This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Risk Assessment Framework"
From OWASP
(10 intermediate revisions by 2 users not shown) | |||
Line 4: | Line 4: | ||
| valign="top" style="border-right: 1px dotted gray;padding-right:25px;" | | | valign="top" style="border-right: 1px dotted gray;padding-right:25px;" | | ||
− | + | =Home= | |
− | OWASP Risk Asessement Framework is | + | The OWASP Risk Asessement Framework is SAS(Source Code Analysis) and Risk Assesment tool. |
==Project About== | ==Project About== | ||
+ | https://github.com/OWASP/RiskAssessmentFramework | ||
<span style="color:#ff0000"> | <span style="color:#ff0000"> | ||
− | |||
− | ==OWASP Risk Assessment Framework Project / | + | |
+ | ==OWASP Risk Assessment Framework Project / RAF == | ||
<span style="color:> | <span style="color:> | ||
− | + | The OWASP Risk Asessement Framework is SAS(Source Code Analysis) and Risk Assesment tool. | |
+ | features<br> | ||
+ | Web Deface Detection<br> | ||
+ | Scanning Tools based on OWASP Top 10<br> | ||
+ | Risk Assesment Tools<br> | ||
+ | Static Application security Testing<br> | ||
</span> | </span> | ||
− | |||
− | |||
==Description== | ==Description== | ||
<span style="color:"> | <span style="color:"> | ||
− | + | Introduction to Problem: <br> | |
+ | There are hundreds of SAST tools available for a penetration tester to use from and there | ||
+ | are frameworks to assess the risk of a security flaw. But in the OWASP Risk Assessment to testers | ||
+ | have to manually input the the test results from each and every tool to get a relative | ||
+ | approximation. This makes the assessment part as a separate component from all other tools. | ||
==Licensing== | ==Licensing== | ||
Line 30: | Line 38: | ||
This program is free software: you can redistribute it and/or modify it under the terms of the [http://www.gnu.org/licenses/agpl-3.0.html link GNU Affero General Public License 3.0] as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. OWASP XXX and any contributions are Copyright © by {the Project Leader(s) or OWASP} {Year(s)}. | This program is free software: you can redistribute it and/or modify it under the terms of the [http://www.gnu.org/licenses/agpl-3.0.html link GNU Affero General Public License 3.0] as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. OWASP XXX and any contributions are Copyright © by {the Project Leader(s) or OWASP} {Year(s)}. | ||
− | + | =Roadmap= | |
<span style="color:"> | <span style="color:"> | ||
− | + | https://github.com/OWASP/RiskAssessmentFramework/blob/master/readme.md | |
− | |||
− | |||
− | |||
− | |||
− | |||
</strong> | </strong> | ||
− | + | ||
− | |||
− | |||
− | |||
− | |||
</strong> | </strong> | ||
==Getting Involved== | ==Getting Involved== | ||
<br> | <br> | ||
− | Involvement in the development and promotion of | + | Involvement in the development and promotion of his project is actively encouraged! |
You do not have to be a security expert or a programmer to contribute. | You do not have to be a security expert or a programmer to contribute. | ||
Some of the ways you can help are as follows: | Some of the ways you can help are as follows: | ||
Line 64: | Line 63: | ||
Ade Yoseman Putra | Ade Yoseman Putra | ||
+ | Rejah Rehim | ||
+ | ==News== | ||
+ | * [23 May 2019] Published in ToolsWatch.org, [https://www.toolswatch.org/2019/05/amazing-black-hat-arsenal-usa-2019-lineup-announced/ Amazing Black Hat Arsenal USA 2019 Lineup Announced] | ||
== Related Projects == | == Related Projects == | ||
Latest revision as of 03:49, 24 May 2019
Project Resources[https://github.com/OWASP/RiskAssessmentFramework
Installation Package] Project LeaderAde Yoseman Putra Rejah Rehim News
Related ProjectsClassifications
|