<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Chandrakanth+Reddy+Narreddy</id>
		<title>OWASP - User contributions [en]</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Chandrakanth+Reddy+Narreddy"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php/Special:Contributions/Chandrakanth_Reddy_Narreddy"/>
		<updated>2026-05-22T02:16:34Z</updated>
		<subtitle>User contributions</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=User:Chandrakanth_Reddy_Narreddy&amp;diff=94250</id>
		<title>User:Chandrakanth Reddy Narreddy</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=User:Chandrakanth_Reddy_Narreddy&amp;diff=94250"/>
				<updated>2010-11-28T07:15:34Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Chandrakanth is an information security expert and researcher with core skills in application security and architecture. He focuses majorly on addressing as well as assessing security of applications, products and web applications. His research on insecure trends in internet technologies is published at http://www.foundstone.com/us/resources/whitepapers/wp_insecure_trends_in_web_technologies.pdf. &lt;br /&gt;
&lt;br /&gt;
Chandrakanth is the leader of OWASP Alchemist project which helps application architects and developers to defend their applications by implementing secure design and coding practices.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
* To see my wiki contributions, [[:Special:Contributions/Chandrakanth Reddy Narreddy|click here]].&lt;br /&gt;
* [mailto:chandra.chandra.kanth@owasp.org Email address].&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=94249</id>
		<title>Projects/OWASP Alchemist Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=94249"/>
				<updated>2010-11-28T07:05:56Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page =:OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| project_description =&lt;br /&gt;
&lt;br /&gt;
Alchemist enables a software development team in realization of highly secure and defensible application with built-in defenses/controls against security‐related design, coding and implementation flaws. &lt;br /&gt;
&lt;br /&gt;
Alchemist is focused to present this solution by architecting a real-life high stakes application with security built into it right from the inception, step-by-step as it falls under an SDLC. The current exercise is targeted at demonstrating this on a J2EE based web application that is developed using Spring framework. Spring framework was chosen due to its widespread adoption in the financial products. However, it is important note that Alchemist is not limited to J2EE or more specifically Spring framework. The idea is to demonstrate the upper spectrum of security practices that are often neglected or are done in bits and pieces by picking a well known widely adopted technology. Since the emphasis is on security architecture and defensibility, the future road-map is to demonstrate the same for applications built using other leading programming languages and frameworks. &lt;br /&gt;
&lt;br /&gt;
Although this project is more than useful for existing/already developed applications, Alchemist is not the ideal solution to retrofit security into existing applications. It is aimed at offering more to applications that are at least in development, most in design phase. Allowing for language-specific differences, Alchemist builds this application with a strong foundation of security architecture that covers following main practices:&lt;br /&gt;
&lt;br /&gt;
*Security Requirements&lt;br /&gt;
*Threat Risk Modeling&lt;br /&gt;
*Use and Abuse Cases&lt;br /&gt;
*Secure Coding Guideline&lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Naveen Rudrappa&lt;br /&gt;
| leader_email1 = naveen.rudrappa@owasp.org&lt;br /&gt;
| leader_username1 = Naveen Rudrappa&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@hotmail.com&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Bishan Singh&lt;br /&gt;
| leader_email3 = Bishan.Singh@owasp.org&lt;br /&gt;
| leader_username3 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link =&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-alchemist-project&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf &lt;br /&gt;
&lt;br /&gt;
| links_url[1-10] = &lt;br /&gt;
| links_name[1-10] = &lt;br /&gt;
| release_1 = Alchemist Secure J2EE Spring v1.0&lt;br /&gt;
| release_2 = &lt;br /&gt;
| release_3 =&lt;br /&gt;
| release_4 =&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project/Releases/Alchemist_Secure_J2EE_Spring_v1.0&amp;diff=94248</id>
		<title>Projects/OWASP Alchemist Project/Releases/Alchemist Secure J2EE Spring v1.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project/Releases/Alchemist_Secure_J2EE_Spring_v1.0&amp;diff=94248"/>
				<updated>2010-11-28T07:05:06Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page = :OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| release_name = Alchemist Secure J2EE Spring v1.0&lt;br /&gt;
| release_date = 13th January 2011  &lt;br /&gt;
| release_download_link = &lt;br /&gt;
&lt;br /&gt;
| release_description = A real-world banking application with 5 dynamic pages.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
 &lt;br /&gt;
| leader_name1 = Naveen Rudrappa&lt;br /&gt;
| leader_email1 = naveen.rudrappa@owasp.org&lt;br /&gt;
| leader_username1 = Naveen Rudrappa&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@hotmail.com&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Bishan Singh&lt;br /&gt;
| leader_email3 = Bishan.Singh@owasp.org&lt;br /&gt;
| leader_username3 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| contributor_name1 = &lt;br /&gt;
| contributor_email1 = &lt;br /&gt;
| contributor_username1 = &lt;br /&gt;
&lt;br /&gt;
| contributor_name2 = &lt;br /&gt;
| contributor_email2 = &lt;br /&gt;
| contributor_username2 = &lt;br /&gt;
&lt;br /&gt;
| release_notes = &lt;br /&gt;
&lt;br /&gt;
| links_url1 =  &lt;br /&gt;
| links_name1 = &lt;br /&gt;
&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project/Releases/Alchemist_Secure_J2EE_Spring_v1.0&amp;diff=94247</id>
		<title>Projects/OWASP Alchemist Project/Releases/Alchemist Secure J2EE Spring v1.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project/Releases/Alchemist_Secure_J2EE_Spring_v1.0&amp;diff=94247"/>
				<updated>2010-11-28T07:03:08Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page = :OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| release_name = Alchemist Secure J2EE Spring v1.0&lt;br /&gt;
| release_date = 13th January 2011  &lt;br /&gt;
| release_download_link = &lt;br /&gt;
&lt;br /&gt;
| release_description = A real-world banking application with 5 dynamic pages.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
 &lt;br /&gt;
| leader_name1 = Bishan Singh&lt;br /&gt;
| leader_email1 = Bishan.Singh@owasp.org&lt;br /&gt;
| leader_username1 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@owasp.org&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Naveen Rudrappa&lt;br /&gt;
| leader_email3 = naveen.rudrappa@owasp.org&lt;br /&gt;
| leader_username3 = Naveen Rudrappa&lt;br /&gt;
&lt;br /&gt;
| contributor_name1 = &lt;br /&gt;
| contributor_email1 = &lt;br /&gt;
| contributor_username1 = &lt;br /&gt;
&lt;br /&gt;
| contributor_name2 = &lt;br /&gt;
| contributor_email2 = &lt;br /&gt;
| contributor_username2 = &lt;br /&gt;
&lt;br /&gt;
| release_notes = &lt;br /&gt;
&lt;br /&gt;
| links_url1 =  &lt;br /&gt;
| links_name1 = &lt;br /&gt;
&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=94246</id>
		<title>Projects/OWASP Alchemist Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=94246"/>
				<updated>2010-11-28T07:01:40Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page =:OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| project_description =&lt;br /&gt;
&lt;br /&gt;
Alchemist enables a software development team in realization of highly secure and defensible application with built-in defenses/controls against security‐related design, coding and implementation flaws. &lt;br /&gt;
&lt;br /&gt;
Alchemist is focused to present this solution by architecting a real-life high stakes application with security built into it right from the inception, step-by-step as it falls under an SDLC. The current exercise is targeted at demonstrating this on a J2EE based web application that is developed using Spring framework. Spring framework was chosen due to its widespread adoption in the financial products. However, it is important note that Alchemist is not limited to J2EE or more specifically Spring framework. The idea is to demonstrate the upper spectrum of security practices that are often neglected or are done in bits and pieces by picking a well known widely adopted technology. Since the emphasis is on security architecture and defensibility, the future road-map is to demonstrate the same for applications built using other leading programming languages and frameworks. &lt;br /&gt;
&lt;br /&gt;
Although this project is more than useful for existing/already developed applications, Alchemist is not the ideal solution to retrofit security into existing applications. It is aimed at offering more to applications that are at least in development, most in design phase. Allowing for language-specific differences, Alchemist builds this application with a strong foundation of security architecture that covers following main practices:&lt;br /&gt;
&lt;br /&gt;
*Security Requirements&lt;br /&gt;
*Threat Risk Modeling&lt;br /&gt;
*Use and Abuse Cases&lt;br /&gt;
*Secure Coding Guideline&lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Naveen Rudrappa&lt;br /&gt;
| leader_email1 = naveen.rudrappa@owasp.org&lt;br /&gt;
| leader_username1 = Naveen Rudrappa&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@owasp.org&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Bishan Singh&lt;br /&gt;
| leader_email3 = Bishan.Singh@owasp.org&lt;br /&gt;
| leader_username3 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link =&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-alchemist-project&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf &lt;br /&gt;
&lt;br /&gt;
| links_url[1-10] = &lt;br /&gt;
| links_name[1-10] = &lt;br /&gt;
| release_1 = Alchemist Secure J2EE Spring v1.0&lt;br /&gt;
| release_2 = &lt;br /&gt;
| release_3 =&lt;br /&gt;
| release_4 =&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project/Releases/Alchemist_Secure_J2EE_Spring_v1.0&amp;diff=88738</id>
		<title>Projects/OWASP Alchemist Project/Releases/Alchemist Secure J2EE Spring v1.0</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project/Releases/Alchemist_Secure_J2EE_Spring_v1.0&amp;diff=88738"/>
				<updated>2010-09-06T16:57:27Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template: &amp;lt;includeonly&amp;gt;{{{1}}}&amp;lt;/includeonly&amp;gt;&amp;lt;noinclude&amp;gt;Release About&amp;lt;/noinclude&amp;gt;&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page = :OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| release_name = Alchemist alpha&lt;br /&gt;
| release_date = 13th December 2010  &lt;br /&gt;
| release_download_link = &lt;br /&gt;
&lt;br /&gt;
| release_description = A real-world banking application with 5 dynamic pages.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
| release_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
 &lt;br /&gt;
| leader_name1 = Bishan Singh&lt;br /&gt;
| leader_email1 = c70n3r@gmail.com&lt;br /&gt;
| leader_username1 = &lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@hotmail.com&lt;br /&gt;
| leader_username2 = &lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Naveen Rudrappa&lt;br /&gt;
| leader_email3 = Naveen.rudra02@gmail.com&lt;br /&gt;
| leader_username3 = &lt;br /&gt;
&lt;br /&gt;
| contributor_name1 = &lt;br /&gt;
| contributor_email1 = &lt;br /&gt;
| contributor_username1 = &lt;br /&gt;
&lt;br /&gt;
| contributor_name2 = &lt;br /&gt;
| contributor_email2 = &lt;br /&gt;
| contributor_username2 = &lt;br /&gt;
&lt;br /&gt;
| release_notes = &lt;br /&gt;
&lt;br /&gt;
| links_url1 =  &lt;br /&gt;
| links_name1 = &lt;br /&gt;
&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=88737</id>
		<title>Projects/OWASP Alchemist Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=88737"/>
				<updated>2010-09-06T16:56:59Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page =:OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| project_description =&lt;br /&gt;
&lt;br /&gt;
A large majority of software projects do not incorporate security from the word go. Alchemist intends to help solve this conundrum, by enabling a software development team in realization of highly secure and defensible application with built-in defenses/controls against security‐related design, coding and implementation flaws. &lt;br /&gt;
&lt;br /&gt;
Alchemist is focused to present this solution by way of architecting a real-life high stakes software application in J2EE on top of Spring framework with security built into it right from the inception, step-by-step as it falls under an SDLC. It is important to note that Alchemist is not limited to J2EE or more specifically Spring framework. The idea is to demonstrate the upper spectrum of security practices that are often neglected or are done in bits and pieces by picking a well known widely adopted framework. Spring framework was chosen due to its widespread adoption in the financial products. Since the emphasis is on security architecture and defensibility, the future road-map is to demonstrate the same for applications built on other programming languages and frameworks. &lt;br /&gt;
&lt;br /&gt;
Although this project is more than useful for existing/already developed applications, Alchemist is not the ideal solution to retrofit security into existing applications. It is aimed at offering more to applications that are at least in development, most in design phase. Allowing for language-specific differences, Alchemist builds this application with a strong foundation of security architecture that covers following main practices:&lt;br /&gt;
&lt;br /&gt;
*Security Requirements&lt;br /&gt;
*Threat Risk Modeling&lt;br /&gt;
*Use and Abuse Cases&lt;br /&gt;
*Secure Coding Guideline&lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Bishan Singh&lt;br /&gt;
| leader_email1 = Bishan.Singh@owasp.org&lt;br /&gt;
| leader_username1 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@owasp.org&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Naveen Rudrappa&lt;br /&gt;
| leader_email3 = naveen.rudrappa@owasp.org&lt;br /&gt;
| leader_username3 = Naveen Rudrappa&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link =&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-alchemist-project&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf &lt;br /&gt;
&lt;br /&gt;
| links_url[1-10] = &lt;br /&gt;
| links_name[1-10] = &lt;br /&gt;
| release_1 = Alchemist 1.0&lt;br /&gt;
| release_2 = &lt;br /&gt;
| release_3 =&lt;br /&gt;
| release_4 =&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=88736</id>
		<title>Projects/OWASP Alchemist Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=88736"/>
				<updated>2010-09-06T16:54:59Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page =:OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| project_description =&lt;br /&gt;
&lt;br /&gt;
A large majority of software projects do not incorporate security from the word go. Alchemist intends to help solve this conundrum, by enabling a software development team in realization of highly secure and defensible application with built-in defenses/controls against security‐related design, coding and implementation flaws. &lt;br /&gt;
&lt;br /&gt;
Alchemist is focused to present this solution by way of architecting a real-life high stakes software application in J2EE on top of Spring framework with security built into it right from the inception, step-by-step as it falls under an SDLC. It is important to note that Alchemist is not limited to J2EE or more specifically Spring framework. The idea is to demonstrate the upper spectrum of security practices that are often neglected or are done in bits and pieces by picking a well known widely adopted framework. Spring framework was chosen due to its widespread adoption in the financial products. Since the emphasis is on security architecture and defensibility, the future road-map is to demonstrate the same for applications built on other programming languages and frameworks. &lt;br /&gt;
&lt;br /&gt;
Although this project is more than useful for existing/already developed applications, Alchemist is not the ideal solution to retrofit security into existing applications. It is aimed at offering more to applications that are at least in development, most in design phase. Allowing for language-specific differences, Alchemist builds this application with a strong foundation of security architecture that covers following main practices:&lt;br /&gt;
&lt;br /&gt;
*Security Requirements&lt;br /&gt;
*Threat Risk Modeling&lt;br /&gt;
*Use and Abuse Cases&lt;br /&gt;
*Secure Coding Guideline&lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Bishan Singh&lt;br /&gt;
| leader_email1 = Bishan.Singh@owasp.org&lt;br /&gt;
| leader_username1 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@owasp.org&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Naveen Rudrappa&lt;br /&gt;
| leader_email3 = naveen.rudrappa@owasp.org&lt;br /&gt;
| leader_username3 = Naveen Rudrappa&lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link =&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-alchemist-project&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf &lt;br /&gt;
&lt;br /&gt;
| links_url[1-10] = &lt;br /&gt;
| links_name[1-10] = &lt;br /&gt;
| release_1 = Alchemist 0.1&lt;br /&gt;
| release_2 = &lt;br /&gt;
| release_3 =&lt;br /&gt;
| release_4 =&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=88639</id>
		<title>Projects/OWASP Alchemist Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Projects/OWASP_Alchemist_Project&amp;diff=88639"/>
				<updated>2010-09-03T09:21:21Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;{{Template:Project About&lt;br /&gt;
| project_name = OWASP Alchemist Project&lt;br /&gt;
| project_home_page =:OWASP Alchemist Project&lt;br /&gt;
&lt;br /&gt;
| project_description =&lt;br /&gt;
&lt;br /&gt;
*A large majority of software projects do not incorporate security from the word go. Alchemist intends to help solve this conundrum, by enabling a software development team in realization of highly secure and defensible application with built-in defenses/controls against security‐related design, coding and implementation flaws. Alchemist is focused to present this solution by way of architecting a real-life high stakes software application in J2EE (Spring/Struts) with security built into it right from the inception, step-by-step as it falls under an SDLC. Although this project is more than useful for existing/already developed applications, Alchemist is not the ideal solution to retrofit security into existing applications. It is aimed at offering more to applications that are at least in development, most in design phase. Allowing for language-specific differences, Alchemist builds this application with a strong foundation of security architecture that covers following main practices:&lt;br /&gt;
**Security Requirements,&lt;br /&gt;
**Threat Risk Modeling,&lt;br /&gt;
**Use and Abuse Cases,&lt;br /&gt;
**Secure Coding Guideline,&lt;br /&gt;
&lt;br /&gt;
| project_license = [http://www.gnu.org/licenses/#GPL GNU General Public License]&lt;br /&gt;
&lt;br /&gt;
| leader_name1 = Bishan Singh&lt;br /&gt;
| leader_email1 = c70n3r@gmail.com&lt;br /&gt;
| leader_username1 = Bishan Singh&lt;br /&gt;
&lt;br /&gt;
| leader_name2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
| leader_email2 = chandra.kanth@hotmail.com&lt;br /&gt;
| leader_username2 = Chandrakanth Reddy Narreddy&lt;br /&gt;
&lt;br /&gt;
| leader_name3 = Naveen Rudrappa&lt;br /&gt;
| leader_email3 = Naveen.rudra02@gmail.com&lt;br /&gt;
| leader_username3 = &lt;br /&gt;
&lt;br /&gt;
| contributor_name[1-10] = &lt;br /&gt;
| contributor_email[1-10] = &lt;br /&gt;
| contributor_username[1-10] = &lt;br /&gt;
&lt;br /&gt;
| pamphlet_link = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf&lt;br /&gt;
&lt;br /&gt;
| presentation_link =&lt;br /&gt;
&lt;br /&gt;
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp-alchemist-project&lt;br /&gt;
&lt;br /&gt;
| project_road_map = http://www.owasp.org/images/8/85/ALCHEMIST_-_PROJECT_CHARTER_v0_2.pdf &lt;br /&gt;
&lt;br /&gt;
| links_url[1-10] = &lt;br /&gt;
| links_name[1-10] = &lt;br /&gt;
| release_1 = Alchemist 1.0&lt;br /&gt;
| release_2 = &lt;br /&gt;
| release_3 =&lt;br /&gt;
| release_4 =&lt;br /&gt;
}}&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=OWASP_Alchemist_Project&amp;diff=88638</id>
		<title>OWASP Alchemist Project</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=OWASP_Alchemist_Project&amp;diff=88638"/>
				<updated>2010-09-03T09:19:21Z</updated>
		
		<summary type="html">&lt;p&gt;Chandrakanth Reddy Narreddy: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==== Main ====&lt;br /&gt;
Hello Bish, chandra and Naveen. Please fill in here as you find best. Thanks much, Paulo Coimbra&lt;br /&gt;
&lt;br /&gt;
==== Project About ====&lt;br /&gt;
{{:Projects/OWASP_Alchemist_Project | Project About}}&lt;br /&gt;
&lt;br /&gt;
__NOTOC__&lt;br /&gt;
&amp;lt;headertabs/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[Category:OWASP Project|Alchemist Project]]&lt;br /&gt;
[[Category:OWASP Tool]]&lt;br /&gt;
[[Category:OWASP Alpha Quality Tool]]&lt;/div&gt;</summary>
		<author><name>Chandrakanth Reddy Narreddy</name></author>	</entry>

	</feed>