|
|
| Line 53: |
Line 53: |
| | (Room 3) | | (Room 3) |
| | |- | | |- |
| − | | style="background:#7B8ABD" | 12:35-14:00 || colspan="2" style="background:#C2C2C2" align="center" | Lunch - Expo - CTF | + | | style="background:#7B8ABD" | 14:45 || colspan="4" style="background:#C2C2C2" align="center" | Lunch During Working Sessions |
| − | |-
| |
| − | | style="background:#7B8ABD" | TRACKS || style="background:#c0e0e0 " align=left" | '''Track 3: Cutting Edge Tools'''
| |
| − | | style="background:#B3FF99 " align=left" | '''Track 4: Security Guidance and Knowledge'''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 14:00-14:15 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Access_Control_Rules_Tester_Project '''OWASP Access Control Rules Tester Project (SoC 08)''']
| |
| − | ''Andrew Petukhov''
| |
| − | | style="background:#B3FF99 " align=left" | [http://www.owasp.org/index.php/Classic_ASP_Security_Project '''OWASP Classic ASP Security Project (SoC 08)''']
| |
| − | ''Juan Carlos Calderon''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 14:20-14:35 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Skavenger_Project '''OWASP Skavenger Project (SoC 08)''']
| |
| − | ''Matthias Rohr''
| |
| − | | rowspan="2" style="background:#B3FF99 " align=left" | [[:OWASP Working Session - .NET Project|'''OWASP .NET Project (SoC 08 & Working Session)''']]
| |
| − | ''Mark Roxberry''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 14:40-14:55 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_JSP_Testing_Tool_Project '''OWASP JSP Testing Tool (SoC 08)''']
| |
| − | ''Jason Li''
| |
| | |- | | |- |
| − | | style="background:#7B8ABD" | 15:00-15:15 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/OWASP_WebScarab_NG_Project '''WebScarab-NG (SoC 08)'''] | + | | style="background:#7B8ABD" | 15:00 || colspan="4" style="background:#C2C2C2" align="center" | Training Sessions |
| − | ''Rogan Dawes''
| |
| − | | style="background:#B3FF99 " align=left" | ''Pending''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 15:20-15:35 || style="background:#c0e0e0 " align=left" | [https://www.owasp.org/index.php/Category:OWASP_Webslayer_Project''' OWASP Webslayer Project''']
| |
| − | ''Christian Martorella''
| |
| − | | rowspan="2" style="background:#B3FF99 " align=left" | [[:OWASP Working Session - Code Review Guide|'''OWASP Code Review Guide (SoC 08 & Working Session)''']]
| |
| − | '' Eoin Keary ''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 15:40-15:55 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Live_CD_2008_Project '''OWASP Live CD 2008 (SoC 08)''']
| |
| − | ''Matt Tesauro''
| |
| | |- | | |- |
| − | | style="background:#7B8ABD" | 16:00-16:15 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Teachable_Static_Analysis_Workbench_Project '''OWASP Teachable Static Analysis Workbench (SoC 08)''']
| + | | style="background:#7B8ABD" | 15:00|| style="background:#FFDF80" align="center" | Flash Player Security |
| − | ''Dmitry Kozlov''
| + | Peleus Uhley |
| − | | style="background:#B3FF99 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Backend_Security_Project '''OWASP Backend Security Project (SoC 08)''']
| + | (Room 1) |
| − | ''Carlo Pelliccioni ''
| + | | style="background:#A0C0E0" align="center" | OWASP Top 10 |
| − | |-
| + | Sebastien Deleersnyder and Martin Knobloch |
| − | | style="background:#7B8ABD" | 16:20-16:35 || style="background:#c0e0e0 " align=left" |[https://www.owasp.org/index.php/Category:OWASP_Code_Crawler '''OWASP Code Crawler (SoC 08)''']
| + | (Room 2) |
| − | ''Alessio Marziali''
| + | | style="background:#7B8ABD" align="center" | Uncovering WebScarab's Secret Treasures |
| − | | rowspan="2" style="background:#B3FF99 " align=left" |[[OWASP Working Session - OWASP ASDR|'''OWASP Application Security Desk Reference (ASDR) (SoC 08 & Working Session)''']]
| + | Rogan Dawes |
| − | ''Leonardo Cavallari Militelli''
| + | (Sala Bella Vista) |
| − | |-
| + | | style="background:#A0C0E0" align="center" | Hacking OWASP Orizon |
| − | | style="background:#7B8ABD" | 16:40-16:55 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Orizon_Project '''OWASP Orizon Project (SoC 08)''']
| + | Paolo Perego |
| − | '' Paolo Perego (aka thesp0nge)''
| + | (Room 3) |
| − | |-
| |
| − | | style="background:#7B8ABD" | 17:00-17:15 || style="background:#c0e0e0 " align=left" | [https://www.owasp.org/index.php/Category:OWASP_Application_Security_Tool_Benchmarking_Environment_and_Site_Generator_Refresh_Project '''OWASP Application Security Tool Benchmarking Environment and Site Generator Refresh Project (SoC 08)''']
| |
| − | ''Dmitry Kozlov''
| |
| − | | style="background:#B3FF99 " align=left" | [[:Category:OWASP_Ruby_on_Rails_Security_Guide_V2|'''OWASP Ruby on Rails Security Project (SoC 08)''']]
| |
| − | ''Heiko Webers''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 17:20-17:35 || style="background:#c0e0e0 " align=left" | [http://www.owasp.org/index.php/Category:OWASP_Open_Review_Project '''Open Review Project''']
| |
| − | ''Dan Cornell''
| |
| − | | rowspan="2" style="background:#B3FF99 " align=left" |[[:OWASP Working Session - OWASP Testing Guide|'''OWASP Testing Guide (SoC 08 & Working Session)''']]
| |
| − | ''Matteo Meucci''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 17:40-17:55 || style="background:#c0e0e0 " align=left" | [[:Category:OWASP Application Security Verification Standard Project | '''OWASP Application Security Verification Standard Project (SoC 08)''']]
| |
| − | ''Jeff Williams''
| |
| − | |-
| |
| − | | style="background:#7B8ABD" | 19:00|| colspan="3" style="background:#F2F2F2" align="center" | OWASP Gala Dinner
| |
| − | |-
| |
| − | | style="border="0" align="center" ! colspan="4" align="center" style="background:#4058A0; color:#4058A0" | OWASP
| |
| − | |}
| |
| − | | |
| − | | |
| − | {| style="width:80%" border="0" align="center"
| |
| − | ! colspan="3" align="center" style="background:#4058A0; color:white" | Friday, November 7, 2008
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | || style="width:40%; background:#7B8ABD" align="left" | '''Track'''
| |
| − | | style="width:40%; background:#7B8ABD" align="left" | '''Track'''
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 09:00-10:00 || colspan="2" style="width:80%; background:#C2C2C2" align="center" | Coffee
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 10:00-10:15 || style="width:40%; background:#a0c0e0" align=left" | [[:OWASP Working Session - Browser Security|'''ISWG: Browser Security (Working Session)]]
| |
| − | | style="width:40%; background:#c0a0a0 " align=left" | [[:OWASP Working Session - OWASP Certification|''' Certification (Working Session)''']]
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 10:20-10:35 || style="width:40%; background:#a0c0e0" align=left" |[[OWASP Working Session Enterprise Security API Project|''' Enterprise Security API Project (Working Session)''']]
| |
| − | | style="width:40%; background:#c0a0a0 " align=left" | [[OWASP Working Session - OWASP Awards|''' Awards (Working Session)]]
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 10:40-10:35 || style="width:40%; background:#a0c0e0" align=left" | [[:OWASP Working Session - OWASP Tools Projects|''' Tools Projects (Working Session)''']]
| |
| − | | style="width:40%; background:#c0a0a0 " align=left" | [[OWASP Working Session - OWASP Website|'''OWASP Website (Working Session)''']] [2h]
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 11:00-11:15 || style="width:40%; background:#a0c0e0" align=left" | [[:OWASP Working Session - Web Application Framework Security|'''ISWG:Web Application Framework Security (Working Session)''']]
| |
| − | | style="width:40%; background:#c0a0a0 " align=left" | [[:Working Session Winter of Code 2009|''' Winter Of Code 2009 (Working Session)''']]
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 11:20-11:35 || style="width:40%; background:#a0c0e0" align=left" | [[:OWASP Working Session - OWASP Documentation Projects|''' Documentation Projects (Working Session)''']]
| |
| − | | style="width:40%; background:#c0a0a0 " align=left" | [[:Working Session OWASP Strategic Planning|''' Strategic Planning for 2009 (Working Session)''']]
| |
| − | |-
| |
| − | | style="width:10%; background:#7B8ABD" | 11:40-11:55 || style="width:40%; background:#a0c0e0" align=left" |'''[[:OWASP Working Session Top 10 2009|OWASP Top 10 2009 (Working Session)''']]
| |
| − | | style="width:40%; background:#c0a0a0 " align=left" | '''Board Meeting (public session)'''
| |
| | |- | | |- |
| − | | style="width:10%; background:#7B8ABD" | 12:00-12:15 || style="width:40%; background:#a0c0e0" align=left" | [[:OWASP Working Session - OWASP Intra Governmental Affairs|''' Intra Governmental Affairs (Working Session)''']] | + | | style="background:#7B8ABD" | 17:00 || colspan="4" style="background:#C2C2C2" align="center" | Coffee Break |
| − | | style="width:40%; background:#c0a0a0 " align=left" | [[:OWASP Working Session - OWASP Live CD&DVD|'''OWASP Live CD&DVD (Working Session)''']]
| |
| | |- | | |- |
| − | | style="width:10%; background:#7B8ABD" | 14:00-17:00 || colspan="2" style="width:80%; background:#C2C2C2" align="center" | Board Meeting
| + | | style="background:#7B8ABD" | || colspan="4" style="background:#C2C2C2" align="center" | Working Sessions |
| | |- | | |- |
| − | | style="width:10%; background:#7B8ABD" | 17:00|| colspan="2" style="width:80%; background:#F2F2F2" align="center" | Cocktail Party | + | | style="background:#7B8ABD" | 17:30 || style="background:#c0e0e0 " align="center" | Code Review Guide |
| | + | Chair: Eoin Keary |
| | + | (Room 2) |
| | + | | style="background:#B3FF99 " align="center" | EU Funding for OWASP Projects |
| | + | Chair: Carlos Serrao |
| | + | (Sala Bella Vista) |
| | + | | style="background:#B3FF99 " align="center" | OWASP Certification |
| | + | Chair: Tom Brennan |
| | + | (Room 1) |
| | + | | style="background:#B3FF99 " align="center" | Software Assurance Maturity Model |
| | + | Chair: Pravir Chandra |
| | + | (Room 3) |
| | |- | | |- |
| − | | style="width:80%" border="0" align="center" ! colspan="3" align="center" style="background:#4058A0; color:#4058A0" | OWASP | + | | style="background:#7B8ABD" | 19:00 || style="background:#c0e0e0 " align="center" | OWASP Website |
| − | |}
| + | Chair: Favio Cerull |
| − | | + | (Room 1) |
| − | '''Corrections or Updates:''' Contact michael.coates{at}aspectsecurity.com
| + | | style="background:#B3FF99 " align="center" | Metrics & Vulnerabilities |
| | + | Chair: Lucilla Mancini |
| | + | (Room 2) |
| | + | | style="background:#B3FF99 " align="center" | OWASP Orizon |
| | + | Paolo Perego |
| | + | (Room 3) |
| Agenda for Wednesday, November 5th, 2008
|
| 09:15 |
Daily Briefing:
Dinis Cruz
|
| |
Standards and Education
(Room 1)
|
Tools
(Room 2)
|
| 10:00 |
OWASP Positive Security (SoC 08)
Eduardo Vianna de Camargo Neves
|
OWASP Access Control Rules Tester Project
Andrew Petukhov
|
| 10:15 |
OWASP Education
Sebastien Deleersnyder, Martin Knobloch
|
OWASP Teachable Static Analysis Workbench
Dmitry Kozlov
|
| 10:30 |
OWASP Internationalization Guidelines
Juan Carlos Calderon
|
OWASP AppSensor
Michael Coates
|
| 10:45 |
PASSWD:Metrics and Vulnerabilities
Lucilla Mancini
|
OWASP Backend Security Project
Carlo Pelliccioni
|
| 11:00 |
OWASP Open Review Project
Dan Cornell
|
OWASP Application Security Tool Benchmarking Environment and Site Generator Refresh Project
Dmitry Kozlov
|
| 11:15 |
OWASP Global Committee Elections
(Room 1)
|
| 11:30 |
Coffee Break
|
| |
Working Sessions
|
| 12:45 |
Education Project
Chair: Sebastien Deleersnyder
(Room 1)
|
Testing Guide
Chair: Matteo Meucci
(Room 2)
|
Web Application Framework Security
Chair: Arshan Dabirsiaghi
Secretary: Kuai Hinojosa
(Room 3)
|
| 14:45 |
Lunch During Working Sessions
|
| 15:00 |
Training Sessions
|
| 15:00 |
Flash Player Security
Peleus Uhley
(Room 1)
|
OWASP Top 10
Sebastien Deleersnyder and Martin Knobloch
(Room 2)
|
Uncovering WebScarab's Secret Treasures
Rogan Dawes
(Sala Bella Vista)
|
Hacking OWASP Orizon
Paolo Perego
(Room 3)
|
| 17:00 |
Coffee Break
|
| |
Working Sessions
|
| 17:30 |
Code Review Guide
Chair: Eoin Keary
(Room 2)
|
EU Funding for OWASP Projects
Chair: Carlos Serrao
(Sala Bella Vista)
|
OWASP Certification
Chair: Tom Brennan
(Room 1)
|
Software Assurance Maturity Model
Chair: Pravir Chandra
(Room 3)
|
| 19:00 |
OWASP Website
Chair: Favio Cerull
(Room 1)
|
Metrics & Vulnerabilities
Chair: Lucilla Mancini
(Room 2)
|
OWASP Orizon
Paolo Perego
(Room 3)
|