This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Houston"

From OWASP
Jump to: navigation, search
m
m
Line 22: Line 22:
  
 
<blockquote>
 
<blockquote>
 +
Daniel Crowley is the head of research and a penetration tester for X-Force Red. Daniel denies all allegations regarding unicorn smuggling and questions your character for even suggesting it. Daniel is the primary author of both the Magical Code Injection Rainbow, a configurable vulnerability testbed, and FeatherDuster, an automated cryptanalysis tool. Daniel enjoys climbing large rocks and is TIME magazine's 2006 person of the year. Daniel has been working in the information security industry since 2004 and is a frequent speaker at conferences including Black Hat, DEF CON, Shmoocon, and SOURCE. Daniel does his own charcuterie and brews his own beer. Daniel's work has been included in books and college courses. Daniel also holds the noble title of Baron in the micronation of Sealand.
 
</blockquote>
 
</blockquote>
  
'''Title:''' TBA
+
'''Title:''' Windows File Pseudonyms: Ten Years Later, Where are We?
  
 
<blockquote>
 
<blockquote>
 +
This talk a revisiting of techniques and oddities related to how Windows handles file names and paths, and a discussion of what works, or doesn't, on Windows 10.
 
</blockquote>
 
</blockquote>
  

Revision as of 16:40, 7 October 2019

OWASP Houston

Welcome to the Houston chapter homepage. The chapter leaders are Ryan Tierney and Benjamin Loula.

Upcoming Events

Meetup_logo3.jpg Houston Schedule of Events

Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG

Local News


Everyone is welcome to join us at our chapter meetings.

2019

OWASP Houston October Chapter Meeting

When: Thursday, October 24, 2019

Where: 1001 Fanin Street, Suite 4550 Houston, TX 77002

Time: 6pm - 8pm

Speaker: Dan Crowley

Daniel Crowley is the head of research and a penetration tester for X-Force Red. Daniel denies all allegations regarding unicorn smuggling and questions your character for even suggesting it. Daniel is the primary author of both the Magical Code Injection Rainbow, a configurable vulnerability testbed, and FeatherDuster, an automated cryptanalysis tool. Daniel enjoys climbing large rocks and is TIME magazine's 2006 person of the year. Daniel has been working in the information security industry since 2004 and is a frequent speaker at conferences including Black Hat, DEF CON, Shmoocon, and SOURCE. Daniel does his own charcuterie and brews his own beer. Daniel's work has been included in books and college courses. Daniel also holds the noble title of Baron in the micronation of Sealand.

Title: Windows File Pseudonyms: Ten Years Later, Where are We?

This talk a revisiting of techniques and oddities related to how Windows handles file names and paths, and a discussion of what works, or doesn't, on Windows 10.

Speaker: Travis Horvath

Travis is a reformed systems administrator and network analyst turned hacker. He enjoys collecting reverse shells and long lists of hashed passwords. When he’s not trying to find your mother’s maiden name, first pet, and street you grew up on, he’s tinkering with a 3D printer or quadcopter. During his time as an infosec consultant, he’s appended several letters his title including “OSCP”, “OSWP”, and “CREST”.

Title: The New Hotness: A briefing and demo of HTTP Request Smuggling

A brief on the “new” HTTP desynchronization attack dubbed “HTTP Request Smuggling”, released by James Kettle at DEF CON and Black Hat this year. We will break down and demo the attack, detail what it is, how to test for it, and how to defend against it.

Sponsor: Experis