This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Talk:Testing Checklist

From OWASP
Jump to: navigation, search


For version 3, we are going to branch out into 3 checklists as suggested by Mat.

They will be:

- Application Development Checklist (or SDLC checklist?) (Define your security requirements)

- Application Review(?) Checklist. (Ensure you met your requirements)

- Application Testing Checklist. (Pen test the application) The current testing checklist can be found here: https://www.owasp.org/index.php/Image:OWASP_Testing_Guide_Checklist_v3.20.xls.zip



Old versions (will be integrated into the current version):

  • Here is a draft of the OWASP Testing Guide v3 Checklist

https://www.owasp.org/index.php/Testing:_Introduction_and_objectives