This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Ottawa

From OWASP
Revision as of 15:11, 4 June 2010 by Koussa (talk | contribs) (Next Meeting: Tuesday, March 30th, 2010)

Jump to: navigation, search

OWASP Ottawa

Welcome to the Ottawa chapter homepage. The chapter leaders are Mike Sues and Sherif Koussa <paypal>Ottawa</paypal>


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


Meetings Location

Third Brigade: 40 Hines Rd Suite 200 Ottawa, Ontario, Canada K2K 2M5 Map

RSVP

Please RSVP to [email protected]. Please include name, company and how many attendees.

Next Meeting: Tuesday, March 30th, 2010

Meeting Sponsor:

2keys_%28big%29.jpg TM_logo_red_rgb.jpg






Meeting schedule:

6:00-6:30 Pizza, wings and pop
6:30-7:30 Main presentation
7:30-8:00 Open discussion and questions

Speaker: David Mirza Ahmad

David will be describing the CBC padding oracle attack, originally discovered by Serge Vaudenay and presented at Eurocrypt 2002. Recent applications of this attack affecting web applications discovered by Juliano Rizzo and Thai Duong, presented at Black Hat Europe in 2010, will be clearly described. There will also be a live demonstration of POET (padding oracle exploitation tool).

About The Speaker David started his career over ten years of professional experience as a founding member of SecurityFocus.com, which was acquired by Symantec in 2002. David also moderated the Bugtraq mailing list, a historically important forum for discussion of security vulnerabilities, for over four years. He has spoken at Black Hat, Can Sec West, AusCERT and numerous other security conferences, as well as made contributions to books, magazines and other publications. David also participated in a NIAC working group on behalf of Symantec to develop the first version of the CVSS (Common Vulnerability Scoring System) model. His current obsession is building a network security startup in Montréal and acting as editor for the Attack Trends section of the IEEE Security & Privacy journal..

Previous Meetings

September 10th, 2009 - Justin Foster - Speaker Notes: Download Here

April 6th, 2009 - Rafal Los - Speaker Notes: Download Here

July 16th, 2008 - John Linehan - Speaker Notes: Download Here

November 28th, 2007 - Eric Klien - Make my day