WALTHAM, Massachusetts, November 6 /PRNewswire/ --

What: Yiannis Pavlosoglou, senior director in EMEA for Ounce Labs, industry leader in static application security ( http://www.ouncelabs.com/resources/application-vulnerabilities-faq.asp ) testing (SAST), will present a session titled 'Hybrid Code Auditing: A Dataflow Source Code Review Methodology' at DeepSec 2008 this week in Vienna, Austria.

Session Overview:

The presentation will introduce a source code review methodology that fuses the merits of both the automated and manual review process. This session will illustrate a systemic method for identifying vulnerabilities in the source code. The vulnerabilities of focus are typically of 0-day caliber, which are not picked up by an automated scanning tool and are too hard to identify manually.

Where: The conference is being held Nov. 11-14, 2008 at the Imperial Riding School in Vienna.

When: Mr. Pavlosoglou will present on Friday, Nov. 14th at 3:40 p.m. (Local Time)

Speaker: Yiannis Pavlosoglou, senior director in EMEA for Ounce Labs. Based in London, Pavlosoglou is focusing his research on relating to coding standards, practices and ways of exploiting development code. This focus entails the breaking and making of client-side standalone, as well as server-side web applications. His area of expertise is in source code audits, bytecode interpretations and reverse engineering. He has performed a number of source code audits and application security assessments on an international level.

About Ounce Labs, Inc.

Ounce Labs' industry-leading Static Application Security Testing (SAST) suite brings enterprise-wide awareness of business critical vulnerabilities. With this ability to identify and prioritize issues, organizations have the information they need to address their greatest risks. Ounce's patented source code analysis delivers the scalability and automation to help organizations such as EDS, IBM, Intel, and Lockheed Martin strengthen application security ( http://www.ouncelabs.com/resources/security-assessment-faq.asp ) and protect confidential information. Ounce also helps organizations to verify regulatory and policy compliance, addressing PCI DSS, FISMA, HIPAA and others. For more information, please visit www.ouncelabs.com.

Ounce Labs is a registered trademark of Ounce Labs, Inc. in the United States and other countries. Other product or service names mentioned herein are the trademarks of their respective owners.

MEDIA CONTACTS: Rachel O'Connell Brenda Menard Ounce Labs Davies Murphy Group +1-781-547-7016 +1-781-418-2435 Rachel.OConnell@ouncelabs.com ounce@daviesmurphy.com http://www.ouncelabs.com http://www.daviesmurphy.com

Rachel O'Connell of Ounce Labs, +1-781-547-7016, Rachel.OConnell@ouncelabs.com; or Brenda Menard of Davies Murphy Group, +1-781-418-2435, ounce@daviesmurphy.com