This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Project Information:template Teachable Static Analysis Workbench"
From OWASP
(10 intermediate revisions by 2 users not shown) | |||
Line 1: | Line 1: | ||
{| style="width:100%" border="0" align="center" | {| style="width:100%" border="0" align="center" | ||
− | ! colspan=" | + | ! colspan="8" align="center" style="background:#4058A0; color:white"|<font color="white">'''PROJECT IDENTIFICATION''' |
|- | |- | ||
| style="width:15%; background:#7B8ABD" align="center"|'''Project Name''' | | style="width:15%; background:#7B8ABD" align="center"|'''Project Name''' | ||
− | | colspan=" | + | | colspan="7" style="width:85%; background:#cccccc" align="left"|<font color="black">'''OWASP Teachable Static Analysis Workbench Project''' |
|- | |- | ||
| style="width:15%; background:#7B8ABD" align="center"| '''Short Project Description''' | | style="width:15%; background:#7B8ABD" align="center"| '''Short Project Description''' | ||
Line 16: | Line 16: | ||
* Teachability: analyst indicates security-related code (sources of tainted data, sensitive sinks, input validation and sanitizing functions, access control code, etc.) and workbench automatically recomputes possible vulnerabilities list. The second idea is to spread knowledge gathered from analyst to other web applications. | * Teachability: analyst indicates security-related code (sources of tainted data, sensitive sinks, input validation and sanitizing functions, access control code, etc.) and workbench automatically recomputes possible vulnerabilities list. The second idea is to spread knowledge gathered from analyst to other web applications. | ||
|- | |- | ||
− | | style="width:15%; background:#7B8ABD" align="center"|''' | + | | style="width:15%; background:#7B8ABD" align="center"|'''Key Project Information''' |
− | | style="width:14%; background:#cccccc" align="center"|Project Leader<br>[ | + | | style="width:14%; background:#cccccc" align="center"|Project Leader<br>[[:User:Ddk|'''Dmitry Kozlov''']]<br>[mailto:igor.konnov(at)gmail.com '''Igor Konnov'''] |
− | | style="width:14%; background:#cccccc" align="center"|Project Contributors<br>(if applicable) | + | | style="width:14%; background:#cccccc" align="center"|Project Contributors<br>(if applicable) |
− | | style="width:14%; background:#cccccc" align="center"|[https://lists.owasp.org/mailman/listinfo/owasp-teachable-static-analysis-workbench ''' | + | | style="width:14%; background:#cccccc" align="center"|Mailing List<br>[https://lists.owasp.org/mailman/listinfo/owasp-teachable-static-analysis-workbench '''Subscribe here''']<br>[mailto:owasp-teachable-static-analysis-workbench(at)lists.owasp.org '''Use here'''] |
− | [mailto:owasp-teachable-static-analysis-workbench(at)lists.owasp.org ''' | + | | style="width:14%; background:#cccccc" align="center"|License<br>[http://www.gnu.org/licenses/old-licenses/gpl-2.0.html '''GNU General Public License v2'''] |
− | | style="width:14%; background:#cccccc" align="center"| | + | | style="width:14%; background:#cccccc" align="center"|Project Type<br>[[:Category:OWASP_Project#Beta_Status_Projects|'''Tool''']] |
− | + | | style="width:15%; background:#cccccc" align="center"|Sponsors<br>[[OWASP Summer of Code 2008|'''OWASP SoC 08''']] | |
− | | style="width:15%; background:#cccccc" align="center"| | ||
|} | |} | ||
− | {| style="width:100%" border="0" align="center" | + | |
− | ! | + | {| style="width:100%" border="0" align="center" |
− | + | ! align="center" style="background:#7B8ABD; color:white"|<font color="black">'''Release Status''' | |
− | + | ! align="center" style="background:#7B8ABD; color:white"|<font color="black">'''Main Links''' | |
− | + | ! align="center" style="background:#7B8ABD; color:white"|<font color="black">'''Related Projects''' | |
− | |||
− | |||
− | ! | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | ! | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
|- | |- | ||
+ | | style="width:29%; background:#cccccc" align="center"| '''[[:Category:OWASP_Project_Assessment#Beta_Quality_Tool_Criteria|Beta Quality]]'''<br>[[:Teachable Static Analysis Workbench - Assessment Frame|Please see here for complete information.]] | ||
+ | | style="width:42%; background:#cccccc" align="center"| | ||
+ | http://code.google.com/p/teachablesa/<br>[https://www.owasp.org/images/6/69/Teachable_static_analysis_workbench.pptx PowerPoint Presentation] | ||
+ | | style="width:29%; background:#cccccc" align="center"| | ||
+ | If any, add link here | ||
|} | |} |
Latest revision as of 15:58, 26 January 2009
PROJECT IDENTIFICATION | |||||||
---|---|---|---|---|---|---|---|
Project Name | OWASP Teachable Static Analysis Workbench Project | ||||||
Short Project Description | The research will be intended to answer the following questions:
Workbench prototype will be Java-based Eclipse plug-in which aim is to help security analyst/code reviewer validation of web application. At prototype step we suggest to analyze J2EE Web tier applications build on Java Servlets, JSP (without business logic in it) and one MVC framework (Apache Struts). We plan workbench prototype to have the following functionality:
| ||||||
Key Project Information | Project Leader Dmitry Kozlov Igor Konnov |
Project Contributors (if applicable) |
Mailing List Subscribe here Use here |
License GNU General Public License v2 |
Project Type Tool |
Sponsors OWASP SoC 08 |
Release Status | Main Links | Related Projects |
---|---|---|
Beta Quality Please see here for complete information. |
http://code.google.com/p/teachablesa/ |
If any, add link here |