This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Boulder"

From OWASP
Jump to: navigation, search
(Next Meeting - XSS Lab - Postponed until August 20th, 2009)
m (Chapter Support: Updated meeting location)
 
(60 intermediate revisions by 8 users not shown)
Line 1: Line 1:
{{Chapter Template|chaptername=Boulder|extra=The chapter leaders are [mailto:kthaxton@businesspartnersolutions.com Kathy Thaxton], [mailto:mrhits777@gmail.com Jeremy Martinez], and [mailto:Andrew.[email protected] Andrew Riesel]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-boulder|emailarchives=http://lists.owasp.org/pipermail/owasp-boulder}}
+
===Special Thanks===
 +
The continued sponsorship of Aerstone, Applied Trust, and Coalfire keep the chapter running strong. Thank you.
 +
{| cellpadding="15"
 +
|-
 +
| [[Image:BoulderSponsorAerstone.png | 120px | link=https://aerstone.com           | alt=Aerstone        | Aerstone]]
 +
| [[Image:AppliedTrust.png          | 120px | link=http://www.appliedtrust.com    | alt=Applied Trust    | Applied Trust]]
 +
| [[Image:Coalfire.png              | 120px | link=http://www.coalfire.com/       | alt=Coalfire        | Coalfire]]
 +
|}
  
<paypal>Boulder</paypal>
+
__NOTOC__
 +
<font size="2">
 +
=About=
 +
{{:Boulder/About}}
  
== '''Next Meeting - XSS Lab - Postponed until August 20th, 2009''' ==
+
=Upcoming Events=
Due to some location security issues we must postpone the June meeting until August.  We will finish the Cross Site Scripting lab on August 20th, 2009 and we will be using a Broomfield location rather that a Fort Collins location.
+
{{:Boulder/Events-Upcoming}}
  
The good news is we have some new sites to attack and defend with the help of Anurag Agarwal, the Director of Education at WhiteHat Security and we will have a much more intense lab.
+
=Past Events=
We wholeheartedly apologize for the delay but it will be worth the wait. 
+
{{:Boulder/Events-Past}}
  
Please join the Boulder OWASP Chapter on Thursday, August 20th, 2009 at Staples for a XSS lab.
+
=Chapter Projects=
THREE levels of labs - beginner, intermediate, and advanced.
+
{{:Boulder/Projects}}
  
=== Cross-site scripting '''LAB''' - Beginner, Intermediate, and Advanced ===
+
=Chapter Support=
 +
{{:Boulder/Support}}
  
Lab to explain how to attack vulnerable sites –we will use three different examples and
+
</font>
Spend  one half hour on each:  Basic attacks, intermediate and advanced.
+
<headertabs />
Teacher TBA.
 
We will be using the OWASP Live CD and will have them available.
 
Must have laptop with CD player. 
 
Meeting will be at '''Staples:  [http://maps.google.com/maps?q=1+Environmental+Way,+Broomfield,+CO+80021,+USA&sa=X&oi=map&ct=title One Environmental Way, Broomfield, Co. 80021]'''
 
Brown bag or we can order pizza when everyone gets there.
 
6pm to 7pm dinner and Lab from 7pm to 8:30
 
Drinks at Gordon Biersch after the lab.  Topics up for discussion (we’ll choose one)
 
  
Black Hat DC researchers demonstrate new cross-site scripting browser hack that lets attackers retrieve data without a trace
 
[http://developers.slashdot.org/article.pl?sid=09/05/09/1339213 Should Developers Be Liable For Their Code?]
 
  
==== Resources from the Meeting - Stuff you Wish You'd Been There to Hear About :-) ====
+
== Upcoming Events ==
[http://ha.ckers.org/xss.html RSnake's XSS Cheat-sheet]
 
  
=== Directions to Staples: ===
+
'''Thursday Evenings: ''' We typically (but not always) hold our chapter meetings on the third Thursday of the month.  We meet in Lafayette, CO, just outside of Boulder.  Newcomers are always welcome!  Meeting details can be found on our [http://www.meetup.com/OWASP-Boulder/ MeetUp.com] site.  Please RSVP on that site as seating can fill up quickly.
  
'''Staples:  [http://maps.google.com/maps?q=1+Environmental+Way,+Broomfield,+CO+80021,+USA&sa=X&oi=map&ct=title One Environmental Way, Broomfield, Co. 80021]'''
+
<br><br>
  
=== Agenda ===
+
[[Category:OWASP Chapter]]
* 6 to 7:00 Dinner @ [http://maps.google.com/maps?f=q&hl=en&geocode=&q=Corporate+Express+1+Environmental+Way,+Broomfield+colorado&sll=39.935803,-105.13092&sspn=0.077395,0.144711&ie=UTF8&ll=39.926934,-105.126565&spn=0.009676,0.018089&z=16&iwloc=A Staples CE - Broomfield]
+
[[Category:United_States]]
 
+
[[Category:Colorado]]
* 7pm to 8:30 pm Cross-site scripting lab
 
Sponsor:  '''Nope, no sponsor.  It'a your chapter, BYO dinner and/or order pizza at 6'ish'''
 
 
 
Speaker:  tbd
 
 
 
=== Logistics ===
 
Please bring a wifi equipped laptop.  We recommend the [http://www.owasp.org/index.php/Category:OWASP_Live_CD_2008_Project OWASP LiveCD].  Go ahead and download it and familiarize yourself with it ahead of time, if you're so inclined.
 
 
 
 
 
Following the meeting we will have informal discussions over beverages at the [http://maps.google.com/maps?f=q&hl=en&geocode=&q=Gordon+Biersch+Brewery+Broomfield+colorado&ie=UTF8&ll=39.935803,-105.13092&spn=0.077395,0.144711&z=13&iwloc=A Gordon Biersch Brewery and Restaurant].
 
 
 
 
 
-----------------------------------------------------------------------
 
 
 
== Boulder OWASP 2009 AGENDA ==
 
=== May 21, 2009 Cross site scripting Lab ===
 
Lab to explain how to attack vulnerable sites –we will use three different examples and
 
Spend  one half hour on each:  Basic attacks, intermediate and advanced.
 
Teacher TBA.
 
 
 
We will be using the OWASP Live CD and will have them available.
 
Must have laptop with CD player. 
 
Meeting will be at Staples:  One Environmental Way, Broomfield, Co. 80021
 
Brown bag or we can order pizza when everyone gets there.
 
6pm to 7pm dinner and Lab from 7pm to 8:30
 
Drinks at Gordon Biersch after the lab.  Topics up for discussion (we’ll choose one):
 
 
 
Black Hat DC researchers demonstrate new cross-site scripting browser hack that lets attackers retrieve data without a trace
 
 
 
[http://developers.slashdot.org/article.pl?sid=09/05/09/1339213 Should Developers Be Liable For Their Code?]
 
 
 
=== June 18, 2009 Part 2 Cross Site Scripting Lab – put it into practice – how to defend against Cross site scripting ===
 
We will defend against a basic attack, an intermediate and advanced.
 
Teacher TBA
 
Remember to bring your OWASP Live CD and your laptop with CD player.
 
Location will be at CSU in Fort Collins.  Directions will be forthcoming.
 
6:30 to 7pm Dinner (Brown Bag or we will all order pizza) Lab from 7pm to 9pm.
 
 
 
=== No meetings July or August 2009 === 
 
We will try to put up the sites that we are defending against in the June Lab so that you can have a go at them over the break.
 
 
 
=== September 17, 2009 Sql injection ===
 
We will be using SQL injection to attack using  authentication bypass, database enumeration, adding users through sql injection, Data mining, writing code
 
Teacher TBA
 
We will be using the OWASP Live CD and will have them available.
 
Must have laptop with CD player. 
 
Meeting will be at Staples:  One Environmental Way, Broomfield, Co. 80021
 
Brown bag or we can order pizza when everyone gets there.
 
6pm to 7pm dinner and Lab from 7pm to 8:30
 
Drinks at Gordon Biersch after the lab.  Topics up for discussion (TBA).
 
 
 
=== October, 22, 2009 Defense against sql injection – how to sanitize user input ===
 
Teacher TBA
 
We will be using the OWASP Live CD and will have them available.
 
Must have laptop with CD player. 
 
Meeting will be at Staples:  One Environmental Way, Broomfield, Co. 80021
 
Brown bag or we can order pizza when everyone gets there.
 
6pm to 7pm dinner and Lab from 7pm to 8:30
 
Drinks at Gordon Biersch after the lab.  Topics up for discussion (TBA).
 
 
 
=== November, 19, 2009 This Lab will put into action the SQL injection attack and the defense.  ===
 
We will be using the attacks from the September meeting and then defending against them.
 
We will be using the OWASP Live CD and will have them available.
 
Must have laptop with CD player. 
 
Meeting will be at Staples:  One Environmental Way, Broomfield, Co. 80021
 
Brown bag or we can order pizza when everyone gets there.
 
6pm to 7pm dinner and Lab from 7pm to 8:30
 
Drinks at Gordon Biersch after the lab.  Topics up for discussion (TBA).
 
 
 
 
 
=== December  - Date TBA  “Capture the Holiday flag” ===
 
We are planning on reserving space at a restaurant.  What better way to Capture the Flag than over a couple of beers?
 

Latest revision as of 06:15, 1 February 2018

Special Thanks

The continued sponsorship of Aerstone, Applied Trust, and Coalfire keep the chapter running strong. Thank you.

Aerstone Applied Trust Coalfire


OWASP Boulder

Welcome to the Boulder chapter homepage. The chapter leader is Mark Major.


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Chapter Organizers

Mark Major: Chapter President

Rob Jepson: Chapter Organizer
Tyler Bell: Chapter Organizer
Chris Campbell: Project Organizer

Additional meeting details may be found on MeetUp.com. Registration is not required to view meeting topics and locations, but it does help us order enough food.

Capture the Flag

SnowFROC CTF (2013) WaspNest CTF

Conferences

SnowFROC 2013

AppSec USA 2014

SnowFROC 2016

Code Brew

Attackerspace

Help Wanted!

We are always looking for new members, speakers, and sponsors.

Members

Speakers

Sponsors


Upcoming Events

Thursday Evenings: We typically (but not always) hold our chapter meetings on the third Thursday of the month. We meet in Lafayette, CO, just outside of Boulder. Newcomers are always welcome! Meeting details can be found on our MeetUp.com site. Please RSVP on that site as seating can fill up quickly.