[Owasp-o2-platform] O2 Webcast: "Analysing a Spring MVC App (JPetStore) using the OWASP O2 Platform"
dinis cruz
dinis.cruz at owasp.org
Wed Jul 13 10:12:08 EDT 2011
I just setup the following webcast at EventBrite: Analysing a Spring MVC App
(JPetStore) using the OWASP O2
Platform<http://www.eventbrite.com/event/715529167>
I've chosen two dates: tomorrow (Thursday) and Monday, at 4pm London Time.
Hopefully one of them will be convenient to you.
Please register at http://www.eventbrite.com/event/715529167 so that I can
send you more details about what is going to happen at the webcast.
Here is the event description:
*This WebCast will present how to use the OWASP O2
Platform<http://o2platform.com/> to
analyse, automate and review the security analysis of an Spring MVC
application.*
*The included-as-a-demo Spring MVC JPetStore application will be used as a
case study.*
*For more details about the current level of O2 support for Spring MVC, and
for background on what will be presented see the following blog posts:*
*
- Finally ... here is how I have been analysing Spring MVC apps using
O2<http://diniscruz.blogspot.com/2011/07/finally-here-is-how-i-have-been.html>
- Two Security Vulnerabilities in the Spring Framework’s MVC" pdf
(from 2008)<http://diniscruz.blogspot.com/2011/07/two-security-vulnerabilities-in-spring.html>
- Couple more blog posts on JPetStore and additional Spring MVC
Autobinding
vulnerabilities<http://diniscruz.blogspot.com/2011/07/couple-more-blog-posts-on-jpetstore-and.html>
- Reaching out to Spring
Developers<http://diniscruz.blogspot.com/2011/07/reaching-out-to-spring-developers.html>
*
*Or see the following youtube videos:*
*
- JpetStore - BlackBox
Exploits<http://www.youtube.com/watch?v=yzTExpNZ2bw>
- JpetStore - View Spring MVC Controllers and
CommandClasses<http://www.youtube.com/watch?v=ZQd7xqAlSRc>
- Writing an O2 'IE Automation' Script for JPetStore Account
Creation<http://www.youtube.com/watch?v=J4Ojqzb6qsw>
- JpetStore - Start Server and Make sure everything is
working<http://www.youtube.com/watch?v=8Y_zvzLGNtg>
*
*Note: the webcast will be executed using the http://join.me service*
Please forward the details to your other Java/Spring contacts.
Thanks
Dinis Cruz
-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://lists.owasp.org/pipermail/owasp-o2-platform/attachments/20110713/edb638b1/attachment-0001.html
More information about the Owasp-o2-platform
mailing list