This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Category:OWASP Application Security Verification Standard Project"

From OWASP
Jump to: navigation, search
Line 2: Line 2:
 
{{ProjectTabs |  
 
{{ProjectTabs |  
 
Proj_About=  
 
Proj_About=  
[[Image:Asvs-bannerbug.JPG|275px|right]]
+
 
 +
<table width="100%" valign="top"><tr><th width="50%"> </th><th> </th></tr><tr valign="top"><td>
 
''OWASP Documentation Project''
 
''OWASP Documentation Project''
  
Line 11: Line 12:
 
Further development of ASVS occurs through mailing list discussions and occasional workshops, and suggestions for improvement are welcome. For more information, please [mailto:[email protected] contact us].
 
Further development of ASVS occurs through mailing list discussions and occasional workshops, and suggestions for improvement are welcome. For more information, please [mailto:[email protected] contact us].
  
Application Security Verification Standards:
+
'''Application Security Verification Standards'''
  
 
* [http://www.owasp.org/index.php/ASVS#tab=Web_Application Web Application Verification Standard]
 
* [http://www.owasp.org/index.php/ASVS#tab=Web_Application Web Application Verification Standard]
Line 18: Line 19:
 
* [http://www.owasp.org/index.php/ASVS#tab=Client_Server Client-Server Verification Standard]
 
* [http://www.owasp.org/index.php/ASVS#tab=Client_Server Client-Server Verification Standard]
 
* [mailto:[email protected] ASVS Mailing List]
 
* [mailto:[email protected] ASVS Mailing List]
 +
 +
</td><td>
 +
;
 +
<br>'''Latest News'''
 +
* OWASP ASVS users and adopters list updated to include [http://www.pstestware.com/ ps_testware]
 +
* OWASP ASVS users and adopters list updated to include [http://www.fdic.gov Federal Deposit Insurance Corporation (FDIC)]
 +
* OWASP ASVS is presented by [[User:Wichers|Dave Wichers]] at [http://www.owasp.org/index.php/OWASP_Software_Assurance_Day_DC_2009 OWASP Software Assurance Day DC 2009] in conjunction with the Software Assurance Forum sponsored by the US Department of Homeland Security, Department of Defense and National Institute of Standards and Technology.
 
* [http://www.owasp.org/index.php/ASVS#tab=News ASVS News Archives]
 
* [http://www.owasp.org/index.php/ASVS#tab=News ASVS News Archives]
 +
* Subscribe to the RSS ASVS announcement feed [http://twitter.com/statuses/user_timeline/OWASP_ASVS.rss here]
 +
</td></tr>
 +
</table>
 +
 +
 +
 +
  
  
Line 120: Line 135:
  
 
Please let us know how your organization is using OWASP ASVS. Include your name, organization's name, and brief description of how you use the standard. The project lead can be reached at [mailto:[email protected] [email protected]] Thanks for supporting OWASP!}}
 
Please let us know how your organization is using OWASP ASVS. Include your name, organization's name, and brief description of how you use the standard. The project lead can be reached at [mailto:[email protected] [email protected]] Thanks for supporting OWASP!}}
[[Image:Rss-icon.JPG]]'''Subscribe to the [http://twitter.com/statuses/user_timeline/OWASP_ASVS.rss RSS ASVS announcement feed here]
+
''This project licensed under the Licensed under [http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution ShareAlike 3.0].''  
<br>''This project licensed under the Licensed under [http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution ShareAlike 3.0].''  
 
 
<br>
 
<br>
  
 
= Articles Below - More About ASVS and Using It =
 
= Articles Below - More About ASVS and Using It =

Revision as of 12:48, 14 April 2009

About

OWASP Documentation Project

Application Security Verification Standards (ASVS)

Application Security Verification Standards are specifications produced by OWASP in cooperation with secure applications developers and verifiers worldwide for the purpose of accelerating the deployment of secure web applications. First published in 2008 as a result of an OWASP Summer of Code grant and meetings with a small group of early adopters, the ASVS documents have become widely referenced and implemented.

Further development of ASVS occurs through mailing list discussions and occasional workshops, and suggestions for improvement are welcome. For more information, please contact us.

Application Security Verification Standards


Latest News

FAQ

More About OWASP ASVS

Related projects

Web Application

Web Application Verification Standard

This document defines four levels of application security verification for web applications. Each level includes a set of requirements for verifying the effectiveness of security controls that protect applications.

Release Version

Beta Version

  • Web Application Verification Standard 2008 (PDF, Word)

Alpha Version

  • Web Application Verification Standard 2008 (PDF, Word)


OWASP Books logo.png This project has produced a book that can be downloaded or purchased.
Feel free to browse the full catalog of available OWASP books.


Web Service

Web Service Edition of ASVS - First release is under development

  • Details will be filled in as work progresses. Volunteers wanted!
  • Contact Mike Boberski for further details.

Cloud

Cloud Computing Edition of ASVS - Under consideration

Client Server

Client Server of ASVS - Under consideration

News

Project News

  • 04/08/2009 - OWASP ASVS users and adopters list updated to include ps_testware
  • 03/13/2009 - OWASP ASVS is presented by Dave Wichers at OWASP Software Assurance Day DC 2009 in conjunction with the Software Assurance Forum sponsored by the US Department of Homeland Security, Department of Defense and National Institute of Standards and Technology.
  • 02/25/2009 – OWASP ASVS proposed updates based on pilots being considered.
  • 12/08/2008 - OWASP ASVS Final assistance required! Please join the mailing list for more information and assignments.
  • 10/03/2008 - OWASP ASVS Alpha draft is released! Mike Boberski is the primary author.

Contributors/Users

Project Leader

Project Contributors

Project Sponsorship

Aspect logo.jpg Bah logo 1.jpg SoC 08 Logo Mike Project.jpg

Users and Adopters

Pilots are already underway at various companies and agencies around the globe. A broad range of companies and agencies around the globe are also using OWASP ASVS, including:

Please let us know how your organization is using OWASP ASVS. Include your name, organization's name, and brief description of how you use the standard. The project lead can be reached at [email protected] Thanks for supporting OWASP!


This project licensed under the Licensed under Creative Commons Attribution ShareAlike 3.0.

Articles Below - More About ASVS and Using It