Jul 2019
1 Mon
2 Tue
3 Wed
4 Thu
5 Fri 09:00 AM – 05:15 PM IST
6 Sat
7 Sun
Make a submission
Accepting submissions till 22 Apr 2019, 11:59 PM
JSFoo Coimbatore is a single-day conference with talks, Birds of Feather (BOF) sessions and speaker connect sessions. The conference will be held on Friday, 5 July, at Dr.G.R.Damodaran College of Science, Coimbatore.
JSFoo Coimbatore features talks on:
Speakers from Hotstar, Uber, HackerRank, Chained Ventures, Tezify, Appsecco, Gramener, and Centre for Internet and Society (CIS) will present case studies and experiential talks which will help JavaScript, full stack and front-end engineers among partcipants to build faster, secure and performant we applications.
For inquiries on tickets and sponsorships, call the JSFoo Coimbatore team on 7676332020 or write to us on info@hasgeek.com
Abilash Rajasekaran
Submitted Apr 22, 2019
In this workshop we will be using the Damn Vulnerable NodeJS Application(DVNA) to demonstrate the OWASP top ten vulnerabilities. Initially participants will try to exploit, then understand and fix the vulnerability. We will use Kali linux to demostrate how to scan and find some of the vulnerabilities. If time permits we will try to explain, how to build secure containerized application and setting up CI/CD scanner.
Steps for every vulnerability:
1. Exploit
2. Understand
3. Fix
Below vulnerabilities will be covered
1. SQL and command Injection
2. Broken Authentication
3. Sensitive Data Exposure
4. XML External Entities
5. Broken Access Control
6. Security Misconfiguration
7. Cross-Site Scripting (XSS)
8. Insecure Deserialization
9. Using Components with Known Vulnerabilities
10. Cross Site Request Forgery
11. Unvaidated Redirects and Forwards
If Kali linux installed - participants will get to know how to scan the possible vulnerability.
If time permits - hands on or else just demonstration for the below:
1. Securing Containerized application
2. Setting up security scanner pipeline in CI/CD
Must have:
Laptops - Installed docker
Nice to have(not mandatory):
Kali linux(VM/OS)
We are group of Thoughtworks, extensively using Nodejs application. Below are the links to speakers profile in LinkedIn
https://www.linkedin.com/in/ramakrishnan-kandasamy-8020a037
https://www.linkedin.com/in/ssharanya
https://www.linkedin.com/in/abdulkaderjeelani
https://www.linkedin.com/in/abilash-rajasekaran
https://appsecco.com/books/dvna-developers-security-guide/intro.html
{{ gettext('Login to leave a comment') }}
{{ gettext('Post a comment…') }}{{ errorMsg }}
{{ gettext('No comments posted yet') }}