This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Category:OWASP Project"

From OWASP
Jump to: navigation, search
Line 1: Line 1:
 
An OWASP project is a collection of related tasks that have a defined roadmap and team members. OWASP project leaders are responsible for defining the vision, roadmap, and tasks for the project. The project leader also promotes the project and builds the team.
 
An OWASP project is a collection of related tasks that have a defined roadmap and team members. OWASP project leaders are responsible for defining the vision, roadmap, and tasks for the project. The project leader also promotes the project and builds the team.
  
 +
To propose a new project, please send an email to [email protected]. Each project should have a roadmap page that details the current set of tasks and rough schedule. The page should be named "OWASP XXX Project Roadmap"
 +
 +
'''View the list and subscribe to any of the [[OWASP Project Mailing Lists]]'''
 +
 +
 +
 +
==Release Quality Projects==
 +
 +
<table><tr><th width="50%">Tools</th><th>Documentation</th></tr><tr valign="top"><td>
 +
 +
; [[:Category:OWASP WebGoat Project|OWASP WebGoat Project]]
 +
: an online training environment for hands-on learning about application security
 +
 +
; [[:Category:OWASP WebScarab Project|OWASP WebScarab Project]]
 +
: a tool for performing all types of security testing on web applications and web services
 +
 +
</td><td>
 +
 +
; [[:Category:OWASP AppSec FAQ Project|OWASP AppSec FAQ Project]]
 +
: FAQ covering many application security topics
 +
 +
; [[:Category:OWASP Guide Project|OWASP Guide Project]]
 +
: a massive document covering all aspects of web application and web service security
 +
 +
; [[:Category:OWASP Legal Project|OWASP Legal Research]]
 +
: a project focused on contracting for secure software
 +
 +
; [[:Category:OWASP Top Ten Project|OWASP Top Ten Project]]
 +
: an awareness document that describes the top ten web application security vulnerabilities
 +
 +
</td></tr></table>
 +
 +
 +
==Beta Status Projects==
 +
 +
<table valign="top"><tr><th width="50%">Tools</th><th>Documentation</th></tr><tr valign="top"><td>
 +
 +
; [[:Category:OWASP CAL9000 Project|OWASP CAL9000 Project]]
 +
: a JavaScript based web application security testing suite
 +
 +
; [[:Category:OWASP CLASP Project|OWASP CLASP Project]]
 +
: a project focused on defining process elements that reinforce application security
 +
 +
; [[:Category:OWASP Encoding Project|OWASP Encoding Project]]
 +
: a new project focused on the development of encoding best practices for web applications.
 +
 +
; [[:Category:OWASP LAPSE Project|OWASP LAPSE Project]]
 +
: an Eclipse-based source-code static analysis tool for Java
 +
 +
; [[:Category:OWASP Live CD Project|OWASP Live CD Project]]
 +
: a CD containing ready to use versions of application security analysis and testing tools
 +
 +
; [[:Category:OWASP .NET Project|OWASP .NET Research]]
 +
: a project focused on helping .NET developers build secure applications
 +
 +
; [[:Category:OWASP Pantera Web Assessment Studio Project|OWASP Pantera Web Assessment Studio Project]]
 +
: a project focused on combining automated capabilities with complete manual testing to get the best results
 +
 +
; [[:Category:OWASP Sprajax Project|OWASP Sprajax Project]]
 +
: an open source black box security scanner used to assess the security of AJAX-enabled applications
  
==Active OWASP Projects==
+
; [[:Category:OWASP SQLiX Project|OWASP SQLiX Project]]
; Release Quality Projects
+
: a project focused on the development of SQLiX, a full perl-based SQL scanner
* [[:Category:OWASP Top Ten Project|OWASP Top Ten Project]] - an awareness document that describes the top ten web application security vulnerabilities
 
* [[:Category:OWASP WebGoat Project|OWASP WebGoat Project]] - an online training environment for hands-on learning about application security
 
* [[:Category:OWASP WebScarab Project|OWASP WebScarab Project]] - a tool for performing all types of security testing on web applications and web services
 
  
 +
; [[:Category:OWASP WSFuzzer Project|OWASP WSFuzzer Project]]
 +
: a project focused on the development of WSFuzzer, a full python-based Web Services SOAP fuzzer
  
; Beta Status Projects
+
</td><td>
* [[:Category:OWASP CAL9000 Project|OWASP CAL9000 Project]] - a JavaScript based web application security testing suite
 
* [[:Category:OWASP CLASP Project|OWASP CLASP Project]] - a project focused on defining process elements that reinforce application security
 
* [[:Category:OWASP_LAPSE_Project|OWASP LAPSE Project]] - an Eclipse-based source static analysis tool for Java
 
* [[:Category:OWASP Sprajax Project|OWASP Sprajax Project]] - an open source black box security scanner used to assess the security of AJAX-enabled applications
 
* [[:Category:OWASP SQLiX Project|OWASP SQLiX Project]] - a project focused on the development of SQLiX, a full perl-based SQL scanner
 
* [[:Category:OWASP Pantera Web Assessment Studio Project|OWASP Pantera Web Assessment Studio Project]] - a project focused on combining automated capabilities with complete manual testing to get the best results
 
* [[:Category:OWASP WSFuzzer Project|OWASP WSFuzzer Project]] - a project focused on the development of WSFuzzer, a full python-based Web Services SOAP fuzzer
 
  
 +
; [[:Category:OWASP Code Review Project|OWASP Code Review Project]]
 +
: a new project to capture best practices for reviewing code
  
; Alpha Status Projects
+
; [[:Category:OWASP Testing Project|OWASP Testing Guide]]
* [[:Category:OWASP Insecure Web App Project|OWASP Insecure Web App Project]] - a web application that includes common web application vulnerabilities
+
: a project focused on application security testing procedures and checklists
* [[:Category:OWASP Live CD Project|OWASP Live CD Project]] - a CD containing ready to use versions of application security analysis and testing tools
 
* [[:Category:OWASP Orizon Project|OWASP Orizon Project]] - a project focused on the development of a flexible code review engine
 
* [[:Category:OWASP Risk Management Project|OWASP Risk Management Project]] - a new project focused on processes for managing application security risk
 
  
 +
</td></tr></table>
  
; Technology, Research and Guides
 
* [[:Category:OWASP AJAX Security Project|OWASP AJAX Security Guide]] - investigating the security of AJAX enabled applications
 
* [[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]] - establish a set of standards defining baseline approaches to conducting differing types/levels of application security assessment
 
* [[:Category:OWASP Application Security Metrics Project|OWASP Application Security Metrics Project]] - identify and provide a set of application security metrics that have been found by contributors to be effective in measuring application security 
 
* [[:Category:OWASP AppSec FAQ Project|OWASP AppSec FAQ Project]] - an FAQ covering many application security topics
 
* [[:Category:OWASP Code Review Project|OWASP Code Review Project]] - a new project to capture best practices for reviewing code
 
* [[:Category:OWASP Encoding Project|OWASP Encoding Project]] - a new project focused on the development of encoding best practices for web applications.
 
* [[:Category:OWASP Guide Project|OWASP Guide Project]] - a massive document covering all aspects of web application and web service security
 
* [[:Category:OWASP Honeycomb Project|OWASP Honeycomb Guide]] - a comprehensive and integrated guide to the fundamental building blocks of application security
 
* [[:Category:OWASP Java Project|OWASP Java Research]] - a project focused on helping Java and J2EE developers build secure applications
 
* [[:Category:OWASP PHP Project|OWASP PHP Research]] - a project focused on helping PHP developers build secure applications
 
* [[:Category:OWASP Legal Project|OWASP Legal Research]] - a project focused on contracting for secure software
 
* [[:Category:OWASP Logging Project|OWASP Logging Guide]] - a project to define best practices for logging and log management
 
* [[:Category:OWASP .NET Project|OWASP .NET Research]] - a project focused on helping .NET developers build secure applications
 
* [[:Category:OWASP Testing Project|OWASP Testing Guide]] - a project focused on application security testing procedures and checklists
 
* [[:Category:OWASP Validation Project|OWASP Validation Research]] - a project that provides guidance and tools related to validation
 
* [[:Category:OWASP WASS Project|OWASP WASS Guide]] - a standards project to develop more concrete criteria for secure applications
 
  
 +
==Alpha Status Projects==
  
[[OWASP Project Mailing Lists]]
+
<table valign="top"><tr><th width="50%">Tools</th><th>Documentation</th></tr><tr valign="top"><td>
  
 +
; [[:Category:OWASP Insecure Web App Project|OWASP Insecure Web App Project]]
 +
: a web application that includes common web application vulnerabilities
  
==Proposing a new project==
+
; [[:Category:OWASP Orizon Project|OWASP Orizon Project]]
 +
: a project focused on the development of a flexible code review engine
  
To propose a new project, please send an email to [email protected]. Each project should have a roadmap page that details the current set of tasks and rough schedule. The page should be named "OWASP XXX Project Roadmap"
+
; [[:Category:OWASP Validation Project|OWASP Validation Project]]
 +
: a project that provides guidance and tools related to validation
 +
 
 +
</td><td>
 +
 
 +
; [[:Category:OWASP Application Security Assessment Standards Project|OWASP Application Security Assessment Standards Project]]
 +
: establish a set of standards defining baseline approaches to conducting differing types/levels of application security assessment
 +
 
 +
; [[:Category:OWASP Application Security Metrics Project|OWASP Application Security Metrics Project]]
 +
: identify and provide a set of application security metrics that have been found by contributors to be effective in measuring application security 
 +
 
 +
; [[:Category:OWASP AJAX Security Project|OWASP AJAX Security Guide]]
 +
: investigating the security of AJAX enabled applications
 +
 
 +
; [[:Category:OWASP Honeycomb Project|OWASP Honeycomb Guide]]
 +
: a comprehensive and integrated guide to the fundamental building blocks of application security
 +
 
 +
; [[:Category:OWASP Java Project|OWASP Java Project]]
 +
: a project focused on helping Java and J2EE developers build secure applications
 +
 
 +
; [[:Category:OWASP Logging Project|OWASP Logging Guide]]
 +
: a project to define best practices for logging and log management
 +
 
 +
; [[:Category:OWASP PHP Project|OWASP PHP Project]]
 +
: a project focused on helping PHP developers build secure applications
 +
 
 +
; [[:Category:OWASP Risk Management Project|OWASP Risk Management Project]]
 +
: a new project focused on processes for managing application security risk
 +
 
 +
; [[:Category:OWASP WASS Project|OWASP WASS Guide]]
 +
: a standards project to develop more concrete criteria for secure applications
 +
 
 +
</td></tr></table>
 +
 
 +
__NOTOC__

Revision as of 19:13, 9 November 2006

An OWASP project is a collection of related tasks that have a defined roadmap and team members. OWASP project leaders are responsible for defining the vision, roadmap, and tasks for the project. The project leader also promotes the project and builds the team.

To propose a new project, please send an email to [email protected]. Each project should have a roadmap page that details the current set of tasks and rough schedule. The page should be named "OWASP XXX Project Roadmap"

View the list and subscribe to any of the OWASP Project Mailing Lists


Release Quality Projects

ToolsDocumentation
OWASP WebGoat Project
an online training environment for hands-on learning about application security
OWASP WebScarab Project
a tool for performing all types of security testing on web applications and web services
OWASP AppSec FAQ Project
FAQ covering many application security topics
OWASP Guide Project
a massive document covering all aspects of web application and web service security
OWASP Legal Research
a project focused on contracting for secure software
OWASP Top Ten Project
an awareness document that describes the top ten web application security vulnerabilities


Beta Status Projects

ToolsDocumentation
OWASP CAL9000 Project
a JavaScript based web application security testing suite
OWASP CLASP Project
a project focused on defining process elements that reinforce application security
OWASP Encoding Project
a new project focused on the development of encoding best practices for web applications.
OWASP LAPSE Project
an Eclipse-based source-code static analysis tool for Java
OWASP Live CD Project
a CD containing ready to use versions of application security analysis and testing tools
OWASP .NET Research
a project focused on helping .NET developers build secure applications
OWASP Pantera Web Assessment Studio Project
a project focused on combining automated capabilities with complete manual testing to get the best results
OWASP Sprajax Project
an open source black box security scanner used to assess the security of AJAX-enabled applications
OWASP SQLiX Project
a project focused on the development of SQLiX, a full perl-based SQL scanner
OWASP WSFuzzer Project
a project focused on the development of WSFuzzer, a full python-based Web Services SOAP fuzzer
OWASP Code Review Project
a new project to capture best practices for reviewing code
OWASP Testing Guide
a project focused on application security testing procedures and checklists


Alpha Status Projects

ToolsDocumentation
OWASP Insecure Web App Project
a web application that includes common web application vulnerabilities
OWASP Orizon Project
a project focused on the development of a flexible code review engine
OWASP Validation Project
a project that provides guidance and tools related to validation
OWASP Application Security Assessment Standards Project
establish a set of standards defining baseline approaches to conducting differing types/levels of application security assessment
OWASP Application Security Metrics Project
identify and provide a set of application security metrics that have been found by contributors to be effective in measuring application security
OWASP AJAX Security Guide
investigating the security of AJAX enabled applications
OWASP Honeycomb Guide
a comprehensive and integrated guide to the fundamental building blocks of application security
OWASP Java Project
a project focused on helping Java and J2EE developers build secure applications
OWASP Logging Guide
a project to define best practices for logging and log management
OWASP PHP Project
a project focused on helping PHP developers build secure applications
OWASP Risk Management Project
a new project focused on processes for managing application security risk
OWASP WASS Guide
a standards project to develop more concrete criteria for secure applications


Subcategories

This category has the following 132 subcategories, out of 132 total.

H

J

M

N

O

Y

Pages in category "OWASP Project"

The following 200 pages are in this category, out of 419 total.

(previous page) (next page)

O

(previous page) (next page)