This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Timisoara"

From OWASP
Jump to: navigation, search
(Upcoming Events)
(Upcoming Events)
Line 53: Line 53:
 
Dacă ai un website și nu știi ce înseamnă CSRF, mai devreme sau mai târziu vei afla. Mai bine mai devreme :)
 
Dacă ai un website și nu știi ce înseamnă CSRF, mai devreme sau mai târziu vei afla. Mai bine mai devreme :)
 
Iar, ca simplu utilizator, vei afla câteva ”Best Practices”.  
 
Iar, ca simplu utilizator, vei afla câteva ”Best Practices”.  
 +
 +
---
 +
 +
Radu Ciorbă
 +
 +
Linux and Python fanboy. Problemele de securitate vreau să le înțeleg în primul rând din curiozitate, dar și pentru a ști ce să evit în sistemele pe care le construiesc.
 +
 +
Voi prezenta, pe scurt, "The Debian SSL Fiasco" sau cum puțină "curățenie în cod" bine intenționată a introdus unul dintre cele mai grave exploituri de securitate din Debian.
  
 
[[Category:OWASP Chapter]]
 
[[Category:OWASP Chapter]]
 
[[Category:Europe]]
 
[[Category:Europe]]
 
[[Category:Romania]]
 
[[Category:Romania]]

Revision as of 18:31, 9 March 2016

OWASP Timisoara

Welcome to the Timisoara chapter homepage. The chapter leaders are Cornel Punga and Florina Rosiu.


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Chapter Info

Location: str.Coriolan Brediceanu, 10, City Business Centre, StartupHub

Social media:

Meetup.com - http://www.meetup.com/InfoSecTM/

Local News

Everyone is welcome to join us at our chapter meetings.

Past Events

15th december 2015, OWASP InfoSecTM #8

---

17th February 2016, OWASP InfoSecTM #9

  • Title: A new generation of cryptographic algorithms - IDEA NXT".
    Speaker: Andreea Bozesan Discover the newest generation of symmetric block ciphers, their capabilities, drawbacks and means of testability. A hardware implementation is also analyzed for providing metrics to sustain the theoretic aspects exposed in the first part of the presentation
  • Title: Software Protection by Code Obfuscation
    Speaker: Ciprian Lucaci Complete protection of software against unauthorized access cannot be fully guaranteed because with enough resources any protection mechanism can eventually be overcome. Thus, the goal is usually to make the job of the attacker as difficult as possible. One possibility of protecting software intellectual property is through different source code obfuscation techniques. In this presentation I will briefly discuss different software protection techniques and present virtualization obfuscation as an effective protection mechanism. Virtualization obfuscation is a particular obfuscation technique that aims to protect the intellectual property of a software vendor by hiding the control-flow of a program P. This talk will present the concept of virtualization obfuscation by comparing by introducing the advantages and disadvantages compared to other obfuscation techniques.
  • Check the event on FB[1]

Upcoming Events

15th March 2016, OWASP InfoSecTM #10

Presentations:

Romanian description

Dan Negrea, Software Engineer în departamentul de Security al ACI.

Ca departament ne ocupăm de securitatea produselor ACI. Aplication Security este o felie din ce în ce mai importantă din IT Security. Voi prezenta Cross-Site Request Forgery, care ocupă poziția 8 în Top-ul OWASP. Este o vulnerabilitate ușor de exploatat, implicând foarte puțin cod. Detectarea este de asemenea ușoară.

Dacă ai un website și nu știi ce înseamnă CSRF, mai devreme sau mai târziu vei afla. Mai bine mai devreme :) Iar, ca simplu utilizator, vei afla câteva ”Best Practices”.

---

Radu Ciorbă

Linux and Python fanboy. Problemele de securitate vreau să le înțeleg în primul rând din curiozitate, dar și pentru a ști ce să evit în sistemele pe care le construiesc.

Voi prezenta, pe scurt, "The Debian SSL Fiasco" sau cum puțină "curățenie în cod" bine intenționată a introdus unul dintre cele mai grave exploituri de securitate din Debian.