This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Mumbai"

From OWASP
Jump to: navigation, search
(File Links)
 
(207 intermediate revisions by 10 users not shown)
Line 1: Line 1:
{{Chapter Template|chaptername=Mumbai|extra=The chapter leader is [mailto:[email protected] Steven Rebello]|mailinglistsite=http://lists.sourceforge.net/lists/listinfo/owasp-mumbai/}}
+
== OWASP Mumbai ==
  
== Local News ==
+
Welcome to the OWASP Mumbai chapter homepage. Current Chapter Leaders are Yash Roongta and Anantkumar Joshi. (More information about our leaders available below).
'''Minutes of Meeting - First Meeting - Saturday June 24th 2006 [09:30 - 12:00] '''
 
  
With the welcome address by Anuradha, the first meeting of Mumbai Chapter embarked. Right from giving a brief introduction about OWASP and its aim, Anuradha explained the focus of OWASP as a voluntary organization aiming at contributing to the knowledge as a part of sharing it. Apart from it, Anuradha briefed about OWASP Top 10 Project and OWASP Guide to building Secure Application.
+
[[File:OWASP Mumbai Logo YR.png|frameless|502x502px]]
  
Richard presented on Secure Coding Fundamentals and elucidated the Cost factor inculcated due to insecure code resulting in Network Cost, Productivity Cost and so on. Further explaining the basic reasons of threat to code, he explained how the mistakes done by the Programmers, I/O, API Abuse, Environment & Configuration and Time & State were responsible for Security flaws in an application. Moving ahead, Richard laid down a few principles to be followed as Secure Coding – General Guidelines for all the languages and specific Secure Coding Guidelines for C & C++, Java and .NET
+
== Participation ==
 +
OWASP Foundation ([https://docs.google.com/a/owasp.org/presentation/d/10wi1EWFCPZwCpkB6qZaBNN8mR2XfQs8sLxcj9SCsP6c/edit?usp=sharing Overview Slides]) is a professional association of [[Membership | global members]] and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the [[Chapter_Leader_Handbook]]. As a [[About_OWASP | 501(c)(3)]] non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button.  To be a <b>SPEAKER</b> at ANY OWASP Chapter in the world simply review the [[Speaker_Agreement | speaker agreement]] and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.
  
With Threat Analysis & Modeling Process, Dharmesh explained the steps followed as Threat Modeling Process starting from Defining Application Requirement, Application Architecture, and Modeling Threats looking at CIA feature of Security Basics. The aim covered to look towards gathering the information needed from application development teams in order to mock out the potential threats that are inherit in the software application they build starting from the very inception of the software birth.
+
== Sponsorship/Membership  ==
Giving the demonstration of Threat Analysis and Modeling Tool v2.0 with the basic example of its functionality, Dharmesh presented the Threat Modeling in real scenario.
 
  
Shalini and Runa explained how password can be lost or manipulated in a real life scenario and it dealt with the countermeasures to be taken to avoid it. The topics covered under it included Stealing Password using different methods as – Browser’s Refresh, Browser’s Memory, Remember feature, Forget Password feature and last but not the least SQL Injection. The role of Browser’s Viewing Tool available showed a clear picture of how password could be easily cracked.
+
'''Venue Sponsor:''' Network Intelligence India Pvt. Ltd.
  
----
+
[[File:Network intelligence-01.png|frameless|230x230px]]
  
'''Mumbai Chapter - First Meeting - Saturday June 24th 2006 [09:30 - 12:00] '''
 
  
Everyone is welcome to join us at our regular chapter meetings.
+
[[Image:Btn_donate_SM.gif|link=https://www.owasp.org/index.php/Local_Chapter_Supporter]] to this chapter or become a local chapter supporter.
 +
Or consider the value of [[Membership | Individual, Corporate, or Academic Supporter membership]]. Ready to become a member? [[Image:Join_Now_BlueIcon.JPG|75px|link=https://www.owasp.org/index.php/Membership]]
  
'''Time:''' 9:30 AM - 12:00 PM
+
[[Category:OWASP Chapter]]
 +
{{#if:{{{region|}}}|
 +
[[Category:{{{region}}}]]
 +
}}
  
If you have any items you want added to the agenda, post your ideas to our [https://lists.sourceforge.net/lists/listinfo/owasp-mumbai/ mailing list.]
+
== Become a Speaker  ==
  
If you would like to speak at the event or sponsor, contact [mailto:[email protected] Dharmesh M Mehta] before 20th June.
+
Submit your topic to us at the following google form: https://forms.gle/MaxcTgZddb76cb7k7
 +
<br>
 +
<br>
 +
= '''Announcements''' =
  
'''Current Agenda'''
+
=== Follow @OWASP_Mumbai for event updates on Twitter ===
----
 
'''''1.      09:30 - 09:45 Introduction to OWASP Mumbai '''
 
  
Anuradha Srinivasan, Software Engineer with Mastek, is working with the Application Security Assurance Team for the last 6 months. She has 2 and a half years of experience in Java development.  She is currently involved in conducting Security Assessments and trainings for projects across Mastek
+
'''[https://twitter.com/OWASP_Mumbai OWASP Mumbai Twitter Account]'''
  
'''''2.     09:45 - 10:30 Secure Coding Fundamentals '''''
+
=== Links for sharing and easy to remember Wiki Page - '''https://bit.ly/2SMBqDP''' ===
  
Richard Lewis, Security Consultant with TechMahindra, has 8 years of information security experience. Before joining Tech Mahindra, he was employed with Tata Consultancy Services (TCS). Richard currently works in the e-security consulting group of Tech Mahindra and is working on building a security fabric for secure software development. Richard has a programming background in C, C++ and MFC. A MS Windows guy, he has a flair for secure software development.
+
* OWASP Mumbai Meetup https://www.meetup.com/OWASP-Mumbai-Chapter/
 +
* OWASP Mumbai Discord Server https://discord.gg/PGsNnDJ
  
10:30 - 11:00 Food and Beverages
+
= '''Next Meeting''' =
  
'''''3.      11:00 - 11:30 Threat Modeling '''''
+
=== '''Sessions''' ===
  
Dharmesh M Mehta, Software Engineer with Mastek, has been with the Application Security Assurance Team for around 2 years. He is involved in conducting security assessments and conducting security workshops for the developer community. He is also a Certified Ethical Hacker.
+
'''OWASP Mumbai Meetup - 30th November 2019'''
  
'''''4.      11:30 - 12:00 5 ways to lose your user's password '''''
+
'''Session Details:'''
  
Shalini Gupta and Runa Dwibedi  are Associate Security Consultants in Paladion Networks. They are also authors of a monthly online magazine Palisade (focused on Application security). They will be speaking on the ways to lose a user’s password.
+
The motto of the OWASP community is to share the knowledge for cyber security, free of cost.
----
 
  
'''Venue and Sponsor Details:'''
+
Session Details:
  
[http://www.mastek.com Mastek Ltd].
+
Introduction to OWASP Mumbai Chapter.
  
Mastek Millennium Center,
+
Firmware Analysis by '''Pratik Chotaliya'''
A-7 Sec-I Millennium Business Park,
 
  
Mahape, Navi Mumbai - 400 710.
+
Report Writing in Cyber Security by '''Ashwini Varadkar'''
  
''Please contact [mailto:[email protected] Dharmesh M Mehta] before 23th June if you are attending the meeting.''
+
Attack (Si|Emulation) by '''Chirag Savla'''
  
 +
QnA, General Discussion and Feedback.
  
'''OWASP Moves to MediaWiki Portal - 11:23, 20 May 2006 (EDT)'''
+
RSVP Link: https://www.meetup.com/OWASP-Mumbai-Chapter/events/266683098/
  
OWASP is pleased to announce the arrival of OWASP 2.0!
+
Slides from the Meetup: [[:File:30th November 2019.zip|Download Here]]
  
OWASP 2.0 utilizes the MediaWiki portal to manage and provide
+
= '''Previous Meeting & Archives''' =
the latest OWASP related information. Enjoy!
+
 
 +
'''OWASP Mumbai Meetup - 19th October 2019'''
 +
 
 +
'''Session Details:'''
 +
 
 +
The motto of the OWASP community is to share the knowledge for cyber security, free of cost.
 +
 
 +
Session Details:
 +
 
 +
Introduction to OWASP Mumbai Chapter.
 +
 
 +
Field Updates with '''Anantkumar Joshi.'''
 +
 
 +
OWASP Top 10 (A1,A2,A3) by '''Rohan Rane.'''
 +
 
 +
OWASP Top 10 (A4,A5,A9) by '''Gurpreet Kaur.'''
 +
 
 +
OWASP Top 10 (A6,A7,A8,A10) by '''Himanshu Sharma.'''
 +
 
 +
Slides from the Meetup: [[:File:19th October 2019.zip|Download Here]]
 +
 
 +
 
 +
'''OWASP Mumbai Meetup - 31st August 2019'''
 +
 
 +
'''Session Details:'''
 +
 
 +
Introduction to OWASP Mumbai Chapter.
 +
 
 +
Secure Coding in Modern C++ by '''Adhokshaj Mishra'''
 +
 
 +
Follow us on Twitter: @OWASP_Mumbai
 +
 
 +
Slides from the Meetup & Sample Codes: [[:File:OWASP Mumbai Meetup - 31st August 2019.zip|Download Here]].
 +
 
 +
= '''Chapter Leaders'''=
 +
== Current Chapter Leaders ==
 +
 
 +
'''<br>'''
 +
=== Yash Roongta (2019 - Present) ===
 +
 
 +
Pentester / Auditor, learning and researching to be a Red Teamer. Been active in the InfoSec domain for close to 3.5 years.
 +
Eager to learn from everyone.
 +
When I am not researching / studying / learning. You can find me either watching Netflix, or on Dota2 with my friends.
 +
Favorite topics: Penetration Testing, Red Teaming, OSINT and Recon.
 +
 
 +
Blog:  https://acc3ssp0int.com <br>
 +
 +
 +
Twitter: [https://twitter.com/acc3ssp0int @acc3ssp0int]
 +
 
 +
=== '''Anantkumar Joshi (2019 - Present)''' ===
 +
Working in the field of Cyber Security from 3 years . Focus areas include AppSec and Source code review.
 +
Look forward to learning more about other areas in security
 +
Favorite topic: Web Application testing,Source Code Review.
 +
In my free time I enjoy reading books (Genre: psychological, mystery)
 +
 
 +
Twitter: [https://twitter.com/anantjoshi13 @anantjoshi13] <br>
 +
 +
 
 +
== Current Chapter volunteers  ==
 +
 
 +
=== Ashwini Varadkar (2019 - Present) ===
 +
 +
Been associated with cyber security for the past 5 years. An avid reader and a professional Kathak dancer, my experience in infosec revolves around technical writing, security assessments, stringent report reviews,and trainings.
 +
I believe, there is nothing more rewarding and fulfilling than being able to accomplish everything that your field of interest demands from you.
 +
Stay curious and give back to the community.
 +
 
 +
=== Himanshu Sharma (2019 - Present) ===
 +
 +
InfoSec fresher, loves learning and researching about infosec. "Hardcoder" (pun intended). Trying to learn from the infosec community
 +
Key interests include: Network Pentesting and Exploit development.
 +
 
 +
=== Vaibhav Koli (2019 - Present) ===
 +
 +
Working in the field of information security from last 3 years.
 +
Interesting areas are Web Application security, Red Teaming, APIs
 +
 
 +
<headertabs></headertabs>
 +
 
 +
[[Category:OWASP Chapter]]
 +
[[Category:India]]

Latest revision as of 17:24, 30 November 2019

OWASP Mumbai

Welcome to the OWASP Mumbai chapter homepage. Current Chapter Leaders are Yash Roongta and Anantkumar Joshi. (More information about our leaders available below).

OWASP Mumbai Logo YR.png

Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Venue Sponsor: Network Intelligence India Pvt. Ltd.

Network intelligence-01.png


Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Become a Speaker

Submit your topic to us at the following google form: https://forms.gle/MaxcTgZddb76cb7k7

Follow @OWASP_Mumbai for event updates on Twitter

OWASP Mumbai Twitter Account

Links for sharing and easy to remember Wiki Page - https://bit.ly/2SMBqDP

Sessions

OWASP Mumbai Meetup - 30th November 2019

Session Details:

The motto of the OWASP community is to share the knowledge for cyber security, free of cost.

Session Details:

Introduction to OWASP Mumbai Chapter.

Firmware Analysis by Pratik Chotaliya

Report Writing in Cyber Security by Ashwini Varadkar

Attack (Si|Emulation) by Chirag Savla

QnA, General Discussion and Feedback.

RSVP Link: https://www.meetup.com/OWASP-Mumbai-Chapter/events/266683098/

Slides from the Meetup: Download Here

OWASP Mumbai Meetup - 19th October 2019

Session Details:

The motto of the OWASP community is to share the knowledge for cyber security, free of cost.

Session Details:

Introduction to OWASP Mumbai Chapter.

Field Updates with Anantkumar Joshi.

OWASP Top 10 (A1,A2,A3) by Rohan Rane.

OWASP Top 10 (A4,A5,A9) by Gurpreet Kaur.

OWASP Top 10 (A6,A7,A8,A10) by Himanshu Sharma.

Slides from the Meetup: Download Here


OWASP Mumbai Meetup - 31st August 2019

Session Details:

Introduction to OWASP Mumbai Chapter.

Secure Coding in Modern C++ by Adhokshaj Mishra

Follow us on Twitter: @OWASP_Mumbai

Slides from the Meetup & Sample Codes: Download Here.

Current Chapter Leaders


Yash Roongta (2019 - Present)

Pentester / Auditor, learning and researching to be a Red Teamer. Been active in the InfoSec domain for close to 3.5 years. Eager to learn from everyone. When I am not researching / studying / learning. You can find me either watching Netflix, or on Dota2 with my friends. Favorite topics: Penetration Testing, Red Teaming, OSINT and Recon.

Blog: https://acc3ssp0int.com
Contact: [email protected]

Twitter: @acc3ssp0int

Anantkumar Joshi (2019 - Present)

Working in the field of Cyber Security from 3 years . Focus areas include AppSec and Source code review. Look forward to learning more about other areas in security Favorite topic: Web Application testing,Source Code Review. In my free time I enjoy reading books (Genre: psychological, mystery)

Twitter: @anantjoshi13
Contact: [email protected]

Current Chapter volunteers

Ashwini Varadkar (2019 - Present)

Been associated with cyber security for the past 5 years. An avid reader and a professional Kathak dancer, my experience in infosec revolves around technical writing, security assessments, stringent report reviews,and trainings. I believe, there is nothing more rewarding and fulfilling than being able to accomplish everything that your field of interest demands from you. Stay curious and give back to the community.

Himanshu Sharma (2019 - Present)

InfoSec fresher, loves learning and researching about infosec. "Hardcoder" (pun intended). Trying to learn from the infosec community Key interests include: Network Pentesting and Exploit development.

Vaibhav Koli (2019 - Present)

Working in the field of information security from last 3 years. Interesting areas are Web Application security, Red Teaming, APIs