lecture Hall, Lvl 2
4.30p.m

Amir Haris Ahmad

"DNS Security"

Bestari Lecture Hall, Lvl 2
5.30p.m End of Events

Preliminary Program

  • Day1.png
  • Day2.png

The final program will be available before September 2011.


Csm.jpg
CyberSecurity Malaysia

Mycert.jpg
Malaysia Computer Emergency Respond Team

Eccouncilmy.jpg
EC-Council APAC

Pandamy.jpg
Panda Malaysia

Lpi.png
Linux Professional Institute

Unikl.jpg
University Kuala Lumpur

Computer Security System Club by Student UniKL-MIIT

Osdcmy.jpg
Open Source Developer Community Malaysia


New in 2011, we are offering exclusive OWASP Day KL 2011 Sponsorships to provide additional benefits and streamline the planning process for our most supportive organizations.

Please contact us directly if you have any related question.


Intented Sponsors:


Registration Fee

If you are neither an OWASP member nor an OWASP Malaysia chapter member, please feel free to join us!

It is free for all OWASP Paid members and all OWASP Malaysia Paid chapter members.

Event

Early Bird

(Before 10 Sept 2011)

Normal

(From 10 Sept 2011)

1. Seminar

a. Member
b. Non-Member

 

Free
MYR 58

 

Free
MYR 68

2. Workshop

a. Analysis & Incident Handling
b. Web Application Hacking (Pentest)
c. IT Audit & Assement

 

MYR 198
MYR 198
MYR 198

 

MYR 228
MYR 228
MYR 228

3.Workshop and Seminar

MYR 239

MYR 279

 















Please ensure that the information given are correct before submission.
Our staff will send confirmation email and payment MUST be made within 5 working days.
Method of payment:
A) cash deposit.
B) LO & PO for government only.
C) cheque deposit .
D) online money transfer.


ACCOUNT DETAIL:
INSTITUT INFOTECH MARA SDN BHD
14260000004107
CIMB BANK

For more inquiries on payment, please contact:
Mrs Dalilah bt Abdullah
No. Telephone : +603-21754363 / +60321754365 / +60321754370 / +60321754210
No. Fax : +603-21754441

Accommodation

Please check the local hotel website for detail information. For more details please check at logistic tab.

Venue

Universiti Kuala Lumpur


website: http://www.unikl.edu.my

Hotel

For the Hotel suggested near at the venue area:

Travel

How to obtain a visa for the event

  • Invitation letter will be sent out for overseas attendees after registration.
  • For detailed information on obtaining a business visa for this event, please refer to Malaysia embassy