This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Summit 2011 Working Sessions/Session052"
Line 109: | Line 109: | ||
| mailing_list = | | mailing_list = | ||
|- | |- | ||
− | | short_working_session_description= | + | | short_working_session_description= We need to define:<br> |
+ | <br>- an updated vulnerability list to test (from the OWASP Common Vulnerabiltity list) | ||
+ | <br>- Create a more readable guide, eliminating some sections that are not | ||
+ | really useful, | ||
+ | <br>- Insert new testing techniques: HTTP Verb tampering, HTTP Parameter | ||
+ | Pollutions, etc., | ||
+ | <br>- Rationalize some sections as Session Management Testing, | ||
+ | <br>- Debate if create a new section: Client side security and Firefox | ||
+ | extensions testing. | ||
|- | |- | ||
Line 142: | Line 150: | ||
|- | |- | ||
− | | working_session_date_and_time = | + | | working_session_date_and_time = TODO |
|- | |- | ||
Line 186: | Line 194: | ||
|- | |- | ||
− | | operational_leader_name1 = | + | | operational_leader_name1 = Giorgio Fedon |
− | | operational_leader_email1 = | + | | operational_leader_email1 = |
|- | |- |
Revision as of 13:59, 28 January 2011
Global Summit 2011 Home Page
Global Summit 2011 Tracks
OWASP Testing Guide | ||||||
---|---|---|---|---|---|---|
Please see/use the 'discussion' page for more details about this Working Session | ||||||
Working Sessions Operational Rules - Please see here the general frame of rules. |
WORKING SESSION IDENTIFICATION | ||||||
---|---|---|---|---|---|---|
Short Work Session Description | We need to define:
| |||||
Related Projects (if any) |
| |||||
Email Contacts & Roles | Chair Matteo Meucci @ |
Operational Manager Giorgio Fedon |
Mailing list Subscription Page |
WORKING SESSION SPECIFICS | ||||||
---|---|---|---|---|---|---|
Objectives | ||||||
Venue/Date&Time/Model | Venue/Room OWASP Global Summit Portugal 2011 |
Date & Time TODO
|
Discussion Model participants and attendees |
|
---|
WORKING SESSION OPERATIONAL RESOURCES | ||||||
---|---|---|---|---|---|---|
Projector, whiteboards, markers, Internet connectivity, power |
|
---|
WORKING SESSION ADDITIONAL DETAILS | ||||||
---|---|---|---|---|---|---|
WORKING SESSION OUTCOMES / DELIVERABLES | ||
---|---|---|
Proposed by Working Group | Approved by OWASP Board | |
An updated outline for the testing guide that is tied into the OWASP common numbering scheme |
After the Board Meeting - fill in here. | |
After the Board Meeting - fill in here. | ||
A committed project manager who can reach out to experts to get the document completed. |
After the Board Meeting - fill in here. | |
After the Board Meeting - fill in here. | ||
After the Board Meeting - fill in here. | ||
After the Board Meeting - fill in here. | ||
After the Board Meeting - fill in here. | ||
After the Board Meeting - fill in here. |
Working Session Participants
(Add you name by clicking "edit" on the tab on the upper left side of this page)
WORKING SESSION PARTICIPANTS | ||||||
---|---|---|---|---|---|---|
Name | Company | Notes & reason for participating, issues to be discussed/addressed | ||||
Nishi Kumar @ |
FIS |
| ||||
Cecil Su @ |
GT |
| ||||
Lucas C. Ferreira @ |
| |||||
Colin Watson @ |
| |||||
Achim Hoffmann @ |
sic[!]sec |
| ||||
Tom Neaves @ |
Verizon Business |
| ||||
Vishal Garg @ |
AppSecure Labs |
| ||||
Giorgio Fedon @ |
Minded Security |
| ||||
Stefano Di Paola @ |
Minded Security |
| ||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
| |||||
|
|