OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: Training for web developers?

From: Scovetta, Michael V (Michael.Scovettaca.com)
Date: Wed Nov 12 2003 - 09:16:32 CST


Mark--

I attended the "Network Application Design & Secure Implementation" course at Blackhat 2003 Las Vegas. It was a 2-day course, a bit pricey (~$2000), but the material was pretty complete. They'll be giving the course again in January (and possibly at Asia 2003). The pace is a bit fast, and it covers *some* material that isn't directly web-related, but you'll leave feeling pretty insecure about network-based applications. I guess that was the point.

Michael Scovetta
Application Developer
Computer Associates
Web: http://www.ca.com

-----Original Message-----
From: Mark G. Spencer [mailto:mspencerevidentdata.com]
Sent: Sunday, November 09, 2003 7:10 PM
To: webappsecsecurityfocus.com
Subject: Training for web developers?

I'm looking for recommendations on training and/or brainwashing for web developers. Something to indoctrinate the "web guys" in safe coding practices, with a focus on web stuff.

Thanks!

Mark G. Spencer
Computer Forensics Examiner
EvidentData, Inc.
Web: http://www.evidentdata.com