This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "OWASP Project Reviews 2017"

From OWASP
Jump to: navigation, search
Line 1: Line 1:
 
'''<u>Overview of Project Reviews:</u>'''
 
'''<u>Overview of Project Reviews:</u>'''
  
OWASP is reviewing projects who wish to graduate from [[OWASP Project Inventory|Incubator]] to [[OWASP Project Inventory|Lab]] to [[OWASP Project Inventory|Flagship]].  The purpose of this assessment is to determine whether a project meets the minimum criteria to graduate as outlined in the Project Health Assessment Criteria Document.  The review process begins with an initial self-assessment done by the project leader and reviewed by Matt Tesauro.  Next, the assessment enters the peer review phase where we ask volunteers in our OWASP Community to participate and finalize the results. I have included a [https://docs.google.com/document/d/1NQSHshTxK1AWTkD4WgYluxSafgO-XGDHZnwE9Qvt7TE/edit Sample of a Project Assessment] for your review and consideration
+
OWASP is reviewing projects who wish to graduate from [[OWASP Project Inventory|Incubator]] to [[OWASP Project Inventory|Lab]] to [[OWASP Project Inventory|Flagship]].  The purpose of this assessment is to determine whether a project meets the minimum criteria to graduate as outlined in the Project Health Assessment Criteria Document.  The review process begins with an initial self-assessment done by the project leader and reviewed by Matt Tesauro.  Next, the assessment enters the peer review phase where we ask volunteers in our OWASP Community to participate and finalize the results. I have included a [https://docs.google.com/document/d/1NQSHshTxK1AWTkD4WgYluxSafgO-XGDHZnwE9Qvt7TE/edit '''Sample of a Project Assessmen'''t] for your review and consideration
  
 
'''OWASP Project Reviews @ APPSEC Belfast 2017'''  
 
'''OWASP Project Reviews @ APPSEC Belfast 2017'''  
Line 33: Line 33:
  
 
'''OWASP Project Health Checks:'''
 
'''OWASP Project Health Checks:'''
 +
 +
Lab Project:
 +
 +
[[OWASP Hackademic Challenges Project]]
 +
 +
[[OWASP Mantra - Security Framework|OWASP Mantra Security Framwork]]
 +
 +
[[:Category:OWASP Security Ninjas AppSec Training Program|OWASP Security Ninjas  AppSec Training Program]]
 +
 +
https://www.owasp.org/index.php/OWASP_Mantra_-_Security_Framework - Lab Project Needs to move code from google to github no activity found
 +
 +
https://www.owasp.org/index.php/Category:OWASP_Security_Ninjas_AppSec_Training_Program Lab Project no recent activity since July 15, 2015 and no releases, wiki activity since May 2015
 +
 +
https://www.owasp.org/index.php/OWASP_Application_Security_Guide_For_CISOs_Project Lab Documentation Project no activity since on wiki Nov 2013 Last release Application Security Guide For CISOs v1.0 (Nov 2013)
 +
 +
Project Finalized: https://www.owasp.org/index.php/OWASP_Mobile_Security_Project#tab=Home
 +
 +
https://www.owasp.org/index.php/OWASP_CISO_Survey - Needs Review - no updates since 2014
 +
 +
https://www.owasp.org/index.php/OWASP_Codes_of_Conduct - No Updates since 2015 - Looks Finalized
 +
 +
http://www.lulu.com/shop/owasp-foundation/owasp-codes-of-conduct/paperback/product-21247130.html
 +
 +
https://www.owasp.org/index.php/OWASP_KALP_Mobile_Project - no updates in repository since 10/31/2014 and wiki page no updates since April 2015
 +
 +
https://www.owasp.org/index.php/OWASP_Python_Security_Project - no activity since January 2015
 +
 +
https://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API
 +
 +
https://www.owasp.org/index.php/OWASP_Reverse_Engineering_and_Code_Modification_Prevention_Project - no updates since 2015
 +
 +
Incubator: - https://www.owasp.org/index.php/OWASP_Secure_Headers_Project - Response on needed on request to get an external host<nowiki/>https://www.owasp.org/index.php/OWASP_WASC_Distributed_Web_Honeypots_Project - No updates since 2015
 +
 +
https://www.owasp.org/index.php/OWASP_Faux_Bank_Project - No updates since 2015
 +
 +
https://www.owasp.org/index.php/OWASP_Droid10_Project - No updates since March 15
 +
 +
https://www.owasp.org/index.php/OWASP_WAP-Web_Application_Protection - no updates since 2015 and no repository still in salesforge
 +
 +
https://www.owasp.org/index.php/OWASP_Mutillidae_2_Project - No updates since 2015 still using salesforge
 +
 +
https://www.owasp.org/index.php/OWASP_WebSpa_Project - no updates since March 2015 last update in salesforge 2/21/2016
 +
 +
https://www.owasp.org/index.php/OWASP_Rainbow_Maker_Project - Last release 12/11/2015 and no updates since May 2015
 +
 +
https://www.owasp.org/index.php/Category:OWASP_.NET_Project - No updates March 23, 2016
 +
 +
https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project - no updated since March 12, 2015
 +
 +
https://www.owasp.org/index.php/OWASP_Application_Security_Program_Quick_Start_Guide_Project - no updates since january 2015
 +
 +
https://www.owasp.org/index.php/OWASP_Secure_Configuration_Guide#tab=Main - No updates since April 2016 - no updates to guide
 +
 +
https://www.owasp.org/index.php/OWASP_RFP-Criteria - no updates since March 2016
 +
 +
https://www.owasp.org/index.php/Category:OWASP_Top_10_fuer_Entwickler - no real updates on news since 2013 some updates to the wiki

Revision as of 21:24, 5 April 2017

Overview of Project Reviews:

OWASP is reviewing projects who wish to graduate from Incubator to Lab to Flagship.  The purpose of this assessment is to determine whether a project meets the minimum criteria to graduate as outlined in the Project Health Assessment Criteria Document.  The review process begins with an initial self-assessment done by the project leader and reviewed by Matt Tesauro.  Next, the assessment enters the peer review phase where we ask volunteers in our OWASP Community to participate and finalize the results. I have included a Sample of a Project Assessment for your review and consideration

OWASP Project Reviews @ APPSEC Belfast 2017

  • Johanna Curiel (Program Leader)
  • Matt Tesauro (Sr. Project Coordinator)
  • Azzeddine Ramrami
  • Talal Albach
  • Kuai Hinojosa
  • Nabin Kc

Description of Scope of Work:

OWASP Project Reviews Listed below: Google Docs:

Tool Projects

OWASP Benchmark Project

OWASP Juiceshop Project

Code Project:

OWASP DefectDojo Project

OWASP Node.js Goat Project

Documentation Project:

OWASP Automated Threats to Web Applications

OWASP Snakes and Ladder

OWASP Project Health Checks:

Lab Project:

OWASP Hackademic Challenges Project

OWASP Mantra Security Framwork

OWASP Security Ninjas AppSec Training Program

https://www.owasp.org/index.php/OWASP_Mantra_-_Security_Framework - Lab Project Needs to move code from google to github no activity found

https://www.owasp.org/index.php/Category:OWASP_Security_Ninjas_AppSec_Training_Program Lab Project no recent activity since July 15, 2015 and no releases, wiki activity since May 2015

https://www.owasp.org/index.php/OWASP_Application_Security_Guide_For_CISOs_Project Lab Documentation Project no activity since on wiki Nov 2013 Last release Application Security Guide For CISOs v1.0 (Nov 2013)

Project Finalized: https://www.owasp.org/index.php/OWASP_Mobile_Security_Project#tab=Home

https://www.owasp.org/index.php/OWASP_CISO_Survey - Needs Review - no updates since 2014

https://www.owasp.org/index.php/OWASP_Codes_of_Conduct - No Updates since 2015 - Looks Finalized

http://www.lulu.com/shop/owasp-foundation/owasp-codes-of-conduct/paperback/product-21247130.html

https://www.owasp.org/index.php/OWASP_KALP_Mobile_Project - no updates in repository since 10/31/2014 and wiki page no updates since April 2015

https://www.owasp.org/index.php/OWASP_Python_Security_Project - no activity since January 2015

https://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API

https://www.owasp.org/index.php/OWASP_Reverse_Engineering_and_Code_Modification_Prevention_Project - no updates since 2015

Incubator: - https://www.owasp.org/index.php/OWASP_Secure_Headers_Project - Response on needed on request to get an external hosthttps://www.owasp.org/index.php/OWASP_WASC_Distributed_Web_Honeypots_Project - No updates since 2015

https://www.owasp.org/index.php/OWASP_Faux_Bank_Project - No updates since 2015

https://www.owasp.org/index.php/OWASP_Droid10_Project - No updates since March 15

https://www.owasp.org/index.php/OWASP_WAP-Web_Application_Protection - no updates since 2015 and no repository still in salesforge

https://www.owasp.org/index.php/OWASP_Mutillidae_2_Project - No updates since 2015 still using salesforge

https://www.owasp.org/index.php/OWASP_WebSpa_Project - no updates since March 2015 last update in salesforge 2/21/2016

https://www.owasp.org/index.php/OWASP_Rainbow_Maker_Project - Last release 12/11/2015 and no updates since May 2015

https://www.owasp.org/index.php/Category:OWASP_.NET_Project - No updates March 23, 2016

https://www.owasp.org/index.php/OWASP_WASC_Web_Hacking_Incidents_Database_Project - no updated since March 12, 2015

https://www.owasp.org/index.php/OWASP_Application_Security_Program_Quick_Start_Guide_Project - no updates since january 2015

https://www.owasp.org/index.php/OWASP_Secure_Configuration_Guide#tab=Main - No updates since April 2016 - no updates to guide

https://www.owasp.org/index.php/OWASP_RFP-Criteria - no updates since March 2016

https://www.owasp.org/index.php/Category:OWASP_Top_10_fuer_Entwickler - no real updates on news since 2013 some updates to the wiki