The OWASP Top 10 for 2010 Release Candidate has been announced

I am pretty late in the game to blog about this, but I am going to do it anyway, because I can ;)

As many of you know, I am a very big fan of the Open Web Application Security Project (OWASP) and recently OWASP has announce the first release candidate of its Top 10 List for 2010.

[More]

Forget what you think you know about CFML - Twin Cities Language User Group

On Thursday evening (Nov 12, 2009 @ 5:30) I will be speaking to the Twin Cities Language User Group about CFML.

The Twin Cities Language User Group is, to me, a unique group. It is not focused on a particular language or family of languages, its concept seems to be to bridge the divide between languages and to expose developers to new ideas and methodologies. It seemed like a perfect place to pitch CFML and show other developers just how great CFML is.

[More]

Security Tip: New OWASP Blog and the OWASP Podcast

I've stated before how highly I think of the Open Web Application Security Project (OWASP) and I am now very glad to see that they have started a new blog. Hopefully the OWASP Blog will be a great resources for staying up-to-date on security related current events, and to learn more about the status of on-going OWASP projects.

[More]

The Sun Presenter Console Extension for OpenOffice.org Impress

I have recently given up trying to keep up with Microsoft Office. I have nothing against the product, I just don't want to afford it. Especially when there is an excellent free alternative, namely OpenOffice.

I've been using OpenOffice Impress (the OpenOffice alternative to PowerPoint) for a while now, and I really like it. It has done everything that I have needed it to, until last month's Twin Cities ColdFusion User Group meeting.

[More]

A Security Project for CFML

So I thought I would take a few minutes and blog about what I am working on. I don't expect anyone to care. Feel free to stop reading. I just wanted to write about something that does not require hours of research. I also wanted to just write SOMETHING, to get me back into it so that I do not become to lax in my blogging.

OWASP ESAPI for CFML

This is something that I had not really planned on talking about until it was closer to usable. But it is also something that I was hoping would be closer to usable by now.

[More]

OWASP & FLOSS Application Security Mini-Conference 2008 - Tomorrow Oct 21, 2008

Tomorrow, October 21st, 2008, is the OWASP & FLOSS Application Security Mini-Conference 2008.

The Open Web Application Security Project (OWASP) is a worldwide free and open community focused on improving the security of application software. - OWASP Website

[More]

Google has Open Sourced RatProxy Security Tool

Google has announced that they have open-sourced RatProxy, which, according to the Google Code site is:

"A semi-automated, largely passive web application security audit tool, optimized for an accurate and sensitive detection, and automatic annotation, of potential problems and security-relevant design patterns based on the observation of existing, user-initiated traffic in complex web 2.0 environments."

[More]

I want to give money to open source projects!

So why don't I just give them money? Well I have, just not in the way that I want to.

Here is how I see it. Open-source projects are usually on-going efforts. And on-going efforts need on-going support. Some of the open source projects ask for donations, but very few, if any, of them ask for recurring donations. Why is that? They have on-going expenses. Hosting costs, conference fees, travel expenses, etc.

[More]

BlogCFC was created by Raymond Camden. This blog is running version 5.9.1. Contact Blog Owner