This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit

Difference between revisions of "Front Range OWASP Conference 2009"

Jump to: navigation, search
m (Logistics)
Line 93: Line 93:
Venue: [ Tivoli Student Union, Denver, CO USA]
Venue: [,0,17887458453474608109&fb=1&split=1&gl=us&dq=Tivoli+Student+Union+in+downtown+Denver,+CO&daddr=900+Auraria+Pkwy+%23+325E,+Denver,+CO+80204&geocode=2315206160437382962,39.746366,-105.007463&ei=jKOsSeKrM5O5twfLh4GDBg&z=16 Tivoli Student Union] in downtown 900 Auraria Pkwy # 325E
Denver, CO 80204 (303) 556-6330

Revision as of 17:32, 3 March 2009


Welcome to SnowFROC, the Winter 2009 Front Range OWASP Application Security Conference!

After a successful FROC in June of 2008, we are back in Denver, Colorado USA on 5 March 2009!

This year we again present a full day, FREE multi-track conference, which will provide valuable information for managers and executives as well as developers and engineers.

In 2008, we attracted a packed venue with our great AppSec speakers, and we hope to achieve the same again in 2009. This year we organized the conference to occur during the peak of the Colorado ski season, so that speakers can head up to the nearby mountains before and/or after the conference to enjoy some of the legendary snow.


Conference Location

Denver mountains.JPG

This year, the conference will be held at the Tivoli Student Union in downtown 900 Auraria Pkwy # 325E Denver, CO 80204 (303) 556-6330

Call for Presentations

The call for papers closed on 6 Feb 09. We received a tremendous response. Thanks to everybody who responded!

Agenda and Presentations: 5 March 2009

The agenda follows the successful OWASP conference two tracks format, with opening keynotes and presentations in the main auditorium, split tracks in the middle of the day, and closing panel discussions back in the main auditorium.

March 5, 2009
07:30-08:30 Registration and Continental Breakfast in the Sponsor Expo Room
08:30-08:35 Welcome to SnowFROC AppSec 2009 Conference

David Campbell, OWASP Denver

08:35-09:45 Keynote: "Top Ten Web Hacking Techniques of 2008: What's possible, not probable"

Jeremiah Grossman, Whitehat Security

09:45-10:15 OWASP State of the Union

Tom Brennan, OWASP Board

10:15-10:30 Break - Expo - CTF - Beatz by DJ Jackalope
Management / Executive Track: Room 1 Deep Technical Track: Room 2
10:30-11:15 "Doing More with Less: Automate or Die"

Ed Bellis, Orbitz

"Poor Man's Guide to Breaking PKI: Why You Don't Need 200 Playstations"

Mike Zusman, Intrepidus Group

11:15-12:00 "A Legal Minimum Standard of Due Care: The CAG and the Top 25 Most Dangerous Programming Errors"

Alan Paller, SANS

"Adobe Flex, AMF 3 and BlazeDS: An Assessment"

Kevin Stadmeyer, Trustwave

12:00-13:00 Lunch - Expo - CTF - Beatz by DJ Jackalope
Management / Executive Track: Room 1 Deep Technical Track: Room 2
13:00-13:50 "Building an Effective Application Security Program"

Joey Peloquin, Fishnet Security

"Bad Cocktail: Spear Phishing + Application Hacks"

Rohyt Belani, Intrepidus Group

13:50-14:50 "Automated vs. Manual Security: You can't filter The Stupid"

David Byrne & Charles Henderson, Trustwave

"SQL injection: Not only AND 1=1"

Bernardo Damele Assumpcao Guimaraes, Portcullis Computer Security Ltd.

14:50-15:00 Break - Expo - CTF - Beatz by DJ Jackalope
15:00-15:50 "Security Policy Management: Best Practices for Web Services and Application Security"

Ray Neucom, IBM

"Vulnerability Management in an Application Security World"

Dan Cornell & John Dickson, Denim Group

15:50-16:30 Panel: Emerging Threats and Enterprise Countermeasures

Moderator: John Dickson
Panelists: Alan Paller, Joey Peloquin, Rohyt Belani, Ed Bellis, Laz, Ray Neucom

16:30-17:30 Conference Wrap Up, CTF Awards & Sponsor Raffles - CTF - Beatz by DJ Jackalope
17:30-21:00 OWASP Social Gathering: Dinner and Drinks @ TBD


Venue: Tivoli Student Union in downtown 900 Auraria Pkwy # 325E Denver, CO 80204 (303) 556-6330


OWASP has negotiated discounted rates with the Hotel Teatro. Rooms under the SnowFROC rate are $189/night and include courtesy Cadillac Escalade transportation to and from Auraria Campus. To reserve a room, contact Hotel Teatro at +1.303.228.1100 and mention SnowFROC. The discounted rate will be available until Monday, March 2.

Transportation to the Conference

By plane

Denver can be reached by commercial aviation through the Denver International Airport, which is a hub for United Airlines as well as Frontier.

How to get to the venue?

See the map.

By taxi:

  • taxi from the airport to venue is about $50 USD

Registration and Conference Fees

Due to the hard work of our organizers and the gracious support of our sponsors, SNOWFROC will once again be a FREE CONFERENCE!!!

Despite the fact that this is a free conference, we still need you to register to ensure that we don't exceed venue capacity.


Conference Committee

OWASP Conferences Chair: Dave Wichers - Aspect Security - dave.wichers 'at'

SNOWFROC 2009 Planning Committee Chair: Kathy Thaxton - kthaxton 'at'

Colorado Chapter Hosts:

  • David Campbell - OWASP Denver - dcampbell 'at'
  • Eric Duprey - OWASP Denver - eduprey 'at'

Vendor Exhibition Chair: Kathy Thaxton - kthaxton 'at'

Capture the Flag Chair: Eric Duprey - eduprey 'at'

CFP Chair: David Campbell - OWASP Denver - dcampbell 'at'

Conference Sponsors

The following organizations are proud sponsors of this conference:

  • Accuvant
  • Breach
  • Business Partner Solutions
  • Denim Group
  • Fishnet Security
  • IBM
  • Imperva
  • Laz
  • Lares
  • Trustwave
  • WhiteHat Security

If you are interested in sponsoring this OWASP conference, please contact Kathy Thaxton at kthaxton 'at'

More information about conference sponsorship is available here.