line
transparentspacer transparentspacer

Upcoming Events & Webinars ::

 

WhiteHat & F5 Networks Luncheonswebinar11:30 AM: Registration
Noon: Lunch Served
Noon to 1:30 PM: Program
August 19, Four Seasons Hotel, Atlanta
August 20, The Tribeca Grand Hotel, New York City
August 21, The Peninsula Chicago, Chicago

F5 logoWhiteHat Security, the leader in SaaS website security, and F5 Networks, the global leader in Application Delivery Networking, cordially invite you to a attend one of our luncheons.

At these events, you will learn about advancements in protecting and securing Web applications from attacks and hear from industry leaders.

In Atlanta you will hear from Allen Stone, E*TRADE Financial's Senior Security Specialist, who will offer insights into how he drives website security at a leading financial organization.

In New York, Jim Routh, Depository Trust & Clearing Corporation (DTCC) Chief Information Security Officer, will offer insights into how he drives website security at his organization.

In Chicago, Anna Sherony, Sammons Financial's Privacy and Information Protection Officer, will offer insights into how she drives website security at a leading financial organization.

We will then present a live demonstration of a revolutionary new solution that closes the loop from Web application vulnerability detection to remediation – an integrated solution delivering TOTAL website security.

  • Welcome & Website Security Overview: Stephanie Fohn, CEO, WhiteHat

  • Regional guest speaker (see list above)

  • Integrated Web Application Firewall Presentation and Demonstration: An F5 Networks Security Systems Architect and WhiteHat Security Founder and CTO, Jeremiah Grossman

WhiteHat CEO, Stephanie Fohn will open the program and provide a snapshot of the latest website attacks from the WhiteHat Statistics Report. An F5 Security Systems Architect and WhiteHat CTO and Founder, Jeremiah Grossman will offer a first look at "virtual patching," an exciting new concept in website vulnerability management. This solution:

  • Closes the loop from vulnerability detection to remediation
  • Increases security via WhiteHat's rapid identification and reporting of website vulnerabilities
  • Delivers one-step PCI 6.6 Compliance

Register to attend the August 19th, 11:30 AM, Atlanta Luncheon ›››
The Four Seasons Hotel | (404) 881-9898
75 Fourteenth Street, Atlanta, GA 30309

Register to attend the August 20th, 11:30 AM, New York City Luncheon ›››
The Tribeca Grand Hotel | (212) 519-6642
2 Avenue of the Americas, New York, NY 10013

Register to attend the August 21st, 11:30 AM Chicago Luncheon ›››
The Peninsula Chicago | (312) 337-2888
108 East Superior Street, Chicago, IL 60611

OWASP blackhat logoChicago Regional EventAugust 21st | 6:00 PM
Bank of America Plaza
540 W. Madison, Downtown Chicago, 23rd Flloor
Learn More and Register Now ›››

Jeremiah Grossman, founder and CTO WhiteHat Security
7:15 PM- Get Rich or Die Trying - Making Money on The Web, The Black

Forget Cross-Site Scripting. Forget SQL Injection. If you want to make some serious cash on the Web silently and surreptitiously, you don’t need them. You also don’t need noisy scanners, sophisticated proxies, 0-days, or ninja level reverse engineering skills -- all you need is a Web browser, a clue on what to look for, and a few black hat tricks. Generating affiliate advertising revenue from the Website traffic of others, trade stock using corporation information passively gleaned, inhibit the online purchase of sought after items creating artificial scarcity, and so much more. Activities not technically illegal, only violating terms of service.

You may have heard these referred to as business logic flaws, but that name really doesn’t do them justice. It sounds so academic and benign in that context when the truth is anything but. These are not the same ol’ Web hacker attack techniques everyone is familiar with, but the one staring you in the face and missed because gaming a system and making money this way couldn’t be that simple. Plus IDS can’t detect them and Web application firewalls can’t black them. If fact, these types of attacks are so hard to detect (if anyone is actually trying) we aren’t even sure how widespread their use actually is. Time to pull back the cover and expose what’s possible.

Mark your Calendar - WhiteHat Webinar: Latest Website StatisticswebinarAugust 27th, 11:00 AM PT
Registration Available August 13th ›››

WhiteHat Security founder and CTO, Jeremiah Grossman, will present new findings from the latest WhiteHat Web Application Security Statistics Report. Based on WhiteHat’s aggregate data from hundreds of Web application assessments, Mr.Grossman's presentation will provide a look at the top vulnerabilities that attackers are exploiting to break into commercial websites.

WhiteHat Security is the only source that can track and present a comprehensive Website Security Statistics Report.

OWASP NYC AppSec 2008 Conferenceblackhat logoSeptember 24 – 25
One Pace Plaza New York, NY 10038
Register Now ›››

In association with: WASC, NYM InfraGard, AITGlobal, NYC PHP, NYCBUG, ISACA, ISSA and Pace University you're invited to (2) days of Seminars and Technology Pavilion from the world's best application security technology minds, (2) days of hardcore hands-on training, all held at Pace University, located in downtown New York City at One Pace Plaza New York, NY 10038. Event Fees: $350 Members / $400 Non-Members / $200 for Students for 2 days of hands on training classes are also available.

Arian Evans, Director of Operations
September 24, 5:00 PM
Threading the Needle: Bypassing web application/service security controls using Encoding, Transcoding, Filter Evasion, and other Canonicalization Attacks

Jeremiah Grossman, founder and CTO WhiteHat Security
September 25, 9:00 AM
Good vs. Evil JavaScript

 

Where We Have Been :: 2008


Black Hat USA 2008 Briefings and Training | August 4-7
WhiteHat Webinar – WhiteHat & F5 WAF Demonstration
WhiteHat Webinar – Dont' Get Caught out of PCI 6.6 Compliance | View Video
Federal Information Security Conference (FISC) | July 1 | Colorado Springs, CO
WhiteHat Luncheon | June 19 | San Jose, CA
FROC08 | June 10 | Denver, CO
SANs Conference | June 2 & 3 | Las Vegas, NV
WhiteHat Webinar – PCI 6.6 Compliance | May 21st
ISSA Los Angeles Chapter Meeting | May 21st | Los Angeles, CA
Security Forum | May 15th | New York, NY
WhiteHat Luncheon | May 2nd | San Francisco, CA
WhiteHat Webinar – Sentinel Demonstration | April 23rd
TRISC |
April 21 – 23 | San Antonio, TX
RSA Conference | April 7 –10 | Moscone Center | San Francisco, CA
WASC Meet-up |
April 9 | San Francisco, CA
WhiteHat Webinar – Sentinel Demonstration | March 26
WhiteHat Webinar – Latest Website Statistics | March 19 | View Video
WhiteHat Luncheon | March 19 | San Jose, CA
InfoSec World
| March 10 – 11 | Orlando, FL
WhiteHat Webinar – Sentinel Demonstration | February 13
WhiteHat Luncheon | February 6th, NJ | February 7th, NYC
CUISPA | February 2th | Hyatt Regency Austin, TX
WhiteHat Webinar - Software-as-a-Service | January 24th | View Video

 

Where We Have Been 2007 Archive ›››

clap

Sentinel Overview :: Movie ::
Take a look at some of the cool Sentinel features in our brief Quicktime movie (8 minutes). quicktime View Movie ›››

WhiteHat Sentinel is the only website security service that enables organizations to address all website vulnerability issues with accuracy and confidence. WhiteHat Sentinel is a Web-based, annual subscription service that combines advanced proprietary scanning technology with expert analysis, allowing customers to quickly and easily identify, prioritize and remediate website vulnerabilities. This comprehensive approach gives all parties a clear view into the organization’s website security posture in an easy-to-deploy and manage, cost-effective service. Learn More ›››

New technology developed by WhiteHat enables organizations to immediately mitigate discovered vulnerabilities using a WAF – perfect solution for PCI compliance. Learn more. Download VA + WAF (F5 Networks) Whitepaper ›››

line
line
line