Blockchain by Cristina Baldi and DOM-based XSS by Shrutirupa Banerjiee

From our meetup on Saturday, January 16 2021: https://www.meetup.com/womeninappsec/events/275273186/

*** Speaker #1 ***

TITLE:
The blockchain: the new trustless paradigm outside and inside the business value

ABSTRACT:
What is blockchain? Why is blockchain important in the supply chain? How does it allow the company to gain a competitive advantage on the market? What are the steps for the introduction of blockchain in the company? Transparent and immutable records, cost reductions, interoperable data creation, digital agreement management and value sharing are the traits that characterize blockchain technology. The aim of the webinar is to highlight the most significant features of the technology defined as the new internet, the methods for its implementation and the opportunities offered by the market for its introduction within the company.

SPEAKER BIO:
Cristina Baldi has an economics and finance degree. She worked for some of the most important multinational corporations in Italy. In 2016, she discovered blockchain technology and this was like love at first sight that led her to get specialized in it. Today, she supports companies to analyze data, focus on elements to move to a higher competitiveness level and introduce new technologies like blockchain.

Update

Steve Rich's Exciting New Book: A Journey into the World of Forex Trading!

Interview

*** Speaker #2 ***

TITLE:
Deep Diving into DOM-based XSS

ABSTRACT:
DOM-based XSS has been one complicated topic for beginners, and also for people with few years of experience. Even if we are aware of the definition or can write an entire para on it, it’s difficult to visualize, and most importantly, it becomes difficult to find the DOM-based XSS vulnerabilities and hence, exploit them.
During this session, we will understand the basics, of course, but will solve some DOM-based XSS examples, with the help of a debugger. We will not only just visualize and understand the issue, but will also exploit them.
The only pre-requisite for the session is:
The willingness to learn something interesting

BIO:
Shrutirupa Banerjiee has been in the field of security for over 2 and a half years. She an experience in working on blockchain technologies and conducting security reviews for Web and mobile applications, and Ethereum based Smart Contracts in her previous role as an Information Security Consultant and research intern. Currently, she is independently researching on Ethereum Based Smart Contracts alongside working as a Web Application Security Analyst with the WAF Research team at Qualys. She is also the Pune Chapter Lead for the Infosec Girls community. She has also been a speaker at conferences such as OWASP Seasides 2019-2020, Bsides Singapore 2019, Rootconf 2019, Webinars, Cyberfrat and Null Meets.