This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Working Sessions Browser Working Group Securing Plugins"

From OWASP
Jump to: navigation, search
Line 17: Line 17:
 
|-
 
|-
 
| align="center" style="width: 15%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | '''Short Work Session Description'''  
 
| align="center" style="width: 15%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | '''Short Work Session Description'''  
| align="left" colspan="6" style="width: 85%; background: none repeat scroll 0% 0% rgb(204, 204, 204);" | One of the great challenges of application security is browser security. The browser is becoming our de facto runtime platform for applications and it comprises a whole ecosystem of plug-ins and web technologies. Therefore we will spend a full day working together with the leading browser vendors to penetrate current problems, new ideas, and how security fits in alongside other requirements from developers and end-users. Do not miss this chance to influence what's important in browser security in the coming years. <br>
+
| align="left" colspan="6" style="width: 85%; background: none repeat scroll 0% 0% rgb(204, 204, 204);" | Should browsers ship with default plugins? Should plugins be auto-updated? Can plugins or versions of plugins be blacklisted centrally?<br>
 
|-
 
|-
 
| align="center" style="width: 15%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | '''Related Projects (if any)'''  
 
| align="center" style="width: 15%; background: none repeat scroll 0% 0% rgb(123, 138, 189);" | '''Related Projects (if any)'''  
| align="left" colspan="6" style="width: 85%; background: none repeat scroll 0% 0% rgb(204, 204, 204);" | <br>[http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group Browser Security Working Group], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_Sandboxing Sandboxing], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_Enduser_Warnings Enduser Warnings], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_Blacklisting Blacklisting], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_OS_Integration OS Integration], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_JavaScript JavaScript], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_New_HTTP_Headers New HTTP Headers]
+
| align="left" colspan="6" style="width: 85%; background: none repeat scroll 0% 0% rgb(204, 204, 204);" | [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group Browser Security Working Group], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_Sandboxing Sandboxing], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_Enduser_Warnings Enduser Warnings], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_Blacklisting Blacklisting], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_OS_Integration OS Integration], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_JavaScript JavaScript], [http://www.owasp.org/index.php/Working_Sessions_Browser_Working_Group_New_HTTP_Headers New HTTP Headers]
  
 
|-
 
|-

Revision as of 01:15, 3 December 2010

Global Summit 2011 Home Page
Global Summit 2011 Schedule
Global Summit 2011 Working Sessions


Working Sessions Operational Rules - Please see here the general frame of rules.
WORKING SESSION IDENTIFICATION
Work Session Name Browser Security - Securing Plugins
Short Work Session Description Should browsers ship with default plugins? Should plugins be auto-updated? Can plugins or versions of plugins be blacklisted centrally?
Related Projects (if any) Browser Security Working Group, Sandboxing, Enduser Warnings, Blacklisting, OS Integration, JavaScript, New HTTP Headers
Email Contacts & Roles Chair
Secretary
Mailing list
Subscription Page
WORKING SESSION SPECIFICS
Objectives
  1. Discuss gaps and patterns in gaps in security coverage across frameworks,
  2. Discuss possible solutions for security areas.
Venue/Date&Time/Model Venue
OWASP Global Summit Portugal 2011

Date&Time

Discussion Model
"Participants + Attendees"

WORKING SESSION OPERATIONAL RESOURCES
Projector, whiteboards, markers, Internet connectivity, power

WORKING SESSION ADDITIONAL DETAILS
  • Related resources:
  • Frameworks to invite:
WORKING SESSION OUTCOMES
Statements, Initiatives or Decisions Proposed by Working Group Approved by OWASP Board

Actionable advice for each individual frameworks. After the Board Meeting - fill in here.

Identify points-of-contact for frameworks. After the Board Meeting - fill in here.

Working Session Participants

(Add you name by editing this table. On your the right, just above the this frame, you have the option to edit)


WORKING SESSION PARTICIPANTS

Name Company Notes & reason for participating, issues to be discussed/addressed




























































If needed add here more lines.