This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
All public logs
Combined display of all available logs of OWASP. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)- 09:38, 29 June 2016 Jmanico (talk | contribs) deleted page Resource exhaustion (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Resource exhaust...")
- 09:38, 29 June 2016 Jmanico (talk | contribs) deleted page Reusing a nonce, key pair in encryption (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Nonces should be...")
- 09:19, 29 June 2016 Jmanico (talk | contribs) deleted page Research and assess security posture of technology solutions (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Assess security risks in third-party components. * Determine how effective a technology is likely to be at alleviating risks. Role: * Designer Frequency: * As necessary. ==G...")
- 09:19, 29 June 2016 Jmanico (talk | contribs) deleted page Identify, implement, and perform security tests (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Find security problems not found by implementation review. * Find security risks introduced by the operational environment. * Act as a defense-in-depth mechanism, catching failur...")
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP2 Perform application assessments (content was: "==Overview== While it’s true that you cannot test security into an application, application testing and assessments should still be a central comp..." (and the only contributor was "Pravir Chandra"))
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Institute security awareness program (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: *Ensure project members consider security to be an important project goal through training and accountability. *Ensure project members have enough exposure to security to deal with i...")
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP1 Institute awareness programs (content was: "==Overview== Essential security concepts and techniques may be foreign to your organization’s software developers and others involved in applicati..." (and the only contributor was "Pravir Chandra"))
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP7 Publish operational security guidelines (content was: "==Overview== Security does not end when an application is completed and deployed in a production environment. Making the most out of existing network and operational security investments requires that you inform and educate those tasked...")
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP6 Define and monitor metrics (content was: "==Overview== You cannot manage what you cannot measure. Unfortunately, implementing an effective metrics monitoring effort can be a difficult undertaking. Despite this, metrics are an essential element of your overall application securit...")
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP5 Build vulnerability remediation procedures (content was: "==Overview== It is especially important in the context of application updates and enhancements to define which steps will be taken to identify, asse..." (and the only contributor was "Pravir Chandra"))
- 09:18, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Confidentiality (content was: "{{Template:SecureSoftware}} ==Confidentiality== It is often a requirement that data should be secret to all unauthorized parties, both when in transit on a network and when being stored, long-term or short-term. Confidentiality is oft...")
- 09:17, 29 June 2016 Jmanico (talk | contribs) deleted page Category:CLASP Role (content was: "{{Template:SecureSoftware}} Category:OWASP CLASP Project ==Overview== This section contains role-based introductions to the CLASP method and pr..." (and the only contributor was "Pravir Chandra"))
- 09:17, 29 June 2016 Jmanico (talk | contribs) deleted page Implementer (content was: "{{Template:SecureSoftware}} ==Role Description== Traditionally, application development is handled in an ad-hoc manner, and it is the implementer who must carry the bulk of the security expertise. Ultimately, this is because — in ad-h...")
- 09:17, 29 June 2016 Jmanico (talk | contribs) deleted page Requirements Specifier (content was: "{{Template:SecureSoftware}} ==Role Description== The requirements specifier has these major tasks: * He is first responsible for detailing business requirements that are security relevant, particularly those things that will need to be...")
- 09:15, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218359 of page User talk:Jmanico patrolled
- 09:14, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218358 of page User talk:Douglasheld patrolled
- 09:13, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218357 of page User talk:Jmanico patrolled
- 09:10, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218356 of page HTTP Response Splitting patrolled
- 09:09, 29 June 2016 Jmanico (talk | contribs) restored page HTTP Response Splitting (35 revisions restored: deleted to quickly)
- 09:08, 29 June 2016 Jmanico (talk | contribs) deleted page Signed to unsigned conversion error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== A signed-to-unsigned conversion error takes place when a signed primitive is used as an unsigned valu...")
- 09:08, 29 June 2016 Jmanico (talk | contribs) deleted page Sign extension error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== If one extends a signed number incorrectly, if negative numbers are used, an incorrect extension may...")
- 09:07, 29 June 2016 Jmanico (talk | contribs) deleted page Security Auditor (content was: "{{Template:SecureSoftware}} ==Role Description== The basic role of a security auditor is to examine the current state of a project and try to assure the security of the current state of the project: * When examining requirements, the au...")
- 09:07, 29 June 2016 Jmanico (talk | contribs) deleted page Failure of true random number generator (content was: "{{taggedDocument | type=inactiveDraft }} {{Template:Vulnerability}} {{Template:SecureSoftware}} <!-- Last revision hardcoded to 03/6/2009 on 04/Nov/2014 because: page source formaly changed (category) but no content changed, whi...")
- 09:06, 29 June 2016 Jmanico (talk | contribs) deleted page Specify database security configuration (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Define a secure default configuration for database resources that are deployed as part of an implementation. * Identify a recommended configuration for database resources for datab...")
- 09:06, 29 June 2016 Jmanico (talk | contribs) deleted page Specify operational environment (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Document assumptions and requirements about the operating environment, so that the impact on security can be assessed. Role: * Requirements Specifier Frequency: * As necessary;...")
- 09:06, 29 June 2016 Jmanico (talk | contribs) deleted page Stack overflow (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== A stack overflow condition is a buffer overflow condition, where the buffer being overwritten is al...")
- 09:06, 29 June 2016 Jmanico (talk | contribs) deleted page State synchronization error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== State synchronization refers to a set of flaws involving contradictory states of execution in a proc...")
- 09:06, 29 June 2016 Jmanico (talk | contribs) deleted page Storing passwords in a recoverable format (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The storage of pa...")
- 09:06, 29 June 2016 Jmanico (talk | contribs) deleted page Symbolic name not mapping to correct object (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== A constant symbol...")
- 09:04, 29 June 2016 Jmanico (talk | contribs) deleted page Category:OWASP CLASP Project (content was: "{| |- ! width="700" align="center" | <br> ! width="500" align="center" | <br> |- | align="right" | link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Inactive_Projects | align="righ...")
- 09:01, 29 June 2016 Jmanico (talk | contribs) deleted page Publicizing of private data when using inner classes (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Java byte code...")
- 09:01, 29 June 2016 Jmanico (talk | contribs) deleted page Project Manager (content was: "{{Template:SecureSoftware}} ==Role Description== Software security efforts are rarely successful without buy-in from the project manager. In most organizations, security will not be a concern to individual project members if left to the...")
- 09:01, 29 June 2016 Jmanico (talk | contribs) deleted page Perform source-level security review (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Find security vulnerabilities introduced into implementation. Role: * Security Auditor Frequency: * Incrementally, at the end of each implementation iteration. ==Scope the en...")
- 09:01, 29 June 2016 Jmanico (talk | contribs) deleted page Perform security analysis of system requirements and design (threat modeling) (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Assess likely system risks in a timely and cost-effective manner by analyzing the requirements and design. * Identify high-level system threats that are documented neither in requi...")
- 09:01, 29 June 2016 Jmanico (talk | contribs) deleted page Perform code signing (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Provide the stakeholder with a way to validate the origin and integrity of the software. Role: * Integrator Frequency: * Once per release build ==Obtain code signing credenti...")
- 09:00, 29 June 2016 Jmanico (talk | contribs) deleted page Passing mutable objects to an untrusted method (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Sending non-clo...")
- 09:00, 29 June 2016 Jmanico (talk | contribs) deleted page Covert timing channel (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} <br> Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Unintended i...")
- 09:00, 29 June 2016 Jmanico (talk | contribs) deleted page Comparing instead of assigning (content was: "{{taggedDocument | type=pls review }} {{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulnerabilities|Vulnerabilities Table of Conte...")
- 08:59, 29 June 2016 Jmanico (talk | contribs) deleted page Comparing classes by name (content was: "{{taggedDocument | type=pls_review }} {{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== The practice of determining an object's type, based on its na...")
- 08:59, 29 June 2016 Jmanico (talk | contribs) deleted page CLASP Security Services (content was: "{{Template:SecureSoftware}} Category:OWASP CLASP Project == Overview == There are several fundamental security goals that may be required for the resources in your system. For each resource in your system, you should be aware of whe...")
- 08:59, 29 June 2016 Jmanico (talk | contribs) deleted page CLASP Security Principles (content was: "{{Template:Principle}} {{Template:SecureSoftware}} Category:OWASP CLASP Project ==Overview== This CLASP Resource is meant as a set of basic principles for all members of your application-security project. ==Ethics in Secure-Softw...")
- 08:59, 29 June 2016 Jmanico (talk | contribs) deleted page CLASP Process Engineering and Roadmaps (content was: "{{Template:SecureSoftware}} Category:OWASP CLASP Project ==Creating the Process Engineering Plan== To ensure an efficient ongoing process, it is important to carefully plan the process engineering effort. A good process engineering...")
- 08:59, 29 June 2016 Jmanico (talk | contribs) deleted page CLASP Concepts (content was: "{{Template:SecureSoftware}} ==Concepts View== CLASP is the outgrowth of years of extensive field work in which system resources of many development lifecycles were methodically decomposed in order to create a comprehe...")
- 08:59, 29 June 2016 Jmanico (talk | contribs) deleted page CLASP Code Guidelines (content was: "{{Template:SecureSoftware}} Category:OWASP CLASP Project ==Overview== To be populated from the CLASP guide {{Template:Stub}}")
- 08:56, 29 June 2016 Jmanico (talk | contribs) deleted page Capture-replay (content was: "{{taggedDocument | type=pls review }} {{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulnerabilities|Vulnerabilities Table of Conte...")
- 08:54, 29 June 2016 Jmanico (talk | contribs) deleted page Duplicate key in associative list (alist) (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Associative list...")
- 08:54, 29 June 2016 Jmanico (talk | contribs) deleted page Doubly freeing memory (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Freeing or delet...")
- 08:53, 29 June 2016 Jmanico (talk | contribs) deleted page Document security-relevant requirements (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Document business-level and functional requirements for security. Role: * Requirements Specifier Frequency: * As necessary; generally, once per iteration. In this activity, we...")
- 08:53, 29 June 2016 Jmanico (talk | contribs) deleted page Detail misuse cases (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Communicate potential risks to stakeholder. * Communicate rationale for security-relevant decisions to stakeholder. Role: * Requirements Specifier Frequency: * As required; typ...")
- 08:53, 29 June 2016 Jmanico (talk | contribs) deleted page Designer (content was: "{{Template:SecureSoftware}} ==Role Description== The primary responsibility of the designer is to keep security risks out of the application, whenever possible. This responsibility has many facets: * First, he must figure out what techn...")