Ottawa
From OWASP
Contents |
Welcome to the OWASP Ottawa Local Chapter
Welcome to the local Ottawa chapter homepage. The chapter leaders are Mike Sues and Sherif Koussa
Participation
OWASP chapter meetings are free and open to anyone interested in application security. We encourage members to give presentations on specific topics and to contribute to the local chapter by sharing their knowledge with others. Prior to participating with OWASP please review the Chapter Rules.
To join the chapter mailing list, please visit our mailing list homepage. The list is used to discuss the meetings and to arrange meeting locations. You can also review the email archives to see what folks have been talking about. Please check the mailing list before coming to a meeting to confirm the location and time and to catch any last minute notes.
Meetings Location
Elytra Enterprises: 2625 Queensview Drive, Suite 105. Map
RSVP
Please RSVP to owasp.ottawa@gmail.com. Please include name, company and how many attendees.
Next Meeting: Wednesday, November 28th, 2007
Meeting Sponsor:
Rigel Kent Security
Meeting schedule:
6:00-6:30 Food and drinks
6:30-7:30 Main presentation
7:15-8:00 Open discussion and questions
Speaker: Erik Klein - Fortify Enterprises
Topic : Make My Day - Just Run a Web Scanner: Countering the Faults of Typical Web Scanners Through Byte-Code Injection - Bytecode instrumentation allows a user to inject additional code into an application's binary. This technique has traditionally been used to measure the runtime performance and test coverage of Web applications. However, bytecode instrumentation has other promising uses, including software security. As the overall security space evolves from the outside-in approach we saw with Web Application Firewalls in the 1990s, bytecode instrumentation provides the perfect opportunity to embed security into the application itself. This talk will provide an overview of bytecode instrumentation, demonstrate how the technology works, and show some concrete ways it can be used to inject security features into an application after it has been developed
Speaker Notes: Download Here

