This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Delhi NCR"

From OWASP
Jump to: navigation, search
(Feb meet page details updated)
(sept meet details updated)
 
(21 intermediate revisions by 3 users not shown)
Line 30: Line 30:
 
= '''Upcoming Meeting/Event(s)''' =
 
= '''Upcoming Meeting/Event(s)''' =
  
February 2018 meet on February '''24, 2018 (Saturday) - 11:00 am'''
+
September meet up is scheduled on 28th September 2019 starting 11:00 am IST
  
'''Note''' - OWASP Delhi chapter meets are free and open to everyone. Prior registrations are mandatory in order to be allowed to attend the meetup
+
Note - All OWASP chapter meets are free and open to everyone. Prior RSVP is mandatory in order to be allowed to attend the meet.
  
'''Note''' - This is a combined meetup with null Delhi Chapter
+
'''Note - This is a combined null Delhi and OWASP Delhi meet up'''
  
For '''Registration/RSVP''' please click [https://null.co.in/events/420-delhi-null-delhi-meet-24-february-2018-combined-null-owasp-meet Here]
+
'''More Details and RSVP here:''' <nowiki>https://null.co.in/events/655-delhi-combined-null-delhi-owasp-delhi-meetup</nowiki>
  
'''Session Details/Agenda:'''
+
'''Details:''' [[Delhi NCR|https://www.owasp.org/index.php/Delhi_NCR]]
----------------------
 
  
'''11:15 am - 11:30 am:''' Introductions & Chapter Updates
+
'''Agenda:'''
  
'''11:30 am - 11:45 am:''' InfoSec News Bytes
+
11:00 am - 11:10 am: Introductions and Chapter Updates
  
'''11:45 am - 12:30 pm:''' WiFi Security Beyond Password Cracking by '''Mohit Kumar Rajain'''
+
11:10 am - 11:25 am: '''News Bytes & Discussions on Latest Infosec happenings by Chandan Paswan'''
  
'''12:30 pm - 12:50 am:''' Tea/Coffee/Networking Break
+
11:25 am - 12:25 pm: '''Life in containers: Are they Secure? by Pankaj Mouriya'''
  
'''01:00 pm - 01:50 pm:''' AppSec Testing Beyond Pen Test by '''Bhushan Gupta'''
+
12:25 pm - 12:40 pm: Networking Breaks
  
'''02:00 pm - 02:15 pm:''' Feedback and Topic Discussion for Next Month
+
12:40 pm - 01:40 pm: '''Demystifying Container Escapes by Vaibhav Gupta'''
  
'''When:''' February 24th, 2018 (Saturday) - 11:00 am (Please be on time)
+
01:40 pm - 02:30 pm: '''The significance of mobile exploit applications by Ankit Giri'''
  
'''Where:''' Sapient  
+
02:30 pm - 02:45 pm: Feedback and Next Meet Discussion
 +
 
 +
'''When:''' September 28, 2019 (Saturday) - 11:00 am onward (Please be on time)
 +
 
 +
'''Where:''' Sapient
  
 
Unitech Infospace SEZ
 
Unitech Infospace SEZ
  
Tower-B (Unit 1 Cafeteria), Building No-8
+
Tower-B, Building No-8
  
 
Sector 21,
 
Sector 21,
Line 69: Line 72:
 
Haryana, India
 
Haryana, India
  
'''How to reach venue:''' Take Rapid Metro from Sikanderpur Metro station to Vodafone Belvedere Towers (2nd Stop). A free shuttle operates from the entry gate of the metro station to Udyog Vihar every 5 minutes. It drops at exit gate no. 2 of Infospace. The shuttle takes around 15 minutes to reach the venue.
+
'''Landmark:''' Trident Hotel (Straight from Trident Hotel towards Dundahera Village and left from T Point, Unitech building will be on the right. RBS and Amdocs offices are in the same complex.)
 
 
'''Nearest Landmark:''' Trident Hotel.(Straight from Trident Hotel towards Dundahera Village and left from T Point, Unitech building will be on the right. RBS and Amdocs offices are in the same complex.)
 
 
 
'''Nearest Metro Stations:'''
 
 
 
· IndusIand Bank Cyber City Rapid Metro Station
 
 
 
· MG Road Metro Station
 
 
 
· Sikanderpur Metro Station
 
 
 
Important Note - Please carry an ID proof along with you which will be required for Security check
 
 
 
'''<br>
 
Talk Details:'''
 
 
 
'''AppSec Testing Beyond Pen Test by Bhushan Gupta'''
 
  
'''Abstract:''' Web application security has a broad scope that spans from network communication to browser behaviors to backend applications and finally to database servers. Validating security of all these components can be a daunting task and take a considerable effort. Penetration is the most prevalent testing method used today for validating web application security. The question is, “does it cover all the basis?” Penetration testing is a black-box type testing that a QA engineer applies from the hacker’s perspective. While it provides a comfort level, it does not ensure that the application has been developed with security in mind and that it meets the three basic requirements of security namely, Confidentiality, Integrity, and Availability (CIA). The CIA framework builds intrinsic security and thus ensures an increased confidence level. This framework should be complemented with the penetration testing.
+
'''Nearest Metro Station:'''
  
This talk focuses on how to align the security validation of a web application with the three basic elements of security namely, Confidentiality, Integrity, and Availability (CIA). The test effectiveness can be achieved by analyzing the requirements of each element and identifying the potential breaches that can compromise each element. The efficiency should be built by relating these breaches with the known OWASP Top 10 and other vulnerabilities and, leveraging that knowledge to identify the testing approach - static and dynamic throughout the SDLC.
+
- IndusIand Bank Cyber City Rapid Metro Station
  
'''Bio:''' Bhushan Gupta is a Principal consultant at Gupta Consulting LLC., Bhushan Gupta is passionate about development methods and tools that yield more secure web applications especially in the agile software development environment. As a researcher, he has a keen interest in understanding and applying fundamental principles and known methodologies to develop dependable and secure software solutions. His interests extend to Social Engineering and Attack Surface Analysis. Bhushan worked at Hewlett-Packard for 13 years in various roles including software quality lead, engineer, software process architect, and software productivity manager. He then developed a strong interest in web application security while working as a quality engineer for Nike Inc. Bhushan has been studying various facets of web application security and promoting how to apply common sense approach to build secure solutions. He is a certified Six Sigma Black Belt (HP and ASQ) and an adjunct faculty member at the Oregon Institute of Technology in Software Engineering. To learn more about Bhushan’s contributions to SDLC, visit www.bgupta.com
+
- MG Road Metro Station
  
'''WiFi Security Beyond Password Cracking'''
+
- Sikanderpur Metro Station
  
'''Abstract:''' The speaker will demonstrate the following attacks on wifi networks:
+
'''Google Maps''' - <nowiki>https://bit.ly/2mjd20i</nowiki> 
  
1. Packet injection in protocols such as DHCP, DNS, etc.
 
 
2. Phishing wifi clients using captive portal
 
 
'''Bio:''' Mohit is a Network security Enthusiast and Final Year Btech ( ECE ) student @ NIT Delhi
 
  
 
= '''Stay Updated''' =
 
= '''Stay Updated''' =
Line 133: Line 114:
  
 
= '''Past Events/Archives''' =
 
= '''Past Events/Archives''' =
 +
 +
[https://www.owasp.org/index.php/OWASP_Delhi_May_2019_Meeting_-_May_25,_2019 OWASP Delhi May 2019 Meeting - May 25, 2019]
 +
 +
[https://www.owasp.org/index.php/OWASP_Delhi_March_2019_Meeting_-_March_30,_2019 OWASP Delhi March 2019 Meeting - March 30, 2019]
 +
 +
[https://www.owasp.org/index.php/OWASP_Delhi_February_2019_Meeting_-_February_16,_2019 OWASP Delhi February 2019 Meeting - February 16, 2019]
 +
 +
[[OWASP Delhi January 2019 Meeting - January 19, 2018|OWASP Delhi January 19, 2019 Meeting - January 19, 2019]]
 +
 +
[[OWASP Delhi December 2018 Meeting - December 15, 2018]]
 +
 +
[[OWASP Delhi October 2018 Meeting - October 13, 2018]]
 +
 +
[[OWASP Delhi August 2018 Meeting - August 25, 2018]]
 +
 +
[[OWASP Delhi June 2018 Meeting - June 23, 2018]]
 +
 +
[[OWASP Delhi May 2018 Meeting - May 19, 2018]]
 +
 +
[[OWASP Delhi March 2018 Meeting - March 24, 2018]]
 +
 +
[[OWASP Delhi February 2018 Meeting - February 24, 2018]]
 +
 +
[[OWASP Delhi January 2018 Meeting - January 20, 2017|OWASP Delhi January 2018 Meeting - January 20, 2018]]
  
 
[[OWASP Delhi November 2017 Meeting - November 25, 2017]]
 
[[OWASP Delhi November 2017 Meeting - November 25, 2017]]

Latest revision as of 09:57, 26 September 2019

About

OWASP Delhi Chapter

The OWASP Delhi Chapter meetings are FREE and OPEN to anyone interested in learning more about information security. We conduct regular (mostly monthly) meetings covering Noida, Gurgaon, and Delhi region.

OWASP Delhi

Welcome to the Delhi chapter homepage. The chapter leaders are Vaibhav Gupta and Sandeep Singh


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Chapter Sponsors

Some of the organizations supporting OWASP Delhi/NCR chapter are below:

Adobe
Sapient
Bharti Airtel
Thought Works
null - the open Security community

For more information on how to support OWASP Delhi chapter in helping organize free and open security meets contact the chapter leaders

Become a Presenter

Submit your talk now for an upcoming OWASP Delhi/NCR Chapter Meeting

Link to submit

Join Discussions on Slack

Link to OWASP Delhi chapter Channel

In case you are not on slack, the registration URL is (requires email only): https://owasp.herokuapp.com

September meet up is scheduled on 28th September 2019 starting 11:00 am IST

Note - All OWASP chapter meets are free and open to everyone. Prior RSVP is mandatory in order to be allowed to attend the meet.

Note - This is a combined null Delhi and OWASP Delhi meet up

More Details and RSVP here: https://null.co.in/events/655-delhi-combined-null-delhi-owasp-delhi-meetup

Details: https://www.owasp.org/index.php/Delhi_NCR

Agenda:

11:00 am - 11:10 am: Introductions and Chapter Updates

11:10 am - 11:25 am: News Bytes & Discussions on Latest Infosec happenings by Chandan Paswan

11:25 am - 12:25 pm: Life in containers: Are they Secure? by Pankaj Mouriya

12:25 pm - 12:40 pm: Networking Breaks

12:40 pm - 01:40 pm: Demystifying Container Escapes by Vaibhav Gupta

01:40 pm - 02:30 pm: The significance of mobile exploit applications by Ankit Giri

02:30 pm - 02:45 pm: Feedback and Next Meet Discussion

When: September 28, 2019 (Saturday) - 11:00 am onward (Please be on time)

Where: Sapient

Unitech Infospace SEZ

Tower-B, Building No-8

Sector 21,

Old Delhi - Gurgaon Road

Dundahera, Gurgaon 122016

Haryana, India

Landmark: Trident Hotel (Straight from Trident Hotel towards Dundahera Village and left from T Point, Unitech building will be on the right. RBS and Amdocs offices are in the same complex.)

Nearest Metro Station:

- IndusIand Bank Cyber City Rapid Metro Station

- MG Road Metro Station

- Sikanderpur Metro Station

Google Maps - https://bit.ly/2mjd20i