Podcast News

OWASP Podcast News

OWASP NEWS April 2009

OWASP General News
Global Committees progress https://www.owasp.org/index.php/Global_Committee_Pages What should the next OWASP Top 10 contain? http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project Upcoming Conferences http://www.owasp.org/index.php/Category:OWASP_AppSec_Conference Season of Code 2009 http://www.owasp.org/index.php/OWASP_Season_of_Code_2009 Board Mins. http://www.owasp.org/index.php/OWASP_Board_Meetings

OWASP AppSec News

 * 5/15 Does Tokenization Solve Anything? http://www.secureconsulting.net/2009/05/does_tokenization_solve_anythi.html
 * 5/16 Daily Dave and crew talk browser-based client side crypto http://seclists.org/dailydave/2009/q2/0093.html
 * 5/19 It’s No Secret. Measuring the Security and Reliability of Authentication via ‘Secret’ Questions http://newschoolsecurity.com/2009/05/179/
 * 5/19 Some Thoughts on the OWASP Top Ten http://blog.ncircle.com/blogs/vert/archives/2009/05/some_thoughts_on_the_owasp_top.html
 * 5/19 Making Secure Code Easier http://blogs.msdn.com/sdl/archive/2009/05/19/making-secure-code-easier.aspx
 * 5/19 Java deserialization issues http://blog.cr0.org/2009/05/write-once-own-everyone.html
 * 5/20 Parameter Pollution http://www.h-online.com/security/New-type-of-attack-on-web-applications-Parameter-Pollution--/news/113333/from/rss
 * 5/28 Don Ankney LayerOne XSS Presentation http://hackerco.de/2009/05/layerone-presentation-video.html
 * 5/28 Logging in the Age of Web Services http://1raindrop.typepad.com/1_raindrop/2009/05/logging-in-the-age-of-web-services.html


 * 6/1 The State of Web Application and Data Security http://securosis.com/blog/the-state-of-web-application-and-data-security-mid-2009/


 * 6/3 The Encryption Myth http://www.boazgelbord.com/2009/06/encryption-myth.html


 * 6/16 Opera Invites You To Join The Cloud http://www.boazgelbord.com/2009/06/opera-invites-you-to-join-cloud.html


 * 6/16 Google Cloud Told To Encrypt Itself http://www.theregister.co.uk/2009/06/16/google_and_https/


 * 6/20 Nevada Mandates PCI http://www.boazgelbord.com/2009/06/nevada-mandates-pci-standard.html


 * 6/30 OWASP Security Spending Benchmarks Project for Q2 Published http://www.owasp.org/images/f/f0/OWASP_SSB_Q2_Project_Report.pdf