[Owasp-boston] OWASP Boston 9/14 Meeting

Weiler, Jim Jim.Weiler at starwoodhotels.com
Tue Sep 13 20:43:54 EDT 2011

Just a reminder about our second Sept. meeting - 


Wed. Sept 14, Jobspring offices, 545 Boyleston St. 6th floor,  Boston

Dinis Cruz

OWASP O2 Platform
Dinis Cruz

The O2 Platform is focused on automating application security knowledge
and workflows. It is specifically designed for developers and security
consultants to be able to perform quick, effective and thorough source
code-driven application security reviews (blackbox + whitebox). In
addition to the manual findings created/discovered by security
consultants, the OWASP O2 Platform allows the easy consumption of
results from multiple OWASP projects and commercial scanning tools. This
allows security consultants to find, exploit and automate (via Unit
Tests) security vulnerabilities usually dismissed by the community as
impossible to find/recreate. More importantly, it provides security
consultants a mechanism to: (a) "talk" with developers (via UnitTest),
(b) give developers a way to replicate + "check if it's fixed" the
vulnerabilities reported and (c) engage in a two-way conversion on the
best way to fix/remediate those vulnerabilities. For more details
<https://www.owasp.org/index.php/OWASP_O2_Platform> , to download binary
or source goto http://code.google.com/p/o2platform/downloads/list

Dinis Cruz is a Security Consultant based in London (UK) and specialized
in: ASP.NET/J2EE Application Security, Application Security audits and
.NET Security Curriculum Development.
For the past couple years Dinis has focused on the field of Static
Source Code Analysis and Dynamic Website Assessments (aka penetration
testing), and is the main developer of the OWASP O2 Platform which is an
Open Source project that is focused on 'Automating Security Consultants
Knowledge/Workflows' and 'Allowing non-security experts to access and
consume Security Knowledge'. Dinis is currently focused on making the O2
Platform the industry standard for consuming, instrumenting and
data-sharing between: the multiple WebAppSec tools, the Security
consultants and the final users (from management to developers).
<https://www.owasp.org/index.php/User:Dinis.cruz> )



Jim Weiler       CISSP   CSSLP   GSSP - Java

Sr. Mgr.  Information Security Risk Assessment

Starwood Hotels      1505 Washington St.   Braintree MA. 02184

desk - 781 356 0067

mobile - 7816546048


This electronic message transmission contains information from the Company that may be proprietary, confidential and/or privileged. 
The information is intended only for the use of the individual(s) or entity named above.  If you are not the intended recipient, be 
aware that any disclosure, copying or distribution or use of the contents of this information is prohibited.  If you have received 
this electronic transmission in error, please notify the sender immediately by replying to the address listed in the "From:" field. 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://lists.owasp.org/pipermail/owasp-boston/attachments/20110913/24f734f9/attachment.html 

More information about the Owasp-boston mailing list