Mais Encore

Aller au contenu | Aller au menu | Aller à la recherche

lundi 7 juin 2010

OWASP ModSecurity Core Rule Set

OWASP ModSecurity Core Rule Set: "

Hello OWASP Leaders. I wanted to let you all know that a new version of the OWASP ModSecurity Core Rule Set (CRS) is now available (v2.0.7).

(Via Jeff Williams Blog.)

Technorati Tags: , , ,

vendredi 4 juin 2010

AppSec DC

AppSec DC: "

Colleagues,

Building on the success of AppSec DC 2009, OWASP is pleased to announce the OWASP AppSecDC 2010 conference held at the Walter E. Washington Convention Center on November 8th through 11th 2010. Plenary sessions will be on November 10th and 11th preceded by Web Application Security Training on November 8th and 9th.

We are seeking presentations on the following topics:
- OWASP Tools and Projects
- Cloud Application Security
- Government Approaches to Application Security
- Application Security Case Studies
- Application Security and Business Risks
- Metrics for Application Security
- Web Services Security
- Source Code Review
- Web Application Security Testing
- Secure Coding Practices
- Privacy Concerns
- Vulnerabilities/Exploits in the Web App World
- Defense & Countermeasures in the Web App World
- Other web application security topics

Submit papers to http://www.easychair.org/conferences/?conf=appsecdc2010. Submission deadline is July 31st 2010. Inquires can be made to cfp@appsecdc.org.
Additional information can be found in the FAQ. You will have to sign up for an EasyChair account at https://www.easychair.org/account/signup.cgi.

Conference Website: https://www.owasp.org/index.php/OWASP_AppSec_DC_2010
FAQ: https://www.owasp.org/index.php/OWASP_AppSec_DC_2010_-_FAQ

Please forward to all interested practitioners and colleagues.

Regards,
The AppSec DC Program Committee
"

(Via Jeff Williams Feed.)

Technorati Tags: , ,

dimanche 30 mai 2010

OWASP AppSec Research 2010

OWASP AppSec Research 2010

It's time to create a digital storm and invite the world to OWASP AppSec Research 2010 this summer. We have a fabulous program and will celebrate with a gala dinner at Stockholm City Hall (http://international.stockholm.se/Tourism-and-history/The-Famous-City-Hall/Events-and-receptions/Rent-the-Halls).

(Via OWASP Blog.)

Technorati Tags: ,

The OWASP Top Ten and ESAPI – Part 6 – Cross Site Request Forgery (CSRF)

The OWASP Top Ten and ESAPI – Part 6 – Cross Site Request Forgery (CSRF): "No Gravatar

This article will describe how to protect your J2EE application from Cross Site Request Forgery (CSRF/XSRF) attacks using ESAPI. As with all of the detail articles in this series, if you need a refresher on OWASP or ESAPI, please see the intro article The OWASP Top Ten and ESAPI.

(Via John Melton Blog.)

Denim Group, Ltd.: OWASP San Antonio Slides for OpenSAMM Presentation Online

Denim Group, Ltd.: OWASP San Antonio Slides for OpenSAMM Presentation Online: "Denim Group, Ltd.

(Via .)

Recensement.....

Alors, ca commence a faire beaucoup de site qui vous renvoie votre mot de passe....
Alors si on faisait une petite liste(non représentative, mais ca aidera....) : Pour rappel le renvoi des mots de passes est considéré comme un failed par les bonnes pratiques de dév.... S.

lundi 19 avril 2010

Sortie de la nouvelle version du TOP10 OWASP

L'OWASP Top10 2010 est ENFIN sorti !

Lire la suite...

mercredi 17 mars 2010

Busy...Busy....

My last updated come a long time ago. Sorry to miss my blog.
I think I must to setup a reminder every sunday for an article.
Well, Confoo was great, we (me and Antonio, AF French Site ) was absolutely excited to talk and to spend a small week in Montreal.

We have upload our slides on slideshare

So, Confoo was a great experience. We got Security track in a Developer World ! Thanks Philippe for this great idea, and we hope to see you in France/Geneva or Montreal soon !

By the way, just check the update on the OWASP Fuzzing Database :

and OWASP Jbrofuzz is released

jeudi 18 février 2010

Ayez confiance....

Vous avez demandé l'envoi par e-mail de votre mot de passe de sécurité blahblahediteurd'antivirus.

Vous trouverez ci-dessous vos informations de connexion complètes :

  • Adresse e-mail: mon@dresse.com
  • Mot de passe blahblahediteurd'antivirus: monmotdepasse

Après cela ne vous posez plus de questions..... Si même ces gens oublient la base

mardi 19 janvier 2010

Speaking at Microsoft TechDays 2010

I will be presenting OWASP ASVS on Monday 8 February 2010 at Microsoft TechDays 2010.
This will be the first presentation in France of the ASVS.

Hope to see you in February !