vordelworld is the forum where you can learn about the key issues impacting your business when using Cloud and SOA infrastructure. This year we put the spotlight on SOA and Cloud Governance and present case studies from leading firms such as Amazon, Burton Group, CA, Oracle, BT, Reply , SOA Software, 3, US Government and others.
VordelWorld was held in Dublin November 4-6, 2009.
To enquire about participating in next year's event, please email info@vordel.com
|
AGC's 6th Annual InfoSec and West Coast Emerging Growth Conference March 1-2 2010
The Westin San Francisco Market Street
To arrange a meeting with Vordel, please email sales@vordel.com
|
Speaker: Mr. Vic Morris, CEO
Date/Time: March 01 12.15pm
Location: Olympic Room
|
RSA Conference 2010 will be held March 1-5, 2010
The Moscone Center
747 Howard Street
San Francisco, CA 94103
To arrange a meeting with Vordel, please email sales@vordel.com
|
Speaker: Mark O'Neill CTO Vordel
Date/Time: Friday, March 05 10:10 AM
Location: Blue Room 102
Title: Malicious XML - Still a threat in 2010 (
HT1-402)
Abstract: Many Cloud services include WSDLs and XML-consuming services. Although XML has been around a long time, attacks making use of XML are surprisingly resilient (or many not surprising at all, given that SQL Injection has also been known about for a long time). The Cloud now provides a much larger attack surface. Attendees will see practical examples of Malicious XML making use of vulnerabilities in the Xerces parser and other supporting tools typically used to process XML. We will show how newer attacks such as CDATA smuggling can be used in order to pass malicious data within an XML message. We will also examine how REST-based Web Services are not immune from XML-based attacks, even when they are not initiated by XML or SOAP messages.