Archive for the 'OWASP' Category



The Security-Zone is as far as I know, the most important and biggest security event in Switzerland and like last year I was there to present some stuff. Also like the last time, I wasn’t alone, there where Pascal Mittner from Astalavista IT Engineering and Pascal C. Kocher from Defcon Switzerland (I’ll write something about [...]

As some of you might know, during the last week we had the Global OWASP Week 2008. As I’m the actual leader of the OWASP Switzerland Local Chapter, I organized a meeting during this week. Because we needed some more space, we went to the ETH Zurich where we had a room for 46 people. [...]

Security-Zone 2007 Review

Last week I was at the Security-Zone 2007, which is the most important security related event we’ve got here in Switzerland (and it’s by the way absolutely for free). At this event Hans-Peter Waldegger and I had a talk in the name of the OWASP Switzerland Local Chapter, which was focused on structured application security [...]

In my posting “Article on the OWASP Top 10 (in German)” I wrote, that there is an article/translation on/of the OWASP Top 10 in German of mine in the newsletter of the Security-Zone, which is the most important IT security event we’ve got here in Switzerland. Now I get a request from the well known [...]

Attention: If Acunetix is an OWASP member but for any reasons is not listed on the OWASP website, everything’s OK from my point of view and this posting is irrelevant at all. But I found no information about an OWASP membership by Acunetix on the Net. Also I’m not a lawyer so the following posting [...]

As I already wrote in my last post “OWASP Switzerland goes Public“, there will be an article of mine about the OWASP Top 10 in the next newsletter of the Security-Zone. It’s more or less a translation of the summary of each point out of the original (English) OWASP Top 10. Today, this newsletter went [...]

OWASP Switzerland goes Public

As you might know, the OWASP Switzerland Local Chapter (re-)started at the 11. November 2006 and up to then from my point of view it’s a success story. For example we had two slots at the Tweakfest 2007 where we talked about the OWASP at all and also presented the OWASP Top 10. Unfortunately there [...]

Planet-Websecurity.org

About two weeks ago I wrote to the OWASP Leaders mailinglist the following proposal:

Hi everyone,
a working colleague of mine, just pointed me to a project called “Planet”. With something like this it would be possible to catch all the news by OWASP related people, written in their own blogs, even if they don’t use an [...]

owasp.org “hacked”

From time to time, I’m reading the latest changes on the wiki at owasp.org so that I don’t miss any news. Today there was something really strange in the change history. At the OWASP Papers Section a guy named UzMan (Wiki username was “Ukehmf231″) has “hacked” this page:
See the “hacked” page here
OK, what happend? This [...]

AppSec Conference in Milan

From the 15th-17th May 2007 the 6th OWASP AppSec Conference was held in Milan. For me, it was the first OWASP conference and so I was really looking forward to it and was curious about it. Now the conference is finished and I really have to say that it was the best conference I’ve ever [...]