This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
All public logs
Combined display of all available logs of OWASP. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)- 08:53, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218351 of page Deserialization of untrusted data patrolled
- 08:51, 29 June 2016 Jmanico (talk | contribs) deleted page Deletion of data-structure sentinel (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The accidental d...")
- 08:51, 29 June 2016 Jmanico (talk | contribs) deleted page Mutable object returned (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Sending non-clon...")
- 08:51, 29 June 2016 Jmanico (talk | contribs) deleted page Monitor security metrics (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Gauge the likely security posture of the ongoing development effort. * Enforce accountability for inadequate security. Role: *Project Manager Frequency: *Ongoing ==Identify...")
- 08:50, 29 June 2016 Jmanico (talk | contribs) deleted page Missing parameter (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== If too few argum...")
- 08:50, 29 June 2016 Jmanico (talk | contribs) deleted page Misinterpreted function return value (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Vulnerabilities Table of Contents ==Description== If a function's return value is not properly checked, the function could have failed without proper...")
- 08:50, 29 June 2016 Jmanico (talk | contribs) deleted page Miscalculated null termination (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== Miscalculated null termination occurs when the placement of a null character at the end of a buffer...")
- 08:46, 29 June 2016 Jmanico (talk | contribs) deleted page Architect (content was: "{{Template:SecureSoftware}} ==Role Description== In an ideal world, the architect simply figures out how — at an architectural level — necessary security technologies integrate into the overall system. This includes network security...")
- 08:46, 29 June 2016 Jmanico (talk | contribs) deleted page Apply security principles to design (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Harden application design by applying security design principles. * Identify security risks in third-party components. Role: * Designer Frequency: * As necessary; at least once...")
- 08:46, 29 June 2016 Jmanico (talk | contribs) deleted page Annotate class designs with security properties (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Elaborate security policies for individual data fields. Role: * Designer Frequency: * Once per iteration. ==Map data elements to resources and capabilities == Each data ele...")
- 08:46, 29 June 2016 Jmanico (talk | contribs) deleted page Allowing password aging (content was: "{{taggedDocument | type=inactiveDraft }} {{Template:Vulnerability}} {{Template:SecureSoftware}} <br> Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulnerabilities|Vulnerabilities Table o...")
- 08:46, 29 June 2016 Jmanico (talk | contribs) deleted page Address reported security issues (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Ensure that identified security risks in an implementation are properly considered Role: * Designer Frequency: * As required ==Assign issue to investigator == When a securit...")
- 08:44, 29 June 2016 Jmanico (talk | contribs) deleted page File:CLASPOverviewPresentation20080807NickCoblentz.ppt
- 08:44, 29 June 2016 Jmanico (talk | contribs) deleted page File:OWASPAppSecEU2006 CLASP Project.ppt
- 08:44, 29 June 2016 Jmanico (talk | contribs) deleted page File:VulnChecklist.v1.zip
- 08:43, 29 June 2016 Jmanico (talk | contribs) deleted page Buffer underwrite (content was: "{{taggedDocument | type=pls review }} {{Template:Vulnerability}} {{Template:SecureSoftware}} <br> Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulnerabilities|Vulnerabilities Table...")
- 08:43, 29 June 2016 Jmanico (talk | contribs) deleted page Build operational security guide (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Provide stakeholder with documentation on operational security measures that can better secure the product. * Provide documentation for the use of security functionality within the...")
- 08:42, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218350 of page Buffer Overflow patrolled
- 08:41, 29 June 2016 Jmanico (talk | contribs) deleted page Key exchange without entity authentication (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Performing a key...")
- 08:41, 29 June 2016 Jmanico (talk | contribs) deleted page Manage security issue disclosure process (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Communicate effectively with outside security researchers when security issues are identified in released software, facilitating more effective prevention technologies. * Communica...")
- 08:41, 29 June 2016 Jmanico (talk | contribs) deleted page Unchecked array indexing (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Unchecked array...")
- 08:39, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Non-Repudiation (content was: "{{Template:SecureSoftware}} ==Non-Repudiation== In most two-party data communication, the two parties can prove to themselves whether data comes fro..." (and the only contributor was "Jeff Williams"))
- 08:39, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Integrity (content was: "{{Template:SecureSoftware}} ==Data Integrity== In communications and data storage, it is almost always desirable to know that data is in the form it was intended to be. Data integrity checking allows one to make that determination. Thi...")
- 08:39, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Availability (content was: "{{Template:SecureSoftware}} ==Availability== Most systems that export resources, either directly or otherwise, come with some implicit understanding that those resources will generally be accessible (available). If an availability prob...")
- 08:39, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Accountability (content was: "{{Template:SecureSoftware}} ==Accountability== Users of a system should generally be accountable for the actions they perform. In practice, this mea..." (and the only contributor was "Jeff Williams"))
- 08:38, 29 June 2016 Jmanico (talk | contribs) deleted page Test Analyst (content was: "{{Template:SecureSoftware}} ==Role Description== In a structured development organization, security should not have a great impact on the overall processes used. The test organization should still be testing to requirements, implementin...")
- 08:37, 29 June 2016 Jmanico (talk | contribs) deleted page Truncation error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Truncation errors...")
- 08:37, 29 June 2016 Jmanico (talk | contribs) deleted page Trust of system event data (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Security based on...")
- 08:37, 29 June 2016 Jmanico (talk | contribs) deleted page Trusting self-reported DNS name (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The use of self-...")
- 08:36, 29 June 2016 Jmanico (talk | contribs) deleted page Trusting self-reported IP address (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The use of IP ad...")
- 08:36, 29 June 2016 Jmanico (talk | contribs) deleted page Uncaught exception (content was: "{{taggedDocument | type=inactiveDraft }} {{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== Ignoring an exception can cause the program to overlook...")
- 08:36, 29 June 2016 Jmanico (talk | contribs) deleted page Uninitialized Variable (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== Using the value of an unitialized variable is not safe. '''Consequences''' * Integrity: Initial v...")
- 08:36, 29 June 2016 Jmanico (talk | contribs) deleted page Unintentional pointer scaling (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Vulnerabilities Table of Contents ==Description== In C and C++, one may accidentally refer to the wrong memory due to the semantics of when math oper...")
- 08:36, 29 June 2016 Jmanico (talk | contribs) deleted page Unsafe function call from a signal handler (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== There are several...")
- 08:36, 29 June 2016 Jmanico (talk | contribs) deleted page Unsigned to signed conversion error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== An unsigned-to-si...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Use of sizeof() on a pointer type (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Running sizeof()...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Using a key past its expiration date (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The use of a cryp...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Using password systems (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The use of passwo...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Using referer field for authentication or authorization (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The referrer fiel...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Using single-factor authentication (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The use of single...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Verify security attributes of resources (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Confirm that software abides by previously defined security policies. Role: Tester Frequency: * Once per iteration ==Check permissions on all static resources == Using a sta...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Wrap-around error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Wrap around erro...")
- 08:35, 29 June 2016 Jmanico (talk | contribs) deleted page Write-what-where condition (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Any condition wh...")
- 08:30, 29 June 2016 Jmanico (talk | contribs) deleted page Category:OWASP Honeycomb Project (content was: "#REDIRECT Category:OWASP ASDR Project ==Overview== In the Honeycomb project, OWASP is assembling the most comprehensive and integrated guide ever attempted to the fundamental building blocks of application security (principles, thr...")
- 08:28, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Intranet attacker (content was: "{{Template:Threat}} ==Description== An Intranet attacker is someone who has access to a company's intranet and can launch attacks from there. Generally, these are employees of the company, but might also include contractors, visitors,...")
- 08:28, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Threat Agent (content was: "This category is for tagging articles related to common application security threat agents. {{Social Media Links}} ==What is a Threat Agent?== The term ''Threat Agent'' is used to indicate an individual or group that can manifest a thr...")
- 08:28, 29 June 2016 Jmanico (talk | contribs) deleted page Category:External Threat Agent (content was: "{{Template:Threat}} ==Description== TBD ==Examples== * TBD ==Related Threats== TBD ==Related Attacks== TBD" (and the only contributor was "KirstenS"))
- 08:28, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Internal Threat Agent (content was: "{{Template:Threat}} ==Description== TBD ==Examples== * TBD ==Related Threats== TBD ==Related Attacks== TBD" (and the only contributor was "KirstenS"))
- 08:28, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Internet attacker (content was: "{{Template:Threat}} ==Description== An Internet attacker is someone whose only access to an application is via the Internet. They may or may not have an account or any relationship with the business. They may try various approaches, i...")
- 08:28, 29 June 2016 Jmanico (talk | contribs) deleted page Internal software developer (content was: "{{Template:Threat}} <br> Category:OWASP ASDR Project Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ==Description== Internal software developers are members of the software development team with...")