In this talk we will learn how to take existing code and add: -Input validation (XSS, SQL Injection, etc.) -Strong error handling -Access control without ever changing the existing source code! See for yourself just how this simple but powerful technique can be for securing exisiting, insecure apps. Bio - Rohit Sethi Rohit Sethi, is a specialist in building application security into the SDLC. He is a SANS instructor, has spoken and taught at SecTor, CSI National, Infosecurity New York and Toronto as well as written articles for Security Focus and WASC. He is a noted expert on application security and has been quoted in both itworldcanada and Computer World. Bio - Nish Bhalla The Founder of Security Compass, Nish Bhalla is a specialist in product, code, web application, host and network reviews. Coauthor of "Buffer Overflow Attacks: Detect, Exploit & Prevent". He is a frequent speaker on emerging security issues. He has spoken at reputed Security Conferences such as at "Reverse Engineering Conference 2005", the "HackInTheBox? 2005" and "ISC2’s Infosec Conference".