This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Netherlands"

From OWASP
Jump to: navigation, search
(Mark your Calendar for our next Chapter Meeting!)
(News: June 18th added)
 
(369 intermediate revisions by 9 users not shown)
Line 1: Line 1:
 
{{Chapter Template|chaptername=Netherlands|extra=|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-netherlands|emailarchives=http://lists.owasp.org/pipermail/owasp-netherlands}}  
 
{{Chapter Template|chaptername=Netherlands|extra=|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-netherlands|emailarchives=http://lists.owasp.org/pipermail/owasp-netherlands}}  
  
<br>  
+
<!-- First tab -->
 
+
= Local News  =
==== Local News  ====
+
=='''News'''==
 
+
:;OWASP Netherlands Monthly meetup:
=== Mark your Calendar for our next Chapter Meeting!  ===
+
:: Next meetup [[OWASP_NL_Monthly_Meetup#June_18.2C_2019 | OWASP NL Chapter Meeting, June 18th]]
 
+
::Slides and recordings are available [[OWASP_NL_Monthly_Meetup#January_17.2C_2019, Hilversum | OWASP Nl Chapter Meeting, January 17th]]
The next Chapter meeting is scheduled for November 14th  in Rotterdam!
+
:;OWASP BeNeLux-Day 2018:
 
+
::[[OWASP_BeNeLux-Day_2018 | OWASP BeNeLux-Day 2018 - Mechelen, Belgium]]
We are glad to announce David Rook twitter @securityninja as guest speaker from Ireland!
+
::[[OWASP_BeNeLux-Day_2017#tab=Conferenceday | Click here for the OWASP BeNeLux-Day 2017]]
More details to come!
 
 
 
So mark your calendar at November 14th for our upcomming Chapter meeting!
 
 
 
----
 
=== OWASP at the GovCert Symposium 2011!  ===
 
 
 
The OWASP Netherlands Chapter will be present as guest organisation at the [http://www.govcert.nl/symposium GovCert Symposium 2011]
 
 
 
----
 
=== OWASP BeNeLux Day 2011!  ===
 
[https://www.owasp.org/index.php/BeNeLux_OWASP_Day_2011 The OWASP BeNeLux Day 2011] is scheduled for December 1st and 2nd.
 
 
 
=== OWASP College Chapters ===
 
Interested in starting you own college chapter?  <br>
 
Have a look at: http://www.owasp.org/index.php/OWASP_College_Chapters_Program
 
----
 
  
=== OWASP BeNeLux Day 2011 ===
+
=='''Provisional 2017 Chapter Event Calendar'''==
 +
*Slide Decks from past Chapter meetings can be downloaded from the [[Netherlands#Past_Events | Past Events page]].
  
Mark your calendar for the 2011 edition: 1st and 2nd of December 2011 in Luxemburg.
+
=='''Other OWASP Events'''==
 +
::;[[OWASP_Events/upcoming_events | OWASP International, Upcoming Events]]
  
----
+
=='''Call for Presentations'''==
<paypal>Netherlands</paypal>
+
::;[https://docs.google.com/a/owasp.org/spreadsheet/viewform?formkey=dGs1UFN0Ul9YR1pRcGdYRmtYallraUE6MQ#gid=0 OWASP NL Chapter Call For Presentation]
==== Chapter Meetings  ====
 
  
=== Chapter Meeting July 6th 2011  ===
+
=='''Stay in contact:'''==
 +
<center>
 +
{| cellspacing="15"
 +
|-
 +
| [[Image:Meetup-logo-2x.png|120px|link=https://www.meetup.com/OWASP-Chapter-Netherlands-Meetup]]
 +
| [[Image:Join the list.png|150px|link=https://groups.google.com/a/owasp.org/forum/#!forum/netherlands-chapter]]
 +
| [[Image:Follow-us-on-twitter.png|175px|link=http://www.twitter.com/owasp_NL]]
 +
| [[Image:Linkedin-button.gif|135px|link=http://www.linkedin.com/groups/OWASP-Netherlands-Chapter-1987229/about]]
 +
|[[Image:slack-horizontal.png|90px|link=https://owasp.slack.com/messages/chapter-netherlands/details/]]
 +
|}
 +
</center>
  
Date &amp; Time: July 6th, 2011 - 19:00
+
=='''Sponsors'''==
 +
::;Our structural Chapter and OWASP [[OWASP_BeNeLux-Day_2017| OWASP BeNeLux-Day 2017 sponsor]] supporters:
 +
::Interested in Sponsoring the Netherlands OWASP Chapter, email netherlands '@' owasp.org
 +
<br>
 +
'''[https://www.owasp.org/index.php/Corporate_Membership OWASP Corporate Member]:'''
 +
<center>
 +
{| cellspacing="15"
 +
|-
 +
| [[File:200x60_netsparker_logo.png|250px|link=https://www.netsparker.com]]
 +
|}
 +
</center>
 +
'''[[OWASP_BeNeLux-Day_2017| OWASP BeNeLux-Day 2017 sponsor]]:'''
 +
<center>
 +
{| cellspacing="15"
 +
| [[File:Achmea_L1_RGB_colour.jpg|250px||link=https://www.achmea.nl/]]
 +
|}
 +
</center>
 +
<center>
 +
{| cellspacing="15"
 +
| [http://www.vest.nl https://www.owasp.org/images/6/67/Vest.jpg]
 +
| [https://secwatch.nl https://www.owasp.org/images/f/ff/Secwatch_logo_small.png]
 +
| [[File:Avi Logo Transparent Background 300pix.png|200px|link=https://avinetworks.com/]]
 +
|}
 +
</center>
 +
<center>
 +
{| cellspacing="15"
 +
|-
 +
]
 +
| [http://www.sig.eu/security https://www.owasp.org/images/9/99/SIG_LOGO.png]
 +
| [https://www.secura.com/ https://www.owasp.org/images/7/78/Secura_logo_small.png]
 +
| [[File:Xebia logo-large-transparent.png|200px|link=https://xebia.com/agile-software-security]]
 +
| [https://informatiebeveiliging.nl/ https://www.owasp.org/images/9/9a/Logo_Informatiebeveiliging-200.png]
 +
|}
 +
</center>
  
Location: VU University Amsterdam, De Boelelaan 1081, 1081 HV Amsterdam<br>  
+
<!--
 +
[[File:VeraCode logo.png|250px|link=https://www.veracode.com]]
 +
[[File:Vest.jpg|250px|link=http://www.vest.nl]]
 +
[[File:Intigriti_verticaal.jpg|250px|link=http://www.intigriti.be]]
 +
[[File:Ecurify-2016.png|250px|link=http://www.securify.nl]]
 +
[[File:HPE_logo_250.png|250px|link=ttp://www8.hp.com/nl/nl/software-solutions/enterprise-security.html]]
 +
[[File:Nixu-logo.png|250px|link=https://www.nixu.com/en/nixubenelux]]
 +
[[File:Logo_xebia.jpg|250px|link=https://xebia.com/agile-software-security]]
 +
[[File:Logo_Informatiebeveiliging-200.png|250px|link=https://informatiebeveiliging.nl]]
 +
-->
 +
<!-- Second tab -->
  
Speakers:<br>
+
=  Calendar  =
 
+
== Provisional Chapter Event Calendar 2019 ==
'''Nick Nikiforakis'''
+
{| class="wikitable" style="text-align:center;" border="1" |
 
+
! width="300" | Date
Nick Nikiforakis is a PhD student at the Katholieke Universiteit Leuven, in Belgium.
+
! width="350" | Type
 
+
! width="300" | Location
He belongs in the DistriNet research group and specifically in the “Security &amp; Languages” task-force.
+
|- align="center"
 
+
|- align="center"
His current research interests include low-level security for unsafe languages and web application security
+
| [https://www.meetup.com/OWASP-Chapter-Netherlands-Meetup/events/247313273/ February 8th, 2019]
 
+
| [[OWASP_NL_Monthly_Meetup#January_17.2C_2019| OWASP NL Wiki ]]
Nick holds a BSc in Computer Science and a MSc on Distributed Systems from the University of Crete in Greece.
+
| Amsterdam
 
+
|- align="center"
He worked for 3 years as a research assistant in the Distributed Computing Systems group at the Foundation of Research and Technology in Crete where he did research in network data visualization, authentication schemes using mobile devices and phishing countermeasures.
+
| [https://www.meetup.com/OWASP-Chapter-Netherlands-Meetup/events/261811435/ June 18th, 2019]
 
+
| [[OWASP_NL_Monthly_Meetup#June_18.2C_2019| OWASP NL Wiki ]]
In the past, Nick has presented his work in academic conferences as well as hacking conventions.
+
| Amsterdam
 
+
|}
His work can be found online at www.securitee.org
+
<!-- Third tab -->
 
 
'''Abstract:'''
 
The increasing popularity of the World Wide Web has made
 
more and more individuals and companies to identify the need of
 
acquiring a Web presence. The most common way of acquiring such
 
a presence is through Web hosting companies and the most popular
 
hosting solution is shared Web hosting.
 
 
 
In this talk we investigate the workings of shared Web hosting
 
and we point out the potential lack of session  isolation between
 
domains hosted on the same physical server. We present two
 
novel server-side attacks against session storage which target
 
the logic of a Web application instead of specific logged-in users.
 
Due to the lack of isolation, an attacker with a domain under his
 
control can force arbitrary sessions to co-located Web applications
 
as well as inspect and edit the contents of their existing active
 
sessions. Using these techniques, an attacker can circumvent authentication
 
mechanisms, elevate his privileges, steal private information and
 
conduct attacks that would be otherwise impossible. Finally, we test the
 
applicability of our attacks against common open-source software and
 
evaluate their effectiveness in the presence of generic server-side
 
countermeasures.
 
 
 
<br>
 
 
 
'''Marco Balduzzi'''
 
 
 
Marco Balduzzi holds an MSc. in computer engineering and has been involved in IT-Security for more then 8 years with international experiences in both industrial and academic fields.
 
 
 
He worked as security consultant and engineer for different companies in Milan, Munich and Sophia-Antipolis, in south France, before joining EURECOM and the International Secure Systems Lab as Ph.D. researcher.
 
 
 
He attended well-known and high-profile conferences all over (Blackhat, OWASP AppSec, NDSS) and currently speak five different languages.
 
 
 
Being a Free Software sympathizer, in the year 2K, he cofounded the Bergamo Linux User Group and the University Laboratory of Applied Computing.
 
 
 
In former times, he was an active member of several open-source projects and Italian hacking groups
 
 
 
'''Abstract:'''
 
The (in)security of File Hosting Services
 
 
 
File hosting services (FHSs) are used daily by thousands of people as
 
a way of storing and sharing files. These services normally rely on a
 
security-through-obscurity approach to enforce access control: for
 
each uploaded file, the user is given a secret URI that she can share
 
with other users of her choice.
 
This talk presents a study of 100 file hosting services and shows that
 
a significant percentage of them generate secret URIs in a predictable
 
fashion, allowing attackers to enumerate their services and access
 
their file list. An attacker can access hundreds of thousands of files
 
in a short period of time, and this poses a very big risk for the
 
privacy of FHS users. Indeed, using a novel approach, we show that
 
attackers are aware of these vulnerabilities and are already
 
exploiting them to get access to other users' files.
 
The talk concludes by presenting SecureFS, a client-side protection
 
mechanism which can protect a user's files when uploaded to insecure
 
FHSs, even if the files end up in the possession of attackers.
 
<br>
 
 
 
----
 
 
 
&nbsp;
 
[[Image:RegisterbuttonBNL09.png|link=http://www.eventbrite.com/event/1683414137/mcivte|alt=register]]
 
 
 
== Past Events  ==
 
  
 +
= Past Events  =
 +
*Events held in [[Netherlands Previous Events 2019|2019]]
 +
*Events held in [[Netherlands Previous Events 2018|2018]]
 +
*Events held in [[Netherlands Previous Events 2017|2017]]
 +
*Events held in [[Netherlands Previous Events 2016|2016]]
 +
*Events held in [[Netherlands Previous Events 2015|2015]]
 +
*Events held in [[Netherlands Previous Events 2014|2014]]
 +
*Events held in [[Netherlands Previous Events 2013|2013]]
 +
*Events held in [[Netherlands Previous Events 2012|2012]]
 
*Events held in [[Netherlands Previous Events 2011|2011]]
 
*Events held in [[Netherlands Previous Events 2011|2011]]
 
*Events held in [[Netherlands Previous Events 2010|2010]]  
 
*Events held in [[Netherlands Previous Events 2010|2010]]  
Line 132: Line 114:
 
*Events held in [[Netherlands Previous Events 2005|2005]]
 
*Events held in [[Netherlands Previous Events 2005|2005]]
  
==== Call for Speakers  ====
+
<!-- Fourth tab -->
  
 +
= Chapter Leaders  =
 +
The Netherlands Chapter is supported by the following board:
 +
*[https://www.owasp.org/index.php/User:Knoblochmartin Martin Knobloch]
 +
*[https://www.owasp.org/index.php/User:Joren Joren Poll]
 +
*[https://www.owasp.org/index.php/User:Edwin_Gozeling Edwin Gozeling]
 +
*[https://www.owasp.org/index.php/User:Cooper Tom Wirschell]
 +
 +
<br>
 +
*[mailto:[email protected] OWASP Netherlands], OWASP Netherlands board email adres
 +
Our goal is to professionalize the local OWASP functioning, provide in a bigger footprint to detect OWASP opportunities such as speakers/topics/sponsors/… and set a 5 year target on: Target audiences, Different events and Interactions of OWASP global – local projects.
 +
 +
<!-- Fifth and last tab -->
 +
= Chapter Support  =
 +
=== Chapter Sponsoring  ===
 +
OWASP Netherlands is looking for organizations to sponsor our chapter.
 +
If you are interested in sponsoring the Netherlands chapter please contact us via email: [mailto:[email protected] netherlands 'at' owasp.org].
 +
 +
=== Donation ===
 +
If you would like to donate to our chapter, please use the PayPal link at the top of this page.
 +
;Thank you!
 +
 +
=== Call for Speakers  ===
 
We are continuously looking for speakers.<br>'''Presentations:''' Are you working on an interesting subject, would you like to share your experience with the OWASP community and do you have presentation skills. Please let us know! Any topic related to web application security will be appreciated!<br>'''VAC, Vulnerability, Attack, Countermeasure:''' The VAC is a re occuring part of the chapter meetings. The VAC is a half hour in-depth technical presentation about a vulnerability, how it can be exploited and how to prevent it!<br>  
 
We are continuously looking for speakers.<br>'''Presentations:''' Are you working on an interesting subject, would you like to share your experience with the OWASP community and do you have presentation skills. Please let us know! Any topic related to web application security will be appreciated!<br>'''VAC, Vulnerability, Attack, Countermeasure:''' The VAC is a re occuring part of the chapter meetings. The VAC is a half hour in-depth technical presentation about a vulnerability, how it can be exploited and how to prevent it!<br>  
 
 
<span style="font-weight: bold;">Links: </span>  
 
<span style="font-weight: bold;">Links: </span>  
 
 
[http://www.owasp.org/index.php/Speaker_Agreement Speaker Agreement]  
 
[http://www.owasp.org/index.php/Speaker_Agreement Speaker Agreement]  
 
 
[http://www.owasp.org/images/5/54/Presentation_template.ppt Template]  
 
[http://www.owasp.org/images/5/54/Presentation_template.ppt Template]  
 
 
Interested in presenting at a local chapter meeting, please send an email to: netherlands 'at' owasp.org  
 
Interested in presenting at a local chapter meeting, please send an email to: netherlands 'at' owasp.org  
  
==== Call for Location  ====
+
<!--
 
+
=== Call for Location  ===
 
For the OWASP Netherlands chapter meetings to come, we are continuously looking for locations!  
 
For the OWASP Netherlands chapter meetings to come, we are continuously looking for locations!  
 
 
Most preferable, the location is good accessible with public transport and by car. Free parking should be provided.  
 
Most preferable, the location is good accessible with public transport and by car. Free parking should be provided.  
 
 
What do we expect:  
 
What do we expect:  
 
 
*meeting room for at least 50 people  
 
*meeting room for at least 50 people  
 
*lunch for attendees  
 
*lunch for attendees  
Line 157: Line 154:
 
*a small present for the speakers  
 
*a small present for the speakers  
 
**(e.g. bottle of wine, for speakers from aboard alcohol might be less practical if flying in only with hand luggage)
 
**(e.g. bottle of wine, for speakers from aboard alcohol might be less practical if flying in only with hand luggage)
 
 
Interested in sponsoring a local chapter meeting, please send an email to: netherlands 'at' owasp.org  
 
Interested in sponsoring a local chapter meeting, please send an email to: netherlands 'at' owasp.org  
 
+
-->
==== Chapter Leaders  ====
+
<!-- Don't remove this tag -->
 
+
__NOTOC__
The Netherlands Chapter is supported by the following board:
+
<headertabs></headertabs>
 
 
*[mailto:[email protected] Ferdinand Vroom], Nationale Nederlanden
 
*[mailto:[email protected] Martin Knobloch], PervaSec
 
 
 
<br>
 
 
 
*[mailto:[email protected] OWASP Netherlands], OWASP Netherlands board email adres
 
 
 
Our goal is to professionalize the local OWASP functioning, provide in a bigger footprint to detect OWASP opportunities such as speakers/topics/sponsors/… and set a 5 year target on: Target audiences, Different events and Interactions of OWASP global – local projects.
 
 
 
==== Chapter Sponsoring  ====
 
 
 
OWASP Netherlands is looking for organizations to sponsor our chapter. If you are interested in sponsoring the Netherlands chapter please contact via email: [mailto:[email protected] netherlands 'at' owasp.org].
 
 
 
<br>If you would like to donate to our chapter, please use the PayPal link below. Thank you!
 
 
 
<br><paypal>Netherlands</paypal>
 
 
 
<br>
 
 
 
__NOTOC__ <headertabs />  
 
 
 
 
[[Category:Europe]]
 
[[Category:Europe]]

Latest revision as of 17:19, 3 June 2019

OWASP Netherlands

Welcome to the Netherlands chapter homepage.


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


News

OWASP Netherlands Monthly meetup
Next meetup OWASP NL Chapter Meeting, June 18th
Slides and recordings are available OWASP Nl Chapter Meeting, January 17th
OWASP BeNeLux-Day 2018
OWASP BeNeLux-Day 2018 - Mechelen, Belgium
Click here for the OWASP BeNeLux-Day 2017

Provisional 2017 Chapter Event Calendar

Other OWASP Events

OWASP International, Upcoming Events

Call for Presentations

OWASP NL Chapter Call For Presentation

Stay in contact:

Meetup-logo-2x.png Join the list.png Follow-us-on-twitter.png Linkedin-button.gif Slack-horizontal.png

Sponsors

Our structural Chapter and OWASP OWASP BeNeLux-Day 2017 sponsor supporters
Interested in Sponsoring the Netherlands OWASP Chapter, email netherlands '@' owasp.org


OWASP Corporate Member:

200x60 netsparker logo.png

OWASP BeNeLux-Day 2017 sponsor:

250px link=https://www.achmea.nl/
Vest.jpg Secwatch_logo_small.png Avi Logo Transparent Background 300pix.png
]
SIG_LOGO.png Secura_logo_small.png Xebia logo-large-transparent.png Logo_Informatiebeveiliging-200.png


Provisional Chapter Event Calendar 2019

Date Type Location
February 8th, 2019 OWASP NL Wiki Amsterdam
June 18th, 2019 OWASP NL Wiki Amsterdam


The Netherlands Chapter is supported by the following board:


Our goal is to professionalize the local OWASP functioning, provide in a bigger footprint to detect OWASP opportunities such as speakers/topics/sponsors/… and set a 5 year target on: Target audiences, Different events and Interactions of OWASP global – local projects.

Chapter Sponsoring

OWASP Netherlands is looking for organizations to sponsor our chapter. If you are interested in sponsoring the Netherlands chapter please contact us via email: netherlands 'at' owasp.org.

Donation

If you would like to donate to our chapter, please use the PayPal link at the top of this page.

Thank you!

Call for Speakers

We are continuously looking for speakers.
Presentations: Are you working on an interesting subject, would you like to share your experience with the OWASP community and do you have presentation skills. Please let us know! Any topic related to web application security will be appreciated!
VAC, Vulnerability, Attack, Countermeasure: The VAC is a re occuring part of the chapter meetings. The VAC is a half hour in-depth technical presentation about a vulnerability, how it can be exploited and how to prevent it!
Links: Speaker Agreement Template Interested in presenting at a local chapter meeting, please send an email to: netherlands 'at' owasp.org