|
|
Line 106: |
Line 106: |
| </table> | | </table> |
| | | |
− | ==Topics==
| |
− |
| |
− | The OWASP Days have always offered a forum for discussion and exchange of ideas among researchers and practitioners who present their experiences and discuss issues related to Web Application Security from a higher level to a technical point of view.
| |
− |
| |
− | Conference topics may include, but are not limited to:
| |
− |
| |
− | * OWASP Project Presentation (i.e Tool Updates/Project Status etc)
| |
− | * Threat modelling of web applications
| |
− | * Privacy Concerns with Applications and Data Storage
| |
− | * Vulnerability analysis of web applications (code review, pentest, static analysis, scanning)
| |
− | * Baseline or Metrics for Application Security
| |
− | * Countermeasures for web application vulnerabilities - secure coding practices
| |
− | * Web application security
| |
− | * Platform or language (e.g. Java, .NET) security features that help secure web applications
| |
− | * Secure application development
| |
− | * How to use databases securely in web applications
| |
− | * Security of Service Oriented Architectures
| |
− | * Access control in web applications
| |
− | * Web services security
| |
− | * Browser security
| |
− | * PCI
| |
− | * Risk management
| |
− | * Security concepts for C*Os, project managers and other non-technical attendees
| |
| | | |
| ==Conference Committee== | | ==Conference Committee== |