This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Los Angeles"

From OWASP
Jump to: navigation, search
(Local News)
(Wednesday, April 21st, 2010 7:30PM)
Line 15: Line 15:
 
OWASP Enterprise Security API (ESAPI) by Neil Matatall.</h2>
 
OWASP Enterprise Security API (ESAPI) by Neil Matatall.</h2>
  
== Wednesday, April 21st, 2010 7:30PM ==
+
== Wednesday, May 19th, 2010 7:30PM ==
* <b>The intersection of social and technical attacks in Web 2.0 applications by Mike Bailey and Mike Murray</b>
+
* <b>OWASP Top 10 and Enterprise Security API (ESAPI)</b>
  
 
   <b>Meeting Location</b>
 
   <b>Meeting Location</b>
Line 26: Line 26:
 
<br>
 
<br>
  
<b>Topic: The intersection of social and technical attacks in Web 2.0 applications
+
<b>Topic: OWASP Top 10 and Enterprise Security API (ESAPI)
  
Speakers: Mike Bailey and Mike Murray
+
Speaker: Neil Matatall
</b>
 
  
<b>Mike Bailey</b> is a senior security researcher at MAD Security and an
+
Abstract:</b> The OWASP Top 10 project gives developers a short list of
application security specialist. While his research spans a wide
+
the most dangerous mistakes they can make when developing web
variety of domains, it generally focuses on secure web application
+
applications.  The OWASP Enterprise Security API or ESAPI tries to
development, web application scanning and penetration testing, online
+
provide a structure and tools to help mitigate these threats. In this
privacy issues, network protocols and services, and how to break them.
+
talk, I will go over the ESAPI project in general and drill down into
 +
the ESAPI for Java and how this project can help mitigate the Top 10.
  
Mike has spoken throughout the country at different security
+
<b>Bio: Neil Matatall, B.S.,</b> is an information security engineer for AT&T
conferences and shows, including Blackhat DC, Toorcon, Defcon and
+
Interactive.  He has been working in the information security field
others. Aside from coming up with new and interesting ways to break
+
for the past 4 years and has been educating others both in house and
web and client-side applications, he also puts those attacks into
+
at national conferences on security topics ranging from application
practice as a penetration tester. Currently, Mike is studying the
+
security, web security, network security as well as software
intersection of social and technical attacks in Web 2.0 applications.
+
engineering and streamlining software development lifecycles. He is
He publishes his research on the MAD Security blog as well as at
+
the Orange County chapter lead for the Open Web Application Security
Skeptikal.org.
+
Project (OWASP) and a member of the program committee for the OWASP
 
+
National Conference.
<b>Mike Murray</b> has spent his entire career in information security and
 
currently leads the delivery arm of MAD Security (MADSecInc.com).
 
Mike is a co-founder of InfoSecLeaders.com where he writes and talks
 
about the skills and strategies for building a long-term career in
 
information security.  Mike's on security careers have been seen at
 
major conferences like RSA and Defcon.
 
  
 
= Would you like to speak at an OWASP Los Angeles Meeting? =
 
= Would you like to speak at an OWASP Los Angeles Meeting? =

Revision as of 04:44, 12 May 2010

OWASP Los Angeles

Welcome to the Los Angeles chapter homepage. The chapter leader is Tin Zaw


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


<paypal>LosAngeles</paypal>

Local News

ISSA Los Angeles Chapter invites us to their 2nd Annual Information Security Summit: Unleashing The Power of Collaboration on June 16th at UCLA Campus.

http://www.issa-la.org/Default.aspx?id=1088

May OWASP meeting will be at Symantec in Culver City at 7:30PM May 19. Pizza will be provided.

OWASP Enterprise Security API (ESAPI) by Neil Matatall.

Wednesday, May 19th, 2010 7:30PM

  • OWASP Top 10 and Enterprise Security API (ESAPI)
  Meeting Location
  Symantec Corporation
  900 Corporate Pointe
  Culver City, CA 90230


  Please RSVP via Eventbrite.


Topic: OWASP Top 10 and Enterprise Security API (ESAPI)

Speaker: Neil Matatall

Abstract: The OWASP Top 10 project gives developers a short list of the most dangerous mistakes they can make when developing web applications. The OWASP Enterprise Security API or ESAPI tries to provide a structure and tools to help mitigate these threats. In this talk, I will go over the ESAPI project in general and drill down into the ESAPI for Java and how this project can help mitigate the Top 10.

Bio: Neil Matatall, B.S., is an information security engineer for AT&T Interactive. He has been working in the information security field for the past 4 years and has been educating others both in house and at national conferences on security topics ranging from application security, web security, network security as well as software engineering and streamlining software development lifecycles. He is the Orange County chapter lead for the Open Web Application Security Project (OWASP) and a member of the program committee for the OWASP National Conference.

Would you like to speak at an OWASP Los Angeles Meeting?

Call for Papers (CFP) is NOW OPEN. To speak at upcoming OWASP Los Angeles meetings please submit your BIO and talk abstract via email to Tin Zaw. When we accept your talk, it will be required to use the Powerpoint OWASP Template.

Archives of Previous Meetings

A list of previous presentations conducted at the Los Angeles Chapter can be found here.

Los Angeles Chapter