Fwd: RSA Conference 2024 agenda is live

61 views
Skip to first unread message

Dirk Wetter

unread,
Mar 8, 2024, 4:30:34 AM3/8/24
to Leaders
Hi,

is OWASP now RSA Conference or why did I get an unsolicited
mail from OWASP (with OWASP/mailchimp trackers) with 100% RSA Conference
content??

If I click on link in the footer it tells me

"
You were subscribed to this list because:
You are receiving this email because you opted in via our website.

OWASP Foundation
401 Edgewater Place, Suite 600
Wakefield, MA 01880
"

I may or may not (can´t remember) opted in to receice mails from
OWASP. It's fine though to get mails about what's going on in the OWASP
universe but not anything else.


Dirk

-------- Forwarded Message --------
Subject: RSA Conference 2024 agenda is live
Date: Thu, 7 Mar 2024 20:17:38 +0000
From: OWASP Foundation <donot...@owasp.com>
Reply-To: OWASP Foundation <donot...@owasp.com>
To: dirk_owasp_org



$title

Check out *the agenda*
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=9ca40bb9ce&e=0f6ba5XXXX>,
then register by April 5 to save!

RSAConference 2024 | San Francisco | May 6 - 9 | Moscone Center | THE RSAC 2024
AGENDA IS LIVE! DELIVERING BIG INSIGHTS AND BIG IMPACT. | VIEW AGENDA | THE ART OF
POSSIBLE
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=15986df2e3&e=0f6ba5XXXX>

Agenda

The moment you’ve been waiting for has arrived: *our agenda is LIVE!* Dive into a
world of innovation, inspiration, and connection. Here’s a taste of what’s in store:

* *Sessions:* Immerse yourself in *hundreds of dynamic sessions*

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=5e737616ff&e=0f6ba5XXXX>
spanning a vast spectrum of topics.
* *Inspiring Keynote Speakers:* Hear from *thought leaders*

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=633b3ae188&e=0f6ba5XXXX>
shaping the cybersecurity landscape.
* *Exclusive Networking Events:* Discover numerous ways to *connect and learn*

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=ff71d8dbb1&e=0f6ba5XXXX>
from like-minded industry professionals.

*Register now*
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=340a925037&e=0f6ba5XXXX>
to unlock savings of up to $750.* But act fast—hotels are in high demand. Once you
finish your registration, you can book your hotel at RSAC-negotiated rates through
our official housing partner, onPeak.

VIEW AGENDA
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=f7bc88d14d&e=0f6ba5XXXX>

REGISTER NOW
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=032c83a7e7&e=0f6ba5XXXX>

*ELEVATE YOUR RSAC 2024 JOURNEY* WITH CUSTOMIZED SCHEDULE TEMPLATES.

Unlock your full potential at RSAC 2024 with our exclusive schedule templates,
tailored for everyone—from cybersecurity newcomers to busy executives and those eager
to network and advance their professional careers. We’ve crafted the perfect
schedules to elevate your personal experience, ensuring every moment counts.

EXPLORE NOW
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=a30427f761&e=0f6ba5XXXX>

Bubbles

NOW THAT YOU’VE SEEN WHAT’S IN STORE—*SECURE YOUR SPOT!*

The agenda is out, and the buzz is building. It’s the perfect time to secure your
spot. Register by April 5 and *save $750* on a Full Conference Pass when you register
with code 14UOWASPFD*!*

REGISTER NOW
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2e384bf8ea8d7deb7&id=14b7087379&e=0f6ba5XXXX>

Secure Your Spot

*$750 savings is based on the $600 Discount Period regular Full Conference Pass
savings, plus your $150 OWASP discount. Cannot be combined with other discounts. The
Discount Period ends on April 5, 2024 at 11:59 PM PT. *View Terms & Conditions.*
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=9eadc90447&e=0f6ba5XXXX>

*A WORD OF CAUTION:*

Avoid list and hotel scammers claiming RSAC affiliation. *Learn More.*
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=121e2e25c9&e=0f6ba5XXXX>

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=1ff9d92234&e=0f6ba5XXXX>

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=e910fca4e7&e=0f6ba5XXXX>

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=0d962a4d0a&e=0f6ba5XXXX>

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=bc6b41969f&e=0f6ba5XXXX>

<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=59c0ca577c&e=0f6ba5XXXX>

© 2024 RSA Conference LLC or its affiliates. The RSA Conference logo and other
trademarks are proprietary. All rights reserved. *Legal Notices*
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=646455d903&e=0f6ba5XXXX>
| *Privacy Statement*
<https://owasp.us17.list-manage.com/track/click?u=a8012c9e2exxxxxxxxxxxxxeb7&id=eb8add683f&e=0f6ba5XXXX>

RSA Conference LLC, 500 Boylston St, 16th Floor, Boston, MA 02116













This email was sent to dirk_owasp_org <mailto:dirk@_owasp_org>
/why did I get this?/
<https://owasp.us17.list-manage.com/about?u=a8012c9e2exxxxxxxxxxxxxeb7&id=22be76c892&e=0f6ba5XXXX&c=b3f032617b>
unsubscribe from this list
<https://owasp.us17.list-manage.com/unsubscribe?u=a8012c9e2exxxxxxxxxxxxxeb7&id=22be76c892&t=b&e=0f6ba5XXXX&c=b3f032617b>
update subscription preferences
<https://owasp.us17.list-manage.com/profile?u=a8012c9e2exxxxxxxxxxxxxeb7&id=22be76c892&e=0f6ba5XXXX&c=b3f032617b>


Jim Manico

unread,
Mar 8, 2024, 4:33:30 AM3/8/24
to Dirk Wetter, Leaders
You did op in about 15 years ago. I remember. I know you're getting old,
it's easy to forget as we age.

Love,  Jim
--
Jim Manico
Founder, Manicode Security
LinkedIn: https://www.linkedin.com/in/jmanico
Shoot me an email: j...@manicode.com
Give me a ring: +1 (808) 652-3805
Let's set a date: calendly.com/manicode
Passion: Secure Coding Education

Wong Onn Chee

unread,
May 10, 2024, 5:35:02 AM5/10/24
to Leaders
Hi folks,

With reference to
https://security.googleblog.com/2024/05/passkeys-on-your-phone-computer-and-security-keys.html,
can anyone advise whether OWASP HQ will allow us to use passkeys to
better protect our access to our @owasp.org accounts?

I tried enabling passkeys but was informed our admin did not enable
support for passkeys.

Thanks!

Best Regards,
Wong Onn Chee
OWASP Singapore Chapter Lead

"I say all security vulnerabilities are software-based. Prove me wrong if you dare"

Grant Ongers (OWASP)

unread,
May 10, 2024, 5:40:32 AM5/10/24
to Wong Onn Chee, Jason C. McDonald, Leaders
Hi Wong,

That's a good call! @Jason C. McDonald is probably the man who can enable this. 

Best regards,
Grant

--
You received this message because you are subscribed to the Google Groups "Leaders" group.
To unsubscribe from this group and stop receiving emails from it, send an email to leaders+u...@owasp.org.
To view this discussion on the web visit https://groups.google.com/a/owasp.org/d/msgid/leaders/1285dd7a-08bb-415f-baf3-fe7935c6a0e3%40owasp.org.


--

 
        https://twitter.com/rewtd
Grant Ongers
Co-Lead | OWASP Cornucopia Project
Co-Lead | OWASP OWASP PSCF
OWASP Compliance Officer
F164 738F 16BF FDBF F0B6 5720 C986 8AF7 5F41 97BE

Jason C. McDonald

unread,
May 10, 2024, 9:03:11 AM5/10/24
to Grant Ongers (OWASP), Wong Onn Chee, Leaders
Hi Grant,

I've been asked about this before, and I asked Avi, who has some expertise in this area. Passkeys are rock solid, but from what I've heard, Google's implantation leaves a lot to be desired. I don't claim any expertise in this area, so if anyone can make a sufficient case that Google's implantation of passkey authentication per se is secure, I'll be happy to turn this on.

Jason C. McDonald
Director of Community Development
OWASP Foundation


(Sent from Outlook for Android)

From: Grant Ongers (OWASP) <grant....@owasp.org>
Sent: Friday, May 10, 2024 4:40:11 AM
To: Wong Onn Chee <ocw...@owasp.org>; Jason C. McDonald <jason.m...@owasp.com>
Cc: Leaders <lea...@owasp.org>
Subject: Re: [leaders] Enabling of passkeys for @owasp.org accounts
 

Jason C. McDonald

unread,
May 10, 2024, 9:03:35 AM5/10/24
to Grant Ongers (OWASP), Wong Onn Chee, Leaders
*implementation, sheesh autocomplete

Jason C. McDonald
Director of Community Development
OWASP Foundation


(Sent from Outlook for Android)

From: Jason C. McDonald <jason.m...@owasp.com>
Sent: Friday, May 10, 2024 8:03:05 AM
To: Grant Ongers (OWASP) <grant....@owasp.org>; Wong Onn Chee <ocw...@owasp.org>

Bil Corry

unread,
May 10, 2024, 9:26:32 AM5/10/24
to Jason C. McDonald, Grant Ongers (OWASP), Wong Onn Chee, Leaders
It’s secure.

There was an issue with Google using the built-in security key in iPhones and Android phones where it would stop working over NFC, but they deprecated it and switched to passkeys.  I hear that works ok (I use a hardware-based token).

- Bil

On May 10, 2024, at 6:03 AM, 'Jason C. McDonald' via Leaders <lea...@owasp.org> wrote:



Wong Onn Chee

unread,
May 10, 2024, 8:56:07 PM5/10/24
to Bil Corry, Jason C. McDonald, Grant Ongers (OWASP), Leaders

Hi folks,

My request is just for the OWASP admin to allow users (i.e. us) to enroll their passkeys, not to enforce passkeys for every leader.

So it is up to our individual choice on whether we want to enable passkeys for access to our own @owasp.org accounts.

Currently, this individual choice is not given to us, as the OWASP admin forbids the support for passkeys for the entire @owasp.org Google service.

Hope this clarifies.

Thanks!

Best Regards,
Wong Onn Chee
OWASP Singapore Chapter Lead

"I say all security vulnerabilities are software-based. Prove me wrong if you dare"


From: Bil Corry [mailto:bil....@owasp.org]
Sent: Friday, May 10, 2024 at 9:26 PM
To: Jason C. McDonald
Cc: Grant Ongers (OWASP); Wong Onn Chee; Leaders
Subject: [leaders] Enabling of passkeys for @owasp.org accounts

ti...@owasp.org

unread,
May 10, 2024, 9:18:00 PM5/10/24
to Wong Onn Chee, Bil Corry, Jason C. McDonald, Grant Ongers (OWASP), Leaders

Jason C. McDonald

unread,
May 13, 2024, 1:33:29 PM5/13/24
to ti...@owasp.org, Wong Onn Chee, Bil Corry, Grant Ongers (OWASP), Leaders, Starr Brown

Starr Brown and I discussed this a bit more, and have decided to enable passkeys. They should now be available on your owasp.org account.


Jason C. McDonald
Director of Community Development
OWASP Foundation

OpenPGP_0x149465ECD53BC685.asc
OpenPGP_signature.asc

Wong Onn Chee

unread,
May 13, 2024, 8:02:37 PM5/13/24
to Jason C. McDonald, ti...@owasp.org, Bil Corry, Grant Ongers (OWASP), Leaders, Starr Brown

Thanks, Jason!

🙏

Best Regards,
Wong Onn Chee
OWASP Singapore Chapter Lead

"I say all security vulnerabilities are software-based. Prove me wrong if you dare"


From: Jason C. McDonald [mailto:jason.m...@owasp.com]
Sent: Tuesday, May 14, 2024 at 1:33 AM
To: Ti...@owasp.org; Wong Onn Chee
Cc: Bil Corry; Grant Ongers (OWASP); Leaders; Starr Brown
Reply all
Reply to author
Forward
0 new messages