This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Talk:Testing Checklist"

From OWASP
Jump to: navigation, search
(New page: We need titles for the 3 checklists. Suggestions?)
 
 
Line 1: Line 1:
We need titles for the 3 checklists.
+
 
Suggestions?
+
 
 +
For version 3, we are going to branch out into 3 checklists as suggested by Mat.
 +
 
 +
They will be:
 +
 
 +
- Application Development Checklist (or SDLC checklist?) (Define your security requirements)
 +
 +
- Application Review(?) Checklist.  (Ensure you met your requirements)
 +
 
 +
- Application Testing Checklist.  (Pen test the application)
 +
The current testing checklist can be found here:
 +
https://www.owasp.org/index.php/Image:OWASP_Testing_Guide_Checklist_v3.20.xls.zip
 +
 
 +
 
 +
 
 +
 
 +
Old versions (will be integrated into the current version):
 +
* Here is a draft of the OWASP Testing Guide v3 [http://www.owasp.org/images/4/43/WebAppTest_v3_Checklist.doc Checklist]
 +
 
 +
https://www.owasp.org/index.php/Testing:_Introduction_and_objectives

Latest revision as of 14:50, 13 August 2008


For version 3, we are going to branch out into 3 checklists as suggested by Mat.

They will be:

- Application Development Checklist (or SDLC checklist?) (Define your security requirements)

- Application Review(?) Checklist. (Ensure you met your requirements)

- Application Testing Checklist. (Pen test the application) The current testing checklist can be found here: https://www.owasp.org/index.php/Image:OWASP_Testing_Guide_Checklist_v3.20.xls.zip



Old versions (will be integrated into the current version):

  • Here is a draft of the OWASP Testing Guide v3 Checklist

https://www.owasp.org/index.php/Testing:_Introduction_and_objectives