This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Kolkata"

From OWASP
Jump to: navigation, search
Line 5: Line 5:
 
== Local News ==
 
== Local News ==
  
'''1st Kolkata Chapter meeting held on 21st Dec'12
 
  
Agenda:-
+
Everyone is welcome to join us at our chapter meetings.
 +
 
 +
'''More update coming soon. For regular update, subscribe to our [https://www.facebook.com/groups/sillyconorg/?fref=nf Facebook Group]
 +
 
 +
'''#SillyHungama - Raining with Knowldge !! Rainy season ! <br/>And in between - we started planning for our next meetup, to share "Gyan" and "Spirit of Freedom" on 4th July, 2015 - 2:30 PM-8:00 PM .
 +
 
 +
Topics:-
 
<br/>
 
<br/>
1. OWASP Kolkata Chapter Website finalization.<br/>
+
1. Forensic Analysis of Facebook Messenger App - Swasti Bhushan Deb​<br>
2. OWASP Kolkata Chapter Domain Booking<br/>
+
2. Next Gen Networking ( SDN ) and Testing - Dibyendu Sikdar​<br>
3. Event planning for the 2013 Q1<br/>
+
3. IoT Fundamentals & it's Risks -  Sumantro Rijndael Mukherjee​ & Sukanya Mandal<br>
4. Finalization of the probable event sponsors.<br/>
+
4. New Age Red Teaming - Enterprise Infiltration - Shritam Bhowmick​ <br>
 +
5. OWASP VA Audit Mechanism - Surajeet Ghosh<br>
 +
6. Surprise Topic -  Saurav Modak​<br>
  
 +
<br>
 +
Check our FB page for event photos and discussion.
 +
<br/>
 
'''
 
'''
  
Everyone is welcome to join us at our chapter meetings.
+
'''#SillyHotDog - summer is on !! At morning - pretty hot outside. <br/>And in between - we started planning for our next meetup, to share "Memories of March".  21th March, 2015 - 3PM-8PM .
  
'''#GeekCon - Kolkata Chapter Organized a Meetup cum Conference to build local awareness and membership on Friday the 13th June, 2014.  
+
Topics:-
 +
<br/>
 +
1. "Cookie Bookie" - A different approach of using persistent cookies to hack by Rashid Feroz<br>
 +
2. "Local Dropbox encrypted folder forensic" by Swasti Bhushan Deb<br>
 +
3. *HOT* "Playing with EvilDuino" - a demonstration of BadUSB.<br>
 +
4. Inauguration of the new Silly Game - "LIPS" .<br>
  
Topics Covered:-
+
<br>
 +
Check our FB page for event photos and discussion.
 
<br/>
 
<br/>
1. Anatomy of a Real life Data Breach ( Ayan Bhandari )<br/>
 
2. An introduction to Cryptography ( Kislay Sinha )<br/>
 
3. Who we are - and Why we are ? *Us* - Intro by [mailto:[email protected] Krishnendu Paul]<br/>
 
4. Cyber Crime and Your Rights ( Shivam Gupta )<br/>
 
5. Questions / Debates / Future Plans / Help session for Students and Wanna be Security Professionals.<br/>
 
7. Meetup with veteran IT Professionals & Entrepreneurs to learn the future prospect of IT Security Industry<br/>
 
 
 
'''
 
'''
  
  '''#SillyCloud - An AWS Hands On Workshop. on 9th Aug, 2014. For more details - check our website.
+
  '''#LoveTheSilly - It's February, Love is on the air. <br/>Let's meetup and show some love to our passion At Techno India Campus on 21th Feb, 2015 - 3PM-8PM .
  
Topics Covered:-
+
Topics:-
 
<br/>
 
<br/>
1. Introduction to cloud concepts<br/>
+
1. "Ghost Buster" - A Discussion about Latest Ghost Vulnerability of glibc by Abhijit Chatterjee<br/>
2. Cloud advantages<br/>
+
2. Mobile App Penetration Testing or Developing Exploit using Python / Ruby Syed Reza Rizvi from TCS<br/>
3. Overview ofAWS main comonents : EC2, AMI, EBS, AUtoscaling, cloudwatch, ELB, S3, RDS, VPC, Security groups etc<br/>
+
3. PCI-DSS - Mandatory compliance ! But is it really secure ? Is our Credit Card Details really secured on these E-Com Era ? By Krishnendu Paul<br/>
4. Describe few Use cases<br/>
+
4. Demonstration of End-to-End Encrypted Chat Application by Chiranjit Mukherjee and Arup Kumar Das ( The Dynamic Duo )<br/>
5. Getting hands on with AWS<br/>
+
5. Introduction session with our new partners NASSCOM 10,000 Start-up. Ravi Ranjan from NASSCOM 10k discussed about the Technology Entrepreneurship opportunity with SillyCon members.
a) Login in<br/>
+
<br>
b) Overview of console<br/>
+
Check our FB page for event photos and discussion.
c) Creating first EC2<br/>
 
d) Creating Win and Linux instance and then loggin into it<br/>
 
6. Deploying a LAMP stack from AMI and then use cloudwatch for monitoring and configure autoscaling<br/>
 
7. Security best practices<br/>
 
8. Create a 3 tier architecture in VPC+internet with VPN if possible<br/>
 
9. Talk about Cloud design principles ( If time permits )<br/>
 
a) Scaling<br/>
 
b) Loose couple<br/>
 
c) Elasticity<br/>
 
d) Design for failure<br/>
 
e) Security<br/>
 
 
<br/>
 
<br/>
 
 
'''
 
'''
  
  '''#SillyAdda - A pure gossip/meetup/know-each-other for SillyCon Members . On 12th Oct, 2014. For more details - check our Facebook Group.
+
  '''#SillyChilli - First Meetup of OWASP Kolkata 2015 ( 17th Jan, 2015 - 4PM-8PM ) with a Chilling Weather Outside. At Techno India Campus.
  
Agenda:-
+
Topic Covered:-
 
<br/>
 
<br/>
1. Introduction to the team<br/>
+
1. Complete Anonymity - Are You ? An intro to DNS Proxy - Chiranjit Mukherjee and Arup Kumar Das<br>
2. Future Event Planning<br/>
+
2. Shivering facts and story of Sony after getting hacked - Ayan Bhandari<br>
3. Idea Sharing<br/>
+
3. Live exploiting to demonstrate Vulnerability on a very well-known Security Site ( 0day ). - Krishnendu Paul<br>
4. Anything I am missing... <br/>
+
4. Windows 7 UAC bypass by CHM files - Krishnendu Paul<br>
 +
6. Publishing a new Stub Builder as Open Source - coded by Nilan Saha<br>
 +
7. Meeting with few industry veterans on Information Security Domain to know about Future Market.<br>
 +
<br>
 +
And a hour long #SillyAdda come discussion session and networking session with some snacks
 
<br/>
 
<br/>
 
'''
 
'''
Line 79: Line 80:
 
'''
 
'''
  
  '''#SillyChilli - First Meetup of OWASP Kolkata 2015 ( 17th Jan, 2015 - 4PM-8PM ) with a Chilling Weather Outside. At Techno India Campus.
+
  '''#SillyAdda - A pure gossip/meetup/know-each-other for SillyCon Members . On 12th Oct, 2014. For more details - check our Facebook Group.
  
Topic Covered:-
+
Agenda:-
 
<br/>
 
<br/>
1. Complete Anonymity - Are You ? An intro to DNS Proxy - Chiranjit Mukherjee and Arup Kumar Das<br>
+
1. Introduction to the team<br/>
2. Shivering facts and story of Sony after getting hacked - Ayan Bhandari<br>
+
2. Future Event Planning<br/>
3. Live exploiting to demonstrate Vulnerability on a very well-known Security Site ( 0day ). - Krishnendu Paul<br>
+
3. Idea Sharing<br/>
4. Windows 7 UAC bypass by CHM files - Krishnendu Paul<br>
+
4. Anything I am missing... <br/>
6. Publishing a new Stub Builder as Open Source - coded by Nilan Saha<br>
 
7. Meeting with few industry veterans on Information Security Domain to know about Future Market.<br>
 
<br>
 
And a hour long #SillyAdda come discussion session and networking session with some snacks
 
 
<br/>
 
<br/>
 
'''
 
'''
  
 +
'''#SillyCloud - An AWS Hands On Workshop. on 9th Aug, 2014. For more details - check our website.
  
'''#LoveTheSilly - It's February, Love is on the air. <br/>Let's meetup and show some love to our passion At Techno India Campus on 21th Feb, 2015 - 3PM-8PM .
+
Topics Covered:-
 
 
Topics:-
 
 
<br/>
 
<br/>
1. "Ghost Buster" - A Discussion about Latest Ghost Vulnerability of glibc by Abhijit Chatterjee<br/>
+
1. Introduction to cloud concepts<br/>
2. Mobile App Penetration Testing or Developing Exploit using Python / Ruby Syed Reza Rizvi from TCS<br/>
+
2. Cloud advantages<br/>
3. PCI-DSS - Mandatory compliance ! But is it really secure ? Is our Credit Card Details really secured on these E-Com Era ? By Krishnendu Paul<br/>
+
3. Overview ofAWS main comonents : EC2, AMI, EBS, AUtoscaling, cloudwatch, ELB, S3, RDS, VPC, Security groups etc<br/>
4. Demonstration of End-to-End Encrypted Chat Application by Chiranjit Mukherjee and Arup Kumar Das ( The Dynamic Duo )<br/>
+
4. Describe few Use cases<br/>
5. Introduction session with our new partners NASSCOM 10,000 Start-up. Ravi Ranjan from NASSCOM 10k discussed about the Technology Entrepreneurship opportunity with SillyCon members.
+
5. Getting hands on with AWS<br/>
<br>
+
a) Login in<br/>
Check our FB page for event photos and discussion.
+
b) Overview of console<br/>
 +
c) Creating first EC2<br/>
 +
d) Creating Win and Linux instance and then loggin into it<br/>
 +
6. Deploying a LAMP stack from AMI and then use cloudwatch for monitoring and configure autoscaling<br/>
 +
7. Security best practices<br/>
 +
8. Create a 3 tier architecture in VPC+internet with VPN if possible<br/>
 +
9. Talk about Cloud design principles ( If time permits )<br/>
 +
a) Scaling<br/>
 +
b) Loose couple<br/>
 +
c) Elasticity<br/>
 +
d) Design for failure<br/>
 +
e) Security<br/>
 
<br/>
 
<br/>
  
 +
'''
  
  '''#SillyHotDog - summer is on !! At morning - pretty hot outside. <br/>And in between - we started planning for our next meetup, to share "Memories of March".  21th March, 2015 - 3PM-8PM .
+
  '''#GeekCon - Kolkata Chapter Organized a Meetup cum Conference to build local awareness and membership on Friday the 13th June, 2014.  
  
Topics:-
+
Topics Covered:-
 
<br/>
 
<br/>
1. "Cookie Bookie" - A different approach of using persistent cookies to hack by Rashid Feroz<br>
+
1. Anatomy of a Real life Data Breach ( Ayan Bhandari )<br/>
2. "Local Dropbox encrypted folder forensic" by Swasti Bhushan Deb<br>
+
2. An introduction to Cryptography ( Kislay Sinha )<br/>
3. *HOT* "Playing with EvilDuino" - a demonstration of BadUSB.<br>
+
3. Who we are - and Why we are ? *Us* - Intro by [mailto:krishnendu.Paul@owasp.org Krishnendu Paul]<br/>
4. Inauguration of the new Silly Game - "LIPS" .<br>
+
4. Cyber Crime and Your Rights ( Shivam Gupta )<br/>
 +
5. Questions / Debates / Future Plans / Help session for Students and Wanna be Security Professionals.<br/>
 +
7. Meetup with veteran IT Professionals & Entrepreneurs to learn the future prospect of IT Security Industry<br/>
  
<br>
 
Check our FB page for event photos and discussion.
 
<br/>
 
 
'''
 
'''
  
 +
'''1st Kolkata Chapter meeting held on 21st Dec'12
  
'''#SillyHungama - Raining with Knowldge !! Rainy season ! <br/>And in between - we started planning for our next meetup, to share "Gyan" and "Spirit of Freedom" on 4th July, 2015 - 2:30 PM-8:00 PM .
+
Agenda:-
 
 
Topics:-
 
 
<br/>
 
<br/>
1. Forensic Analysis of Facebook Messenger App - Swasti Bhushan Deb​<br>
+
1. OWASP Kolkata Chapter Website finalization.<br/>
2. Next Gen Networking ( SDN ) and Testing - Dibyendu Sikdar​<br>
+
2. OWASP Kolkata Chapter Domain Booking<br/>
3. IoT Fundamentals & it's Risks -  Sumantro Rijndael Mukherjee​ & Sukanya Mandal<br>
+
3. Event planning for the 2013 Q1<br/>
4. New Age Red Teaming - Enterprise Infiltration - Shritam Bhowmick​ <br>
+
4. Finalization of the probable event sponsors.<br/>
5. OWASP VA Audit Mechanism - Surajeet Ghosh<br>
 
6. Surprise Topic -  Saurav Modak​<br>
 
  
<br>
 
Check our FB page for event photos and discussion.
 
<br/>
 
 
'''
 
'''
 
'''More update coming soon. For regular update, subscribe to our [https://www.facebook.com/groups/sillyconorg/?fref=nf Facebook Group]
 
 
  
 
[[Category:OWASP Chapter]]
 
[[Category:OWASP Chapter]]
 
[[Category:India]]
 
[[Category:India]]

Revision as of 14:21, 6 July 2015

Sillycon.jpg

OWASP Kolkata

Welcome to the Kolkata chapter homepage. The chapter leader is Krishnendu Paul and Co-Lead Dibyendu Sikdar.
You can reach us at OWASP Kolkata Chapter Website or For regular update, subscribe to our Facebook Group


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Local News

Everyone is welcome to join us at our chapter meetings.

More update coming soon. For regular update, subscribe to our Facebook Group
#SillyHungama - Raining with Knowldge !! Rainy season ! 
And in between - we started planning for our next meetup, to share "Gyan" and "Spirit of Freedom" on 4th July, 2015 - 2:30 PM-8:00 PM .

Topics:-
1. Forensic Analysis of Facebook Messenger App - Swasti Bhushan Deb​
2. Next Gen Networking ( SDN ) and Testing - Dibyendu Sikdar​
3. IoT Fundamentals & it's Risks - Sumantro Rijndael Mukherjee​ & Sukanya Mandal
4. New Age Red Teaming - Enterprise Infiltration - Shritam Bhowmick​
5. OWASP VA Audit Mechanism - Surajeet Ghosh
6. Surprise Topic - Saurav Modak​


Check our FB page for event photos and discussion.

#SillyHotDog - summer is on !! At morning - pretty hot outside. 
And in between - we started planning for our next meetup, to share "Memories of March". 21th March, 2015 - 3PM-8PM .

Topics:-
1. "Cookie Bookie" - A different approach of using persistent cookies to hack by Rashid Feroz
2. "Local Dropbox encrypted folder forensic" by Swasti Bhushan Deb
3. *HOT* "Playing with EvilDuino" - a demonstration of BadUSB.
4. Inauguration of the new Silly Game - "LIPS" .


Check our FB page for event photos and discussion.

#LoveTheSilly - It's February, Love is on the air. 
Let's meetup and show some love to our passion At Techno India Campus on 21th Feb, 2015 - 3PM-8PM .

Topics:-
1. "Ghost Buster" - A Discussion about Latest Ghost Vulnerability of glibc by Abhijit Chatterjee
2. Mobile App Penetration Testing or Developing Exploit using Python / Ruby Syed Reza Rizvi from TCS
3. PCI-DSS - Mandatory compliance ! But is it really secure ? Is our Credit Card Details really secured on these E-Com Era ? By Krishnendu Paul
4. Demonstration of End-to-End Encrypted Chat Application by Chiranjit Mukherjee and Arup Kumar Das ( The Dynamic Duo )
5. Introduction session with our new partners NASSCOM 10,000 Start-up. Ravi Ranjan from NASSCOM 10k discussed about the Technology Entrepreneurship opportunity with SillyCon members.
Check our FB page for event photos and discussion.

#SillyChilli - First Meetup of OWASP Kolkata 2015 ( 17th Jan, 2015 - 4PM-8PM ) with a Chilling Weather Outside. At Techno India Campus.

Topic Covered:-
1. Complete Anonymity - Are You ? An intro to DNS Proxy - Chiranjit Mukherjee and Arup Kumar Das
2. Shivering facts and story of Sony after getting hacked - Ayan Bhandari
3. Live exploiting to demonstrate Vulnerability on a very well-known Security Site ( 0day ). - Krishnendu Paul
4. Windows 7 UAC bypass by CHM files - Krishnendu Paul
6. Publishing a new Stub Builder as Open Source - coded by Nilan Saha
7. Meeting with few industry veterans on Information Security Domain to know about Future Market.

And a hour long #SillyAdda come discussion session and networking session with some snacks

 Our members Participated at Infocom Hackstar 2.0 on 7th Dec, 2014 and ranked as 2nd runner-up. 

TEAM Members:-
1. Suman Kar
2. Rony Das

Guys - you are rock-star...

#SillyAdda - A pure gossip/meetup/know-each-other for SillyCon Members . On 12th Oct, 2014. For more details - check our Facebook Group.

Agenda:-
1. Introduction to the team
2. Future Event Planning
3. Idea Sharing
4. Anything I am missing...

#SillyCloud - An AWS Hands On Workshop. on 9th Aug, 2014. For more details - check our website.

Topics Covered:-
1. Introduction to cloud concepts
2. Cloud advantages
3. Overview ofAWS main comonents : EC2, AMI, EBS, AUtoscaling, cloudwatch, ELB, S3, RDS, VPC, Security groups etc
4. Describe few Use cases
5. Getting hands on with AWS
a) Login in
b) Overview of console
c) Creating first EC2
d) Creating Win and Linux instance and then loggin into it
6. Deploying a LAMP stack from AMI and then use cloudwatch for monitoring and configure autoscaling
7. Security best practices
8. Create a 3 tier architecture in VPC+internet with VPN if possible
9. Talk about Cloud design principles ( If time permits )
a) Scaling
b) Loose couple
c) Elasticity
d) Design for failure
e) Security

#GeekCon - Kolkata Chapter Organized a Meetup cum Conference to build local awareness and membership on Friday the 13th June, 2014. 

Topics Covered:-
1. Anatomy of a Real life Data Breach ( Ayan Bhandari )
2. An introduction to Cryptography ( Kislay Sinha )
3. Who we are - and Why we are ? *Us* - Intro by Krishnendu Paul
4. Cyber Crime and Your Rights ( Shivam Gupta )
5. Questions / Debates / Future Plans / Help session for Students and Wanna be Security Professionals.
7. Meetup with veteran IT Professionals & Entrepreneurs to learn the future prospect of IT Security Industry

1st Kolkata Chapter meeting held on 21st Dec'12

Agenda:-
1. OWASP Kolkata Chapter Website finalization.
2. OWASP Kolkata Chapter Domain Booking
3. Event planning for the 2013 Q1
4. Finalization of the probable event sponsors.