<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
<channel>
<title><![CDATA[飘叶家园]]></title> 
<description><![CDATA[脑有点残的人]]></description>
<link>http://www.p-ye.cn/log/</link>
<language>zh-cn</language>
<generator>www.emlog.net</generator>
<item>
	<title>OWASP 2011亚洲峰会高端培训</title>
	<link>http://www.p-ye.cn/log/?post=244</link>
	<description><![CDATA[<p class="MsoNormal"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">OWASP 2011</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:arial;mso-font-kerning:0pt;">亚洲峰会高端培训</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
<table class="MsoNormalTable" border="1" cellspacing="0" cellpadding="0" width="518" style="width:388.85pt;mso-cellspacing:0cm;border:outset black 1.0pt;mso-border-alt:outset black .75pt;mso-yfti-tbllook:160;mso-padding-alt:1.5pt 1.5pt 1.5pt 1.5pt;">
 <tbody><tr>
  <td style="border:inset black 1.0pt;border-left:none;mso-border-top-alt:inset black .75pt;mso-border-bottom-alt:inset black .75pt;mso-border-right-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">编号</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训内容</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训时间</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;border-right:none;mso-border-top-alt: inset black.75pt;mso-border-left-alt:inset black .75pt;mso-border-bottom-alt: inset black.75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训讲师</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
 </tr>
 <tr>
  <td style="border:inset black 1.0pt;border-left:none;mso-border-top-alt:inset black .75pt;mso-border-bottom-alt:inset black .75pt;mso-border-right-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训一</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">如何使用</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">OWASP</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">项目和工具提升企业安全</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"> <o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;11</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">月</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">10</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">日</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">8:00-12:00<o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;border-right:none;mso-border-top-alt: inset black.75pt;mso-border-left-alt:inset black .75pt;mso-border-bottom-alt: inset black.75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;Tobias&nbsp;Gondrom<o:p></o:p></span></p>
  </td>
 </tr>
 <tr>
  <td style="border:inset black 1.0pt;border-left:none;mso-border-top-alt:inset black .75pt;mso-border-bottom-alt:inset black .75pt;mso-border-right-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训二</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">网银系统安全框架设计</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;11</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">月</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">10</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">日</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">14:00-18:00<o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;border-right:none;mso-border-top-alt: inset black.75pt;mso-border-left-alt:inset black .75pt;mso-border-bottom-alt: inset black.75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">张炜</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
 </tr>
 <tr>
  <td style="border:inset black 1.0pt;border-left:none;mso-border-top-alt:inset black .75pt;mso-border-bottom-alt:inset black .75pt;mso-border-right-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训三</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;OWASP
  Top 10&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;mso-font-kerning: 0pt">及防治</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;11</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">月</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">11</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">日</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">8:00-12:00<o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;border-right:none;mso-border-top-alt: inset black.75pt;mso-border-left-alt:inset black .75pt;mso-border-bottom-alt: inset black.75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">王文君</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
 </tr>
 <tr>
  <td style="border:inset black 1.0pt;border-left:none;mso-border-top-alt:inset black .75pt;mso-border-bottom-alt:inset black .75pt;mso-border-right-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">培训四</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">安全开发之道</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">-</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">从源头解决和预防安全漏洞</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;mso-border-alt:inset black .75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;11</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">月</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">11</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">日</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">14:00-18:00<o:p></o:p></span></p>
  </td>
  <td style="border:inset black 1.0pt;border-right:none;mso-border-top-alt: inset black.75pt;mso-border-left-alt:inset black .75pt;mso-border-bottom-alt: inset black.75pt;padding:1.5pt 1.5pt 1.5pt 1.5pt;">
  <p class="MsoNormal" align="left" style="text-align:left;mso-pagination:widow-orphan;"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;">&nbsp;</span><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;mso-font-kerning:0pt;">李建蒙</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p></o:p></span></p>
  </td>
 </tr>
</tbody>
</table>
<p class="MsoNormal"><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><o:p>&nbsp;</o:p></span></p>
<p class="MsoNormal"><span style="font-size:9.0pt;font-family:宋体;mso-ascii-font-family:arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;mso-font-kerning: 0pt">详细介绍请查看：</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;mso-font-kerning:0pt;"><a href="http://www.owasp.org.cn/OWASP_Conference/AppSec_2011/training"><span style="text-decoration:none;">http://www.owasp.org.cn/OWASP_Conference/AppSec_2011/training</span></a> <o:p></o:p></span></p>
<p><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;"><span>&nbsp;</span>1. </span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;color:red;">如何使用</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;">OWASP</span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;color:red;">项目和工具提升企业安全（针对人群：</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;">CISO</span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;color:red;">，</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;">&nbsp;</span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;color:red;">高级信息安全经理）语言：英文，视情况确定是否需要同传。</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;"><o:p></o:p></span></b></p>
<p><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">内容：</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><o:p></o:p></span></p>
<p><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">Setting up and
improving your global security organisation using mature OWASP projects and
tools. Achieving cost-effective application security and bringing it all
together on the management level. How to use and leverage OWASP and other
common best practices to improve your security programs and organization. The
workshop will also discuss a number of quick wins and how to use OWASP tools
inside your organisation. The author has extensive experience of managing his
own secure development organization as well as advising to improve a number of
global secure development organisations and processes.<o:p></o:p></span></p>
<p><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">Topics:<o:p></o:p></span></p>
<p><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">- OWASP Top-10 -
how to use within your organisation<br />
- Risk management and threat modeling methods (OWASP risk analysis,
ISO-27005,...)<br />
- OWASP Secure Coding Practices - Quick Reference Guide<br />
- Development Guide<br />
- Training for developers (e.g. Webgoat)<br />
- Maturity Models (SAMM)<br />
- common APIs: ESAPI (Enterprise Security API)<br />
- Measuring: ASVS (Application Security Verification Standard)&nbsp;<o:p></o:p></span></p>
<p><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;">2.&nbsp;&nbsp;</span></b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;<b><span style="color:red;">&nbsp;&nbsp;</span></b></span><b><span style="font-size:9.0pt;mso-ascii-font-family:arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;color:red;">网银系统安全框架设计</span></b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><o:p></o:p></span></p>
<p><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">1.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">培训内容简介</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"> <br />
2.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">银行业务系统的历史和发展</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"> <br />
3.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">银行业务系统安全的重要性</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"> <br />
4.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">网银应用系统的特殊性</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"> <br />
5.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">网银应用系统设计的特点</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
6.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">银行网络应用的安全考虑</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp; <br />
7.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">银行业务网络构架图及安全考虑</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
8.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">银行业务数据流程图及安全考虑</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
9.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">银行业务工序流程图及安全考虑</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
10.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">业务系统安全设计文档的撰写</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"> <br />
o&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">高层设计</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"> <br />
o&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">底层设计</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
11.&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">收集学员反馈</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><o:p></o:p></span></p>
<p><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;">3.&nbsp;OWASP Top 10 </span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;color:red;">及其防治</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;"><o:p></o:p></span></b></p>
<p><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">通过本次培训，学员们可以获取以下技巧：</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><o:p></o:p></span></p>
<p><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">·</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;&nbsp;&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">什么是</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">OWASP
Top 10<br />
</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">·</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;&nbsp;&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">什么是</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">OWASP
ESAPI</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">，它的设计原理以及用它防治</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">Top 10</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">，以及它的某些实现中的缺陷</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">·</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;&nbsp;&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">如何使用静态分析工具去发现代码的安全漏洞</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">·</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;&nbsp;&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">如何使用动态分析工具去发现系统的安全漏洞</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;"><br />
</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;">·</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;&nbsp;&nbsp;</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">作为一个</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">QA</span><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">，我该如何去做渗透测试</span><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;">&nbsp;<o:p></o:p></span></p>
<p><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;">4.&nbsp;</span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:arial;mso-bidi-font-family:Arial;color:red;">安全开发之道</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;"> - </span></b><b><span style="font-size:9.0pt;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;color:red;">从源头解决和预防安全漏洞</span></b><b><span lang="EN-US" style="font-size:9.0pt;font-family:Arial;color:red;"><o:p></o:p></span></b></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">1</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）</span><span style="font-size:9.0pt;line-height:150%;font-family:Arial;"> </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">安全开发的重要性</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">1.1</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）安全漏洞简介</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">1.2</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）安全问题的起因</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">1.3) </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">为什么要安全开发</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2) </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">如何从流程上保证安全开发</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.0) </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">各个阶段问题的统计数据</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.1</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）任务启动之前的准备</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.2) </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">产品需求分析阶段</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.3) </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">设计</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.4</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）编程</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"> <o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.5</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）</span><span style="font-size:9.0pt;line-height:150%;font-family:Arial;"> </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">测试</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.6</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）</span><span style="font-size:9.0pt;line-height:150%;font-family:Arial;"> </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">如何保证工作流程的措施得到实施</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">2.7) </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">配置管理的重要性</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"><o:p></o:p></span></p>
<p style="margin:0cm;margin-bottom:.0001pt;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;">3</span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family:Arial;">）</span><span style="font-size:9.0pt;line-height:150%;font-family:Arial;"> </span><span style="font-size:9.0pt;line-height:150%;mso-ascii-font-family:Arial;mso-hansi-font-family:Arial;mso-bidi-font-family: Arial">总结</span><span lang="EN-US" style="font-size:9.0pt;line-height:150%;font-family:Arial;"> Summary<o:p></o:p></span></p>]]></description>
	<pubDate>Fri, 30 Sep 2011 03:22:44 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=244</guid>

</item>
<item>
	<title>OWASP 2011亚洲峰会11月在北京举行</title>
	<link>http://www.p-ye.cn/log/?post=243</link>
	<description><![CDATA[<p class="MsoNormal" style="text-indent:21.0pt;mso-char-indent-count:2.0;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">2011</span><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">年<span lang="EN-US">11</span>月<span lang="EN-US">8-9</span>日，由开源<span lang="EN-US">web</span>应用安全项目（<span lang="EN-US">OWASP</span>）主办的<span lang="EN-US">OWASP 2011</span>亚洲峰会将在北京国际会议中心召开。本届<span lang="EN-US">OWASP</span>亚洲峰会将以“互联网安全新思维”为主题，将从“网络安全产品测评”、“<span lang="EN-US">OWASP</span>应用安全技术”“业务安全发展新思路”“云安全”等多个角度展开深入的讨论。<span lang="EN-US"><o:p></o:p></span></span></p>
<p class="MsoNormal" style="text-indent:21.0pt;mso-char-indent-count:2.0;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">OWASP</span><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">是一个开源的、非盈利的全球性安全组织，致力于应用软件的安全研究。近几年，<span lang="EN-US">OWASP</span>峰会以及各国<span lang="EN-US">OWASP</span>年会均取得了巨大的成功，推动了数以百万的<span lang="EN-US">IT</span>从业人员对应用安全的关注以及理解，并为各类企业的应用安全提供了明确的指引。<span lang="EN-US"><o:p></o:p></span></span></p>
<p class="MsoNormal" style="margin-left:5.25pt;mso-para-margin-left:.5gd;text-indent:15.75pt;mso-char-indent-count:1.5;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;"><span style="mso-spacerun:yes;">&nbsp;</span>OWASP</span><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">中国分会已经分别成功举办了<span lang="EN-US">OWASP 2009</span>上海峰会、<span lang="EN-US">OWASP 2010</span>中国峰会<span lang="EN-US">. 2011</span>年<span lang="EN-US">OWASP</span>中国峰会将升级为<span lang="EN-US">OWASP</span>全球四大区域会议之一的<span lang="EN-US">OWASP </span>亚洲峰会。本次峰会期间，还会举办国内首个互联网安全产品展览，邀请国内外各安全厂商、个人软件开发者参与展示最新的技术；同时，也会邀请电信、金融、电力能源、政府等各领导莅临参观指导！<span lang="EN-US"><o:p></o:p></span></span></p>
<p class="MsoNormal" style="margin-left:5.25pt;mso-para-margin-left:.5gd;text-indent:15.75pt;mso-char-indent-count:1.5;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">时</span></b><b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:&quot;Microsoft YaHei Western&quot;;mso-fareast-font-family:微软雅黑;">&nbsp; </span></b><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">间：<span lang="EN-US">2011</span>年<span lang="EN-US">11</span>月<span lang="EN-US">8</span>日<span lang="EN-US">-11</span>月<span lang="EN-US">9</span>日</span></b><b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:&quot;Microsoft YaHei Western&quot;;mso-fareast-font-family:微软雅黑;">&nbsp;&nbsp;&nbsp;&nbsp;OWASP</span></b><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family: 微软雅黑">亚洲峰会<span lang="EN-US">+</span>安全产品展</span></b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family: 微软雅黑"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:5.25pt;mso-para-margin-left:.5gd;text-indent:15.75pt;mso-char-indent-count:1.5;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:&quot;Microsoft YaHei Western&quot;;mso-fareast-font-family: 微软雅黑">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;2011</span></b><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family: 微软雅黑">年<span lang="EN-US">11</span>月<span lang="EN-US">10</span>日<span lang="EN-US">-11</span>月<span lang="EN-US">11</span>日</span></b><b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:&quot;Microsoft YaHei Western&quot;;mso-fareast-font-family: 微软雅黑">&nbsp;&nbsp;&nbsp;&nbsp;</span></b><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">安全培训</span></b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:5.25pt;mso-para-margin-left:.5gd;text-indent:15.75pt;mso-char-indent-count:1.5;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">地</span></b><b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:&quot;Microsoft YaHei Western&quot;;mso-fareast-font-family:微软雅黑;">&nbsp;</span></b><b><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">点：北京国际会议中心（北京市朝阳区北辰东路<span lang="EN-US">8</span>号）</span></b><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;"><o:p></o:p></span></p>
<p class="MsoNormal" style="margin-left:5.25pt;mso-para-margin-left:.5gd;text-indent:15.75pt;mso-char-indent-count:1.5;line-height:150%;layout-grid-mode:char;mso-layout-grid-align:none;"><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">更多详细信息，请查看<span lang="EN-US">OWASP</span>中国网站：</span><span lang="EN-US"><a href="http://www.owasp.org.cn/" target="_blank"><span style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;">http://www.owasp.org.cn</span></a></span><span lang="EN-US" style="mso-bidi-font-size:10.5pt;line-height:150%;font-family:微软雅黑;mso-hansi-font-family:微软雅黑;"> <o:p></o:p></span></p>]]></description>
	<pubDate>Tue, 30 Aug 2011 06:04:58 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=243</guid>

</item>
<item>
	<title>New Log</title>
	<link>http://www.p-ye.cn/log/?post=242</link>
	<description><![CDATA[<p>Url:<a href="/path">http://www.p-ye.cn/path/</a> </p>
<p>&nbsp;</p>]]></description>
	<pubDate>Sat, 12 Mar 2011 02:33:20 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=242</guid>

</item>
<item>
	<title>号码</title>
	<link>http://www.p-ye.cn/log/?post=240</link>
	<description><![CDATA[<p><span style="background-color:#e53333;">&nbsp;&nbsp;&nbsp;&nbsp;你好,因家里被窃手机号码丢失,请认识的麻烦将号码发送至xb#usa.com&nbsp;</span></p>]]></description>
	<pubDate>Mon, 28 Feb 2011 16:25:25 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=240</guid>

</item>
<item>
	<title>CNNIC预留的域名列表，有十几个已经注册</title>
	<link>http://www.p-ye.cn/log/?post=238</link>
	<description><![CDATA[<p>被和谐了。别看了</p>]]></description>
	<pubDate>Sat, 08 Jan 2011 13:21:47 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=238</guid>

</item>
<item>
	<title>某知名网银系统bug</title>
	<link>http://www.p-ye.cn/log/?post=236</link>
	<description><![CDATA[<p><span><span>易宝支付(<a class="link-1" href="http://www.yeepay.com/index.shtml" target="_blank">YeePay.com</a>
 )</span>
 是中国领先的独立第三方支付平台，2003年8月由北京通融通信息技术有限公司创建。易宝支付自运营以来，致力于为广大商家和消费者提供&ldquo;安全、简单、快乐&rdquo;的专业电子支付解决方案和服务。</span>
</p>
<p><span>&nbsp;</span>
</p>
<p><span>bug文件:/selfservice/toNewCreateBankCardInfo!photoView.jsp</span>
</p>
<p><span>bug说明:验证cookie,即可读取用户上传身份证,企业营业执照信息</span>
</p>
<p><span>方法:随便去注册个用户,直接打开<a href="http://www.yeepay.com/selfservice/toNewCreateBankCardInfo!photoView.action?pid=288">http://www.yeepay.com/selfservice/toNewCreateBankCardInfo!photoView.action?pid=288</a>
 页面,pid参数值为1-999,再高的就没图了,应该是签约的商户不多吧.</span>
</p>
<p><span>&nbsp;</span>
</p>
<p><span>转载请注明出处!</span>
</p>]]></description>
	<pubDate>Fri, 26 Nov 2010 06:21:02 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=236</guid>

</item>
<item>
	<title>王朝覆灭的共同点</title>
	<link>http://www.p-ye.cn/log/?post=235</link>
	<description><![CDATA[<p>史鉴散照&nbsp;&nbsp;&nbsp;&nbsp;一个王朝的崩溃是件令人着迷的事情。从宏大的历史上看，似乎都是一股势力猛然崛起，然后经过或多或少的时间，终于变得沛莫能御，然后势如破竹地攻打下京城，然后是扫平全国，或者传檄而定，或者剑及履及，一个崭新的国家就这么诞生。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;这是宏大的史书所构成的一种印象，加之所谓必然性的因素，让我们对于历史产生了一种类似于恢宏壮丽的感觉。实际上，这种印象未必是对的，更多的是那种慢慢焚烧的野火与地火，只是在冲出地面之前，不论是在史书还是民间的传说里，那些都是不值一提的小事，很多人就此忽略了他们的存在。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;太平天国是非常典型的例子之一。在此之前，晚清已经只剩了一个空壳，即使这个空壳也被船坚炮利的洋人轰得千疮百孔。洪秀全不过是个不得志，而且读书也不好的人，即使借着我们这里的造反传统拉起一票人马，在没出广西的时候就已经开始显示出了颓势。不但大肆封王许愿，连后宫都置办整齐了。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;如果深入研究太平天国的话，就会知道其荒唐已经到了极点。所谓的&ldquo;天朝田亩制度&rdquo;从来就没有真正实现过，所到之处焚书坑儒不算，还把治下的人民分成男女两营，如果发现有苟合之事，立刻会招致灭顶之灾。与此同时，那些王爷之类的高官则纷纷大建王府，建设自己的小后宫。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;等级制度之森严也是他们的一大特点，甚至已经发挥到了骇人听闻的程度。古人虽然讲究官大一级压死人，但毕竟都是有头有脸的人物，在面子上总还是过得去。而只有那种完全不知道如何用文化维系关系的政权，才能把所有的等级差异如此明显地表现出来。某侯爷的家人触犯了某王爷的威仪，不但自身落得身首分离的下场，连那个侯爷也要负荆请罪，最终被羞辱一顿。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;如此荒唐的政权竟然也席卷了大半个中国，总是有道理在。这个道理不妨从晚清最后几年的一段轶事当中去寻找。</p>
<p><!--广告 NX-06--></p>
<div style="border-right-width: 0px; width: 200px; display: none; float: left; border-top-width: 0px; border-bottom-width: 0px; height: 300px; border-left-width: 0px; margin-right: 10px"><script language="javascript" src="http://trade.oeeee.com/ADShow.aspx?show=script&amp;lid=568"></script>
</div>
<p><!--广告-->&nbsp;&nbsp;&nbsp;&nbsp;野史有记，号称自己要&ldquo;八表经营&rdquo;的张之洞办了一生的事，虽然始终被李鸿章目为书生，但自然也算是有自己的局面。当临终的时候，末帝溥仪的生父、时任摄政王的载沣虽然与之政见不合，但也是亲临床榻看望之。张之洞毕竟是四朝老臣，临死之时还是念念不忘天下安危，提出要善抚民众。摄政王载沣扬扬得意道：&ldquo;不怕，有兵在。&rdquo;张之洞从此再无一语有关国计民生的大计献于摄政王大人之前。在他看来，清朝已经是完了。虽然张之洞没有所谓现代政治思维，但他知道，但凡是统治者勒兵观变的心态一出，这天下从此就算是无可收拾了。</p>
<p>&nbsp;</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;回到洪杨的太平天国，其实这就是所有给予旧王朝致命打击的关键所在。在尚未知道自己已经病入膏肓的时候，看上去所有正在风光的统治者都是异常强大的，在这之前，他们已经镇压过多少次反抗，并且都轻易得手了。&ldquo;有兵在&rdquo;这句话就是支撑所有统治者最厉害的春药，让他误以为自己的位子是很稳固的。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;一次又一次的成功，让他们认为这些东西根本没什么了不起，只要是采取强硬的措施，没有人能扛得住专业的大军。当初皇帝拨内帑200万两、赠&ldquo;遏必隆&rdquo;宝刀于赛尚阿之时，估计也是这么想的。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;这就是所有王朝崩溃时的特点，在那之前已经有过多少次不成功的事例，而种种东西都在老百姓的心里埋藏着。这次不能爆发、这里不能爆发，总有一个哪怕是荒唐的机会爆发出来。星火燎原，固然星火是原因，但离离原上草才是星火可以燎原的根本，受害者的范围越来越大、最终参与者越来越多。今天这个火星很容易就灭了，明天有阵微风又吹过来，烧起来的范围大了一些。谁也不知道哪颗火星最终会引燃那场焚天的烈火。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;陈胜吴广起义不过是因为戍边失期，而李自成是因为裁撤役卒而下岗。微风起于萍末之时，仿佛说着&ldquo;有兵在、有兵在，那是谁的兵？&rdquo;</p>]]></description>
	<pubDate>Wed, 03 Nov 2010 02:46:37 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=235</guid>

</item>
<item>
	<title>SQL数据库对象名无效的解决方法</title>
	<link>http://www.p-ye.cn/log/?post=234</link>
	<description><![CDATA[<p>&nbsp;&nbsp; 产生SQL对象名无效的问题大多原因是由于数据迁移导致的,下面我们给出解决方法. 在使用数据库的过程中，经常会遇到数据库迁移或者数据迁移的问题，或者有突然的数据库损坏，这时需要从数据库的备份中直接恢复。但是，此时会出现问题，这里说明几种常见问题的解决方法。</p>
<p>一、孤立用户的问题 比如，以前的数据库的很多表是用户test建立的，但是当我们恢复数据库后，test用户此时就成了孤立用户，没有与之对应的登陆用户名，哪怕你建立了一个test登录用户名，而且是以前的用户密码，用该用户登录后同样没办法操作以前属于test的用户表。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 这个问题有两种办法解决。 先说解决的前提条件。 首先，要用备份文件还原数据库，我们这里的数据库名为testdb，里面有属于用户test的用户表。这个很容易了操作了，不多讲了，在企业管理器中很方便可以恢复。恢复后，就产生了孤立用户test。然后，用sa用户或者具有DBA权限的用户登录，创建一个test数据库登录用户，密码随便设置了，也可以和以前的保持一致。我们用它来对应孤立的test用户。</p>
<p>&nbsp;&nbsp;&nbsp;&nbsp; 使登录用户和数据库的孤立用户对应起来 其实我们建立了同样名称的数据库登录用户后，数据库中的表我们照样不能使用时因为sid的不同，就是系统登录表和数据库用户表中的用户名相同，单是sid字段，数据库中的还是以前旧系统的sid值，所以我们就要把它对应成我们新建的，数据库靠sid来识别用户。 这里可以使用存储过程sp_change_users_login。它有三种动作，分别是report，update_one和auto_fix。</p>
<p>&nbsp;运行sp_change_users_login &#39;report&#39;，系统会列出当前数据库的孤立用户数。</p>
<p>我们只需要选择当前数据库为testdb，然后运行 sp_change_users_login &#39;update_one&#39;,&#39;test&#39;,&#39;test&#39; --系统就会提示修复了一个孤立用户。</p>
<p>如果没有建立test的登录用户，还可以用 sp_change_users_login &#39;Auto_Fix&#39;, &#39;test&#39;, NULL, &#39;testpassword&#39; --来创建一个登录用户名为test，密码为testpassword的用户与之对应。 好了，到这里通常情况下，数据库对象得到访问问题已经解决了。如果有多个数据库中有同一个用户的数据表，只需要选择不同的数据库，执行update_one的那个就行了。</p>
<p>二、对象名 &lsquo;tablename&rsquo; 无效的问题 这里可能会有人遇到对象名 &lsquo;tablename&rsquo;无效的问题。系统表却不会产生这个问题，而用户表还要加上用户名，然后是表明才能访问，比如select * from author,会说对象名 author 无效，而用select * from test.author就可以访问，这个是用户首选身份的问题。</p>
<p>方法一： 解决很简单，就是察看test登录用户是否具有dba的权限或者系统管理的权限，有的话去掉就行了。 因为如果用户有dba身份，那么它登陆后的默认表空间是dbo的系统表空间，所以去掉了之后，就会以正常的test表空间访问数据表了。</p>
<p>方法二： 将所有test所有表设置为dbo就OK了</p>
<p>执行语句：exec sp_msforeachtable &quot;sp_changeobjectowner &#39;?&#39;,&#39;dbo&#39;&quot;</p>]]></description>
	<pubDate>Mon, 25 Oct 2010 07:42:37 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=234</guid>

</item>
<item>
	<title>Ewebeditor上传按钮不弹出的解决办法</title>
	<link>http://www.p-ye.cn/log/?post=233</link>
	<description><![CDATA[<p>昨晚在添加Ewebeditor编辑器后,测试数据时发现不能传东西,点击上传按钮没反应,估计是被拦截了,开启了浏览器所有js权限,但也没劳,后来网上看到解决方法:</p>
<p>在IE8下把anonymous换成onclick即可,但IE7对onclick事件也有问题,IE6还不知道,就加了个判断.</p>
<p><br />if (element.YUSERONCLICK) {<br />&nbsp;&nbsp; eval(element.YUSERONCLICK + &quot;anonymous()&quot;);<br />}</p>
<p>替换成：</p>
<p>if(navigator.appVersion.match(/8./i)==&#39;8.&#39;) <br />&nbsp;&nbsp;&nbsp; { <br />&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; if (element.YUSERONCLICK) eval(element.YUSERONCLICK + &quot;onclick(event)&quot;);&nbsp;&nbsp;&nbsp;<br />&nbsp;&nbsp; } <br />else</p>
<p>&nbsp;&nbsp; { <br />&nbsp;&nbsp;&nbsp;&nbsp; if (element.YUSERONCLICK) eval(element.YUSERONCLICK + &quot;anonymous()&quot;); <br />}</p>
<p>&nbsp;</p>
<p>测试后基本可以,360，谷歌,都过.</p>
<p>&nbsp;</p>]]></description>
	<pubDate>Mon, 25 Oct 2010 01:29:49 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=233</guid>

</item>
<item>
	<title>好耶那点事</title>
	<link>http://www.p-ye.cn/log/?post=232</link>
	<description><![CDATA[<p>好耶并入分众的2007年，是个好年头。<br />那年4月，Google出价31亿美元收购网络广告公司DoubleClick。5月，微软宣布以60亿美元的价格收购网络广告公司aQuantive。这些抛出的大手笔，无一例外都在透出对互联网广告价值的肯定。<br />分众比这些大手笔还要早一步。这一年3月，分众宣布以7000万美元现金和价值1.55亿美元的分众普通股收购好耶的全部股份。在接下来一年，如果好耶达到特定的收益目标，分众将再支付价值7500万美元的普通股。<br />分众掌舵人江南春赶在好耶上市前的最后关头将其收入囊中。其意图很简单，通过这一交易，分众将切入高速增长的中国互联网广告市场。好耶，也至此成为其数字广告王国战略的一部分。<br />时过境迁。三年后，从高峰时60多美元股价一直掉到不足20美元的分众，宣布采取收缩战略。江南春宣布分众将专注于楼宇、卖场、框架三大核心业务，并剥离利润相对较低的非核心业务。<br />这几年对分众的收入贡献率长期徘徊在两成，毛利率大大低于其他业务的好耶，就是被剥离的部分之一。<br />好耶CEO朱海龙认识江南春逾十年，好耶并入分众逾三年，此次转手银湖，究竟谁得谁失？<br />并入分众的日子好耶并入分众，其实并非一时仓促之举。<br />2004年的好耶已经实现营业收入2亿多元，利润则超过了2000万元。这一年，朱海龙和熟识多年的江南春曾经计划过两家公司以换股的方式合并。<br />&ldquo;我们2004年就谈过要合并，2004年的时候我也做过半年分众的CEO，那个时候都快定了。后来觉得他们要上，我们历史比他们长，尽管规模没有他们大，我们审计的时间会比他们要长，在这种情况下，江南春为了不影响上市的进程，还是先把我们放外面，就没有并。&rdquo;朱海龙告诉本报记者。<br />放弃合并的朱海龙，在2005年5月争取到了IDG和橡树投资总计3000万美元的第二轮投资。橡树投资同时也是aQuantive的投资人，加快了公司快速扩张其经营规模的步伐，同时谋划在美上市。<br />就在聘请了主承销商，并且向美国证券交易委员会递交文件之后，好耶在最后关头突然宣布放弃上市，转而选择和分众达成收购协议。<br />朱海龙回忆，2006年底，好耶准备自己上市时，已经先上市一年多的分众，正在踌躇满志地实施自己的数字广告王国战略，希望布局数字电视、户外广告、互联网广告和无线业务。<br />好耶在江南春眼中成为了分众进入互联网广告领域的旗手。<br />按照其资本布局，其数字王国首先是分众无线上市，然后好耶上市,后者可能改为分众在线。如果都能实现，江南春的旗下有数字户外广告、无线广告以及在线广告三种。<br />所以江南春在收购好耶之后，还网罗了其他业内公司如创世奇迹、科思世通等。前内部员工认为，这些公司&ldquo;捏在一块&rdquo;，背后有一个设想，最终将好耶拆分上市。所以&ldquo;很多东西都是围绕上市做的，实际上基础不扎实，老想上市，老差一口气&rdquo;。<br />反而，分众最后的收购让这些为上市绷紧神经的高层松了一口气，可以在未来有一段从容的时间&ldquo;夯实基础&rdquo;。<br />朱海龙三年后他回顾和江南春的合并，他始终认为&ldquo;合并是对的&rdquo;。合并解决了两个问题，其一，IDG从2000年做第一笔投资，2005年IDG和橡树资本再次投资之后，投资人有退出的欲望，&ldquo;而且较强烈&rdquo;。朱海龙认为投资人赚钱无可厚非，与分众合并是一个机会。其二，分众给好耶又会带来客户资源，这是其所乐见的。<br />投资人确实找到了退出渠道，但第二个问题却实现得并不算好。<br />分众带给好耶的资源协同效应没有充分体现出来。几乎每次开财报会议，分析师指着分众利润率提问时，连朱海龙也觉得如坐针毡，&ldquo;被挑战的总是我这一边&rdquo;。<br />相比分众其他业务40%以上的利润率，好耶近3年的毛利率却一直下滑。2007年为31.4%，2008年为22.3%，2009年为8.5%。好耶对分众总收入的贡献在两成左右，拖累分众整体利润率不少。<br />朱海龙解释，毛利率一直下降是因为其对财务的要求更严格，作为坏账预提。不过有行业人士非常惊讶，在他印象中，好耶的坏账率一直不高，其利润率不应该那么低。<br />还有一个不好的数字，2009年，好耶应收账款近乎占分众的30%。<br />银湖投资集团董事总经理陈恂表示，相比下滑的毛利率，他更关心现金流。&ldquo;有一些企业，现金流、毛利、销售额之间关系非常直接，但有的企业其关系不见得直接，我们做投资永远最关心的是现金流。&rdquo;陈恂说。<br />在这三年中，好耶一直在媒体上爆出上市的消息，香港、美国都有被提及。给人一种错觉，似乎好耶一直在上市的焦虑中</p>]]></description>
	<pubDate>Sat, 23 Oct 2010 00:24:16 +0000</pubDate>
	<author>piaoye</author>
	<guid>http://www.p-ye.cn/log/?post=232</guid>

</item></channel>
</rss>
