This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Atlanta Georgia"

From OWASP
Jump to: navigation, search
(March 2010 Meeting)
 
(208 intermediate revisions by 7 users not shown)
Line 1: Line 1:
{{Chapter Template|chaptername=Atlanta|extra= Get to know your chapter leaders in the tab below.
+
[[Image:OwaspAtl.png]]
 +
 
 +
{{Chapter Template|chaptername=Atlanta|extra=The chapter leader is [mailto:[email protected] Tony UcedaVelez]|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-Atlanta|emailarchives=http://lists.owasp.org/pipermail/owasp-Atlanta}}
  
[[Image:OwaspAtl.png]]
 
  
|mailinglistsite=http://lists.owasp.org/mailman/listinfo/owasp-atlanta|emailarchives=http://lists.owasp.org/pipermail/owasp-atlanta}}
+
[[Category:OWASP Chapter]]
  
==== '''Local News'''  ====
 
  
2009 was a great year aimed at re-generating some interest for the OWASP movement.  We hope to build on this in 2010 and need some help in doing so. If you have some extra cycles and would like to submit a proposal for speaking or hosting a workshop, please don't hesitate to contact us (see Chapter Leads tab below).  This year, we hope to see some new faces and would like to get the year started by talking about the new OWASP Top Ten and how to apply them within your application development, testing, or assessment efforts.  
+
== '''Join OWASP ATL via our Meetup Group''==
  
On behalf of the chapter, I would like to solicit your financial support of chapter via a tax deductible membership for a great non-profit organization which aims to elevate web application security. Please note that other chapters have the luxury to charge their members for attending some of their meetings. We hope that you find historical and future meetings to be of value and show support via a member based contribution. To contribute to OWASP-Atlanta, go here: <paypal>Atlanta Georgia</paypal>
+
From Jan 2012, we have moved to a [http://www.meetup.com/OWASP-Atlanta/ Meetup group]. MeetUp.com will replace the traditional subscriber email list eventually (referenced above in the top of this page).  It allows us to better communicate with members, RSVP for events, and announce meetings - all in one place. Click on the following link to visit our meetup page and signup.
  
== '''Latest News''' ==
+
[http://www.meetup.com/OWASP-Atlanta/?a=shareimg http://img.meetup.com/img/logo_82.png]
  
Our next meeting is on March 24th, 2010 which will be a panel on '''Static & Dynamic Analysis for Web Applications'''. Panel members include '''Cris Eng''' (Veracode), '''Jeremiah Grossman''' (WhiteHat Security), '''Greg Wolford''' (Fortify) and '''Matt Wood''' (HP Web Security). Please check the '''Chapter Meetings''' tab for more information.
+
== '''Atlanta Georgia OWASP Chapter Leaders''' ==
  
== '''Staying in Touch''' ==
+
<ul>
 +
<li>[http://www.owasp.org/index.php/User:Versprite Tony UcedaVelez] - Chapter Leader </li>
 +
<li>[mailto:[email protected] Andrew Hamilton] - Chapter Lead</li>
 +
<li>[mailto:[email protected] Zakiya Bailey]- Chapter Lead</li>
 +
</ul>
  
<!-- '''New IRC channel on EFnet called #owasp-atlanta''' Join us, everyday, all-day in our IRC channel for questions, answers, and discussions. -->
 
  
'''New OWASP Atlanta Linkedin Group.''' For those addicted to LinkedIn, we have a group you can further feed your addiction. The OWASP Atlanta Chapter. http://www.linkedin.com/groups?home=&amp;gid=1811960&amp;trk=anet_ug_hm
+
<!--
 +
== Latest News ==
 +
So we have hit a bit of a lull over the past two months as you can probably tell. August meeting was really low attendance and September was a non-event since I largely have been out of town and so have a lot of the other co-leads.  Nonetheless, get ready to resume meetings. Next one is Dec 15th at the Tilted Kilt @ Cumberland. Make a note and check out details in the Chapter Meetings page above.  
  
Register for the OWASP Atlanta Mailing List by signing up here: http://lists.owasp.org/mailman/listinfo/owasp-atlanta
+
FYI - We are trying to reach out to more developers, quality assurance engineers, and software architects so if you have colleagues in those areas, please invite them to come. For next meeting information, please visit the Chapter Meetings tab and RSVP in the link provided.
  
 +
== Staying in Touch ==
 +
There is an OWASP Atlanta Linkedin Group. For those addicted to LinkedIn, we have a group you can further feed your addiction. The OWASP Atlanta Chapter. http://www.linkedin.com/groups?home=&amp;gid=1811960&amp;trk=anet_ug_hm
 
<br>
 
<br>
  
== '''OWASP Atlanta Supporters'''  ==
 
  
Thanks to the following list of official sponsors and supportive organizations for their financial contributions and resource support.  
+
The Atlanta mailing list provides a low volume update to monthly events and also allows for members to post questions related to challenges in using and adopting OWASP related material/ tools. To join the Atlanta Mailing List, please sign up here: http://lists.owasp.org/mailman/listinfo/owasp-Atlanta
 +
 
 +
-->
 +
 
 +
== '''Becoming a Member or Sponsor''' ==
 +
On behalf of the entire organization, I would like to solicit your financial support of our chapter via a tax deductible membership for OWASP as a great non-profit organization which aims to elevate web application security. We hope that you find historical and future meetings to be of value and show support via a member based contribution.
 +
 
 +
To contribute to OWASP-Atlanta, sign up as an individual member, or support us as a corporate sponsor, please visit: http://www.owasp.org/index.php/Membership. If you are already a member, please don't forget to renew your membership!!  The same link will serve both purposes.
 +
 
 +
 
 +
== '''Chapter Meetings''' ==
 +
Please check http://www.meetup.com/OWASP-Atlanta/events/ for a list of upcoming future meetings.
 +
 
 +
----
 +
Before our migration to the above mentioned meetup.com site, we have the following historic meeting archives.
 +
 
 +
[http://www.meetup.com/OWASP-Atlanta/events/94108492/ Dec 2012 - Building a Secure SDLC w/ OWASP Projects]
 +
 
 +
[http://www.meetup.com/OWASP-Atlanta/events/88009182/ Nov 2012 - Web Security CTF (primer)]
 +
 
 +
[http://www.meetup.com/OWASP-Atlanta/events/90863212/ AppSec for CISOs Breakfast]
 +
 
 +
[http://www.meetup.com/OWASP-Atlanta/events/88192022/ 2012 Metro Atlanta ISSA Conference]
 +
 
 +
[http://www.meetup.com/OWASP-Atlanta/events/87110162/ Oct 2012 - Security Testing Techniques]
 +
 
 +
[http://www.meetup.com/OWASP-Atlanta/events/77080162/ Sep 2012 - Social Networks & Fake Accounts: New Heaven for Spammers & Attackers]
  
*Georgia Tech Information Security Center: [[Image:GTISC logo2.jpg]]
+
[http://www.meetup.com/OWASP-Atlanta/events/77588622/ August 2012 - HD Moore presents 'The Long Tail of Security']
*Fortify: [[Image:Fortify.jpg]]
 
  
== 2009 OWASP Atlanta Member Survey  ==
+
[http://www.meetup.com/OWASP-Atlanta/events/71686572/ July 2012 - HTML5 Security: A Beautiful Disaster]
  
The Atlanta OWASP Member Survey has come and gone. Thanks to all those that responded. A subset of the results is shown below in the form of top ranking security topics that members wish to see in 2009. More detailed results will be provided and discussed briefly during our first meeting, April 2nd, 2009. [[Image:Owasp surv.jpg]]  
+
[http://www.meetup.com/OWASP-Atlanta/events/60876802/ June 2012 - Is There An End to Testing Ourselves Secure?]
  
<br>
+
[http://www.meetup.com/OWASP-Atlanta/events/64176042/ May 2012 - Attack Chaining: Advanced Maneuvers for Hack Fu ]
  
==== Chapter Meetings  ====
+
[http://www.meetup.com/OWASP-Atlanta/events/50563772/ April 2012 - Practical Android Security (Jack Mannino, nVisium Security)]
  
== '''Future Meetings''' ==
+
[http://www.meetup.com/OWASP-Atlanta/events/54085342/ March 2012 - Trustwave 2012 Global Security Report - Trustwave]
  
===March 2010 Meeting===
+
[http://www.meetup.com/OWASP-Atlanta/events/45830712/ February 2012 - Scanning Web2.0 – web applications aren’t web sites anymore (Kiril Mendelev, HP)]
  
'''WHAT::''' Static & Dynamic Analysis for Web Applications (Panel Discussion)
+
[http://www.meetup.com/OWASP-Atlanta/events/45830712/ January 2012 - Ninja Assessments: Stealth Security Testing for Organizations (Kevin Johnson, SamuraiWTF)]
  
'''WHEN::''' March 24, 2010 6-8pm
+
== Old meeting pages (before 2012) ==
  
'''WHERE::''' Room 1116-E , Klaus Advanced Computing Building, Georgia Tech :: [http://www.cc.gatech.edu/inside/facilities/klaus Web] :: [http://maps.google.com/maps?f=q&source=s_q&hl=en&geocode=&q=266+Ferst+Dr,+Atlanta,+GA&sll=33.781858,-84.39414&sspn=0.065632,0.132093&ie=UTF8&hq=&hnear=266+Ferst+Dr+NW,+Atlanta,+Fulton,+Georgia+30313&z=17&iwloc=A Google Maps] ::
+
[[Atlanta Member Meeting 12.15.11 | December 2011 - Preventing Data Breaches using Provenance-aware Firewalls (Anirudh Ramachandran, Nouvou Inc) ]]
*Parking spots: [http://www.parking.gatech.edu/info/1_maps__schedules/1_parking_areas.php Parking Map] - Physics building (Area 4)
 
*Campus Bus: [http://parking.gatech.edu/transportation/1_Campus_Transit/2_tech_trolley_route/ Tech trolley] runs between Midtown Marta and the venue
 
  
'''WHO::''' Moderator: Tony UV (Chapter Lead). Panel members include '''Cris Eng''' (Veracode), '''Jeremiah Grossman''' (WhiteHat Security), '''Russell Spitler''' (Fortify), '''Greg Wolford''' (Fortify) and '''Matt Wood''' (HP Web Security)
+
[[Atlanta Member Meeting 11.17.11 | November 2011 - HowTo Talk on Assessing Mobile Apps ]]
  
'''ABSTRACT:: ''' This meeting format will be in the form of a panel discussion that we hope all of you can not only attend but participate as well. Our chapter lead Tony UV be moderating the event and in preparation for doing so, we would like to get some good group think going around the topics to be discussed. Specifically, the focus of the topic is a comprehensive look at both static and dynamic analysis of web applications, which will encompass current trends, lessons learned from the trenches, myths and misconceptions, success stories, and more from our panel of experts.
+
[[Atlanta Member Meeting 10.27.11 | October 2011 - Fuzzin' w/ JBroFuzz (Tony UV) ]]
  
In preparation for this meeting we ask that ALL members supply any questions that you would like the panel of experts to answer. We’ll provide responses of this Q&A online after the event.
+
[[Atlanta Member Meeting 08.18.11 | August 2011 - Mobile Security for the Enterprise (Billy Graham) ]]
  
BIOs::
+
[[Atlanta Member Meeting 05.25.11 | May 2011 - Don't Teach Your Developers Security (Caleb Sima, Armorize) ]]
  
*'''Chris Eng''', Senior Director of Research at Veracode, is responsible for integrating security expertise into Veracode’s technology and helping to define and prioritize the security feature set of Veracode’s service offerings. His professional experience includes stints at Symantec, @stake, and the US Department of Defense, where he specialized in security assessments and offensive research. Chris has presented at security conferences such as the Black Hat Briefings and OWASP AppSec and has been quoted as a subject matter expert in various industry publications.  Chris, along with experts from more than 30 US and international cyber security organizations, helped develop the CWE/SANS Top 25 Most Dangerous Programming Errors.
+
[[Atlanta Member Meeting 04.21.11 | Apr 2011 - Demystifying WAFs (members from Imperva, Accuvant, WhiteHat Security Presenting) ]]
  
*'''Jeremiah Grossman''' founder and chief technology officer of WhiteHat Security, is a world-renowned expert in web application security and a founding member of the Web Application Security Consortium (WASC). At WhiteHat, Mr. Grossman is responsible for web application security R&D and industry evangelism. He is a frequent speaker at industry events including the BlackHat Briefings, ISACA's Networks Security Conference, NASA, ISSA and Defcon. A trusted media resource, Mr. Grossman has been featured in USA Today, the Washington Post, Information Week, NBC Nightly News, and many others. Mr. Grossman is also a featured expert and frequent contributor on TechTarget's SearchAppSecurity.com. Prior to WhiteHat, Mr. Grossman was an information security officer at Yahoo!
+
[[Atlanta Member Meeting 03.17.11 | Mar 2011 - Online Privacy (Samy Kamkar) ]]
  
*'''Russell Spitler''' started his career in software security at Colby College. For his honors thesis he developed a static analysis engine embedded in the eclipse IDE. Shortly after his graduation he started at Fortify Software.  At Fortify he initially continued his work with Integrated Development Environments, developing security specific plug-ins for Eclipse and Visual Studio.  In addition, he developed an IDE specifically crafted for the security professional: Fortify's Audit Workbench.  Russell then acted as lead designer and architect of Fortify's central software security management platform: 360 Server.  His experience developing security solutions for all aspects of security programs uniquely positioned him to design and implement the SSA Governance module, an element critical to the successful large scale management of Secure Development programs.  Recently Russell has been acting as the Product Manager of the Fortify 360 Suite.  During his tenure he has acted as advisor to more than 500 successful deployments of the software and is often a key reference in the design of software security initiatives.  In his free time he enjoys skiing, riding motorcycles and drinking whiskey.
+
[[Atlanta Member Meeting 02.28.11 | Feb 2011 - Separated by a Common Language (Business-Geek Communication) ]]
  
*'''Greg Wolford'''  is a seasoned expert in Agile methodologies, .NET, Java, EAI, SOA, and other SDLC methodologies and is currently a Software Security Consultant at Fortify software.
+
[[Atlanta Member Meeting 01.27.11 | Jan 2011 - OWASP Tool Medley (Tony UV]]
  
*'''Matt Wood''' is the lead security researcher in HP’s Web Security Research Group. Matt has led the development of both HP Scrawlr and HP SWFScan, which are free security tools designed to help organizations find SQL injection and Adobe Flash security vulnerabilities, respectively. Beyond making sweet free tools, he has also given numerous presentations at major security conferences including BlackHat and RSA. Matt currently is focusing his research on client-side static analysis and using AI to help security practitioners audit complex Ajax/RIA applications.
+
[[Atlanta Member Meeting 12.16.10 | Dec 2010 - December Social Event]]
  
 +
[[Atlanta Member Meeting 10.13.10 | Oct 2010 - Rapid Development of Web Security Tools using SpiderSense]]
  
'''RSVP::''' http://tr.im/owasp_meeting
+
[[Atlanta Member Meeting 09.15.10 | Sep 2010 - Search Engine Hacking]]
  
'''''COST''''': No costs, but all donations will be accepted as it helps pay for meeting related materials and provisions. Best way to support the chapter is to become a member.
+
[[Atlanta Member Meeting 08.12.10 | Aug 2010 - OWASP Guided Tour & Using the O2 Platform]]
  
----
+
[[Atlanta Member Meeting 06.26.10 | Jun 2010 - Security Six Flags Outing]]
 +
 
 +
[[Atlanta Member Meeting 05.24.10 | May 2010 - Clubbing WebApps with Botnets]]
 +
 
 +
[[Atlanta Member Meeting 03.24.10 | Mar 2010 - Panel on Static & Dynamic Analysis for Web Apps]]
  
== Past Meetings  ==
 
 
[[Atlanta Member Meeting 02.25.10 | Feb 2010 - Embedded Malicious JavaScript]]
 
[[Atlanta Member Meeting 02.25.10 | Feb 2010 - Embedded Malicious JavaScript]]
  
 
[[Atlanta Member Meeting 02.15.10 | Feb 2010 - DNS Security]]
 
[[Atlanta Member Meeting 02.15.10 | Feb 2010 - DNS Security]]
  
[[Atlanta Member Meeting 01.29.10 | Jan 2010 - Owasp Top 10]]
+
[[Atlanta Member Meeting 01.29.10 | Jan 2010 - Owasp Top 10 (Tony UV)]]
  
 
[[Atlanta Member Meeting 10.13.09 | Oct 2009 - Security Religions & Risk Windows (Jeremiah Grossman)]]  
 
[[Atlanta Member Meeting 10.13.09 | Oct 2009 - Security Religions & Risk Windows (Jeremiah Grossman)]]  
  
[[Atlanta Member Meeting 09.15.09 | Sept 2009 - Securing WebServices]]  
+
[[Atlanta Member Meeting 09.15.09 | Sept 2009 - Securing WebServices (Tony UV)]]  
  
 
[[Atlanta Member Meeting 08.17.09 | Aug 2009 - ISSA Event]]  
 
[[Atlanta Member Meeting 08.17.09 | Aug 2009 - ISSA Event]]  
Line 120: Line 153:
 
[[June 2005]]  
 
[[June 2005]]  
  
==== Atlanta Georgia OWASP Chapter Leaders  ====
 
 
*Tony UcedaVelez - Chapter Lead
 
*Charles Burke - Meeting Chairperson
 
*Shauvik Roy Choudhary - Marketing Chairperson __NOTOC__ <headertabs />
 
  
 +
[[Category:OWASP Chapter]]
 +
[[Category:United States]]
 
[[Category:Georgia]]
 
[[Category:Georgia]]

Latest revision as of 19:55, 25 January 2017

OwaspAtl.png


OWASP Atlanta

Welcome to the Atlanta chapter homepage. The chapter leader is Tony UcedaVelez


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Join OWASP ATL via our Meetup Group

From Jan 2012, we have moved to a Meetup group. MeetUp.com will replace the traditional subscriber email list eventually (referenced above in the top of this page). It allows us to better communicate with members, RSVP for events, and announce meetings - all in one place. Click on the following link to visit our meetup page and signup.

logo_82.png

Atlanta Georgia OWASP Chapter Leaders


Becoming a Member or Sponsor

On behalf of the entire organization, I would like to solicit your financial support of our chapter via a tax deductible membership for OWASP as a great non-profit organization which aims to elevate web application security. We hope that you find historical and future meetings to be of value and show support via a member based contribution.

To contribute to OWASP-Atlanta, sign up as an individual member, or support us as a corporate sponsor, please visit: http://www.owasp.org/index.php/Membership. If you are already a member, please don't forget to renew your membership!! The same link will serve both purposes.


Chapter Meetings

Please check http://www.meetup.com/OWASP-Atlanta/events/ for a list of upcoming future meetings.


Before our migration to the above mentioned meetup.com site, we have the following historic meeting archives.

Dec 2012 - Building a Secure SDLC w/ OWASP Projects

Nov 2012 - Web Security CTF (primer)

AppSec for CISOs Breakfast

2012 Metro Atlanta ISSA Conference

Oct 2012 - Security Testing Techniques

Sep 2012 - Social Networks & Fake Accounts: New Heaven for Spammers & Attackers

August 2012 - HD Moore presents 'The Long Tail of Security'

July 2012 - HTML5 Security: A Beautiful Disaster

June 2012 - Is There An End to Testing Ourselves Secure?

May 2012 - Attack Chaining: Advanced Maneuvers for Hack Fu

April 2012 - Practical Android Security (Jack Mannino, nVisium Security)

March 2012 - Trustwave 2012 Global Security Report - Trustwave

February 2012 - Scanning Web2.0 – web applications aren’t web sites anymore (Kiril Mendelev, HP)

January 2012 - Ninja Assessments: Stealth Security Testing for Organizations (Kevin Johnson, SamuraiWTF)

Old meeting pages (before 2012)

December 2011 - Preventing Data Breaches using Provenance-aware Firewalls (Anirudh Ramachandran, Nouvou Inc)

November 2011 - HowTo Talk on Assessing Mobile Apps

October 2011 - Fuzzin' w/ JBroFuzz (Tony UV)

August 2011 - Mobile Security for the Enterprise (Billy Graham)

May 2011 - Don't Teach Your Developers Security (Caleb Sima, Armorize)

Apr 2011 - Demystifying WAFs (members from Imperva, Accuvant, WhiteHat Security Presenting)

Mar 2011 - Online Privacy (Samy Kamkar)

Feb 2011 - Separated by a Common Language (Business-Geek Communication)

Jan 2011 - OWASP Tool Medley (Tony UV

Dec 2010 - December Social Event

Oct 2010 - Rapid Development of Web Security Tools using SpiderSense

Sep 2010 - Search Engine Hacking

Aug 2010 - OWASP Guided Tour & Using the O2 Platform

Jun 2010 - Security Six Flags Outing

May 2010 - Clubbing WebApps with Botnets

Mar 2010 - Panel on Static & Dynamic Analysis for Web Apps

Feb 2010 - Embedded Malicious JavaScript

Feb 2010 - DNS Security

Jan 2010 - Owasp Top 10 (Tony UV)

Oct 2009 - Security Religions & Risk Windows (Jeremiah Grossman)

Sept 2009 - Securing WebServices (Tony UV)

Aug 2009 - ISSA Event

June 2009 - OWASP LIVE CD Workshop

Apr 2009 - Filter Evasion Techniques (Workshop)

Apr 2009 - Chapter Rebirth meeting

Atlanta ISACA OWASP Meeting 03.27.09

Atlanta Leadership Meeting 03.05.09

Atlanta Leadership Meeting 02.26.09

Atlanta OWASP May 2007 Meeting

Atlanta OWASP December 06 Social

Atlanta OWASP April Meeting

Chapter Meeting March 29th 2006

October 26th Meeting

April 27th, Chapter meeting a SUCCESS!

March 30th, 2005

February Meeting

June 2005