[Owasp-brooklyn] OWASP Brooklyn Training
Bev Corwin
bev.corwin at owasp.org
Mon Mar 2 14:58:28 UTC 2015
OWASP Brooklyn Training:
http://www.meetup.com/OWASP-Brooklyn/events/220434826/
- Wednesday, March 4, 20151:00 PM to 6:00 PM
-
Alpha One Labs
<http://maps.google.com/maps?f=q&hl=en&q=657+Meeker+Avenue%2C+Brooklyn%2C+NY%2C+us>
657 Meeker Avenue, Brooklyn, NY (edit map
<http://www.meetup.com/OWASP-Brooklyn/events/220434826/>)
-
OWASP Brooklyn Training:
Instructor: Vlad Gostomelsky
Assistant Instructor: Donald Gooden
The class aims to familiarize students with the OWASP top 10, and how to
test for them using the OWASP testing guide.
Class will review the OWASP top 10 and the risks they pose to the
application. The class will walk through a sample vulnerable web
application. Class will break up into teams and work together with
instructors to identify vulnerabilities in the application, document the
findings and present the findings.
Class will help students understand penetration testing process,
essential due-diligence steps involved in performing a penetration test,
documenting finding, and putting together a report.
Students will use free and open source tools available to attackers on
the internet.
Scoping, testing checklist, verifying URLs and credentials, information
gathering, phone call, scoping, RFP, reconnaissance, application
fingerprinting, application entry points, authentication, session
management testing, session identifiers, authorization bypass, user
enumerationpassword recoveryprivilege escalation, input validation, cross
site scripting, stored, reflective, sql injection,
encryption, SSL, viewstate, and documenting findings.
Students will need a machine with network connectivity
web browserburp suite (pro or free)OWASP ZAP . You will need your own
Internet hot spot connection. There is no WIFI at Alpha One Labs.
Fee: There is no "formal" class fee, however, donations are accepted,
and you can make a donation here:
https://www.regonline.com/Register/Checkin.aspx?EventId=1044369 . Please
be sure to mention that it is for OWASP Brooklyn Training.
OWASP Brooklyn membership information is available here :
https://www.owasp.org/index.php/Brooklyn
Meetings and meetups are free and open to all, however, you are welcome
to become a member, and/or to make a donation.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.owasp.org/pipermail/owasp-brooklyn/attachments/20150302/1f9de509/attachment.html>
More information about the Owasp-brooklyn
mailing list