This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "OWASP New Zealand Day 2017"
From OWASP
Kim Carter (talk | contribs) (→Conference structure) (Tag: Visual edit) |
Kim Carter (talk | contribs) |
||
Line 417: | Line 417: | ||
<table width="100%"> | <table width="100%"> | ||
<tr> | <tr> | ||
− | <td width="5%" valign="top">08:30</td> | + | <td width="5%" valign="top" align="right">08:30</td> |
− | <td colspan=" | + | <td colspan="3" style="background-color: #8595C2; text-align: center">Registration Opens</td> |
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">09:30</td> | + | <td width="7%" valign="top" align="right">09:30</td> |
− | <td colspan=" | + | <td colspan="3" style="background-color: #B9C2DC; text-align: center"> |
<b>Welcome to OWASP New Zealand Day 2017</b><br /> | <b>Welcome to OWASP New Zealand Day 2017</b><br /> | ||
<i>Lech Janczewski (Associate Professor), Kirk Jackson, Denis Andzakovic and [https://binarymist.io Kim Carter] (OWASP Leaders)</i> | <i>Lech Janczewski (Associate Professor), Kirk Jackson, Denis Andzakovic and [https://binarymist.io Kim Carter] (OWASP Leaders)</i> | ||
− | |||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">09:45</td> | + | <td width="7%" valign="top" align="right">09:45</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>OWASP Top 10 Review & Preview</b><br /> | <b>OWASP Top 10 Review & Preview</b><br /> | ||
<i>Kevin Alcock - Katipo Information Security</i> | <i>Kevin Alcock - Katipo Information Security</i> | ||
</td> | </td> | ||
− | <td | + | <td width="7%" valign="top" align="right">09:45</td> |
+ | <td style="background-color: #EEE; text-align: center"> | ||
<b>Gaslighting with Honeypits and Mirages</b><br /> | <b>Gaslighting with Honeypits and Mirages</b><br /> | ||
<i>Kate Pearce - Cisco</i> | <i>Kate Pearce - Cisco</i> | ||
Line 440: | Line 440: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">10:20</td> | + | <td width="7%" valign="top" align="right">10:20</td> |
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Developer's guide to preventing XSS</b><br /> | <b>Developer's guide to preventing XSS</b><br /> | ||
<i>Felix Shi - Xero</i> | <i>Felix Shi - Xero</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">10:20</td> | ||
+ | <td style="background-color: #B9C2DC; text-align: center"> | ||
+ | <b>The Magical World of Cloud Security</b><br /> | ||
+ | <i>Erica Anderson</i> | ||
+ | </td> | ||
+ | |||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">10:55</td> | + | <td width="7%" valign="top" align="right">10:55</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>The dangerous, exquisite art of safely handling user-uploaded files</b><br /> | <b>The dangerous, exquisite art of safely handling user-uploaded files</b><br /> | ||
<i>Tom Eastman</i> | <i>Tom Eastman</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">10:55</td> | ||
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>How to spot and stop a wolf in sheep's clothing (a.k.a Account Takeover)</b><br /> | <b>How to spot and stop a wolf in sheep's clothing (a.k.a Account Takeover)</b><br /> | ||
Line 458: | Line 465: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">11:30</td> | + | <td width="7%" valign="top" align="right">11:30</td> |
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Building the ultimate login and signup</b><br /> | <b>Building the ultimate login and signup</b><br /> | ||
<i>Matt Cotterell - Fairfax Media</i> | <i>Matt Cotterell - Fairfax Media</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">11:30</td> | ||
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Security on a shoestring - running a security critical service as a volunteer</b><br /> | <b>Security on a shoestring - running a security critical service as a volunteer</b><br /> | ||
Line 469: | Line 477: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">12:05</td> | + | <td width="7%" valign="top" align="right">12:05</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>XML: Still Considered Dangerous</b><br /> | <b>XML: Still Considered Dangerous</b><br /> | ||
<i>Adam Bell - Lateral Security</i> | <i>Adam Bell - Lateral Security</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">12:05</td> | ||
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>Confession of a lactose intolerant vulnerability hunter</b><br /> | <b>Confession of a lactose intolerant vulnerability hunter</b><br /> | ||
Line 480: | Line 489: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">12:35</td> | + | <td width="7%" valign="top" align="right">12:35</td> |
− | <td colspan=" | + | <td colspan="3" style="background-color: #D98B66; text-align: center"> |
<b>Break for Lunch</b><br /> | <b>Break for Lunch</b><br /> | ||
</td> | </td> | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">14:00</td> | + | <td width="7%" valign="top" align="right">14:00</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>Sensible defaults for client-side security</b><br /> | <b>Sensible defaults for client-side security</b><br /> | ||
<i>Jen Zajac - Catalyst</i> | <i>Jen Zajac - Catalyst</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">14:00</td> | ||
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>Huzzer, the tree-based generational mutating HTTP fuzzer</b><br /> | <b>Huzzer, the tree-based generational mutating HTTP fuzzer</b><br /> | ||
<i>Matthew Daley - Aura Information Security</i> | <i>Matthew Daley - Aura Information Security</i> | ||
</td> | </td> | ||
− | + | </tr> | |
<tr> | <tr> | ||
− | <td width="7%" valign="top">14:30</td> | + | <td width="7%" valign="top" align="right">14:30</td> |
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Changing Perspectives</b><br /> | <b>Changing Perspectives</b><br /> | ||
<i>Shahn Harris - Equifax</i> | <i>Shahn Harris - Equifax</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">14:30</td> | ||
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Root Cause is the Best Cause</b><br /> | <b>Root Cause is the Best Cause</b><br /> | ||
Line 508: | Line 519: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">15:15</td> | + | <td width="7%" valign="top" align="right">15:15</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>30 Days (ish) of Security</b><br /> | <b>30 Days (ish) of Security</b><br /> | ||
<i>Grace Nolan and Catherine McIlvride</i> | <i>Grace Nolan and Catherine McIlvride</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">15:15</td> | ||
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>From JSONP to XSS persistence</b><br /> | <b>From JSONP to XSS persistence</b><br /> | ||
Line 519: | Line 531: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">15:30</td> | + | <td width="7%" valign="top" align="right">15:30</td> |
− | <td colspan=" | + | <td colspan="3" style="background-color: #D98B66; text-align: center"> |
<b>Break for Afternoon Tea</b><br /> | <b>Break for Afternoon Tea</b><br /> | ||
</td> | </td> | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">16:00</td> | + | <td width="7%" valign="top" align="right">16:00</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>So we broke all CSPs... You won't guess what happened next!</b><br /> | <b>So we broke all CSPs... You won't guess what happened next!</b><br /> | ||
<i>Lukas Weichselbaum & Michele Spagnuolo - Google Switzerland</i> | <i>Lukas Weichselbaum & Michele Spagnuolo - Google Switzerland</i> | ||
</td> | </td> | ||
+ | <td width="7%" valign="top" align="right">16:00</td> | ||
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>AppSec in a DevOps World</b><br /> | <b>AppSec in a DevOps World</b><br /> | ||
Line 536: | Line 549: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">16:45</td> | + | <td width="7%" valign="top" align="right">16:45</td> |
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Hacking the Talent Pipeline</b><br /> | <b>Hacking the Talent Pipeline</b><br /> | ||
<i>Ruth McDavitt - Summer of Tech</i> | <i>Ruth McDavitt - Summer of Tech</i> | ||
</td> | </td> | ||
− | <td | + | <td width="7%" valign="top" align="right">16:30</td> |
+ | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Trust me, I'm a cloud</b><br /> | <b>Trust me, I'm a cloud</b><br /> | ||
<i>Sam Macleod - SafeStack</i> | <i>Sam Macleod - SafeStack</i> | ||
Line 547: | Line 561: | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">17:00</td> | + | <td width="7%" valign="top" align="right">17:00</td> |
<td style="background-color: #EEE; text-align: center"> | <td style="background-color: #EEE; text-align: center"> | ||
<b>Conscious Incompetence: Started from the bottom, now we're here</b><br /> | <b>Conscious Incompetence: Started from the bottom, now we're here</b><br /> | ||
<i>Charlie Gavey - Snapper Services</i> | <i>Charlie Gavey - Snapper Services</i> | ||
</td> | </td> | ||
+ | <td colspan="2"> </td> | ||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">17:15</td> | + | <td width="7%" valign="top" align="right">17:15</td> |
<td style="background-color: #B9C2DC; text-align: center"> | <td style="background-color: #B9C2DC; text-align: center"> | ||
<b>Graphing when your Facebook friends are awake</b><br /> | <b>Graphing when your Facebook friends are awake</b><br /> | ||
<i>Alex Hogue - Atlassian</i> | <i>Alex Hogue - Atlassian</i> | ||
</td> | </td> | ||
− | <td | + | <td colspan="2"> </td> |
− | |||
− | |||
− | |||
</tr> | </tr> | ||
<tr> | <tr> | ||
− | <td width="7%" valign="top">17:45</td> | + | <td width="7%" valign="top" align="right">17:45</td> |
− | <td | + | <td style="background-color: #EEE; text-align: center"> |
<b>Wrap Up</b><br /> | <b>Wrap Up</b><br /> | ||
<i>Time for the pub, for those interested</i> | <i>Time for the pub, for those interested</i> | ||
</td> | </td> | ||
+ | <td colspan="2"> </td> | ||
</tr> | </tr> | ||
</table> | </table> |