This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "South Dakota"

From OWASP
Jump to: navigation, search
(Local News)
(Local News)
Line 20: Line 20:
 
<b>AGENDA</b>
 
<b>AGENDA</b>
 
<br />
 
<br />
To Be Determined<br />
+
<table border="0" width="100%">
<table style="display:none;" border="0" width="100%">
 
 
  <tr>
 
  <tr>
 
   <td width="15%">
 
   <td width="15%">
 
<p>
 
<p>
       DSU will be bringing their mobile lab for us to use for some hands-on trainingWe will be using a Virtual Machine specifically setup for training on InfoSec (think WebGoat)This will be a great opportunity to dig into some of the OWASP Top Ten items and work with them in a simulated e-commerce environmentJosh Pauli will also be available to help provide guidance/assistance during this lab. The items that we will be covering includes:
+
       For this meeting we'll be focusing on working through some of the lessons from hackthissite.org: Basic missions, javascript missions and some of the realistic missionsEach set of missions will focus on a different set of skillsThe basic missions cover common sense and basic htmlThe javascript missions will be covering vulnerabilities through poor programming techniques. The realistic missions build on the previous lessons and provide a life-like vulnerable web application.  This meeting will be the first in a three part series that culminates in a capture the flag competition.
</p>
 
<ul>
 
    <li>Reflected XSS</li>
 
    <li>Stored Xss</li>
 
    <li>SQL Injection</li>
 
    <li>Steal money from the store</li>
 
    <li>XSRF (Cross-Site Request Forgery)</li>
 
    <li>Steal songs/Download songs for Free</li>
 
    <li>Permanently lock users out of their account</li>
 
    <li>Chained Exploit</li>
 
</ul>
 
<p>
 
  This will be a great lab for individuals of all skill levels, from beginner to someone experienced in InfoSec this lab will provide challenges for every level.  The lab will be open for discussion as we work through the challenges (and we will also be providing solutions) so there will be plenty of time to discuss the vulnerabilities/exploits and countermeasures as we work through them. We hope to see you there!
 
 
</p>
 
</p>
 
   </td>
 
   </td>

Revision as of 05:54, 18 January 2010

OWASP South Dakota

Welcome to the South Dakota chapter homepage. The chapter leader is Josh Stroschein


Participation

OWASP Foundation (Overview Slides) is a professional association of global members and is open to anyone interested in learning more about software security. Local chapters are run independently and guided by the Chapter_Leader_Handbook. As a 501(c)(3) non-profit professional association your support and sponsorship of any meeting venue and/or refreshments is tax-deductible. Financial contributions should only be made online using the authorized online chapter donation button. To be a SPEAKER at ANY OWASP Chapter in the world simply review the speaker agreement and then contact the local chapter leader with details of what OWASP PROJECT, independent research or related software security topic you would like to present on.

Sponsorship/Membership

Btn donate SM.gif to this chapter or become a local chapter supporter. Or consider the value of Individual, Corporate, or Academic Supporter membership. Ready to become a member? Join Now BlueIcon.JPG


<paypal>South Dakota</paypal>


Local News

Meeting Information

The meeting minutes for November have been posted, view the archives to see them.

Our guest speaker will be Josh Pauli from Dakota State University

WHEN
    February 24, 2010 at 7 pm

WHERE
    University Center - South (next to Southeast Technical Institute) Room 177 - located at 2205 N. Career Ave. St Sioux Falls, SD 57107 - this is the building next to Southeast Tech.

AGENDA

For this meeting we'll be focusing on working through some of the lessons from hackthissite.org: Basic missions, javascript missions and some of the realistic missions. Each set of missions will focus on a different set of skills. The basic missions cover common sense and basic html. The javascript missions will be covering vulnerabilities through poor programming techniques. The realistic missions build on the previous lessons and provide a life-like vulnerable web application. This meeting will be the first in a three part series that culminates in a capture the flag competition.

Everyone is welcome to join us at our chapter meetings.

If you have any questions/comments you can contact me at jstrosch AT gmail DOT com.

SD OWASP Board Members


MEETING ARCHIVES AND MINUTES

November 18, 2009
September 9, 2009
March 11, 2009
January 14, 2009