This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Projects/Reports/2013-27-09"

From OWASP
Jump to: navigation, search
 
(7 intermediate revisions by the same user not shown)
Line 3: Line 3:
  
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHBGbDhXQko4akJoVnMtMUpvZnJucVE&usp=sharing Project Numbers]'''
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHBGbDhXQko4akJoVnMtMUpvZnJucVE&usp=sharing Project Numbers]'''
**Active Projects: 140
+
**Active Projects: 141
 
**Inactive Projects: 103
 
**Inactive Projects: 103
  
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE&usp=sharing New Project Applications]'''
 
*'''[https://docs.google.com/spreadsheet/ccc?key=0Amvv_7Gz8Z7TdHZfWGhHZ0Z4UFFwZU42djBXcVVLSlE&usp=sharing New Project Applications]'''
**OWASP Pygoat Project
+
**OWASP Python Project
  
 
*'''New OWASP Projects'''
 
*'''New OWASP Projects'''
**[https://www.owasp.org/index.php/OWASP_This_I_Believe_Security_Project OWASP This I Believe Security Project]
+
**[https://www.owasp.org/index.php/OWASP_Node_js_Goat_Project OWASP Node.js Goat Project]
 +
**[https://www.owasp.org/index.php/OWASP_Pygoat_Project OWASP Pygoat Project]
  
 
*'''Projects Under Review'''
 
*'''Projects Under Review'''
Line 21: Line 22:
  
 
==Currently Working On==         
 
==Currently Working On==         
 +
 +
*'''[https://www.owasp.org/index.php/Projects_Summit_2013 2013 Project Summit]'''
 +
**I am very excited to report that the 2013 Project Summit taking place at AppSec USA in New York is going to be amazing!
 +
**Dinis Cruz has offered to pitch in, and it's shaping up to be full of great OWASP working sessions thanks to his input and experience. 
 +
**Current track topics include:
 +
***Projects Workshop
 +
***ESAPI Hackathon
 +
***ZAP Hackathon
 +
***University Outreach, Education, and Training
 +
***Writing, Proof-reading, and Technical Editing
 +
***Product Development and Reference Implementation
 +
**I urge everyone to add your name to the attendees list if you are interested in a session, or suggest new topics that you would be more interested in attending.
  
 
*'''Technical Project Advisors: Work Update'''
 
*'''Technical Project Advisors: Work Update'''
**I have put together another version of the [https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHh3UzV6RGcxblhkcDFtUHlCMmQwMnc&usp=sharing project assessment criteria].
+
**The Technical Project Advisors and I had another group meeting this week.
**This version was based on the first test assessments conducted by the advisors.
+
**We went through every criteria line item on the project health list, and edited each one.
**This version eliminates redundancies between the product assessment and the project health assessment.
+
**I have put together version 5 of the [https://docs.google.com/spreadsheet/ccc?key=0AllOCxlYdf1AdHVBRUphTkY4MGNYeFpLbV83OFZoNlE&usp=sharing project assessment criteria] based on our meeting discussions.
**Additionally, we have separated out the focus of each assessment.
+
**We are now re-testing the OWASP Cornucopia Project using Criteria V5.  
 +
**Our next meeting is next week where we will focus on evaluating the product assessment criteria.  
 +
**Note: We have separated out the focus of each assessment.
 
**The Project Assessment focuses on the project health based on OWASP best practices.
 
**The Project Assessment focuses on the project health based on OWASP best practices.
 
**The Product Assessment focuses on the quality of the deliverable.  
 
**The Product Assessment focuses on the quality of the deliverable.  
  
 
*'''Women in AppSec: AppSec USA 2013'''
 
*'''Women in AppSec: AppSec USA 2013'''
**The Women in AppSec grading has now begun.
+
**The Women in AppSec grading process is now complete.
**Kait, our new Grants & Fundraising intern, has been helping with the administrative work for the program.
+
**We now have 8 finalists that we are choosing between.  
**We have collected the letters of recommendation sent to us from each of our applicant's references.
+
**The selection committee is in the process of selecting the final 2 winners and the 2 runner up finalists.  
**We have separated them out, and placed them into the folders of each selection committee member.  
+
**We intend to finish the selection by September 28th.  
**We intend to finish the grading by September 23rd.  
 
  
 
*'''[http://owasp.blogspot.com/2013/09/meet-our-new-grants-and-fundraising.html Meet our new Grants & Fundraising Intern]'''
 
*'''[http://owasp.blogspot.com/2013/09/meet-our-new-grants-and-fundraising.html Meet our new Grants & Fundraising Intern]'''
**Our Grants & Fundraising intern has now gone through the orientation process, and she has begun to work on program activities.
+
**Kait has been doing an excellent job on her assignment tasks.  
**She has been working on getting set up on the wiki, and learning how to create and edit wiki pages.  
+
**She has been working on our Marketing Resources wiki page where she is consolidating all of the pieces created by the design firm we contracted to develop some identity pieces for the organization.
**Kait will be putting together the content for the Women in AppSec Program Page. 
+
**Kait has also been working on putting together the Women in AppSec information page, and she has been helping consolidate the orders for the GSOC Mentor gifts.
**Additionally, she is putting together content for our marketing page.  
 
 
**You can read more about her week by reading her [https://www.owasp.org/index.php/Projects/Internships/Grants_and_Fundraising_Intern/Kait_Disney_Leugers#tab=Biography Intern Weekly Report].
 
**You can read more about her week by reading her [https://www.owasp.org/index.php/Projects/Internships/Grants_and_Fundraising_Intern/Kait_Disney_Leugers#tab=Biography Intern Weekly Report].
 
**Start Date: Monday, September 16th 2013.
 
**Start Date: Monday, September 16th 2013.
 
**Internship End Date: Monday, January 13th 2014.
 
**Internship End Date: Monday, January 13th 2014.
 
*'''Grants and Fundraising Strategy'''
 
**I now have more time to work on strategic planning for projects, grants, and fundraising since Kait is helping with the admin work for several of our programs.
 
**I have been working on outlining and writing the grants and fundraising strategy to raise funds for projects and programs for 2014.
 
**This week, I worked on developing the strategy outline, and I am analyzing the macro and micro environment OWASP exists within.
 
 
*'''Google for Non-Profits: YouTube Channel'''
 
**I helped Project Leader, Jonathan Marcil, submit an application too Google for Non-Profits on behalf of OWASP.
 
**We had to apply to Google so we could link his YouTube channel to our foundation account with Google.
 
** Unfortunately, the application was unsuccessful, twice.
 
**However, we managed to get it approved with a bit of persistence.
 
**Jonathan is all set up to put together our official YouTube channel on behalf of the foundation.
 
**Thank you Jonathan for your hard work on this, and for taking this project on.
 
  
 
*'''Daily Project based queries and requests'''
 
*'''Daily Project based queries and requests'''

Latest revision as of 20:46, 27 September 2013

OWASP Global Projects Report

Currently Working On

  • 2013 Project Summit
    • I am very excited to report that the 2013 Project Summit taking place at AppSec USA in New York is going to be amazing!
    • Dinis Cruz has offered to pitch in, and it's shaping up to be full of great OWASP working sessions thanks to his input and experience.
    • Current track topics include:
      • Projects Workshop
      • ESAPI Hackathon
      • ZAP Hackathon
      • University Outreach, Education, and Training
      • Writing, Proof-reading, and Technical Editing
      • Product Development and Reference Implementation
    • I urge everyone to add your name to the attendees list if you are interested in a session, or suggest new topics that you would be more interested in attending.
  • Technical Project Advisors: Work Update
    • The Technical Project Advisors and I had another group meeting this week.
    • We went through every criteria line item on the project health list, and edited each one.
    • I have put together version 5 of the project assessment criteria based on our meeting discussions.
    • We are now re-testing the OWASP Cornucopia Project using Criteria V5.
    • Our next meeting is next week where we will focus on evaluating the product assessment criteria.
    • Note: We have separated out the focus of each assessment.
    • The Project Assessment focuses on the project health based on OWASP best practices.
    • The Product Assessment focuses on the quality of the deliverable.
  • Women in AppSec: AppSec USA 2013
    • The Women in AppSec grading process is now complete.
    • We now have 8 finalists that we are choosing between.
    • The selection committee is in the process of selecting the final 2 winners and the 2 runner up finalists.
    • We intend to finish the selection by September 28th.
  • Meet our new Grants & Fundraising Intern
    • Kait has been doing an excellent job on her assignment tasks.
    • She has been working on our Marketing Resources wiki page where she is consolidating all of the pieces created by the design firm we contracted to develop some identity pieces for the organization.
    • Kait has also been working on putting together the Women in AppSec information page, and she has been helping consolidate the orders for the GSOC Mentor gifts.
    • You can read more about her week by reading her Intern Weekly Report.
    • Start Date: Monday, September 16th 2013.
    • Internship End Date: Monday, January 13th 2014.
  • Daily Project based queries and requests
    • This has not changed much since I began the post: questions are very similar in nature.
    • Global AppSec questions.
    • Funding queries.
    • Travel availability.
    • Project based administrative help.
    • Project status information.
    • Several project donation questions.
    • Marketing questions.
    • Grant funding questions.
    • OWASP social media updates.
    • What's happening with projects, questions.

Project Funding Updates

  • OWASP OWTF Project: Brucon 5x5 Award
  1. Amount: €5,000.00 (Approx. $6,670.00)
  2. Status: Awarded. Congratulations, Abraham Aranguren and all involved in the project, for your award.
  1. Amount: $55,800 USD
  2. Status: This proposal is complete, and has been submitted.
  1. Amount: $15,000 USD
  2. Status: This proposal is complete, and has been submitted.
  1. Amount: $112,000 USD
  2. Status: This proposal is complete, and has been submitted.
  1. Amount: $25,000 USD
  2. Status: Awarded. The first payment has been allocated to our project budgets. The second invoice has now been sent to Georgia Tech for payment.
  3. OWASP Development Guide Plan
  4. OWASP Testing Guide Plan
  5. OWASP Code Review Guide Plan
  1. Amount: $25,000 USD
  2. Status: The ESAPI proposal is still being reviewed.
  1. Amount: $30,000 USD
  2. Status: The ModSecurity proposal is still being reviewed.
  • Google Grants Proposal
  1. Amount: $120,000 USD in Adwords Funds
  2. Status: Awarded.
  3. Note: There is no link to show the proposal for this grant. There was a form that was submitted to Google, and we did not receive a record of this form.
  • European Commission Grant Proposal
  1. Amount: €250,000
  2. Status: Denied.
  • Google Summer of Code
  1. Amount: $5,500
  2. Status: Awarded
  • Projects breakdown:
    • 4 ZAP Projects: $2,000
    • 4 OWTF Projects: $2,000
    • 1 PHP Security Project: $500
    • 1 Hackademics Project: $500
    • 1 Modsecurity Project: $500
    • Note: Big thank you to Fabio Cerullo for coordinating and managing this award.


  • Total Funds Awarded: $157,170 USD for 2013.