
What we're about
OWASP Suffolk Chapter, free to join, open to all. We meet to discuss & demonstrate web and browser-based vulnerabilities, tools & solutions. More information about OWASP Suffolk can be found at https://www.owasp.org/index.php/suffolk .
If you want to be a speaker at the next Suffolk Chapter event, or help in organising eventplease message the chapter leader on Meetup or via email: wojciech.cichon@owasp.org
We also have mailing group, you can join it here (https://groups.google.com/a/owasp.org/forum/#!forum/suffolk-chapter/join), you can also find us on our slack channel #chapter-suffolk (https://owasp.slack.com/)
If anyone is interested in OWASP membership, please look here (https://www.owasp.org/index.php/Membership)for more details.
Upcoming events (4)
No agenda, no slides, no recording, 100% unscripted.
Practical learning: Live ethical hacking challenges, workshops, CTFs and sharing of knowledge.
- Suraj P.
- Brian J.
- K
- 14 attendees
For the past two years I've been using OWASP ZAP and PortSwigger's Burp Suite (Community Edition), switching between the two as I learned hacking techniques and took part in CTFs. Each has their own pros and cons, features I like, quirks, and even room for improvement.
For this event we will be taking a slow walk through the interfaces and features of both tools side-by-side with both pointed at a vulnerable target.
This will be an interactive session where you can ask questions throughout. This event is aimed at the beginner who wishes to know more about these two popular tools. This is an unbiased demonstration and both tools will be in an out-of-the-box state with no optional extras / add-ons / plugins installed.
Agenda:
- OWASP updates
- Live interactive demonstration of ZAP and Burp Suite CE
Disclaimer: As always our events are designed to educate. Any tools and techniques demonstrated are for informative purposes only. We do not endorse their use for malicious purposes.
This talk will not be recorded.
- Dr. Ashley T. H.
- EmmaKociAk
- Amanda W.
- 23 attendees
No agenda, no slides, no recording, 100% unscripted.
Practical learning: Live ethical hacking challenges, workshops, CTFs and sharing of knowledge.
- Ricardo M.
- Suraj P.
- Brian J.
- 8 attendees
Injection vulnerabilities remain a common problem today. A single mistake could expose your whole database and customer data or give an attacker the ability to remotely execute code on your server.
We will look at some examples of coding mistakes that can lead to injection vulnerabilities and discuss how they could be mitigated.
This is a joint event provided by OWASP Bristol and OWASP Suffolk.
Agenda:
- OWASP updates
- Injection Vulnerabilities talk
Disclaimer: As always our events are designed to educate. Any tools and techniques demonstrated are for informative purposes only. We do not endorse their use for malicious purposes.
- Dr. Ashley T. H.
- EmmaKociAk
- Amanda W.
- 22 attendees
Past events (56)
- David F.
- Adam K
- Adrian
- 53 attendees