
Maryland Alliance for Information Security Assurance
Events
MAISA (The Maryland Alliance for Information Security Assurance) would like to invite you to two new faculty development activities. First is a three-day workshop on identity and identity theft, and the second is our first MAISA Educators Forum, featuring Robert Seacord from the CERT/Coordination Center at the Software Engineering Institute, and author of the book “Secure Coding in C and C++”.
Web Application Security
Despite the fundamental importance of web application security, it remains a difficult topic to teach, in part because web applications rely on many different technologies and languages, making it difficult to give students hands-on experiences.
The Open Web Application Security Project (OWASP) is a free and open community devoted to the development of application security. In this workshop, we will learn about some of important components of the OWASP project, including:
WebGoat, a deliberately insecure web application designed to teach web application security. WebGoat is a free, easy to set-up J2EE application that will run on any machine with a Java virtual machine, making it well-suited for classroom use and for student assignments. It is designed around a series of lessons giving hands-on experience with topics like cross-site scripting, SQL injection, access control errors, and hidden form field manipulation.
WebScarab, a framework for analyzing HTTP and HTTPS traffic to and from a web server. WebScarab is a free tool (written in Java) that will let your students intercept, analyze and modify traffic to and from a web server.
OWASP Top 10, the top 10 most common Internet application vulnerabilities.
The OWASP ESAPI Project, a free and open project to develop an a secure API for multiple languages to enable the development of more secure web applications.
Speaker: Dave Wichers, Aspect Security
Location: Towson University, 7800 York Road, Room 402.
Dates: January 15-16, 2008
Time: 9:30am-4:00 pm. Lunch will be provided.
RSVP: Lisa Loewe at 410 704-4909 or mloewe@towson.edu.
Time: 9:30 am- 4:00 pm. Lunch will be provided.
Division of Economic and Community Outreach
Maryland Alliance for Information Security Assurance
Office Location: 7801 York Road, Suite 260
Phone: 410-704-4909
Fax: 410-704-4908
E-mail: moleary@towson.edu
|