Invalid quantity. Please enter a quantity of 1 or more.
The quantity you chose exceeds the quantity available.
Please enter your name.
Please enter an email address.
Please enter a valid email address.
Please enter your message or comments.
Please enter the code as shown on the image.
Please select the date you would like to attend.
Please enter an email address.
Please enter a valid email address in the To: field.
Please enter a subject for your message.
Please enter a message.
You can only send this invitations to 10 email addresses at a time.
$$$$ is not a properly formatted color. Please use the format #RRGGBB for all colors.
Please limit your message to $$$$ characters. There are currently ££££.
$$$$ is not a valid email address.
Please enter a promotional code.
N/A
Sold Out
Pending
You have exceeded the time limit and your reservation has been released.
The purpose of this time limit is to ensure that registration is available to as many people as possible. We apologize for the inconvenience.
This is option is not available anymore. Please choose a different option.
Please read and accept the waiver.
All fields marked with * are required.
Please double check your email address. The email address format does not appear valid.
$$$$ requires a number between ££££ and §§§§
US Zipcodes need to be 5 digits.
Please double check your website URL.
All fields marked with * are required.
Your credit card expiration date is in the past.
Your credit card CSC needs to be 4 digits.
Please confirm your order:
$$$$
You have selected to Pay by Check.
Click OK to confirm your order.
Please confirm your order:
$$$$
You have selected to Pay at the Door.
Click OK to confirm your order.
Please confirm your order:
$$$$
You have selected to Pay upon Receiving an Invoice.
Click OK to confirm your order.
Your credit card CSC needs to be 3 digits.
Your billing zip code needs to be 5 digits.
There was a problem saving your address.
There was a problem saving your credit card info.
There was a problem saving your personal information.
Please select the date you would like to attend.
McAfee Secure sites help keep you safe from identity theft, credit card fraud, spyware, spam, viruses and online scams.
Copying Prohibited by Law - McAfee Secure is a Trademark of McAfee, Inc.
Unknown card type.
No card number provided.
Credit card number is in invalid format.
Wrong card type or credit card number is invalid.
Credit card number has an inappropriate number of digits.
Please enter numbers here.
Please enter an integer value.
Numbers must be less or equal to $$$$
All the required fields have not been filled out. Click OK to proceed without all the required information, or click Cancel to finish entering the missing data.
Sorry, invalid event registration form.
Sorry, invalid event or database error.
Sorry, quantity must be a positive integer.
Sorry, you did not select a valid ticket.
Sorry, invalid event organizer email address.
Your order was canceled.
Thank You. Your order has been successfully completed. Your name and email address have been added to the list of event attendees.
Sorry, that option is sold out.
Sorry, that option is no longer available.
Sorry, there are only tickets of that type still available.
Sorry, you entered an invalid quantity. Please enter a quantity of 1 or more next to the type or types of tickets you would like to purchase.
Sorry, you did not select any tickets to purchase. Please enter a quantity of 1 or more next to the type or types of tickets you would like to purchase.
Sorry, there are no tickets left for this event.
The tickets, ticket quantity or date and time you've requested are no longer available, due to previous sales. Please choose a different date, time or number of tickets and place your order again.
Sorry, one or more of the tickets you requested are no longer available for purchase.
Sorry, you need to select the date you want to attend.
Sorry, the promotional code you entered is not valid yet.
Sorry, the promotional code you entered has expired.
Sorry, the promotional code you entered is not valid.
Your session has expired. Try ordering again.
Sorry, your requested ticket quantity exceeds the number provided by your promotional code.
Sorry, the tickets you are trying to order are not currently available.
Sorry, the payment type chosen is invalid for this event.
Sorry, there is only 1 ticket left for this event.
Sorry, there are only tickets left for this event.
We're sorry, this invitation is invalid.
We're sorry, this invitation has already been used.
We're sorry, you already have an order being processed for this event. Please wait a few minutes and try again.
We're sorry, there is a problem with your invitation. Please try again.
Invalid quantity of tickets selected.
Invalid donation amount.
Sorry, the promotional code you entered has been claimed.
Sorry, the payment type chosen is invalid for this event.
Sorry, your billing address was not saved properly, please try again.
Sorry, we experienced an internal error, please try again.
The captcha you entered is invalid. Please try again.
Invalid credit card selected. You have been logged out.
Sorry, your team selection was not valid.
Sorry, the payment type chosen is invalid for this event.
Sorry, your billing address was not saved properly, please try again.
Sorry, we experienced an internal error, please try again.
State
Zip Code
Province
Postal Code
County
State/Territory
State/Province
Who's Going

Loading your connections...
Event Details
VSEBINA PREDAVANJA
1. Predstavitev KOC RIS (Živa Gorup Reichmann)
2. Predstavitev največjih tveganj spletnih aplikacij - OWASP TOP 10 (Jure Škofič)
OWASP TOP 10 je preprost in jasen kuharski recept za razumevanje desetih največjih tveganj, ki so jim danes izpostavljene prav vse spletne aplikacije. Od leta 2004 ga, z izjemnim občutkom za razumevanje največjih groženj, najnevarnejših napadov in najpogostejših ranljivosti ter tveganj, sestavljajo nekateri svetovni mojstri aplikacijske varnosti. V lanskem letu so se tudi v Sloveniji zgodili uspešni in medijsko odmevni napadi na vladne, bančne in druge spletne sisteme. Med napadi je bilo precej takih, ki so izrabljali najosnovnejše varnostne napake spletnih aplikacij, ki se v naprednih računalniških sistemih nikakor ne bi smele več dogajati, saj so seznamu OWASP TOP 10 že od vsega začetka.
OWASP TOP 10 je zapoved za prav vsakega, ki se bo kadarkoli in kakorkoli ukvarjal z razvojem in varnostjo spletnih aplikacij, od bank, velikih trgovcev, zavarovalnic, finančnih posrednikov, upraviteljev e-storitev, razvijalcev programske opreme ter vseh, ki se zavedate, da ste lahko morebitna tarča spletnih vdorov.
Več o temi:
- OWASP TOP 10 Project: https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project
- OWASP Slovenija: https://www.owasp.org/index.php/Slovenia
- MonitorPro: Najbolj tveganih 10: http://www.monitorpro.si/41651/praksa/najbolj-tveganih-10/
O predavatelju
Z aplikacijsko varnostjo se ukvarjam že slabih pet let, v njej uživam in od “Bondovskega” razgovora za službo pri Acrosu več nisem pogledal nazaj. Navdušuje me vse, kar govori z ničlami in enicami, z veseljem pa napišem tudi kakšno vrstico C-ja.
3. Zlivanje vgrajene, mobilne in spletne (ne)varnosti
Blended world of embedded, web and mobile (in)security (Tadej Vodopivec)
Kratek sprehod od ročnega postopka izdelave paštete, preko industrijske revolucije do mobilnih nadzornih konzol in interneta stvari bom zlorabil za razlago pojma modeliranja groženj (angl. threat modeling). Pokazal bom, kako si z modeliranjem groženj pomagamo do boljše varnostne zasnove sistemov, in kako lahko na osnovi modela groženj preizkusimo, kako trdna je v resnici varnost izdelka. Ob tem bomo spoznali tudi presenetljivo dejstvo, da problemi varnosti podatkov in informacij obstajajo že brez informacijske in komunikacijske tehnologije. Vmes bom pokazal tudi kak praktičen primer varnostne zasnove in preizkusa.
O predavatelju
Nekoč sem bil administrator sistemov. Ko so se ti omrežili, sem postal še administrator omrežij. Ni dosti manjkalo, da bi postal še programer, a v tistem trenutku so se omrežile tudi banke, ki jih vedno poskuša nekdo oropati (ali pa vsaj izčrpati), in razmere so me vodile v to, da sem postal varnostnik. Ime mi je Tadej Vodopivec, delam pa kot dežurni paranojik, pardon, vodja informacijske varnosti, v podjetju ComTrade.
Organizatorji
Kiberpipa je Ljubljanski hackerspace in multimedijski center, ki že več kot 10 let uspešno soustvarja informacijsko družbo in splošno javnost osvešča na področju odprte kode, prostega dostopa in pretoka informacij na internetu, modernih medijev, novih tehnologij, političnih in socioloških pojavov povezanih z internetom, ter se bori za temeljne svoboščine v digitalnem svetu. Ekipo, ki soustvarja Kiberpipo, druži neustavljiva želja po raziskovanju in učenju, nesebičnemu deljenju znanja, druženju ter uporabi infromacijsko-komunikacijskih tehnologij za doseganje boljše družbe ter znanja. Kiberpipa deluje v okviru Zavoda K6/4.
KOC RIS - "Kompetenčni center za uvajanje najboljših praks v razvojne procese na področju informacijskih sistemov" povezuje podjetja, ki imajo interes za razvoj in izmenjava znanja, ki ki je ključno za povečanju konkurenčnosti podjetij in panoge.
KOC RIS je nastal v okviru projekta, ki je bil izbran na javnem razpisu za sofinanciranje vzpostavitve in delovanja kompetenčnih centrov za razvoj kadrov za obdobje od 2010 do 2013, Javnega sklada RS za razvoj kadrov in štipendije ter sofinanciran v letih 2011 in 2012 s strani Evropskega socialnega sklada.
Člani konzorcija želimo z delom nadaljevati tudi po zaključku sofinanciranja ter skozi povezovanje z ostalimi podjetji, posamezniki ter formalnimi in neformalnimi združenji odpirati pot do različnih znanj.
OWASP (Open Web Application Security Project, http://www.owasp.org) je odprta, globalna, brezplačna in neprofitna skupnost, ki se posveča dvigovanju varnostnega nivoja programske opreme. Poslanstvo OWASP je seznanjanje in osveščanje javnosti o pomembnosti aplikacijske varnosti in primernih načinih zavarovanja. Posameznikom in organizacijam želimo omogočiti, da glede dejanskih varnostnih tveganj programske opreme sprejemajo informirane odločitve.
Skupnosti OWASP se lahko pridruži kdorkoli. Vsa gradiva so dostopna z uporabo brezplačne licence.
When & Where
Kiberpipa, kletni prostori v kavarni Metropol
6 Kersnikova ulica
1000
Slovenia
Tuesday, February 19, 2013 at 4:30 PM (CET)
Add to my calendar
In order to purchase these tickets in installments, you'll need an Eventbrite account. Log in or sign up for a free account to continue.