This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Category:OWASP Guide Project"

From OWASP
Jump to: navigation, search
Line 1: Line 1:
 
+
====Home====  
{{ProjectTabs |
+
<table width="100%" valign="top"><tr><th width="33%"> </th><th width="33%"> </th><th width="33%"> </th></tr><tr valign="top"><td>
Proj_About=  
+
== Start Here ==
<table width="100%" valign="top"><tr><th width="50%"> </th><th> </th></tr><tr valign="top"><td>
 
''OWASP Documentation Project''
 
  
'''Guide to Building Secure Web Applications and Web Services (Development Guide)'''
+
[[file:Asvs-step1.jpg‎ ]]'''1. About the Development Guide'''
  
The Development Guide is aimed at architects, developers, consultants and auditors and is a comprehensive manual for designing, developing and deploying secure Web Applications and Web Services. The original OWASP Development Guide has become a staple diet for many web security professionals. Since 2002, the initial version was downloaded over 2 million times. Today, the Development Guide is referenced by many leading government, financial, and corporate standards and is the Gold standard for Web Application and Web Service security. You can download it [http://www.owasp.org/index.php/Category:OWASP_Guide_Project#tab=Download here].
+
The Development Guide is aimed at architects, developers, consultants and auditors and is a comprehensive manual for designing, developing and deploying secure Web Applications and Web Services. The original OWASP Development Guide has become a staple diet for many web security professionals. Since 2002, the initial version was downloaded over 2 million times. Today, the Development Guide is referenced by many leading government, financial, and corporate standards and is the Gold standard for Web Application and Web Service security.
  
The Development Guide is also online on the wiki. Here is the [[Guide_Table_of_Contents | Table of Contents]].
+
* Project presentation in English (Currently under development!)
 +
* Data sheet in English (Currently under development!)
  
'''How the Development Guide Works'''
+
 
 +
[[file:Asvs-step2.jpg‎ ]]'''2. Get the Development Guide'''
 +
 
 +
* Development Guide 2005 in English ([http://prdownloads.sourceforge.net/owasp/OWASPGuide2.0.1.pdf?download PDF], [http://prdownloads.sourceforge.net/owasp/OWASPGuide2.0.1.zip?download Word], [[Guide_Table_of_Contents | Wiki]])
 +
* Development Guide 2005 in Spanish ([https://www.owasp.org/images/b/b2/OWASP_Development_Guide_2.0.1_Spanish.pdf PDF], [http://www.owasp.org/images/5/58/OWASP_Development_Guide_2.0.1_Spanish.doc Word])
 +
* Development Guide 2002 in Japanese ([http://prdownloads.sourceforge.net/owasp/OWASPGuideV1.1.1-jp.pdf?download PDF])
 +
* Development Guide (Earlier Versions) ([http://sourceforge.net/project/showfiles.php?group_id=64424&package_id=62287 file download center], [http://sourceforge.net/cvs/?group_id=64424 CVS])
 +
 
 +
[[file:Asvs-step3.jpg‎ ]]'''3. Learn about the Development Guide'''
  
 
The Development Guide provides practical guidance and includes J2EE, ASP.NET, and PHP code samples. The Development Guide covers an extensive array of application-level security issues, from SQL injection through modern concerns such as phishing, credit card handling, session fixation, cross-site request forgeries, compliance, and privacy issues.  
 
The Development Guide provides practical guidance and includes J2EE, ASP.NET, and PHP code samples. The Development Guide covers an extensive array of application-level security issues, from SQL injection through modern concerns such as phishing, credit card handling, session fixation, cross-site request forgeries, compliance, and privacy issues.  
 +
 +
* Development Guide Articles (Currently under development!)
  
 
</td><td>
 
</td><td>
;
+
== Let's Talk Here ==
<br>'''Latest News'''
 
* [http://bit.ly/a5imj2 Work is starting on the next version! Want to help?]
 
* [http://www.owasp.org/index.php/Category:OWASP_Guide_Project#tab=News Development Guide News Archives]
 
* [http://lists.owasp.org/mailman/listinfo/owasp-guide Development Guide Mailing List]
 
</td></tr>
 
</table>
 
  
|
+
[[file:Asvs-bulb.jpg‎ ]]'''Development Guide Communities'''
  
Proj_Documentation=
+
Further development of the Development Guide occurs through mailing list discussions and occasional workshops, and suggestions for improvement are welcome. For more information, please [mailto:[email protected] contact us].
'''More About the Development Guide'''
 
  
* One Page Datasheet (Under Construction)  
+
* [https://lists.owasp.org/mailman/listinfo/owasp-guide mailing list (this is the main list)]
 
'''Related projects'''
 
  
* [[Top10 | OWASP Top Ten]]
+
== Got Translation Cycles? ==
* [[ASVS | ASVS]]
 
* [[ESAPI | OWASP ESAPI]]
 
  
====Download====
+
The Development Guide project is always on the lookout for volunteers who are interested in translating the Development Guide into another language.
'''Download the Development Guide'''
 
  
Download the Development Guide now, for free, [http://prdownloads.sourceforge.net/owasp/OWASPGuide2.0.1.pdf?download here].
+
* Translation Onboarding Instructions (Currently under development!)
  
'''Online Version'''
+
== Glossary ==
 +
[[file:Asvs-letters.jpg‎ ]]'''Development Guide Terminology'''
  
The Development Guide is also online on the wiki. Here is the [[Guide_Table_of_Contents | Table of Contents]].
+
* (Currently under development!)
 
 
'''Other Versions'''
 
* Development Guide 2005 in English ([http://prdownloads.sourceforge.net/owasp/OWASPGuide2.0.1.pdf?download PDF], [http://prdownloads.sourceforge.net/owasp/OWASPGuide2.0.1.zip?download Word])
 
* Development Guide 2005 in Spanish ([https://www.owasp.org/images/b/b2/OWASP_Development_Guide_2.0.1_Spanish.pdf PDF], [http://www.owasp.org/images/5/58/OWASP_Development_Guide_2.0.1_Spanish.doc Word])
 
* Development Guide 2002 in Japanese ([http://prdownloads.sourceforge.net/owasp/OWASPGuideV1.1.1-jp.pdf?download PDF])
 
  
'''Earlier Versions'''
 
* Development Guide ([http://sourceforge.net/project/showfiles.php?group_id=64424&package_id=62287 file download center], [http://sourceforge.net/cvs/?group_id=64424 CVS])
 
  
<br>
+
</td><td>
{{OWASP Book|1401012}}
+
[[File:Asvs-ad-where-at.jpg]]
<br>
+
== Related Resources ==
 
|
 
  
Proj_Mail= '''Project News'''
+
[[file:Asvs-satellite.jpg‎ ]]'''OWASP Resources'''
  
* 07/27/2005 - OWASP Developer Guide 2005 version released, announced at Black Hat in Las Vegas.
+
* [http://www.owasp.org/index.php/Category:OWASP_Application_Security_Verification_Standard_Project OWASP ASVS]
 +
* [http://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project OWASP Top Ten]
 +
* [http://www.owasp.org/index.php/Category:OWASP_Legal_Project OWASP Legal Project]
 +
* [http://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API OWASP ESAPI]
  
'''Weekly Status'''
 
* [http://www.owasp.org/images/1/1d/Dev_Guide_Weekly_Status_2009-11-27.pdf 2009-11-27]
 
* [http://www.owasp.org/images/e/e7/Dev_Guide_Weekly_Status_2009-11-20.pdf 2009-11-20]
 
* [http://www.owasp.org/images/1/16/Dev_Guide_Weekly_Status_2009-11-13.pdf 2009-11-13]
 
  
|
+
</table>
  
Proj_Related= [[Top Ten|OWASP Top Ten]] |
+
====Users/Contributors====
Proj_Contributors=  
+
<table width="100%" valign="top"><tr><th width="25%"> </th><th> </th><th> </th></tr><tr valign="top"><td>
<table width="100%" valign="top"><tr><th width="25%"> </th><th width="25%"> </th><th> </th></tr><tr valign="top"><td>
+
'''Project Leader'''
* Andrew van der Stock (2005 Release Version Project Lead)
+
* [mailto:[email protected] Andrew van der Stock]
 +
'''Project Manager'''
 +
* [http://www.owasp.org/index.php/User:Mike.boberski Mike Boberski]
 +
'''Project Contributors'''
 
* Too many contibutors to list here! This project would not be where it is today without the generous gift of volunteer time and effort from ''many'' individuals. Please see the Development Guide for individual acknowledgments!
 
* Too many contibutors to list here! This project would not be where it is today without the generous gift of volunteer time and effort from ''many'' individuals. Please see the Development Guide for individual acknowledgments!
 
 
</td><td>
 
</td><td>
  
 
'''Project Sponsorship'''
 
'''Project Sponsorship'''
  
* OWASP
+
The Development Guide is not currently sponsored by an OWASP member organization.
 +
 
  
 
</td><td>
 
</td><td>
'''Users and Adopters'''
+
'''Users'''
  
Coming soon! Please let us know how your organization is using the OWASP Development Guide. Include your name, organization's name, and brief description of how you use the annex.  
+
A broad range of companies and agencies around the globe have added the Development Guide to their software assurance tool boxes, including:
 +
* (Currently under development!)
 +
 
 +
Please let us know how your organization is using the Development Guide. Include your name, organization's name, and brief description of how you use the standard. The project manager can be reached [mailto:[email protected] here].  
  
 
</td></tr>
 
</td></tr>
 
</table>
 
</table>
}}
+
 
''This project licensed under the Licensed under [http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution ShareAlike 3.0].''  
+
__NOTOC__
 +
<headertabs/>
 +
''This project licensed under the [http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution ShareAlike 3.0].''  
 
<br>
 
<br>
 
= Articles Below - More About the Development Guide and Using It =
 

Revision as of 14:53, 12 February 2010

Home

Start Here

Asvs-step1.jpg1. About the Development Guide

The Development Guide is aimed at architects, developers, consultants and auditors and is a comprehensive manual for designing, developing and deploying secure Web Applications and Web Services. The original OWASP Development Guide has become a staple diet for many web security professionals. Since 2002, the initial version was downloaded over 2 million times. Today, the Development Guide is referenced by many leading government, financial, and corporate standards and is the Gold standard for Web Application and Web Service security.

  • Project presentation in English (Currently under development!)
  • Data sheet in English (Currently under development!)


Asvs-step2.jpg2. Get the Development Guide

Asvs-step3.jpg3. Learn about the Development Guide

The Development Guide provides practical guidance and includes J2EE, ASP.NET, and PHP code samples. The Development Guide covers an extensive array of application-level security issues, from SQL injection through modern concerns such as phishing, credit card handling, session fixation, cross-site request forgeries, compliance, and privacy issues.

  • Development Guide Articles (Currently under development!)

Let's Talk Here

Asvs-bulb.jpgDevelopment Guide Communities

Further development of the Development Guide occurs through mailing list discussions and occasional workshops, and suggestions for improvement are welcome. For more information, please contact us.

Got Translation Cycles?

The Development Guide project is always on the lookout for volunteers who are interested in translating the Development Guide into another language.

  • Translation Onboarding Instructions (Currently under development!)

Glossary

Asvs-letters.jpgDevelopment Guide Terminology

  • (Currently under development!)


Asvs-ad-where-at.jpg

Related Resources

Asvs-satellite.jpgOWASP Resources


Users/Contributors

Project Leader

Project Manager

Project Contributors

  • Too many contibutors to list here! This project would not be where it is today without the generous gift of volunteer time and effort from many individuals. Please see the Development Guide for individual acknowledgments!

Project Sponsorship

The Development Guide is not currently sponsored by an OWASP member organization.


Users

A broad range of companies and agencies around the globe have added the Development Guide to their software assurance tool boxes, including:

  • (Currently under development!)

Please let us know how your organization is using the Development Guide. Include your name, organization's name, and brief description of how you use the standard. The project manager can be reached here.


This project licensed under the Creative Commons Attribution ShareAlike 3.0.