Archive for the 'OWASP' Category

Social Networking, Crowd Sourcing and Security

June 10, 2008

I thought I posted this a while back so my apologies. At the OWASP Conference I spoke about social networking and how it may be applied to security domain in the future.  I used the slide below.
 

 
In a related but unconnected event, that Friday someone of the team sent out a simple spreadsheet [...]

Checklists Are Not For Dummies, Dummy!

May 24, 2008

At the OWASP Conference in Belgium this week I had a slide about checklists.

This is the story behind the slide. My boss at Microsoft has a friend who is a pilot. He did his pre-take-off checklist and was cleared to taxi onto the runway by air traffic control. He consulted his checklist one [...]

Presenting Security Ideas or Driving Agendas?

May 24, 2008

I opened the OWASP Europe Conference this week with a slide (below) about vendor neutrality.

In essence I urged attendees to consider the motivations of those presenting various ideas at the conference; including myself of course. During the conference it was pointed out that the moderator of a panel “The PCI 6.6 Dogfight - [...]

What Do Online Communities and Global Politics Have in Common?

April 13, 2008

I got back from Redmond yesterday. I am getting old so couldn’t sleep well last night; luckily for me the BBC shows Our World during the night and I caught Danger - Democracy at Work. As usual it was a superb bit of journalism this time questioning Americas dogma to spread their own blend of [...]

Techdays 2008, L’Innovation Avance Avec Nous

February 1, 2008

Comprendre les problèmes courants de sécurité des applications Web, utiliser les ressources du projet OWASP (WEB303)animé par Mark Curphey , Sébastien Gioria
Audience : Architectes Décideur technologique Développeur Enseignants et chercheurs Informaticiens Niveau : Confirmé (300)
Le lundi 11 février 2008, 11:00 - 12:00.
Cette session a pour but de sensibiliser les développeurs aux vulnérabilités et aux [...]

Upcoming Speaking Events and DeepSec Austria Slides

December 10, 2007

DeepSec Austria was a great event. You can get my slides here. I think fun was had by all but feel free to leave a comment if you were there!
I will be speaking at a few events in the new year (…plus a few more not yet confirmed).
OWASP Australia - Gold Coast (keynote)
Microsoft TechDays 2008 [...]

Notes from Helsinki

October 2, 2007

When you have a choice between Reindeer steak or Beef steak on your menu you know you are in Finland! I like Finland, it’s great. Really nice people and a lovely coastal environment. At this time of year for someone who still live in the South of France it is a little cold!
I [...]

How to Write Insecure Code

October 2, 2007

Who said security can’t be funny? This humorous article by Jeff Williams made me chuckle.

OWASP Helsinki - Tuesday October 2nd

September 27, 2007

If you promise not to mention the name Kimi Raikkonen you are welcome to the OWASP Helsinki chapter meeting next Tuesday where I will be speaking about lots of things software security.
Hope to see you there!

SecurityLinkUp is now an OWASP Project

September 25, 2007

SecurityLinkUp.com is now an OWASP project. The original code is being thrown away. Brian Bertacini and Sebastien Deleersnyder are project managers and developing a set of requirements now.