This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "OWASP Web Testing Environment Project"
From OWASP
(Undo revision 111880 by Chris Schmidt (talk)) |
(Major update of page - first draft to correct the redirect to OWASP Live CD) |
||
Line 1: | Line 1: | ||
− | + | [[Category:OWASP Project|Live CD Project]] | |
− | + | [[Category:OWASP Tool]] | |
+ | [[Category:OWASP Download]] | ||
+ | [[Category:OWASP Release Quality Tool]] | ||
+ | [[Category:OWASP Live CD Project]] | ||
− | ==== | + | ==== Main ==== |
− | |||
− | + | = Overview = | |
+ | [[Image:cdCoverLiveCDView.png|frame|Live CD Cover]] | ||
+ | The OWASP WTE project was originally started to update the previous [http://www.owasp.org/index.php/Category:OWASP_Live_CD_2007_Project OWASP Live CD 2007]. The project met the September 15th, 2008 deadline for the OWASP Summer of Code (SoC) and produced its first release - the SoC release. Since the completion of the SoC, the project has made the following releases: | ||
− | [[Category: | + | * the Portugal release (Dec 12, 2008) |
− | [[ | + | * the AustinTerrier release (Feb 10, 2009) |
− | [[ | + | * the AppSec EU release (May, 2009) |
+ | |||
+ | In addition to creating these releases of the OWASP Live CD, the maintainer has created a series of forums and tutorials for support and documentation in an effort to help the Application Security community best use the tools and resources available. | ||
+ | |||
+ | Several mini-releases have sprung from this project. Currently, a version of the OWASP Live CD installed to a virtual hard drive (VMware) is available and work continues on making other versions of the project available including a bootable USB, portable VM installation, an installation for the Asus Eee PC. These are either downloadable files or instructions on how to create the alternate delivery mechanisms. | ||
+ | |||
+ | |||
+ | |||
+ | For historical purposes, the original application for the SoC is available [http://www.owasp.org/index.php/OWASP_Summer_of_Code_2008_Applications#OWASP_Live_CD_2008_Project here] for the curious. | ||
+ | |||
+ | '''[http://appseclive.org/content/ScreenShots Screenshots] of the current release!''' | ||
+ | |||
+ | The most recent presentation on the OWASP Live CD from AppSec EU 2009: ([http://www.owasp.org/images/4/46/AppSecEU09_OWASP_Live_CD-mtesauro.ppt PPT]) | ||
+ | |||
+ | = Project Goals = | ||
+ | |||
+ | The overarching goal for this project is to make application security tools and documentation easily available. I see this as a great complement to OWASP's goal to make application security visible. | ||
+ | |||
+ | The project has several other goals going forward: | ||
+ | # Provide a showcase for great OWASP tools and documentation | ||
+ | # Provide the best, freely distributable application security tools in an easy to use package | ||
+ | # Ensure that the tools provided are as easy to use as possible. | ||
+ | # Continue to add documentation and tools to the OWASP Live CD | ||
+ | # Continue to document how to use the tools and how the tool modules where created. | ||
+ | # Align the tools provided with the [http://www.owasp.org/index.php/Category:OWASP_Testing_Project OWASP Testing Guide] | ||
+ | |||
+ | There were also some design goals, particularly, this should be a live CD which is | ||
+ | * easy for the users to keep updated | ||
+ | * easy for the project lead to keep updated | ||
+ | * easy to produce releases (I'm thinking quarterly releases going forward) | ||
+ | * focused on just web application testing - not general Pen Testing. | ||
+ | |||
+ | (For general Pen Testing, the gold standard is [http://www.remote-exploit.org/backtrack.html Backtrack].) | ||
+ | |||
+ | [http://mtesauro.com/livecd/index.php?title=Original_SoC_Goals Original SoC Goals] are still available for the curious. | ||
+ | |||
+ | = Main Links = | ||
+ | |||
+ | These are links to mostly off-site information while the project migrates to this page:<br /> | ||
+ | <br /> | ||
+ | <b>[http://appseclive.org/downloads/ Download Site]</b><br /> | ||
+ | |||
+ | |||
+ | The following general documentation exists:<br /> | ||
+ | *[http://appseclive.org/content/making-owasp-live-cd-using-slax how I created the live CD] | ||
+ | *[http://appseclive.org/content/owasp-live-cd-tutorials Using the Live CD / Tutorials(work in progress)] | ||
+ | *[http://appseclive.org/forum Forums for support and feature/tool requests] | ||
+ | |||
+ | <!-- ==== Project Identification 1.0 ==== | ||
+ | {{:Project Identification:template Live CD 2008 Project}} />--> | ||
+ | |||
+ | <!-- ==== Project Identification 2.0 - work in progress - 1==== | ||
+ | {{Template:OWASP Live CD info}} />--> | ||
+ | |||
+ | <!-- ==== Project Identification 2.0 - work in progress - 2==== | ||
+ | {{Key Project Information 2.0 - OWASP Live CD}} />--> | ||
+ | |||
+ | <!-- ==== Project Identification ==== | ||
+ | {{Template:OWASP Live CD Project}} />--> | ||
+ | |||
+ | ==== Project Details ==== | ||
+ | {{:GPC_Project_Details/OWASP_Live_CD | OWASP Project Identification Tab}} | ||
+ | |||
+ | |||
+ | __NOTOC__ | ||
+ | <headertabs/> |
Revision as of 19:42, 1 May 2014
Main