{"schedule": {"version": "1.0", "base_url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/schedule/", "conference": {"acronym": "owaspkyivsummer2019", "title": "OWASP Kyiv Meetup Summer 2019", "start": "2019-08-03", "end": "2019-08-03", "daysCount": 1, "timeslot_duration": "00:05", "days": [{"index": 1, "date": "2019-08-03", "day_start": "2019-08-03T04:00:00+03:00", "day_end": "2019-08-04T03:59:00+03:00", "rooms": {"EVO": [{"id": 50, "guid": "cea858f6-d47f-5c35-8e0b-c04a2dbb3dc5", "logo": "", "date": "2019-08-03T10:00:00+03:00", "start": "10:00", "duration": "01:20", "room": "EVO", "slug": "BJ8WZX", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/BJ8WZX/", "title": "Scan, Discovery, Exploit & Repeat", "subtitle": "", "track": null, "type": "Workshop", "language": "en", "abstract": "The security of the computer systems goes through a crucial moment, this talk will help you understand the challenges that Cyber Security demands. Israel will show you how to prevent and best practices. In addition, it will inform you of the opportunities that this industry offers.", "description": "We will understand the importance of the Vulnerabilities, especially the 0Day.\r\n\r\nBased on important sources such as DarkNet, ZeroNet, Telegram, Advanced Persistent Threat APT, Osint & Owasp.\r\n\r\nWe will learn how to identify the scenario we face, prevent disasters, mitigate threats and control our Infrastructure, emphasizing the Encryption and Protection of data.\r\n\r\nThis allows us to identify what opportunities await us, once we have mastery over these areas.", "recording_license": "", "do_not_record": false, "persons": [{"id": 86, "code": "TYNLSX", "public_name": "Israel Guzman", "biography": "Passionate trainer, speaker, player and consultant with domain of in Areas of Cyber Security, Incident Response, DevSecOps, CI/CD Automation, Bug Bounty Hunting, Assessment of Mixed Box with PTES, OSSTMM, OWASP, OSINT, NIST and MITRE standards & methodologies, Capture the Flag - CTF's, Vulnerability Management Solutions VMS's, Ethical Hacking, Serverless, Kubernetes, Docker, API's, Cloud Computing Multi-Vendor, Data Centers, Hybrid Infrastructure, Aix, Unix, Linux, Apple, Microsoft Operating Systems, Storage & Recovery Solutions, Networking, Virtualization, Migration, Disaster Recovery, ITIL, PMP, Project Management, CMDB Quality Assurance, ITSM Change & Problem Management, Suite Standard Reference Architecture SRA, LMS's, CMS's; Hosting.\r\n\r\nAs consultant and part of sales force, I participate as SME to respond to the Request for proposal (RFP), or do the Root Cause Analysis (RCA), business cases and contracts writer, contract management, vendor negotiation and oversight. Being strict on finding root causes and communicating potential solutions to organizational problems based, Design and provide solutions, with focus in improve and optimize IT infrastructure and the InfoSec service management quality, to assure the high availability, applying the best practices.\r\n\r\nResults-driven with strong goal-orientation, deep experience in resilience, create and implement ideas that will become the new standards of the IT world, working in a cross-functional team, with a lot of a positive initiative, adventurous, competitive vision, empathetic, open-minded, can-do attitude and excellent written and verbal communication abilities.", "answers": []}], "links": [], "attachments": [], "answers": []}, {"id": 47, "guid": "a14c8f79-a5e2-57e2-9b9f-a38be380a83f", "logo": "/media/owaspkyivsummer2019/images/WFAZD3/%D0%92%D1%8B%D0%B4%D0%B5%D0%BB%D0%B5%D0%BD%D0%B8%D0%B5_026.jpg", "date": "2019-08-03T11:30:00+03:00", "start": "11:30", "duration": "00:40", "room": "EVO", "slug": "WFAZD3", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/WFAZD3/", "title": "Top Mobile Applications Vulnerabilities", "subtitle": "", "track": null, "type": "Talk", "language": "en", "abstract": "Every year mobile applications become more and more, but very few people pay attention to the security of this application, when during development. Since the business is aimed only at tearing off a bigger piece of users who will use this application, and they are paying attention to the privacy of their customers in the last place. In my report, I will talk about the top vulnerabilities of mobile applications, which then come out to lose reputation for companies.", "description": "Every year mobile applications become more and more, but very few people pay attention to the security of this application, when during development. Since the business is aimed only at tearing off a bigger piece of users who will use this application, and they are paying attention to the privacy of their customers in the last place. In my report, I will talk about the top vulnerabilities of mobile applications, which then come out to lose reputation for companies.", "recording_license": "", "do_not_record": false, "persons": [{"id": 37, "code": "GLHLBN", "public_name": "Svyat Login", "biography": "Qa gangsta lead in Evo.company\r\nMore than 4 years of testing for Web vulnerabilities\r\nMore than 7 years in testing\r\nConduct QA training on Security testing tools", "answers": []}], "links": [], "attachments": [], "answers": []}, {"id": 56, "guid": "a55fdde0-44e0-5df5-a44b-5b86bb1a413b", "logo": "", "date": "2019-08-03T12:30:00+03:00", "start": "12:30", "duration": "00:40", "room": "EVO", "slug": "XF7SSZ", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/XF7SSZ/", "title": "Web Application Security Quiz", "subtitle": "", "track": null, "type": "Talk", "language": "en", "abstract": "A Web Application Security quiz for everyone in the audience. All you need to play is a smartphone. All you need to win is the appsec knowledge.", "description": "", "recording_license": "", "do_not_record": false, "persons": [{"id": 18, "code": "JZNRBV", "public_name": "Serhii Korolenko", "biography": null, "answers": []}], "links": [], "attachments": [], "answers": []}, {"id": 53, "guid": "f2920a22-fd4c-5e98-9939-3705d627c4b9", "logo": "", "date": "2019-08-03T14:00:00+03:00", "start": "14:00", "duration": "00:40", "room": "EVO", "slug": "TPYFBA", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/TPYFBA/", "title": "Saturday Day Live with CSP", "subtitle": "", "track": null, "type": "Talk", "language": "en", "abstract": "Content Security Policy. What? Why? How?", "description": "Small talk about Content Security Policy (CSP). During this talk, we will try to answer the questions:  What it is? Why do we need this? Is it possible to bypass it? How to mitigate the risks? Also, I will share some useful tools for creating and checking CSP. And there will be a brief analysis of the use of CSP in the real world.", "recording_license": "", "do_not_record": false, "persons": [{"id": 40, "code": "VDYWRB", "public_name": "Artur Hil", "biography": "Just free man who looking for knowledge", "answers": []}], "links": [], "attachments": [], "answers": []}, {"id": 57, "guid": "e246627a-4d25-5031-a7f4-efcc405a353c", "logo": "", "date": "2019-08-03T15:00:00+03:00", "start": "15:00", "duration": "00:40", "room": "EVO", "slug": "BRQDCD", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/BRQDCD/", "title": "How to Find Security Vulnerabilities in Python Applications?", "subtitle": "", "track": null, "type": "Talk", "language": "en", "abstract": "The talk is about Python security", "description": "Python code isn't automatically secure.  Learn how to use Bandit for security-focused linting and talk about other options for static analysis.  Take a look at why scanning for CVEs is hard, and how to use python tools to make it easier. Explore some language myths and best practices.", "recording_license": "", "do_not_record": false, "persons": [{"id": 69, "code": "KSVEU7", "public_name": "Andrey Shalaenko", "biography": null, "answers": []}], "links": [], "attachments": [], "answers": []}, {"id": 55, "guid": "0a2d06b3-70c3-5d82-be9f-12786d49831b", "logo": "", "date": "2019-08-03T16:00:00+03:00", "start": "16:00", "duration": "00:40", "room": "EVO", "slug": "HYYBVF", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/HYYBVF/", "title": "\u041a\u0430\u043a manual QA \u043c\u043e\u0436\u0435\u0442 \u043f\u0440\u043e\u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u043f\u0440\u043e\u0435\u043a\u0442 \u0441\u043e \u0441\u0442\u043e\u0440\u043e\u043d\u044b security + XSS", "subtitle": "", "track": null, "type": "Talk", "language": "en", "abstract": "We will see basic security check based on OWASP top 10 that can test manual QA without specific knowledge", "description": "", "recording_license": "", "do_not_record": false, "persons": [{"id": 92, "code": "8JAL7Y", "public_name": "Evgeny Tolchinsky", "biography": "4,5  \u0433\u043e\u0434\u0430 \u0432 \u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u0438\u0438\r\nSenior manual Qa/Qa lead \r\n\u0421\u043e-\u0442\u0440\u0435\u043d\u0435\u0440 \u043d\u0430 \u043a\u0443\u0440\u0441\u0435 OWASP TOP-10 \r\n\u0414\u043e \u044d\u0442\u043e\u0433\u043e 9 \u043b\u0435\u0442 \u0432 \u0431\u0430\u043d\u043a\u043e\u0432\u0441\u043a\u043e\u0439 \u0441\u0444\u0435\u0440\u0435 \r\n\u0421\u0432\u0438\u0442\u0447\u0435\u0440 :-)", "answers": []}], "links": [], "attachments": [], "answers": []}, {"id": 58, "guid": "649714bf-db40-5b7f-b004-6cf6b4846058", "logo": "", "date": "2019-08-03T17:00:00+03:00", "start": "17:00", "duration": "00:40", "room": "EVO", "slug": "GPRUED", "url": "https://cfp.owaspukraine.org/owaspkyivsummer2019/talk/GPRUED/", "title": "Ruby Security Tips", "subtitle": "", "track": null, "type": "Talk", "language": "en", "abstract": "In this talk, Roman is going to provide a few tips on how to prevent potential security problems in Ruby and/or Ruby on Rails apps based on the OWASP Top-10.", "description": "", "recording_license": "", "do_not_record": false, "persons": [{"id": 93, "code": "E8L3K8", "public_name": "Roman Rott", "biography": null, "answers": []}], "links": [], "attachments": [], "answers": []}]}}]}}}