Dan Cornell Presented at the OWASP EU Summit '08 in Portugal
Dan Cornell spent November 3-7 in Portugal for the OWASP EU Summit '08, where a group of OWASP leaders and key industry players gathered to discuss the latest OWASP tools and documentation projects.
One of the key accomplishments of the summit was the formation of several Global Committees, including a Conferences Committee that will be in charge of planning and executing OWASP events in coming years.
Dan presented a session on the OWASP Open Review Project (ORPRO), a project he has been working on with Mario deBoer and Fortify Software for the past couple of months. The goal of ORPRO is to make security code review services - both automated and manual - available to open source projects.
Read about Dan's daily experiences at the summit on Denim Group's blog:
Monday Dan Speaks to Students at the University of Algarve
Tuesday Review of Sessions on JSP Testing Tool, Orizon, and ESAPI.NET
Wednesday Review of Sessions on Positive Security Project, Education Project, Internalization and PASSWD
Thursday Review of Sessions on Source Code Review Project, Securing WebGoat with mod security, Enigform and mod OpenPGP Project, and AntiSamy.NET Project
Friday Outcome of the Summit
Saturday Dan's Day Trip to Morocco
|
Denim Group Introduces New Spin-Off, Denim Labs Initial Project Selected for UTSA's Internet Security Incubator
Denim Group recently announced new spin-off, Denim Labs. Denim Group created Denim Labs to commercialize leading edge technology, which will be developed with support from universities for research and seed capital in the form of R&D resources.
As a start, a new code scanner by Denim Labs designed to detect vulnerabilities in PHP code was selected to enter the UTSA
Institute for Cyber Security's newly launched Internet security Incubator. This Incubator was developed to commercialize promising technologies that address major cyber security and privacy issues.
|
Call for Volunteers to Review Open Source Code
OWASP Open Review Project (ORPRO)
We are surrounded by open source software. Not only the open source
software all of us use, but also many of the commercial applications
contained in open source libraries. The OWASP Open Review Project (ORPRO) exists as a
resource for open source projects and for the community in general. The
goal is to provide resources for both automated and manual review of
open source applications and libraries.
Denim Group principal, Dan Cornell, is helping lead ORPRO, and the team is currently looking for volunteers to perform security reviews on open source code. If you are interested in participating, email Dan. |