This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "OWASP .NET Recommended Resources"
Bill Sempf (talk | contribs) |
(Added Resources) |
||
(One intermediate revision by one other user not shown) | |||
Line 10: | Line 10: | ||
==OWASP .NET Recommended Resources== | ==OWASP .NET Recommended Resources== | ||
− | + | This is a canonical list of outside resources for .NET developers seeking security information. | |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
===Blogs & People=== | ===Blogs & People=== | ||
− | |||
− | |||
− | |||
− | |||
[http://securitybuddha.com/ Mark Curphrey's Blog] | [http://securitybuddha.com/ Mark Curphrey's Blog] | ||
Line 40: | Line 27: | ||
[http://www.troyhunt.com/ Troy Hunt's Blog] | [http://www.troyhunt.com/ Troy Hunt's Blog] | ||
+ | |||
+ | [https://www.preemptive.com/blog App Protection Blog] | ||
===Advisories, Articles & Projects=== | ===Advisories, Articles & Projects=== | ||
Line 64: | Line 53: | ||
[http://www.microsoft.com/technet/security/advisory/954462.mspx Microsoft Security Advisory (954462) (SQL Injection Advisory)] | [http://www.microsoft.com/technet/security/advisory/954462.mspx Microsoft Security Advisory (954462) (SQL Injection Advisory)] | ||
+ | |||
+ | [https://www.microsoft.com/en-us/sdl Security Development Lifecycle] | ||
===Online References, Training=== | ===Online References, Training=== | ||
Line 78: | Line 69: | ||
[http://www.teammentor.net/teamMentor TeamMentor] | [http://www.teammentor.net/teamMentor TeamMentor] | ||
+ | |||
+ | [https://docs.microsoft.com/en-us/dotnet/standard/security/ Security in the .NET Framework] | ||
===Books and Publications=== | ===Books and Publications=== | ||
Line 104: | Line 97: | ||
[http://support.microsoft.com/kb/954476 MS Source Code Analyser for SQL Injection] | [http://support.microsoft.com/kb/954476 MS Source Code Analyser for SQL Injection] | ||
+ | |||
+ | [https://docs.microsoft.com/en-us/visualstudio/ide/dotfuscator/ Visual Studio .NET Obfuscator] |
Latest revision as of 12:39, 11 May 2018
OWASP .NET Quick Reference |
---|
OWASP .NET Recommended Resources
This is a canonical list of outside resources for .NET developers seeking security information.
Blogs & People
Advisories, Articles & Projects
Security and Operational Guidance for .NET Applications
patterns & practices Security Engineering Index
patterns & practices Security Guidance for Applications Index
patterns & practices Security Guidance for .NET Framework 2.0
Authentication in ASP.NET: .NET Security Guidance
Security Guidance for Windows Communication Foundation
Microsoft Security Advisory (954462) (SQL Injection Advisory)
Security Development Lifecycle
Online References, Training
MSDN Security Developer Center
Pluralsight Security Course Catalog
OWASP Top 10 for .NET developers - Troy Hunt
Security in the .NET Framework
Books and Publications
Writing Secure Code, Michael Howard and David LeBlanc
Microsoft Security Development Lifecycle 3.2
Building Secure ASP.NET Applications: Authentication, Authorization, and Secure Communication, J.D. Meier, Alex Mackman, Michael Dunner, and Srinath Vasireddy
Improving Web Application Security: Threats and Countermeasures, J.D. Meier, Alex Mackman, Michael Dunner, Srinath Vasireddy, Ray Escamilla and Anandha Murukan
Developer Highway Code, Microsoft Corp, United Kingdom
Security Driven .NET, Stan Drapkin
Tools
Microsoft Threat Modeling Tool 2014
Microsoft Source Code Analyzer