This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "AppSecAsiaPac2012"

From OWASP
Jump to: navigation, search
 
(46 intermediate revisions by 5 users not shown)
Line 1: Line 1:
 
__NOTOC__  
 
__NOTOC__  
 +
[[File:Twitter_followus.jpg]]'''[https://twitter.com/#!/AppSecAsia Follow us] or tweet about us using the hashtag #appsecasia'''
 +
 
{| border="0" align="center" style="width: 100%;"
 
{| border="0" align="center" style="width: 100%;"
 
|-
 
|-
Line 5: Line 7:
 
[[File:Owasp appsecAsia2012ConfBanner.jpg]]
 
[[File:Owasp appsecAsia2012ConfBanner.jpg]]
 
| style="width: 25%; background: none repeat scroll 0% 0% rgb(255, 255, 255);" |  
 
| style="width: 25%; background: none repeat scroll 0% 0% rgb(255, 255, 255);" |  
[[File:RegisterForAppsec.png|link=http://www.regonline.com/appsecapac2012]]
+
'''[[AppSecAsiaPac2012_Slides|Click here to see the available slides]]'''
 
|}
 
|}
 
=Welcome=
 
=Welcome=
 
<font size=2pt>
 
<font size=2pt>
 +
{{Social Media Links}}
 +
<!-- Twitter Box -->
 +
<!--
 +
'''@appsecasia Twitter Feed ([http://twitter.com/appsecasia follow us on Twitter!])''' <twitter>228540661</twitter> -->
 +
         
  
 
{| border="0" cellpadding="15" align="center" class="FCK__ShowTableBorders" style="width: 100%;"
 
{| border="0" cellpadding="15" align="center" class="FCK__ShowTableBorders" style="width: 100%;"
 
|-
 
|-
 
| style="width: 35%; background: none repeat scroll 0% 0% rgb(255, 255, 255); color: black;" |  
 
| style="width: 35%; background: none repeat scroll 0% 0% rgb(255, 255, 255); color: black;" |  
 +
<center>[[File:Owaspconf2012_small320w.jpg]]</center>
 +
 +
<br/>
 +
<br/>
 
'''Welcome to the OWASP 2012 Appsec Asia Pacific Conference.'''
 
'''Welcome to the OWASP 2012 Appsec Asia Pacific Conference.'''
  
Line 18: Line 29:
  
 
The conference consists of 2 days of world class training by OWASP instructor's followed by 2 days of quality presentations and keynotes from industry leaders, OWASP projects and industry consultants. In previous years the OWASP Asia Pacific conference has been rated as one of the "must attend" events of the year, with the conference always filling up quickly.
 
The conference consists of 2 days of world class training by OWASP instructor's followed by 2 days of quality presentations and keynotes from industry leaders, OWASP projects and industry consultants. In previous years the OWASP Asia Pacific conference has been rated as one of the "must attend" events of the year, with the conference always filling up quickly.
 +
<br/>
 +
  
 
'''Who should attend this conference:'''
 
'''Who should attend this conference:'''
Line 26: Line 39:
 
* Executives, Managers and staff responsible for IT Security Governance
 
* Executives, Managers and staff responsible for IT Security Governance
 
* IT Professionals interested in Improving Information Security
 
* IT Professionals interested in Improving Information Security
 +
<br/>
  
 
'''Conference Highlights:'''
 
'''Conference Highlights:'''
Line 35: Line 49:
 
* Networking Opportunities to meet peers and other developers
 
* Networking Opportunities to meet peers and other developers
 
* Gain access to resources within OWASP projects as well as leading vendors
 
* Gain access to resources within OWASP projects as well as leading vendors
 
+
<br/>
 
[[File:RegisterForAppsec.png|link=http://www.regonline.com/appsecapac2012]]
 
[[File:RegisterForAppsec.png|link=http://www.regonline.com/appsecapac2012]]
  
 
| style="width: 20%; background: none repeat scroll 0% 0% rgb(255, 255, 255);" |  
 
| style="width: 20%; background: none repeat scroll 0% 0% rgb(255, 255, 255);" |  
[[File:Owaspconf2012 large.jpg]]
+
<center>'''Thank you to all of our supporters!'''</center>
|}
+
<br/>
 +
<h2><center>Diamond & Platinum Sponsors</center></h2>
 +
 
 +
<center>[[File:Fortify HP logo.png|link=http://www.fortify.com]]</center>
 +
 
  
 +
<h2><center>Gold & Silver Sponsors</center></h2>
  
{{Social Media Links}}
 
<!-- Twitter Box -->
 
<!--
 
'''@appsecasia Twitter Feed ([http://twitter.com/appsecasia follow us on Twitter!])''' <twitter>228540661</twitter> -->
 
  
 +
<center>[[File:AppsecureLogo.jpg|link=http://www.appsecure.com/]]</center><br/>
  
=Trainers and Training Schedule=
+
<center>[[File:CS-LogoWeb.png|link=http://www.contentsecurity.com.au/]]</center><br/>
  
The OWASP 2012 Appsec Asia Event has been able to secure world class training sessions for the conference. A number of national and International Trainers are coming along to the event, and you can join up to any of the classes below.
+
<center>[[File:GASystems-logo.jpg|link=http://www.gasystems.com.au/]]</center><br/>
  
== Training Available ==
+
<center>[[File:Imperva 312x54.jpg|link=http://www.imperva.com/]]</center><br/>
  
'''2 Day Course - Assessing & Exploiting Web Applications with Samurai-WTF (Justin Searle)''' - ''[https://www.owasp.org/images/f/f4/Samurai-WTF_Course_Syllabus_v9.pdf Course Details & Instructor Bio]''
+
<center>[[File:Ionize75H.jpg‎|link=http://www.ionize.com.au/]]</center><br/>
  
Come take the official two-day Samurai-WTF training course given by one of the founders and lead developers of the project!  You will learn the latest Samurai-WTF open source tools and as well as the latest techniques to perform web application penetration tests.  After a quick overview of pen testing methodology, the instructors will lead you through the end-to-end process of testing and exploiting several different web applications, including client side attacks using flaws within the application.  Different sets of open source tools will be used on each web application, allowing you to learn first hand the pros and cons of each tool. Primary emphasis of these instructor lead exercises is how to integrate these tools into your own manual testing procedures to improve your overall workflow.  After you have gained experience with the Samurai-WTF tools, you will be challenged with a capture the flag event. This final challenge will give you time to practice your new skills at your own pace and experiment with your favorite new tools. This experience will help you gain the confidence and knowledge necessary to perform web application assessments and expose you to the wealth of freely available, open source tools.
+
<center>[[File:SPL-LOGO-LARGE.png|link=http://www.trustwave.com/]]</center><br/>
  
  
''More training courses to be announced over the coming week.''
+
<h2><center> Associations & Supporters</center></h2>
 +
We are proudly supported by the following Industry Associations and Media outlets.
  
 +
<center>[[File:Auscert-Header-logo.gif|link=http://www.auscert.org.au/]]</center>
  
  
== Training Schedule ==
+
<center>[[File:AisaLogo.png|link=http://www.aisa.org.au/]]</center>
 +
 
  
<font size=2pt>
 
{| border="0" align="center" class="FCK__ShowTableBorders" style="width: 95%;"
 
|-
 
| align="center" colspan="7" style="background: none repeat scroll 0% 0% rgb(64, 88, 160); color: white;" | <font size=3pt>'''Training Day 1 - Wednesday - April 11th''' </font>
 
<br>
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''(Time Allocated)''
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Training Room (1) - 2 Day Course''' <br> &nbsp;(Grand Ballroom 1 - Ground Floor)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Training Room (2) - 2 Day Courses''' <br> &nbsp;(Grand Ballroom 2 - Ground Floor)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Training Room (3) - 2 Day Courses''' <br> &nbsp;(Grand Ballroom 3 - Ground Floor)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Training Room (4) - 1 Day Courses''' <br> &nbsp;(Wharf Room - Level 1)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''Training Room (5) - 1 Day Courses''' <br> &nbsp;(Bridge Room - Level 1)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''Training Room (6) - 1 Day Courses''' <br> &nbsp;(Bridge Room 2 - Level 1)
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''7:30 - 9:00 AM''
 
<br>
 
| align="center" colspan="6" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Conference Registration Open - Coffee & Tea Available '''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:00-10:30 AM'' <br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Building Secure Web Applications'''
 
&nbsp;Trainer: Klaus Johannes Rusch <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''Hidden Risks, Costs and Responsibility in the Cloud!'''
 
&nbsp;Trainer: Larry Timmins <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''Secure Coding Course - .NET Secure Coding'''
 
&nbsp;Trainer: Sandeep Nain <br>
 
&nbsp;Training Syllabus:
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''10:30-11:00 AM''
 
<br>
 
| align="center" colspan="6" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Morning Tea Coffee & Food to be provided to training.'''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:00-1:00 PM'' <br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Building Secure Web Applications'''
 
&nbsp;Trainer: Klaus Johannes Rusch <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''Hidden Risks, Costs and Responsibility in the Cloud!'''
 
&nbsp;Trainer: Larry Timmins <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''Secure Coding Course - .NET Secure Coding'''
 
&nbsp;Trainer: Sandeep Nain <br>
 
&nbsp;Training Syllabus:
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:00-1:30 PM''
 
<br>
 
| align="center" colspan="6" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Lunch - Provided for attendees in main Expo & Conference Hall - Ground Level'''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:30-3:00 PM'' <br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Building Secure Web Applications'''
 
&nbsp;Trainer: Klaus Johannes Rusch <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''Hidden Risks, Costs and Responsibility in the Cloud!'''
 
&nbsp;Trainer: Larry Timmins <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''Secure Coding Course - .NET Secure Coding'''
 
&nbsp;Trainer: Sandeep Nain <br>
 
&nbsp;Training Syllabus:
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:00-3:30 PM''
 
<br>
 
| align="center" colspan="6" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Afternoon Tea - Coffee & Food to be provided to training'''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:30-5:00 PM''
 
<br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Building Secure Web Applications'''
 
&nbsp;Trainer: Klaus Johannes Rusch <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''Hidden Risks, Costs and Responsibility in the Cloud!'''
 
&nbsp;Trainer: Larry Timmins <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''Secure Coding Course - .NET Secure Coding'''
 
&nbsp;Trainer: Sandeep Nain <br>
 
&nbsp;Training Syllabus:
 
|-
 
 
|}
 
|}
  
  
  
{| border="0" align="center" class="FCK__ShowTableBorders" style="width: 95%;"
+
=Registration Costs=
|-
+
 
| align="center" colspan="7" style="background: none repeat scroll 0% 0% rgb(64, 88, 160); color: white;" | <font size=3pt>'''Training Day 2 - Thursday- April 12th''' </font>
+
{{:AppSecAsiaPac2012/Register}}
<br>
+
 
|-
+
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''(Time Allocated)''
+
=Training=
| style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Training Room (1) - 2 Day Course''' <br> &nbsp;(Grand Ballroom 1 - Ground Floor)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Training Room (2) - 2 Day Courses''' <br> &nbsp;(Grand Ballroom 2 - Ground Floor)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Training Room (3) - 2 Day Courses''' <br> &nbsp;(Grand Ballroom 3 - Ground Floor)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Training Room (4) - 1 Day Courses''' <br> &nbsp;(Wharf Room - Level 1)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''Training Room (5) - 1 Day Courses''' <br> &nbsp;(Bridge Room - Level 1)
 
| style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''Chapter Workshop (6) - 1 Day Courses''' <br> &nbsp;(Bridge Room 2 - Level 1)
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''7:30 - 9:00 AM''
 
<br>
 
| align="center" colspan="6" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Conference Registration Open - Coffee & Tea Available '''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:00-10:30 AM'' <br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Mobile Applications & Security'''
 
&nbsp;Trainer: Prashant Verma <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''OWASP for CISO and Senior Managers (Business)'''
 
&nbsp;Trainer: Tobias Gondrom <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''OWASP Chapter Workshop'''
 
<br>
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''10:30-11:00 AM''
 
<br>
 
| align="center" colspan="6" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Morning Tea Coffee & Food to be provided to training.'''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:00-1:00 PM'' <br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Mobile Applications & Security'''
 
&nbsp;Trainer: Prashant Verma <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''OWASP for CISO and Senior Managers (Business)'''
 
&nbsp;Trainer: Tobias Gondrom <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''OWASP Chapter Workshop'''
 
<br>
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:00-1:30 PM''
 
<br>
 
| align="center" colspan="6" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Lunch - Provided for attendees in main Expo & Conference Hall - Ground Level'''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:30-3:00 PM'' <br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Mobile Applications & Security'''
 
&nbsp;Trainer: Prashant Verma <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''OWASP for CISO and Senior Managers (Business)'''
 
&nbsp;Trainer: Tobias Gondrom <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''OWASP Chapter Workshop'''
 
<br>
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:00-3:30 PM''
 
<br>
 
| align="center" colspan="6" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Afternoon Tea - Coffee & Food to be provided to training'''
 
|-
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:30-5:00 PM''
 
<br>
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Assessing & Exploiting Web Applications with Samurai-WTF'''
 
&nbsp;Trainer: Justin Searle <br>
 
&nbsp;Training Syllabus: ''[[AppSecAsiaPac2012/Training/SamuraiWTF|Course Abstract]]''
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Hands on Web Application Testing: Assessing Web Apps the OWASP Way'''
 
&nbsp;Trainer: Matt Tesauro <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Mobile Penetration Testing: Start to Finish for iOS Applications'''
 
&nbsp;Trainer: Jason Haddix <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 153, 204);" | &nbsp;'''Mobile Applications & Security'''
 
&nbsp;Trainer: Prashant Verma <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(204, 204, 255);" | &nbsp;'''OWASP for CISO and Senior Managers (Business)'''
 
&nbsp;Trainer: Tobias Gondrom <br>
 
&nbsp;Training Syllabus:
 
| align="left" style="width: 15%; background: none repeat scroll 0% 0% rgb(255, 255, 153);" | &nbsp;'''OWASP Chapter Workshop'''
 
<br>
 
|-
 
|}
 
  
</font>
+
{{:AppSecAsiaPac2012/Training}}
  
= Conference Talks and Schedule=
+
= Conference Schedule=
  
**NOTE: Conference is scheduled to change as required by the conference committee, check back for updates prior to the conference. **
+
'''[https://www.surveymonkey.com/s/Australia2012_Talk40 Click here to take event survey] or click on the talk titles below to rate that individual talk.'''
  
<font size=2pt>
+
{| border="0" align="center" class="FCK__ShowTableBorders" style="width: 85%;"
{| border="0" align="center" class="FCK__ShowTableBorders" style="width: 75%;"
 
 
|-
 
|-
| align="center" colspan="4" style="background: none repeat scroll 0% 0% rgb(64, 88, 160); color: white;" | <font size=3pt>'''Conference Day 1 - Friday - April 13th''' </font>
+
| align="center" colspan="4" style="background: none repeat scroll 0% 0% rgb(64, 88, 160); color: white;" | <font size=3pt>'''Conference Day 1 - Friday - April 13th''' <br>  </font>
 
<br>  
 
<br>  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | ''(Time Allocated)''  
+
|align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | ''(Time Allocated)''  
| style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Track 1 - Detect''' <br> (Grand Ballroom 1 & 2)
+
| align="center" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Track 1 - Detect''' <br> (Grand Ballroom 2)
| style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | '''Track 2 - Protect''' <br> (Grand Ballroom 3)
+
| align="center" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | '''Track 2 - Protect''' <br> (Grand Ballroom 3)
| style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | '''Track 3 - Leadership & OWASP''' <br> (Wharf & Bridge Rooms Level 1)
+
| align="center" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | '''Track 3 - Leadership & OWASP''' <br> (Grand Ballroom 1)
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''7:30 - 8:30 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''7:30 - 8:30 AM''  
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Conference Registration Open - Coffee & Tea Available '''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Conference Registration Open - Coffee & Tea Available '''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:30-8:40 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:30-8:40 AM''  
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Conference Opening - Appsec Asia 2012'''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Conference Opening - Appsec Asia 2012'''
Speakers: Conference Committee Chair - Mr Justin Derry
+
Speakers: Conference Committee Chair - Mr. Justin Derry
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:40-9:30 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:40-9:30 AM''  
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''KeyNote: Presentation'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''[https://www.surveymonkey.com/s/Australia2012_Talk1 KeyNote: Presentation]'''
 
Speaker: Alastair MacGibbon
 
Speaker: Alastair MacGibbon
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:30-9:40 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:30-9:40 AM''  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:40-10:30 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:40-10:30 AM''  
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''KeyNote: Presentation'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''[https://www.surveymonkey.com/s/Australia2012_Talk2 KeyNote: Software Security Goes Mobile]'''
Speaker: Rafal Los
+
Speaker: Jacob West
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''10:30-11:00 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''10:30-11:00 AM''  
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Morning Tea - Provided for attendees in main EXPO & Conference Hall - Ground Level'''
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Morning Tea - Provided for attendees in main EXPO & Conference Hall - Ground Level'''
Line 334: Line 140:
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:00-11:50 AM''  
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:00-11:50 AM''  
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: You can't filter out the stupid!'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk37 You can't filter the stupid!]'''
&nbsp;Speaker: Charles Henderson
+
&nbsp;Speakers: Charles Henderson & Daniel Crowley
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Advanced Mobile Application Code Review Techniques'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk8 Advanced Mobile Application Code Review Techniques]'''
&nbsp;Speaker: Prashant Vema
+
&nbsp;Speakers: Prashant Vema & Dinesh Shetty
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: Effective Software Development in a PCI-DSS Environment'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk14 Effective Software Development in a PCI-DSS Environment]'''
 
&nbsp;Speaker: Bruce Ashton
 
&nbsp;Speaker: Bruce Ashton
 
|-
 
|-
Line 346: Line 152:
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:00-12:50 PM''  
 
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:00-12:50 PM''  
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Testing from the Cloud. Is the Sky Falling?'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk35 The risks that Pen Tests don't find]'''
&nbsp;Speaker: Matt Tesauro
+
&nbsp;Speaker: Gary Gaskell
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Rethinking Web Application Architecture for Cloud'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk28 Rethinking Web Application Architecture for Cloud]'''
 
&nbsp;Speaker: Arshad Noor
 
&nbsp;Speaker: Arshad Noor
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: OWASP Project - TBA'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk22 OWASP Project - Secure Coding Practices Quick Reference Guide]'''
&nbsp;Speaker: TBA
+
&nbsp;Speaker: Justin Clarke
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:50-1:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:50-1:30 PM''
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Lunch - Provided for attendees in main Expo & Conference Hall - Ground Level'''
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Lunch - Provided for attendees in main Expo & Conference Hall - Ground Level'''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:30-2:20 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:30-2:20 PM''
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Security Testing on Web Apps - How to protect yourself'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk20 Overcoming the Quality vs Quantity Problem in Software Security Testing]'''
&nbsp;Speaker: Magno Rodrigues
+
&nbsp;Speaker: Rafal Los
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Mobile Security on iOS and Andriod'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk18 Mobile Security on iOS and Andriod]'''
&nbsp;Speaker: Mike Park (Trustwave)
+
&nbsp;Speaker: Mike Park
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: Insight into the Russian Black Market'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk34 Effective Education Programs using OWASP]'''
&nbsp;Speaker: Almantas Kakareka
+
&nbsp;Speaker: Sandeep Nain
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:20-2:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:20-2:30 PM''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:30-3:20 PM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:30-3:20 PM''  
 
<br>  
 
<br>  
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Pen Testing Mobile Applications'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk25 Pen Testing Mobile Applications]'''
&nbsp;Speaker: Frank Fan
+
&nbsp;Speaker: Tony Liu & Rainman Wu
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Application Security Logging & Monitoring, The Next Frontier'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk10 Application Security Logging & Monitoring, The Next Frontier]'''
 
&nbsp;Speaker: Peter Freiberg
 
&nbsp;Speaker: Peter Freiberg
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: OWASP Project - TBA'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk19 Modern Software Security Assurance with OpenSAMM]'''
&nbsp;Speaker: TBA
+
&nbsp;Speaker: Pravir Chandra
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:30-4:00 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:30-4:00 PM''
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Afternoon Tea - Provided for attendees in EXPO & Conference Hall - Ground Level'''
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Afternoon Tea - Provided for attendees in EXPO & Conference Hall - Ground Level'''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:00-4:50 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:00-4:50 PM''
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Harder, Better, Faster, Stronger (SQLi)'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk15 Harder, Better, Faster, Stronger (SQLi)]'''
&nbsp;Speaker: Luke Jahnke
+
&nbsp;Speakers: Luke Jahnke & Louis Nyffenegger
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Securing the SSL Channel against Man-in-the-middle Attacks'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk30 Securing the SSL Channel against Man-in-the-middle Attacks]'''
 
&nbsp;Speaker: Tobias Gondrom
 
&nbsp;Speaker: Tobias Gondrom
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: The risks that Pen Tests don't find'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk23 OWASP Project - ZED Attack Proxy]'''
&nbsp;Speaker: Gary Gaskell
+
&nbsp;Speaker: Simon Bennetts
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:50-5:00 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:50-5:00 PM''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''5:00-5:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''5:00-5:30 PM''
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Panel Discussion - Application Security Trends in 2012'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''[https://www.surveymonkey.com/s/Australia2012_Talk7 Panel Discussion - Application Security Trends in 2012]'''
Panelists: TBA
+
Moderator: Christian Frichot, Panelists: Rafal Los, Charles Henderson, Pravir Chandra & Jeremiah Grossman
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''5:30-6:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''5:30-6:30 PM''
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''OWASP - Afternoon Networking Event - TBA'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''OWASP - Afternoon Networking Event - Ground Floor - Four Points Sheraton'''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''6:30 - 10:00 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''6:30 - 10:00 PM''
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''OWASP - Evening Networking Event - TBA'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''OWASP - Gala Dinner - Grand Ballroom. (Inclusive in Conference Fee)<br> [https://www.surveymonkey.com/s/Australia2012_Talk3 Speaker: Tammy Wolffs - Director, Cyber Security at <br> Department of Broadband, Communications and the Digital Economy]'''
 
|}
 
|}
  
 +
'''[https://www.surveymonkey.com/s/Australia2012_Talk40 Click here to take event survey] or click on the talk titles below to rate that individual talk.'''
  
 
+
{| border="0" align="center" class="FCK__ShowTableBorders" style="width: 85%;"
{| border="0" align="center" class="FCK__ShowTableBorders" style="width: 75%;"
 
 
|-
 
|-
 
| align="center" colspan="4" style="background: none repeat scroll 0% 0% rgb(64, 88, 160); color: white;" | <font size=3pt>'''Conference Day 2 - Saturday- April 14th''' </font>
 
| align="center" colspan="4" style="background: none repeat scroll 0% 0% rgb(64, 88, 160); color: white;" | <font size=3pt>'''Conference Day 2 - Saturday- April 14th''' </font>
 
<br>  
 
<br>  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | ''(Time Allocated)''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | ''(Time Allocated)''  
| style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Track 1 - Detect''' <br> (Grand Ballroom 1 & 2)
+
| align="center" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Track 1 - Detect''' <br> (Grand Ballroom 2)
| style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | '''Track 2 - Protect''' <br> (Grand Ballroom 3)
+
| align="center" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | '''Track 2 - Protect''' <br> (Grand Ballroom 3)
| style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | '''Track 3 - Leadership & OWASP''' <br> (Wharf & Bridge Rooms Level 1)
+
| align="center" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | '''Track 3 - Leadership & OWASP''' <br> (Grand Ballroom 1)
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''7:30 - 8:30 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''7:30 - 8:30 AM''  
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Conference Registration Open - Coffee & Tea Available '''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Conference Registration Open - Coffee & Tea Available '''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:30-8:40 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:30-8:40 AM''  
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Conference Day 2 Update- Appsec Asia 2012'''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''Conference Day 2 Update- Appsec Asia 2012'''
 
Speakers: Conference Committee Chair - Mr Justin Derry
 
Speakers: Conference Committee Chair - Mr Justin Derry
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:40-9:30 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''8:40-9:30 AM''  
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''KeyNote: Presentation'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''[https://www.surveymonkey.com/s/Australia2012_Talk6 KeyNote: Presentation]'''
 
Speaker: Jeremiah Grossman
 
Speaker: Jeremiah Grossman
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:30-9:40 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:30-9:40 AM''  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:40-10:30 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''9:40-10:30 AM''  
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''KeyNote: Presentation'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''[https://www.surveymonkey.com/s/Australia2012_Talk4 KeyNote: OWASP Foundation Update]'''
Speaker: Dr Jason Smith
+
Speakers: Justin Searle and Justin Clarke
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''10:30-11:00 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''10:30-11:00 AM''  
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Morning Tea - Provided for attendees in main EXPO & Conference Hall - Ground Level'''
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Morning Tea - Provided for attendees in main EXPO & Conference Hall - Ground Level'''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:00-11:50 AM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:00-11:50 AM''  
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Attacking Captcha for Fun and Profit'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk26 Pentesting iOS Applications]'''
&nbsp;Speaker: Gursev Singh Kalra
+
&nbsp;Speaker: Jason Haddix
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Password Less Authentication & Authorization & Payments'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk24 Password Less Authentication & Authorization & Payments]'''
 
&nbsp;Speaker: Srikar Sagi
 
&nbsp;Speaker: Srikar Sagi
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: OWASP Project - TBA'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk13 De-Anonymizing Anonymous]'''
&nbsp;Speaker: TBA
+
&nbsp;Speaker: Wayne O'Young
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:50-12:00 PM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''11:50-12:00 PM''  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement   
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement   
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:00-12:50 PM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:00-12:50 PM''  
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: HTTP Fingerprinting - Next Generation'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk17 HTTP Fingerprinting - Next Generation]'''
 
&nbsp;Speaker: Eldar Marcussen
 
&nbsp;Speaker: Eldar Marcussen
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Web Crypto for the Developer who has better things to do.'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk36 Web Crypto for the Developer who has better things to do]'''
 
&nbsp;Speaker: Adrian Hayes
 
&nbsp;Speaker: Adrian Hayes
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: Static Code Analysis & Governance'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk33 Static Code Analysis & Governance]'''
 
&nbsp;Speaker: Jonathan Carter
 
&nbsp;Speaker: Jonathan Carter
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:50-1:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''12:50-1:30 PM''
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Lunch - Provided for attendees in main Expo & Conference Hall - Ground Level'''
 
| align="center" colspan="3" style="width: 90%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''Break - Lunch - Provided for attendees in main Expo & Conference Hall - Ground Level'''
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:30-2:20 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''1:30-2:20 PM''
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Shake Hooves with BeFF'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk31 Shake Hooves with BeEF]'''
 
&nbsp;Speaker: Christian Frichot
 
&nbsp;Speaker: Christian Frichot
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Software Security Goes Mobile'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk12 Data Breaches - When Application Security Goes Wrong]'''
&nbsp;Speaker: Jacob West
 
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: Data Breaches - When Application Security Goes Wrong'''
 
 
&nbsp;Speaker: Mark Goudie
 
&nbsp;Speaker: Mark Goudie
 +
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | <span style="color:red"> SPONSOR PRESENTATION</span> <br>&nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk38 Next Generation WAF]'''
 +
&nbsp;Speaker: GA Systems
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:20-2:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:20-2:30 PM''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:30-3:20 PM''  
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''2:30-3:20 PM''  
 
<br>  
 
<br>  
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: How MITM Proxy has been slaying SSL Dragons'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk27 Pentesting Smart Grid Web Apps]'''
 +
&nbsp;Speaker: Justin Searle
 +
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" |  &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk16 How MITM Proxy has been slaying SSL Dragons]'''
 
&nbsp;Speaker: Jim Cheetham
 
&nbsp;Speaker: Jim Cheetham
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Breaking is Easy, Preventing is Hard'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" |<span style="color:red"> SPONSOR PRESENTATION</span> <br> &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk39 Click here to give feedback]'''
&nbsp;Speaker: Matias Madou (HP)
+
&nbsp;Speaker: Trustwave Spiderlabs
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: OWASP Project - TBA'''
 
&nbsp;Speaker: TBA
 
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:20-3:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:20-3:30 PM''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement  
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:30-4:20 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''3:30-4:20 PM''
 
<br>
 
<br>
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''Presentation: Rise of the Planet of the Anonymous'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk29 Rise of the Planet of the Anonymous]'''
 
&nbsp;Speaker: Errazudin Ishak
 
&nbsp;Speaker: Errazudin Ishak
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''Presentation: Anatomy of a Logic Flaw'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(188, 165, 122);" | &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk9 Anatomy of a Logic Flaw]'''
&nbsp;Speaker: Charles Henderson
+
&nbsp;Speakers: Charles Henderson & Daniel Crowley
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" | &nbsp;'''Presentation: OWASP Australia - Where, How, Why, When'''
+
| align="left" style="width: 30%; background: none repeat scroll 0% 0% rgb(204, 255, 122);" |<span style="color:red"> SPONSOR PRESENTATION</span> <br> &nbsp;'''[https://www.surveymonkey.com/s/Australia2012_Talk5 Websense]'''
&nbsp;Speaker: Justin Derry & Andrew Vanderstock
+
&nbsp;Speaker: Content Security
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:20-4:30 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:20-4:30 PM''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(246, 246, 246);" | Short Break - Conference Movement
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:30-5:00 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''4:30-5:00 PM''
 
<br>
 
<br>
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''OWASP Appsec Asia 2012 - Conference Wrap Up'''
+
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(188, 133, 122);" | '''[https://www.surveymonkey.com/s/Australia2012_Talk40 OWASP Appsec Asia 2012 - Conference Wrap Up]'''
Speakers: OWASP Board, OWASP Appsec Asia Conference Committee
+
Speakers: OWASP Appsec Asia Conference Committee
 
|-
 
|-
| style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''5:00-6:00 PM''
+
| align="center" style="width: 10%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | &nbsp;''5:00-6:00 PM''
 
<br>
 
<br>
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''OWASP Sponsor - Afternoon Networking Event - TBA'''
 
| align="center" colspan="3" style="width: 80%; background: none repeat scroll 0% 0% rgb(194, 194, 194);" | '''OWASP Sponsor - Afternoon Networking Event - TBA'''
Line 520: Line 326:
  
  
 +
=Keynote Speakers=
  
=Speakers=
+
'''In alphabetical order:'''
  
===KEYNOTE SPEAKERS===
 
  
 
==Alastair MacGibbon==  
 
==Alastair MacGibbon==  
 
Alastair MacGibbon is an internationally-respected authority on cybercrime, including Internet fraud, consumer victimisation and a range of Internet security and safety issues.  He is the managing partner of Surete Group, a consultancy dealing with improved customer retention for Internet companies by increasing trust and reducing negative user experiences.  Prior to this for almost 5 years Alastair headed Trust & Safety at eBay Australia and later eBay Asia Pacific.  He was a Federal Agent with the Australian Federal Police for 15 years, his final assignment as the founding Director of the Australian High Tech Crime Centre.
 
Alastair MacGibbon is an internationally-respected authority on cybercrime, including Internet fraud, consumer victimisation and a range of Internet security and safety issues.  He is the managing partner of Surete Group, a consultancy dealing with improved customer retention for Internet companies by increasing trust and reducing negative user experiences.  Prior to this for almost 5 years Alastair headed Trust & Safety at eBay Australia and later eBay Asia Pacific.  He was a Federal Agent with the Australian Federal Police for 15 years, his final assignment as the founding Director of the Australian High Tech Crime Centre.
 +
 +
 +
==Jacob West==
 +
Jacob West is Director, Software Security Research for the Enterprise Security Products division of Hewlett-Packard. West is a world-recognized expert on software security and brings a technical understanding of the languages and frameworks used to build software together with extensive knowledge about how real-world systems fail. In 2007, he co-authored the book "Secure Programming with Static Analysis" with colleague and Fortify founder Brian Chess. Today, the book remains the only comprehensive guide to static analysis and how developers can use it to avoid the most prevalent and dangerous vulnerabilities in code. West is a frequent speaker at industry events, including RSA Conference, Black Hat, Defcon, OWASP, and many others. A graduate of the University of California, Berkeley, West holds dual-degrees in Computer Science and French and resides in San Francisco, California.
  
  
Line 537: Line 347:
  
 
[http://www.cert.gov.au/ About CERT Australia]  
 
[http://www.cert.gov.au/ About CERT Australia]  
 
 
==Jacob West==
 
Jacob West is Director, Software Security Research for the Enterprise Security Products division of Hewlett-Packard. West is a world-recognized expert on software security and brings a technical understanding of the languages and frameworks used to build software together with extensive knowledge about how real-world systems fail. In 2007, he co-authored the book "Secure Programming with Static Analysis" with colleague and Fortify founder Brian Chess. Today, the book remains the only comprehensive guide to static analysis and how developers can use it to avoid the most prevalent and dangerous vulnerabilities in code. West is a frequent speaker at industry events, including RSA Conference, Black Hat, Defcon, OWASP, and many others. A graduate of the University of California, Berkeley, West holds dual-degrees in Computer Science and French and resides in San Francisco, California.
 
  
  
Line 550: Line 356:
  
  
==Rafal Los==
 
Rafal Los, Chief Security Evangelist for Hewlett-Packard Software, combines over a decade of subject-matter expertise in information security and risk management with a critical business perspective.  From technical research to building and implementing enterprise application security programs, Rafal has a track record with organizations of diverse sizes and verticals.  He is a featured speaker at events around the globe, and has presented at events produced by OWASP, ISSA, Black Hat,  and SANS among many others. He stays active in the community by writing, speaking and contributing research, representing HP in OWASP, the Cloud Security Alliance and other industry groups. His blog, Following the White Rabbit, with his unique perspective on security and risk management has amassed a following from his industry peers, business professionals, and even the media and can be found at [http://hp.com/go/white-rabbit http://hp.com/go/white-rabbit].<br><br>
 
Prior to joining HP, Los defined what became the software security program and served as a regional security lead at a Global Fortune 100 contributing to the global organization's security and risk-management strategy internally and externally.  Rafal prides himself on being able to add a 'tint of corporate realism' to information security.<br><br>
 
Rafal received his B. S. in Computer Information Systems from Concordia University, River Forest, Ill.
 
 
 
;Threat Profiling the Mobile Application Ecosystem:The flood gates of the mobile age have swung wide open, and whether your organization is prepared or not - mobile applications utilizing cloud resources are the future. As organizations race to release ‘mobile’ versions of applications that do everything from home automation to managing your medications and health history, software security assurance is paramount from both regulatory and risk management perspectives. This requires an entirely different approach than simply running scans or handing off your source code to be ‘audited.’  Analyzing the source code, the mobile application, remote application interfaces and the communication protocols between them are critical to understanding the complete threat profile of the mobile application. Simply looking at one of these components can provide a dangerously misleading representation and lead to increased risk exposure. Rafal will discuss the full threat profile of mobile applications, including their real attack surface and provide thoughts on the future of mobile applications as enterprises migrate further into cloud computing.
 
  
 +
=Track Session Speakers=
  
 +
{{:AppSecAsiaPac2012/Talks}}
  
  
Line 578: Line 379:
 
[[File:AppsecureTransLogo.png|link=http://www.appsecure.com/]]
 
[[File:AppsecureTransLogo.png|link=http://www.appsecure.com/]]
 
[[File:Imperva 312x54.jpg|link=http://www.imperva.com/]]
 
[[File:Imperva 312x54.jpg|link=http://www.imperva.com/]]
 +
[[File:Ionize75H.jpg‎|link=http://www.ionize.com.au/]]
 
[[File:CS-LogoWeb.png|link=http://www.contentsecurity.com.au/]]
 
[[File:CS-LogoWeb.png|link=http://www.contentsecurity.com.au/]]
 
[[File:Trustwave small.png|link=http://www.trustwave.com/]]
 
[[File:Trustwave small.png|link=http://www.trustwave.com/]]
Line 590: Line 392:
  
  
 
+
=Chapters Workshop=
=Call For Papers=
 
 
 
'''The OWASP AppSec AsiaPac 2012 Call for Papers (CFP) is now open.''' Visit the
 
following URL to submit your abstract for the April 13-14, 2012 talks in Sydney Australia:
 
 
 
http://sl.owasp.org/apac2012talks
 
 
 
 
 
'''We will make the first round of selections, based on the CFPs we have received by February 17, 2012. The final closing date for submissions is Friday, March 3, 2012. '''We look forward to talk submissions over the coming weeks from security practitioners, researchers, thought leaders, and developers in the following content areas:
 
 
 
 
 
* Research in Application Security Defense (Defense & Countermeasures)
 
* Research in Application Security Offense (Vulnerabilities & Exploits)
 
* Web Application Security
 
* Critical Infrastructure Security
 
* Mobile Security
 
* Government Initiatives & Government Case Studies
 
* Effective case studies in Policy, Governance, Architecture or Life Cycle
 
* OWASP Projects (turbo talks)
 
 
 
 
 
Speakers will receive free admission (nontransferable) to the conference in return for delivering a 50 minute talk or for delivering a 25 minute OWASP Projects turbo talk.
 
 
 
 
 
 
 
=== Speaker Forms ===
 
 
 
[[Speaker Agreement]]
 
 
 
 
 
 
 
=Call for Trainers=
 
 
 
'''OWASP AppSec AsiaPac 2012 is  currently soliciting training providers for the conference.''' Visit the following URL to submit your training proposal for the April 11-12, 2012 training days in Sydney Australia: http://sl.owasp.org/apac2012training
 
 
 
 
 
The following conditions apply for people or organizations that want to provide training at the conference:
 
 
 
 
 
*Training provider should provide class syllabus / training materials.
 
*Proceeds will be split 75/25 (OWASP/Trainer) for the training class.
 
*OWASP will provide the Venue, Marketing with Conference materials, Registration and basic AV
 
*Trainers will cover travel and accommodations for the instructor(s) and all course materials for students
 
*OWASP will reserve up to 2 training slots at no cost and the trainer may reserve up to one slot at no cost
 
*Price per attendee: 2-Day Class $995/ 1-Day Class $595
 
*Trainers can brand training materials to increase their exposure
 
*Classes are to be focused around Application Security but are in no way limited to web application security.
 
 
 
 
 
'''We will make the first round of selections, based on the Training proposals we have received by February 17, 2012. The final closing date for submissions is Friday, March 3, 2012.''' Submit proposals to http://sl.owasp.org/apac2012training. All trainers will be required to submit a [https://www.owasp.org/images/8/80/APAC2012_Training_Instructor_Agreement.pdf Training Instructor Agreement] in order to have their classed scheduled.
 
 
 
 
 
Please forward to all interested practitioners and colleagues.
 
 
 
 
 
===Trainer Forms===
 
[https://www.owasp.org/images/8/80/APAC2012_Training_Instructor_Agreement.pdf Training Instructor Agreement]
 
 
 
 
 
=OWASP Track=
 
The Call for Papers for the OWASP Track at Global AppSec AsiaPac is now open.  OWASP leaders with interesting projects/activities can submit here: https://docs.google.com/a/owasp.org/spreadsheet/viewform?formkey=dHB4VGJPWmV5cUxBRmJuY1pETklrcEE6MQ.  The CFP for will close on Feburary 15th 2012.
 
 
 
 
 
Submissions must:
 
*Be about active OWASP Projects or activities
 
*Be in a 50 Minute or 15 Minute format (final schedule will be determined in conjunction with the event)
 
*Authors must agree to the [https://www.owasp.org/index.php/Speaker_Agreement OWASP Speaker Agreement]
 
*Comply to the applicable [https://www.owasp.org/index.php/Global_Conference_Committee_Policies Global Conference Committee Policies] (related to all events & speakers)
 
*Be OWASP branded, no company templates (presenters must limit mention of their employer to a company logo on the concluding slide of their presentation)
 
 
 
 
 
Recommendations:
 
*Presentations that provide a link to a recording of previous presenter performance will be scored significantly higher
 
*Presentations on active projects will be scored higher
 
*Some projects will be determined as once OWASP wants to highlight so new project leaders should not be discouraged if they have great presentation skills
 
 
 
 
 
The OWASP Track initiative, jointly led by the Global Conferences Committee and the Global Projects Committee, is a new effort to help OWASP promote our projects and activities at our own major conferences. The goal of this track is to highlight and promote OWASP and offer our leaders a chance to showcase their activities. As such this is a different CFP than one typically issued, submissions should highlight a particular OWASP project or activity that is important to the community at large. The joint GCC/GPC program committee will be judging these submissions on a variety of factors, including project/activity maturity, strategic value to OWASP, relevance to the event audience, and past presentation performance. We intend to highlight brand new projects and activities along with established ones, so new project leaders should not be discouraged from applying! Keep in mind though that we are looking for polished presentations so it will help your submission if you can demonstrate that your project/activity has made recent strides in improving quality.    There are limited OWASP funds to support travel for selected presenters, we will ask that presenters first solicit funding from their employers for travel to the event.
 
 
 
 
 
Presenters that perform well in their OWASP Track talk will be invited to join the [https://www.owasp.org/index.php/OWASP_Speakers_Group OWASP Speakers Group].
 
 
 
 
 
Regards,<br>
 
Global Conferences Committee, Mark Bristow, Chair<br>
 
Global Projects Committee, Jason Li, Chair<br>
 
 
 
 
 
=Chapter Leader Workshop=
 
  
 
{{:AppSecAsiaPac2012/Chapters_Workshop}}
 
{{:AppSecAsiaPac2012/Chapters_Workshop}}
Line 800: Line 513:
  
  
 
+
=Contact Us=
=FAQ=
 
 
 
Place holder for FAQ
 
 
 
 
 
=Conference Committee=
 
  
 
Justin Derry - Planning Committee Co-Chair<br>
 
Justin Derry - Planning Committee Co-Chair<br>
 
Andrew van der Stock - Planning Committee Co-Chair<br>
 
Andrew van der Stock - Planning Committee Co-Chair<br>
 +
Christian Frichot - Planning Committee Member<br>
 +
Andrew Mueller - Planning Committee Member<br>
 
Mohd Fazli Azran - Global Conference Committee Liaison<br>
 
Mohd Fazli Azran - Global Conference Committee Liaison<br>
 
Sarah Baso - OWASP Operational Support<br>
 
Sarah Baso - OWASP Operational Support<br>
Line 815: Line 524:
  
 
If you are interested in helping out with this conference or have any questions, please contact us at: appsecasia2012@owasp.org
 
If you are interested in helping out with this conference or have any questions, please contact us at: appsecasia2012@owasp.org
 +
 +
 +
=Archives=
 +
 +
*[https://www.owasp.org/index.php/AppSecAsiaPac2012/CFP Call for Papers]
 +
*[[Speaker Agreement]]
 +
*[https://www.owasp.org/index.php/AppSecAsiaPac2012/CFT Call for Trainers]
 +
*[https://www.owasp.org/images/8/80/APAC2012_Training_Instructor_Agreement.pdf Training Instructor Agreement]
 +
*Information about the [https://www.owasp.org/index.php/AppSecAsiaPac2012/OWASP_Track OWASP Track]
 +
  
 
</font>
 
</font>
  
 
<headertabs />
 
<headertabs />

Latest revision as of 13:47, 30 April 2012

Twitter followus.jpgFollow us or tweet about us using the hashtag #appsecasia

Owasp appsecAsia2012ConfBanner.jpg

Click here to see the available slides



Owaspconf2012 small320w.jpg



Welcome to the OWASP 2012 Appsec Asia Pacific Conference.

The event is being held in Sydney, Australia from the 11th to the 14th of April 2012 at the Four Points Sheraton Darling Harbour.

The conference consists of 2 days of world class training by OWASP instructor's followed by 2 days of quality presentations and keynotes from industry leaders, OWASP projects and industry consultants. In previous years the OWASP Asia Pacific conference has been rated as one of the "must attend" events of the year, with the conference always filling up quickly.


Who should attend this conference:

  • Application Developers, Testers, Quality Assurance Team Members
  • Chief Information Officers, Security Officers, Technology Officers
  • Security Managers and Staff
  • Executives, Managers and staff responsible for IT Security Governance
  • IT Professionals interested in Improving Information Security


Conference Highlights:

  • Alastair MacGibbon: Keynote Presentation (more information available on "Speakers" Tab)
  • Jacob West (Fortify - HP): Keynote Presentation (more information available on "Speakers" Tab)
  • Industry Leading training - Exploiting Web Applications with Samurai-WTF
  • Industry Panel from Finance and Insurance Sectors
  • Networking Opportunities to meet peers and other developers
  • Gain access to resources within OWASP projects as well as leading vendors


RegisterForAppsec.png

Thank you to all of our supporters!


Diamond & Platinum Sponsors

Fortify HP logo.png


Gold & Silver Sponsors


AppsecureLogo.jpg

CS-LogoWeb.png

GASystems-logo.jpg

Imperva 312x54.jpg

Ionize75H.jpg

SPL-LOGO-LARGE.png


Associations & Supporters

We are proudly supported by the following Industry Associations and Media outlets.

Auscert-Header-logo.gif


AisaLogo.png