![]() |
Presentation offered by Vicente Aguilera, last February 26th, 2010. The presentation was framed whitin FIST Conferences held in Barcelona.
This presentation is entitled "OWASP Top 10 2010: Security Risks in Web Applications." During the presentation, Vicente referred to three key themes:
|
Papers
![]() |
Presentation given by Vicente Aguilera, April 21, 2009, within the framework of ISACA chapter of Valencia. This conference, entitled "Creating secure software as goal of Managing", showed good practice contained in the major security initiatives currently existing in software development. |
![]() |
Presentation offered under the IV Owasp Spain Chapter Meeting (sponsored by Internet Security Auditors) that took place in the IL3. In this conference we presented techniques for analyzing applications using techniques echo replies. |
![]() |
Seminar offered in the framework of the training sessions of the OWASP Summit Portugal 2008, held in Algarve (Portugal), which brought together all major developing security experts worldwide. |
![]() |
This event took place on 27 and 28 March in Barcelona, and was organized jointly by CESCA (Supercomputing Center of Catalonia) and RedIRIS / Red.es. The VI RedIRIS Security Forum focused on security at the application level. On this occasion, gave a lecture "OWASP and its contribution to the international community. Security in the relations of confidence.". More information about the event on the web itself RedIRIS. |
II OWASP Spain Chapter Meeting (July 2007)
![]() |
Presentation given at the II Meeting of the Spanish Chapter of OWASP held in July 2007. The conference presented the problem of filtering need to feed data into Web applications and they are one of the entry points of common attacks by the deficiency of these controllers. |
FIST Conferences Barcelona 2006
![]() |
Paper presented during the FIST Conferences in Barcelona that cellebrated in the FIB in December. In this paper a new techinique for privilege scalation using ELF infection were presented with practicals. |
No cON Name 2006
|
Presentation in el No cON Name 2006 celebrated in September in Palma de Mallorca. The paper presented a possible new way of vulnerability detection and correction in executable in run time. |
1er OWASP Spain Chapter Meeting
![]() |
Paper presented in the 1st Meeting OWASP in Spain celebrated on June 16th 2006. The paper presented a new attack technique over mail servers that probably would be included in the threats classification of web applications, as already are SQL Injection and Cross Site Scripting. |
1er OWASP Spain Chapter Meeting
![]() |
Presentation ofered in the 1st Meeting OWASP in Spain celebrated June 16th 2006. This presentation was the opening of the meeting and shows what is the OWASP Foundation, what kind of projects are sponsored, its goals and ways of collaboration with it. |
Internet Global Congress 2006
![]() |
Presentation shown in the IGC 2006 celebrated from 29th May to 1st June 2006. The paper presented the security programs of VISA and Mastercard PCI DSS. |
No cON Name 2005
![]() |
Presentation given at the fifth convocation of the No cON Name Security Congress held between 22 and 25 September in Palma de Majorca. The presentation was held on mod_security, and although very similar to the one carried out at What the Hack! be entered more in detail about the features on which they are working for the project. |
What The Hack! 2005
![]() |
Presentation imparted at the Most important European congress about hacking and security (What The Hack!) celebrated from March 28th, 2005 to March 31st, 2005 in Liempde, Holanda. The presentation shows an Opensource Application Firewall (OSI Level 7) Project 100% where Internet Security Auditors' team is adding new functionality to improve even more its security robustness. It is based on an Apache module called mod_security. The presentation title was: "Advanced Web Application Defense with ModSecurity". |
Internet Global Congress 2005
![]() |
Presentation imparted at the Internet Global Congress (IGC) celebrated from June 6th, 2005 to June 9th, 2005 in Barcelona. The presentation "Security in mobile terminals of consumption: Symbian, Blackberry and Windows Mobile" describes the key security characteristics and the posible attacks on this type of devices. |
Internet Global Congress 2005
![]() |
Presentation imparted at the Internet Global Congress (IGC) celebrated from June 6th, 2005 to June 9th, 2005 in Barcelona. The presentation "Security Audits: audit as a prevention mechanism" classify the different types of security audits and it shows the way towards the UNE-71502 certification by deploying an ISMS. |
Conferencias FIST
![]() |
In the frame of the FIST (www.fistconference.org) conferences celebrated on March 18th, 2005 in Barcelona, we offered the presentation " Insecurity of the authentication systems in Web Applications ". This presentation shows the weaknesses and the most important attacks executed against authentication systems used mainly in web applications. |
Hackmeeting 2004: Hack Andalus
![]() |
The presentation that we offered in the Hackmeeting celebrated this year in Seville. This time one of the topics on which we did a presentation was the Computer Forensic science. The presentation does a revision of its history, existing methodology, available tools... |
Whitehack 2004
![]() |
Presentation that we were invited to offer in the Whitehack 2004. This presentation describes security problems involving VoIP Networks. |
Internet Global Congress 2004
![]() |
Presentation offered during the Global Internet Congress celebrated from 10th May to 15th May in the Palau de Congressos of Barcelona. This presentation was one of the two chosen by the committee and we offered during the course of the congress. The presentation tries to present the basic concepts on Computer Forensic science,The presentation tries to present the basic concepts on Computer Forensic science, which although not known in the field of the Information Technologies every day is becoming more popular. |
Tertulia Digital
![]() |
Seminar offered in the headquarters of the CIDEM in the Paseig de Gracia of Barcelona, organized by Tertulia Digital. We had the pleasure to be invited due to our experience on IT security and its introduction in small and medium companies. They also took part Francisco de Quinto, de Piqué Abogados, and Roman Martin, of Interbel Software. In this presentation are commented the most important aspects to have in mind for the security of the systems of a company, as well as the different solutions for protecting them and to obtain a acceptable security level in every case. |
Hackmeeting 2003
![]() |
Presentation offered during the Hackmeeting 2003 celebrated between the 24th and 26th of October in the Gaztetxe of Pamplona/Iruña (Navarra). The presentation, with title " Current Domain Name Appropriation methods ", contributes with a current vision for the Domain Names security problems. Are commented the entities that take part in the Domain Name Registration Process, the different technologies we can use for attacking each of these entities and which allow us to steal a Domain Name to its owner and a set of recommendations for protecting Domain Names from these kind of attacks. |
I Jocs Fractals de la Vila de Grácia
![]() |
Presentation in which we take part together with Pete Herzog, the Director of the ISECOM, during the I Juegos Fractales de la Vila de Gràcia celebrated in the CSOA de les Naus, between the 19th and 21st of September. This presentation shows aspects on the new version of the OSSTMM (Open Source Security Testing Methodology Manual), led by Pete Herzog with the collaboration of security experts around the world including members of the technical team of Internet Security Auditors. It was also presented the Hacker High School project supported by LaSalle and with the collaboration of Internet Security Auditors in Spain and MediaService from Italy. Many another people also collaborates around the world. |
No cON Name 2003
![]() |
Presentation offered during the National Congress of Security " No cON Name 2003 " celebrated between the 24th and 27th of July in Palma de Mallorca. This presentation describes the OpenSource Application Firewall called CodeSeeker and supported by the OWASP (Open Web Application Security Project). This organization has become the point of reference in standards definition for Web Application Security and developed its methodology like ISECOM did with OSSTMM. The presentation included some demos about how CodeSeeker can protect Web Sites from hacker attacks. |
Colegio Oficial de Detectives
![]() |
Master Class given in the Colegio Oficial de Detectives of Catalonia as part of the Course of Operative Practice of Investigation, in the Module " Internet, Documentation and Data Bases " on July 4, 2003. During this class " Investigation Tools " existing inside a Computer for detecting Intrusions, attacks or actions taken in the systems are analyzed. They are also presented the " Security Tools " available in the Internet and how they work. |
Internet Global Congress 5
![]() |
Presentation offered in 5 Global Internet Congress celebrated in Barcelona between the May 12-15 2003. More than 180 attendees to our presentation could see a rapid review to the security problems that affects Wi-Fi technology and the solutions to mitigate its weaknesses. This presentation does a review of the basic technical concepts of the WLANs, its major security problems and the solutions for these ones. |
COPCA and Tertulia Digital
![]() |
On November 27 in 2002, Presentation offered in the day of small-talks on security organized by the COPCA and Tertulia21. Among those who took part, Elisabeth Lynch (Cambra de Comerç de Barcelona), Francisco de Quinto (Piqué Abogados Asociados) and Diego Fernandez (Auna). In this presentation there are analyzed the principal aspects of the security of the systems, the weak points more and fewer acquaintances and the most basic considerations to bearing in mind to increase the security of our network. |

































