Louisville

Upcoming Events
We will be holding the next chapter meeting on August 1st @ 11:30AM-12:30PM.

Topic: Using CSP to defend against XSS and other attacks.

Presenter: Mark Goodwin

Location: Heartland Payment Systems, One Heartland Way, Jeffersonville, IN 47130

Abstract: CSP is a valuable defence against XSS and other attacks on web applications. This talk provides an introduction to the technology, why it's needed, how it works and also provides some hints on overcoming a few of the challenges presented by using CSP in the real world.

Mark Goodwin works on application security for Mozilla, creators of the popular Firefox web browser (and CSP!). At work, Mark works with web applications and browser security. At home, he plays with security too; web, phone apps, consumer electronics - all sorts. Mark has previously worked on Internet banking, e-commerce, embedded systems and logistics software.

The meeting is free as always. Water, coffee, and soft drinks are provided at no cost. Feel free to bring a lunch if you like.

Enter at the main entrance and sign-in at the front desk. The meeting room is in the lobby area on the second floor.

We hope to see you there!

Past Events
'''Please note: videos of our meetings are below in the presentations sections. We will try to take video of each meeting based on the speaker's permission. Demos may be omitted.'''

Louisville OWASP Chapter Board Members
Scope of the board is to discuss and approve local activities, meetings and plans.The board meetings will be announced at a later date. The board currently includes the following members:
 * [mailto:curtis.koenig@owasp.org Curtis Koenig] - Chapter Leader
 * [mailto:cfiske@humana.com Carolyn Fiske] - Sponsor Relations
 * [mailto:hnhaworth@gmail.com Heather Haworth] - Coordinator
 * [mailto:Brian.Blankenship@owasp.org Brian Blankenship] / [mailto:ksullivan31@gmail.com Kristen Sullivan] - Communications

Join our group on LinkedIn
http://www.linkedin.com/groups?gid=1917263

Meeting Presentations
We are now trying to video all of our presentations thanks to our newest board member, Adrian Crenshaw! The taping of our meetings will be with the consent of our speakers. Thanks.

March 2009 Presentation

June 2009 Presentation Adrian Crenshaw

September 2009 Presentation Rohyt Belani

January 2010 Presentation Rafal Los

About OWASP
The OWASP Foundation is a 501(c)3 non-profit organization incorporated in the United States of America. OWASP's all-volunteer participants produce free, professional quality, open-source documentation, tools, and standards. Consult the how OWASP works web page for more information about projects and governance.

OWASP Membership

OWASP is an open source project dedicated to finding and fighting the causes of insecure software. All of our materials are free and offered under an open source license, so you do not have to become a member to use them or participate in our projects, mailing lists, conferences, meetings or other activities. On the other hand OWASP rely membership fees and sponsorship to support his activities. There are also unique benefits to become a corporate member such as the use of OWASP materials within your organization without the restrictions associated with the various open source licenses. OWASP individual members also get discounts to security conferences and other perks. For more information consult the OWASP Membership web page.

Articles, Links, etc.
OWASP article with the official SCG release on Darkreading magazine today.

http://www.darkreading.com/security/app-security/showArticle.jhtml?articleID=216402325

The Rocky Road to More Secure Code

http://www.darkreading.com/security/app-security/showArticle.jhtml?articleID=216403548&cid=nl_DR_WEEKLY_T

OWASP Sheds Light on its Security Standards

http://www.sdtimes.com/OWASP_SHEDS_LIGHT_ON_ITS_SECURITY_STANDARDS/About_OWASP_and_SECURITY/33469