This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
User contributions
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)
- 15:42, 5 May 2018 (diff | hist) . . (+325) . . Talk:SameSite (re)
- 11:24, 15 June 2017 (diff | hist) . . (+1,113) . . Input Validation Cheat Sheet (→Whitelisting vs blacklisting: Validating free-form Unicode text=)
- 12:25, 17 May 2017 (diff | hist) . . (+146) . . Talk:Cryptographic Storage Cheat Sheet (3DES) (current)
- 10:44, 17 May 2017 (diff | hist) . . (+185) . . Cryptographic Storage Cheat Sheet (→Rule - Use strong random numbers: what to use instead for C and Java)
- 09:51, 17 May 2017 (diff | hist) . . (+271) . . SAML Security Cheat Sheet (→Input Validation: strong encryption)
- 12:35, 16 May 2017 (diff | hist) . . (+633) . . Input Validation Cheat Sheet (restructure a bit)
- 10:19, 16 May 2017 (diff | hist) . . (+1,565) . . Input Validation Cheat Sheet (Implementing input validation)
- 13:17, 15 May 2017 (diff | hist) . . (+2) . . m Input Validation Cheat Sheet (→Goal of Input Validation)
- 13:13, 15 May 2017 (diff | hist) . . (+362) . . Input Validation Cheat Sheet (→Goal of Input Validation: update, internal links)
- 12:54, 15 May 2017 (diff | hist) . . (+6) . . m Input Validation Cheat Sheet (→White List Regular Expression Examples: US zip code)
- 16:33, 3 May 2017 (diff | hist) . . (+136) . . Source Code Analysis Tools (→Open Source or Free Tools Of This Type: Bandit)
- 16:14, 3 May 2017 (diff | hist) . . (-4) . . Category:Vulnerability Scanning Tools (update the Beyond Security URL)
- 16:08, 3 May 2017 (diff | hist) . . (+151) . . Category:Vulnerability Scanning Tools (+Detectify)
- 16:06, 3 May 2017 (diff | hist) . . (+145) . . Category:Vulnerability Scanning Tools (+WebCookies)
- 10:43, 2 May 2017 (diff | hist) . . (-162) . . Content Security Policy (→Tools: no longer active)
- 13:45, 27 April 2017 (diff | hist) . . (+1,346) . . PL/SQL Security Cheat Sheet (REGEXP_LIKE + DBMS_ASSERT)
- 13:03, 27 April 2017 (diff | hist) . . (+44) . . m PL/SQL Security Cheat Sheet
- 10:48, 27 April 2017 (diff | hist) . . (-1) . . m PL/SQL Security Cheat Sheet
- 10:48, 27 April 2017 (diff | hist) . . (+12) . . m PL/SQL Security Cheat Sheet
- 10:46, 27 April 2017 (diff | hist) . . (+126) . . m PL/SQL Security Cheat Sheet
- 10:43, 27 April 2017 (diff | hist) . . (+139) . . PL/SQL Security Cheat Sheet (more samples)
- 10:38, 27 April 2017 (diff | hist) . . (-7) . . m PL/SQL Security Cheat Sheet
- 10:37, 27 April 2017 (diff | hist) . . (+761) . . PL/SQL Security Cheat Sheet (code sample)
- 09:53, 27 April 2017 (diff | hist) . . (+2,000) . . N PL/SQL Security Cheat Sheet (initial version)
- 08:45, 27 April 2017 (diff | hist) . . (0) . . m SQL Injection Prevention Cheat Sheet (→Escaping SQLi in PhP: typo)
- 09:38, 26 April 2017 (diff | hist) . . (-1) . . Reflected File Download (disable URLs)
- 09:37, 26 April 2017 (diff | hist) . . (+1,831) . . Reflected File Download (add basic information on RFD and references)
- 14:44, 21 April 2017 (diff | hist) . . (+960) . . SameSite (add text from my article https://ipsec.pl/python/2017/understanding-http-cookie-samesite-flag-usage-scenarios.html)
- 14:38, 21 April 2017 (diff | hist) . . (+370) . . Session Management Cheat Sheet (→HttpOnly Attribute: SameSite Attribute)
- 14:37, 21 April 2017 (diff | hist) . . (+62) . . m Session Management Cheat Sheet (→HttpOnly Attribute)
- 14:34, 21 April 2017 (diff | hist) . . (+66) . . Session Management Cheat Sheet (→Secure Attribute)
- 11:10, 21 April 2017 (diff | hist) . . (-30) . . Password Storage Cheat Sheet (→Leverage an adaptive one-way function: formatting, update Argon2 wording)
- 11:07, 21 April 2017 (diff | hist) . . (0) . . m Authentication Cheat Sheet (→Password Complexity: typo)
- 11:07, 21 April 2017 (diff | hist) . . (+130) . . Authentication Cheat Sheet (→Implement Proper Password Strength Controls: the presentation is from 2014 and most of the recommendations are addressed here)
- 11:01, 21 April 2017 (diff | hist) . . (+701) . . Authentication Cheat Sheet (→Password Managers: National Cyber Security Centre on password managers, update the recommendations)
- 13:06, 30 March 2017 (diff | hist) . . (+3) . . User:Pawel Krawczyk (current) (Tag: Visual edit: Switched)
- 06:52, 22 November 2016 (diff | hist) . . (-130) . . User:Pawel Krawczyk
- 20:54, 9 June 2015 (diff | hist) . . (-1,916) . . Transport Layer Protection Cheat Sheet (→Rule - REMOVED - Do Not Perform Redirects from Non-TLS Page to TLS Login Page: if it's removed, it should be removed)
- 20:53, 9 June 2015 (diff | hist) . . (-1) . . m HTTP Strict Transport Security (→Links: typo)
- 20:52, 9 June 2015 (diff | hist) . . (-1,374) . . Transport Layer Protection Cheat Sheet (→Rule - Use HTTP Strict Transport Security: link to appropriate articles on STS and PKP instead of duplicating content, add PKP)
- 20:52, 9 June 2015 (diff | hist) . . (+112) . . HTTP Strict Transport Security (→Links: add AppSec tutorials)
- 20:49, 9 June 2015 (diff | hist) . . (+47) . . Authentication Cheat Sheet (→SAML: reference SAML Security Cheat Sheet)
- 20:48, 9 June 2015 (diff | hist) . . (+1,676) . . SAML Security Cheat Sheet (→Validate Protocol Usage: further SAML validation recommendations)
- 20:33, 9 June 2015 (diff | hist) . . (0) . . m SAML Security Cheat Sheet (→Validate Protocol Processing Rules: typo)
- 20:33, 9 June 2015 (diff | hist) . . (-1) . . m SAML Security Cheat Sheet (→Validate Protocol Usage: typo)
- 20:33, 9 June 2015 (diff | hist) . . (+6,049) . . N SAML Security Cheat Sheet (add initial version based on Brad Broulik article (used with author's written permission, wikified and updated))
- 20:19, 9 June 2015 (diff | hist) . . (+1,135) . . Content Security Policy Cheat Sheet (→Removing unsafe-inline: add more examples of refactoring inline code)
- 20:49, 17 April 2015 (diff | hist) . . (-82) . . Certificate and Public Key Pinning (→HTTP pinning: RFC 7469)
- 15:40, 25 March 2015 (diff | hist) . . (+139) . . Test Upload of Malicious Files (OTG-BUSLOGIC-009) (→How to Test: EICAR anti-malware test file)
- 13:40, 9 February 2015 (diff | hist) . . (+352) . . Category:OWASP Speakers Project (Pawel Krawczyk)
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)