Groups keyboard shortcuts have been updated
Dismiss
See shortcuts

Invitation to OWASP Stammtisch Hamburg: OWASP secureCodeBox project | What's new in testssl.sh

8 views
Skip to first unread message

Dirk Wetter

unread,
Apr 21, 2025, 12:04:13 PMApr 21
to germany...@owasp.org
Moin Hamburg!

we'll have a meeting this week with one regular longer talk and one shorter one.

Again, we'll be guest at Check24, thank you!

TL;DR
-------
Start: 6:30 pm sharp, April 24th, Thursday
Doors open for socializing 6:00pm. Pls be on time for the talk
Location: An der Alster 64, Check24, 7. OG
Talks: OWASP secureCodeBox project | What's new in testssl.sh
Speakers: Jannik Hollenbach | Dirk Wetter

If possible let me know when you're planning to attend via e-mail or meetup: https://www.meetup.com/owasp-hamburg-stammtisch/events/307174646/?slug=owasp-hamburg-stammtisch

Abstract 1
----------
The OWASP secureCodeBox project aims to provide a unified way to run and automate open-source scanning tools like nmap, nuclei, zap, ssh-audit, and sslyze to continuously scan the code and infrastructure of entire organizations.

This allows setting up automated scans that will regularly scan internal networks and internet-facing systems for vulnerabilities. The SCB also allows defining rules to automatically start more in-depth scans based on previous findings, e.g., to start a specialized SSH scan if a port scan discovers an open SSH port.

Abstract 2
----------
testssl.sh is being released in version 3.2 and it comes with some interesting features like postquantum key exchange or correctly speaking PQ KEMs. The short talk will give you a heads up where you probably already in use them without knowing and how you can check the server whether the server supports it. The talk will briefly describe further features of the new release and what's planned for the feature.


About our OWASP meetings
------------------------
Our meetings are about software and their security in the Internet and/or information security in general. All meetings are free, open to everyone and free of charge, with or without membership.

You'll be meting people who deal with IT security either professionally or privately: Developers, managers, “pen testers” and anyone interested in (mostly web) security. The atmosphere is open and relaxed. We're all about exchanging experiences, talking tech and networking. If you want to sell products or services, you're in the wrong place. You are very welcome to pass on a tip about our meetings to your colleagues or acquaintances.




Schönen Gruß, Dirk



--
OWASP Volunteer
Send me encrypted mails (Key ID 0x4D9CA7F2E2FA20B3)

Reply all
Reply to author
Forward
0 new messages