This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Projects/Reports/2013-26-07"

From OWASP
Jump to: navigation, search
(Created page with "__TOC__ = OWASP Global Projects Report = *'''[https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHBGbDhXQko4akJoVnMtMUpvZnJucVE&usp=sharing Project Numbers]''' **Activ...")
 
 
(5 intermediate revisions by the same user not shown)
Line 3: Line 3:
  
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHBGbDhXQko4akJoVnMtMUpvZnJucVE&usp=sharing Project Numbers]'''
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHBGbDhXQko4akJoVnMtMUpvZnJucVE&usp=sharing Project Numbers]'''
**Active Projects: 164
+
**Active Projects: 168
 
**Inactive Projects: 67
 
**Inactive Projects: 67
 +
 +
*'''New OWASP Projects'''
 +
**[https://www.owasp.org/index.php/OWASP_WebSandBox_Project OWASP WebSandBox Project]
 +
**[https://www.owasp.org/index.php/OWASP_HA_Vulnerability_Scanner_Project OWASP HA Vulnerability Scanner Project]
 +
**[https://www.owasp.org/index.php/OWASP_Dependency_Track_Project OWASP Dependency Track Project]
 +
**[https://www.owasp.org/index.php/OWASP_Security_Principles_Project OWASP Security Principles Project]
  
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE&usp=sharing Project Applications]'''
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE&usp=sharing Project Applications]'''
**OWASP WebSandBox
+
**SecLists Project
**HA Vulnerability Scanner
 
  
 
*'''Projects Under Review'''
 
*'''Projects Under Review'''
Line 15: Line 20:
 
**[https://www.owasp.org/index.php/OWASP_Xenotix_XSS_Exploit_Framework Xenotix XSS Exploit Framework]
 
**[https://www.owasp.org/index.php/OWASP_Xenotix_XSS_Exploit_Framework Xenotix XSS Exploit Framework]
 
**[https://www.owasp.org/index.php/OWASP_Cornucopia OWASP Cornucopia Project]
 
**[https://www.owasp.org/index.php/OWASP_Cornucopia OWASP Cornucopia Project]
 +
**[https://www.owasp.org/index.php/OWASP_Java_Encoder_Project OWASP Java Encoder Project]
 
**Project reviews are on hold until we can fill the [https://www.owasp.org/index.php/Projects/Reviews_Management_Proposal_2013 Technical Project Advisor] [http://owasp.force.com/volunteers/GW_Volunteers__VolunteersJobListing?campaignid=701U0000000AUtE volunteer roles].  
 
**Project reviews are on hold until we can fill the [https://www.owasp.org/index.php/Projects/Reviews_Management_Proposal_2013 Technical Project Advisor] [http://owasp.force.com/volunteers/GW_Volunteers__VolunteersJobListing?campaignid=701U0000000AUtE volunteer roles].  
  
Line 23: Line 29:
 
**I have completed the first round of requests for all Flagship, Labs, and Incubator projects.
 
**I have completed the first round of requests for all Flagship, Labs, and Incubator projects.
 
**I am now going through the list, and e-mailing the non-responsive Leaders once again.  
 
**I am now going through the list, and e-mailing the non-responsive Leaders once again.  
**Today, I have gone ahead and re-sent my request for a 3rd time to un-responsive Leaders.
+
**I have gone ahead and re-sent my request for a 3rd time to un-responsive Labs Project Leaders.
**If I do not get a reply by Friday, 26th of July, then I will mark the project as inactive.  
+
**The deadline to reply back to my request was today, Friday, 26th of July.
**The same process will be used for the unresponsive Leaders of Incubator projects.
+
**Those Leaders who did not respond to my e-mails  will now have their projects archived.  
 +
**The same process will be used for the un-responsive Leaders of Incubator projects.  
  
*'''Fundraising Intern'''
+
*'''Grants & Fundraising Intern'''
**I am starting the process of recruiting a fundraising Intern for our grant research and writing initiatives.  
+
**I have put together role and qualification criteria for the Fundraising Internship Opportunity.
**I will be making the internship opportunity live by next week Monday.  
+
**The internship opportunity was made live on Monday of this week.
 +
**There has been one applicant for the position, so far.  
 +
**I hope to get more applications in the coming weeks.
 +
**[https://www.owasp.org/index.php/Projects/Internships/Grants_and_Fundraising_Intern Grants & Fundraising Internship]
 
**I am looking for a student or recent graduate to help with grant research, writing, and volunteer coordination.  
 
**I am looking for a student or recent graduate to help with grant research, writing, and volunteer coordination.  
 
*'''[https://www.owasp.org/index.php/How_to_Host_an_OWASP_Projects_Event_Module Project Event Modules: Information Wiki Page]'''
 
**I have created a How to Host an OWASP Projects Event Module page for our regional conference planners.
 
**The information on the wiki page describes the different types of project event modules that we offer support for.
 
**Additionally, readers can get more information on what it takes to add one of these event modules to the conference offering.
 
**The goal of this page is to give readers an overview of how to engage our OWASP Project Leaders with activities that bring value to conference attendees as well as our Leaders.
 
  
 
*'''Project Summit: AppSec USA 2013'''
 
*'''Project Summit: AppSec USA 2013'''
**I continue to plan the logistics for the project summit taking place at AppSec USA, this year.
+
**I continue to plan the logistics for the project summit taking place at AppSec USA this year.
 
**I continue to gather estimates, flight, and roadmap details from Leaders.
 
**I continue to gather estimates, flight, and roadmap details from Leaders.
**We are still finalizing travel arrangements and timetables for each project.  
+
**I am now closer to finalizing the travel arrangements for each project leader.  
**I hope to finalize the planning for this module, soon.  
+
**Moreover, we are in the process of organizing the schedule of project talks for the conference days.
  
 
*'''Women in AppSec: AppSec USA 2013'''
 
*'''Women in AppSec: AppSec USA 2013'''
**The team is still in the fundraising stage; however, we are now accepting applications.
+
**The team has now completed their fundraising activities.  
**We have raised $500.00 via the OWASP Boston Chapter.  
+
**We are happy to report that we have now raised $6,000.00 for the program.
**We have also raised $500.00 thanks to the OWASP Long Island Chapter.
+
**The OWASP MSP Chapter kindly donated the remaining funds needed to reach our goal for the program this year.  
**Lastly, iSEC Partners have donated $3,000.00 to the Program.  
+
**The call for entries is now live, as well.  
**We are only $2,000.00 from our goal this year. 
 
 
**[https://docs.google.com/forms/d/1WEtInvzlxLDXpTgfXh-E1E7e8H5FRfEOPIaTOizlBpk/viewform Women in AppSec Application Form.]
 
**[https://docs.google.com/forms/d/1WEtInvzlxLDXpTgfXh-E1E7e8H5FRfEOPIaTOizlBpk/viewform Women in AppSec Application Form.]
 
**The application deadline is Monday, September 09, 2013 at 5pm GMT.
 
**The application deadline is Monday, September 09, 2013 at 5pm GMT.
**If you know of anyone who might be interested in sponsoring $2,000.00 to the Program, please reach out to me and let me know.
 
  
*'''Personal Development'''
+
*'''OWASP Marketing'''
**I am still taking my online course from Coursera.
+
**I continue to work with Design Foundry and the OWASP Ops Team to finalize Phase 3 of our Marketing Project.  
**The course topic is Information Security and Risk Management in Context.
+
**We are in the final stages of development and design.
**I hope to be done in a few weeks.  
+
**Patrick, Design Foundry's graphic designer, is working hard to get our work completed.
 +
**We hope to have all of our designs finalized by mid-August.  
  
 
*'''Daily Project based queries and requests'''
 
*'''Daily Project based queries and requests'''
Line 66: Line 69:
 
**Project based administrative help.
 
**Project based administrative help.
 
**Project status information.
 
**Project status information.
**Several project donations questions.
+
**Several project donation questions.
 
**Marketing questions.
 
**Marketing questions.
 
**Grant funding questions.
 
**Grant funding questions.
**OWASP Social Media Updates.
+
**OWASP social media updates.
 
**What's happening with projects, questions.
 
**What's happening with projects, questions.
  
 
==Grants Updates==
 
==Grants Updates==
 +
*'''OWASP OpenSAMM Grant Proposal'''
 +
# Amount: TBD
 +
# Status: This proposal is still in the planning and writing phase. 
 +
 
*'''[https://docs.google.com/document/d/1MA3TI5ssclxvheV8At_ffu2Fuic55SDpOokS3AOvBUc/edit?usp=sharing OWASP Guidebooks Proposal]'''
 
*'''[https://docs.google.com/document/d/1MA3TI5ssclxvheV8At_ffu2Fuic55SDpOokS3AOvBUc/edit?usp=sharing OWASP Guidebooks Proposal]'''
 
# Amount: $25,000 USD
 
# Amount: $25,000 USD
# Status: Awarded. The first payment has been allocated to our project budgets.
+
# Status: Awarded. The first payment has been allocated to our project budgets. The second invoice has now been sent to Georgia Tech for payment.
 
# [https://www.owasp.org/images/1/18/Development_Guide_Project_Gantt.pdf OWASP Development Guide Plan]
 
# [https://www.owasp.org/images/1/18/Development_Guide_Project_Gantt.pdf OWASP Development Guide Plan]
 
# [https://www.owasp.org/images/e/e9/Testing_Guide_Project_Gantt.pdf OWASP Testing Guide Plan]
 
# [https://www.owasp.org/images/e/e9/Testing_Guide_Project_Gantt.pdf OWASP Testing Guide Plan]

Latest revision as of 00:47, 27 July 2013

OWASP Global Projects Report

Currently Working On

  • Determining Active Project Status
    • This is a status update on this initiative.
    • I have completed the first round of requests for all Flagship, Labs, and Incubator projects.
    • I am now going through the list, and e-mailing the non-responsive Leaders once again.
    • I have gone ahead and re-sent my request for a 3rd time to un-responsive Labs Project Leaders.
    • The deadline to reply back to my request was today, Friday, 26th of July.
    • Those Leaders who did not respond to my e-mails will now have their projects archived.
    • The same process will be used for the un-responsive Leaders of Incubator projects.
  • Grants & Fundraising Intern
    • I have put together role and qualification criteria for the Fundraising Internship Opportunity.
    • The internship opportunity was made live on Monday of this week.
    • There has been one applicant for the position, so far.
    • I hope to get more applications in the coming weeks.
    • Grants & Fundraising Internship
    • I am looking for a student or recent graduate to help with grant research, writing, and volunteer coordination.
  • Project Summit: AppSec USA 2013
    • I continue to plan the logistics for the project summit taking place at AppSec USA this year.
    • I continue to gather estimates, flight, and roadmap details from Leaders.
    • I am now closer to finalizing the travel arrangements for each project leader.
    • Moreover, we are in the process of organizing the schedule of project talks for the conference days.
  • Women in AppSec: AppSec USA 2013
    • The team has now completed their fundraising activities.
    • We are happy to report that we have now raised $6,000.00 for the program.
    • The OWASP MSP Chapter kindly donated the remaining funds needed to reach our goal for the program this year.
    • The call for entries is now live, as well.
    • Women in AppSec Application Form.
    • The application deadline is Monday, September 09, 2013 at 5pm GMT.
  • OWASP Marketing
    • I continue to work with Design Foundry and the OWASP Ops Team to finalize Phase 3 of our Marketing Project.
    • We are in the final stages of development and design.
    • Patrick, Design Foundry's graphic designer, is working hard to get our work completed.
    • We hope to have all of our designs finalized by mid-August.
  • Daily Project based queries and requests
    • This has not changed much since I began the post: questions are very similar in nature.
    • Global AppSec questions.
    • Funding queries.
    • Travel availability.
    • Project based administrative help.
    • Project status information.
    • Several project donation questions.
    • Marketing questions.
    • Grant funding questions.
    • OWASP social media updates.
    • What's happening with projects, questions.

Grants Updates

  • OWASP OpenSAMM Grant Proposal
  1. Amount: TBD
  2. Status: This proposal is still in the planning and writing phase.
  1. Amount: $25,000 USD
  2. Status: Awarded. The first payment has been allocated to our project budgets. The second invoice has now been sent to Georgia Tech for payment.
  3. OWASP Development Guide Plan
  4. OWASP Testing Guide Plan
  5. OWASP Code Review Guide Plan
  1. Amount: $25,000 USD
  2. Status: The ESAPI proposal is still being reviewed.
  1. Amount: $30,000 USD
  2. Status: The ModSecurity proposal is still being reviewed.
  • Google Grants Proposal
  1. Amount: $120,000 USD in Adwords Funds
  2. Status: Awarded.
  3. Note: There is no link to show the proposal for this grant. There was a form that was submitted to Google, and we did not receive a record of this form.
  • European Commission Grant Proposal
  1. Amount: €250,000
  2. Status: This proposal has been completed and submitted.
  • Google Summer of Code
  1. Amount: $5,500.00
  2. Status: Awarded
  • Projects breakdown:
    • 4 ZAP Projects: $2,000.00
    • 4 OWTF Projects: $2,000.00
    • 1 PHP Security Project: $500
    • 1 Hackademics Project: $500
    • 1 Modsecurity Project: $500
    • Note: Big thank you to Fabio Cerullo for coordinating and managing this award.


  • Total Grant Funds Awarded: $150,500 USD for 2013.