This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
All public logs
Combined display of all available logs of OWASP. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
(newest | oldest) View (newer 50 | older 50) (20 | 50 | 100 | 250 | 500)- 09:53, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218369 of page Failure to follow guideline/specification patrolled
- 09:52, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Protocol Errors (content was: "{{Template:SecureSoftware}} Category:Vulnerability Category:OWASP CLASP Project")
- 09:52, 29 June 2016 Jmanico (talk | contribs) automatically marked revision 218368 of page Use of hard-coded password patrolled
- 09:50, 29 June 2016 Jmanico (talk | contribs) deleted page Format String (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} <!-- advertising removed: {{Template:Fortify}} --> Last revision (mm/dd/yy): '''02/23/2009''' <small>(please ''view source'')</small> <!-- Last revision hardcoded to 02/23/200...")
- 09:50, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to validate host-specific certificate data (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The failure to v...")
- 09:50, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to provide confidentiality for stored data (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Non-final public...")
- 09:50, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to protect stored data from modification (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Data should be p...")
- 09:50, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to follow chain of trust in certificate validation (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Failure to follo...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to encrypt data (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The failure to e...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to drop privileges when reasonable (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Failing to drop...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to deallocate data (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== If memory is all...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to check whether privileges were dropped successfully (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== If one changes s...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to check integrity check value (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== If integrity che...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to check for certificate revocation (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== If a certificate...")
- 09:49, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to add integrity check value (content was: "{{taggedDocument | type=inactiveDraft }} {{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulnerabilities|Vulnerabilities Table of Con...")
- 09:48, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to account for default case in switch (content was: "{{taggedDocument | type=inactiveDraft }} {{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulnerabilities|Vulnerabilities Table of Con...")
- 09:48, 29 June 2016 Jmanico (talk | contribs) deleted page Failure to validate certificate expiration (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== The failure to v...")
- 09:45, 29 June 2016 Jmanico (talk | contribs) deleted page Invoking untrusted mobile code (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== This process wil...")
- 09:45, 29 June 2016 Jmanico (talk | contribs) deleted page Integer overflow (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== An integer overflow condition exists when an integer, which has not been properly sanity checked, i...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Integer coercion error (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Integer coercion...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Insufficient entropy in pseudo-random number generator (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Can this be combined with the Insufficient Entropy article? Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' ASDR_TOC_Vulner...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Information leak through serialization (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Serializable cla...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Information leak through class cloning (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Cloneable classe...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Incorrect block delimitation (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== In some language...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Improper temp file opening (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Vulnerabilities Table of Contents ==Description== Tempfile creation should be done in a safe way. To be safe, the temp file function should open up t...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Improper string length checking (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== Improper string length checking takes place when wide or multi-byte character strings are mistaken...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Improper error handling (content was: "{{Template:SecureSoftware}} {{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Sometimes an err...")
- 09:44, 29 June 2016 Jmanico (talk | contribs) deleted page Ignored function return value (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== If a functions...")
- 09:43, 29 June 2016 Jmanico (talk | contribs) deleted page Category:CLASP Activity (content was: "{{Template:SecureSoftware}} ==Overview== At the core of CLASP are 24 security-related activities that can be integrated into a software development process. The activities phase translates into executable software the subset of the 24 s...")
- 09:43, 29 June 2016 Jmanico (talk | contribs) deleted page Integrate security analysis into source management process (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Automate implementation-level security analysis and metrics collection. Role: * Integrator Frequency: * As required ==Select analysis technology or technologies == There ar...")
- 09:42, 29 June 2016 Jmanico (talk | contribs) deleted page Implement interface contracts (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Provide unit-level semantic input validation. * Identify reliability errors in a structured way at the earliest point in time. Role: * Implementer Frequency: * As needed; gene...")
- 09:42, 29 June 2016 Jmanico (talk | contribs) deleted page Implement and elaborate resource policies and security technologies (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Implement security functionality to specification Role: * Implementer Frequency: * As necessary ==Review specified behavior == The developer should identify any remaining am...")
- 09:42, 29 June 2016 Jmanico (talk | contribs) deleted page Category:CLASP Best Practice (content was: "{{Template:SecureSoftware}} ==Best Practices== #Institute awareness programs #:Category:BP2 Perfo..." (and the only contributor was "Pravir Chandra"))
- 09:41, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP3 Capture security requirements (content was: "==Overview== Ensure that security requirements have the same level of “citizenship” as all other “must haves.” It’s easy for application architects and project managers to focus on functionality when defining requirements, sinc...")
- 09:41, 29 June 2016 Jmanico (talk | contribs) deleted page Category:BP4 Implement secure development practices (content was: "==Overview== Defined security activities, artifacts, guidelines and continuous reinforcement should become part of your organization’s overall cul..." (and the only contributor was "Pravir Chandra"))
- 09:41, 29 June 2016 Jmanico (talk | contribs) deleted page Identify user roles and resource capabilities (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Define system roles and the capabilities/resources that the role can access. Role: * Architect Frequency: * As necessary; generally, once per iteration. ==Identify distinct c...")
- 09:41, 29 June 2016 Jmanico (talk | contribs) deleted page Identify resources and trust boundaries (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Provide a structured foundation for understanding the security requirements of a system. Role: * Architect Frequency: * As necessary; generally, once per iteration. ==Identif...")
- 09:41, 29 June 2016 Jmanico (talk | contribs) deleted page Identify global security policy (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Provide default baseline product security business requirements. * Provide a way to compare the security posture of different products across an organization. Role: * Requirement...")
- 09:41, 29 June 2016 Jmanico (talk | contribs) deleted page Identify attack surface (content was: "{{Template:SecureSoftware}} ==Overview== Purpose: * Specify all entry points to a program in a structured way to facilitate analysis. Role: * Designer Frequency: * As needed; usually once after design, and ongoing during elaborat...")
- 09:40, 29 June 2016 Jmanico (talk | contribs) deleted page Category:Authentication (content was: "==Overview== In most cases, one wants to establish the identity of either a communications partner or the owner, creator, etc. of data. For network connections, it is important to perform authentication at login time, but it is also imp...")
- 09:40, 29 June 2016 Jmanico (talk | contribs) deleted page Slow Down Online Guessing Attacks with Device Cookies (content was: "Category:ControlCategory:Authentication ==Intro== Device cookies as additional authenticator for users devices have been discussed and used in practice for..." (and the only contributor was "Adedov"))
- 09:40, 29 June 2016 Jmanico (talk | contribs) deleted page Parola secreta? (content was: "==Using Secret Questions== To help verify a user's identity in the case of a lost password, many Web applications use secret questions. By answering a pre-selected question, a user can demonstrate some personal knowledge of the account...")
- 09:40, 29 June 2016 Jmanico (talk | contribs) deleted page Guide to Authentication (content was: "{{taggedDocument | type=inactiveDraft | comment=Most content from 2008/2009 with one positive exception in 2014. Please consider the Authentication Cheat Sheet instead. }} Guide Table of Contents|Development Guide Table of Content...")
- 09:40, 29 June 2016 Jmanico (talk | contribs) deleted page Comprehensive list of Threats to Authentication Procedures and Data (content was: "=== Background === There is a bewildering array of tricks, techniques, and technologies that exist to steal passwords, attack password systems, and circumvent authenticat..." (and the only contributor was "Cnd"))
- 09:40, 29 June 2016 Jmanico (talk | contribs) deleted page Authentication In IIS (content was: "==Authentication in IIS== We often think about security measures as ways of protecting resources by preventing access to them. The need for authentication arises because, in the real world, keeping people out of protected areas is only...")
- 09:39, 29 June 2016 Jmanico (talk | contribs) deleted page Relative path library search (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} '''Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Certain func...")
- 09:39, 29 June 2016 Jmanico (talk | contribs) deleted page Reflection attack in an auth protocol (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Vulnerabilities Table of Contents ==Description== Simple authentication protocols are subject to reflection attacks if a malicious user can use the ta...")
- 09:39, 29 June 2016 Jmanico (talk | contribs) deleted page Reflection injection (content was: "{{Template:Vulnerability}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Categorie:FIXME/merge https://www.owasp.org/index.php/Unsafe_use_of_Reflection == Description == Reflection injection p...")
- 09:38, 29 June 2016 Jmanico (talk | contribs) deleted page Reliance on data layout (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Assumptions abou...")
- 09:38, 29 June 2016 Jmanico (talk | contribs) deleted page Relying on package-level scope (content was: "{{Template:Vulnerability}} {{Template:SecureSoftware}} Last revision (mm/dd/yy): '''{{REVISIONMONTH}}/{{REVISIONDAY}}/{{REVISIONYEAR}}''' Vulnerabilities Table of Contents ==Description== Java packages ar...")