This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
User contributions
(newest | oldest) View (newer 100 | older 100) (20 | 50 | 100 | 250 | 500)
- 13:57, 31 May 2012 (diff | hist) . . (-2) . . m Testing for CSRF (OTG-SESS-005) (Minor correction.)
- 12:11, 27 March 2012 (diff | hist) . . (+27) . . m Talk:OWASP Hackademic Challenges Project (→Live Server Needs Updates) (current)
- 12:11, 27 March 2012 (diff | hist) . . (+37) . . Talk:OWASP Hackademic Challenges Project (→Live Server Needs Updates)
- 18:21, 27 May 2011 (diff | hist) . . (+9) . . Talk:OWASP Hackademic Challenges Project (→Live Server Needs Updates)
- 18:20, 27 May 2011 (diff | hist) . . (+405) . . N Talk:OWASP Hackademic Challenges Project (Live Server Needs Updates)
- 13:02, 25 May 2011 (diff | hist) . . (+236) . . m Ottawa (Minor edit - restore links in previous meetings section)
- 12:59, 25 May 2011 (diff | hist) . . (+11) . . m Ottawa (Minor edit - cleanup of Previous meetings section....)
- 12:53, 25 May 2011 (diff | hist) . . (+46) . . Talk:OWASP Common Numbering Project (current)
- 12:51, 25 May 2011 (diff | hist) . . (+1,217) . . N Talk:OWASP Common Numbering Project (Created page with "This was discussed without much feedback on the testing mailing list so I thought I'd bring it up on the wiki discussion as well:<br> https://lists.owasp.org/pipermail/owasp-test...")
- 12:24, 13 April 2011 (diff | hist) . . (+339) . . N Talk:Testing for Bypassing Authorization Schema (OTG-AUTHZ-002) (Created page with "== Discussion of additions for TGv4 == Additions to this section were discussed on the testing guide mailing list in Apr 2011: https://lists.owasp.org/pipermail/owasp-testing/20...")
- 12:08, 12 April 2011 (diff | hist) . . (0) . . m OWASP Testing Guide v3 Table of Contents (→4. Web Application Penetration Testing)
- 12:06, 12 April 2011 (diff | hist) . . (-2) . . m Testing Guide Quotes (→Comments: - Minor correction PDP URL) (current)
- 18:55, 11 April 2011 (diff | hist) . . (-2) . . m OWASP Testing Project (→OWASP Testing Guide v4: - Fixed minor typo ~~~~)
- 18:16, 23 March 2011 (diff | hist) . . (+7) . . m Testing for business logic (→References: -- Updated some URLs)
- 18:06, 23 March 2011 (diff | hist) . . (+3) . . User:Rick.mitchell
- 20:38, 23 February 2010 (diff | hist) . . (+143) . . User talk:Rick.mitchell
- 12:43, 23 February 2010 (diff | hist) . . (+52) . . OWASP Common Numbering Project
- 12:43, 23 February 2010 (diff | hist) . . (+6) . . User:Rick.mitchell
- 12:37, 23 February 2010 (diff | hist) . . (+341) . . User:Rick.mitchell
- 12:33, 23 February 2010 (diff | hist) . . (+16) . . m OWASP Common Numbering Project
- 12:26, 23 February 2010 (diff | hist) . . (+11) . . m Testing for Session Fixation (OTG-SESS-003) (→Brief Summary: - Minor correction to leadin..)
- 13:37, 12 February 2010 (diff | hist) . . (0) . . m Project Information:template SKAVENGER (RM - Minor correction "year" not "your") (current)
- 13:21, 12 February 2010 (diff | hist) . . (+8) . . m Category:OWASP Encoding Project (→Overview: - RM Minor correction. Apps contain vulnerabilities (to attacks) not attacks.)
- 23:41, 25 January 2010 (diff | hist) . . (+16) . . m OWASP Testing Guide Contributors (Modificaiton to reviewers to match http://www.owasp.org/index.php/Testing_Guide_Frontispiece#v3_Reviewers) (current)
- 19:45, 15 January 2010 (diff | hist) . . (+208) . . m OWASP Common Numbering Project (Minor correction or clarification - RM)
- 14:41, 13 January 2010 (diff | hist) . . (+323) . . m OWASP Common Numbering Project (Added mailing list links)
- 15:33, 8 June 2009 (diff | hist) . . (+111) . . m User:Rick.mitchell
- 19:30, 18 March 2009 (diff | hist) . . (+33) . . m Testing Guide Frontispiece (→v3 Reviewers: -- Added reviewer (You'd have to check my change/contribute history to see, I never marked my reviewed sections on the index draft :( ))
- 14:36, 5 September 2008 (diff | hist) . . (+6) . . Talk:Testing for Web Application Fingerprint (OWASP-IG-004)
- 16:51, 3 September 2008 (diff | hist) . . (+4) . . m Testing for DB Listener (OWASP-CM-002) (→Black Box testing and example)
- 16:51, 3 September 2008 (diff | hist) . . (+7) . . m Testing for DB Listener (OWASP-CM-002) (→Black Box testing and example)
- 16:50, 3 September 2008 (diff | hist) . . (+2) . . Testing for DB Listener (OWASP-CM-002) (→Black Box testing and example: - Reviewed)
- 16:45, 3 September 2008 (diff | hist) . . (+17) . . Testing for DB Listener (OWASP-CM-002) (→Description of the Issue: - Reviewed)
- 16:43, 3 September 2008 (diff | hist) . . (+5) . . Testing for DB Listener (OWASP-CM-002) (→Brief Summary: - Reviewed)
- 16:42, 3 September 2008 (diff | hist) . . (+51) . . Testing for DB Listener (OWASP-CM-002) (→Brief Summary)
- 16:41, 3 September 2008 (diff | hist) . . (-1) . . Testing for DB Listener (OWASP-CM-002) (→Brief Summary)
- 16:38, 3 September 2008 (diff | hist) . . (+400) . . Talk:Testing for SSL-TLS (OWASP-CM-001) (New section: Testing with OpenSSL?)
- 16:33, 3 September 2008 (diff | hist) . . (+17) . . Testing for SSL-TLS (OWASP-CM-001) (→Testing SSL / TLS cipher specifications and requirements for site: - Reviewed)
- 14:09, 3 September 2008 (diff | hist) . . (+252) . . N Talk:Testing for SSL-TLS (OWASP-CM-001) (New page: __TOC__ == Reference/Citation needed == We should attach a reference or citation to the first part of the summary: "Due to historic export restrictions of high grade cryptography".<br> ~~...)
- 14:08, 3 September 2008 (diff | hist) . . (-29) . . m Testing for SSL-TLS (OWASP-CM-001) (→Brief Summary)
- 14:07, 3 September 2008 (diff | hist) . . (+29) . . m Testing for SSL-TLS (OWASP-CM-001) (→Brief Summary)
- 14:03, 3 September 2008 (diff | hist) . . (-1) . . m Testing for SSL-TLS (OWASP-CM-001) (→Brief Summary)
- 14:02, 3 September 2008 (diff | hist) . . (-7) . . m Testing for SSL-TLS (OWASP-CM-001) (→Brief Summary: - Reviewed)
- 14:01, 3 September 2008 (diff | hist) . . (+1) . . m OWASP Testing Guide v3 Table of Contents (→4. (M.Meucci) Web Application Penetration Testing )
- 13:59, 3 September 2008 (diff | hist) . . (+114) . . Talk:Enumerate Applications on Webserver (OTG-INFO-004) (→v3 Review Comments)
- 13:58, 3 September 2008 (diff | hist) . . (-21) . . m Enumerate Applications on Webserver (OTG-INFO-004) (→Description of the Issue)
- 13:56, 3 September 2008 (diff | hist) . . (+29) . . Talk:Enumerate Applications on Webserver (OTG-INFO-004)
- 13:55, 3 September 2008 (diff | hist) . . (+320) . . Talk:Enumerate Applications on Webserver (OTG-INFO-004) (New section: v3 Review Comments)
- 13:53, 3 September 2008 (diff | hist) . . (-4) . . Enumerate Applications on Webserver (OTG-INFO-004) (→Brief Summary)
- 13:52, 3 September 2008 (diff | hist) . . (+259) . . m Talk:Testing for Web Application Fingerprint (OWASP-IG-004)
- 13:46, 3 September 2008 (diff | hist) . . (+1) . . m Conduct search engine discovery/reconnaissance for information leakage (OTG-INFO-001) (→Gray Box testing and example)
- 13:46, 3 September 2008 (diff | hist) . . (+1) . . m Conduct search engine discovery/reconnaissance for information leakage (OTG-INFO-001) (→Black Box Testing)
- 13:43, 3 September 2008 (diff | hist) . . (+283) . . N Talk:Conduct search engine discovery/reconnaissance for information leakage (OTG-INFO-001) (New page: __TOC__ == v3 Review Comments == This section does not cover the items stated in the "brief summary". For v3, if the section is to remain completely google'centric I suggest we rename "Se...)
- 13:39, 3 September 2008 (diff | hist) . . (+26) . . Talk:Review Webserver Metafiles for Information Leakage (OTG-INFO-003)
- 13:39, 3 September 2008 (diff | hist) . . (+523) . . Talk:Review Webserver Metafiles for Information Leakage (OTG-INFO-003) (New section: v3 Review Comments)
- 13:36, 3 September 2008 (diff | hist) . . (+3) . . m Review Webserver Metafiles for Information Leakage (OTG-INFO-003) (→Black Box testing and example: - Reviewed (Also see Discussion Tab))
- 15:02, 29 August 2008 (diff | hist) . . (+93) . . Talk:Testing Guide Introduction (→Reviewer Comments 20080829) (current)
- 15:01, 29 August 2008 (diff | hist) . . (+105) . . Talk:Testing Guide Introduction (→Reviewer Comments 20080829)
- 14:59, 29 August 2008 (diff | hist) . . (+83) . . Testing Guide Introduction (→Testing Techniques Explained: - Reviewed (Also see Dicussion Tab))
- 14:36, 29 August 2008 (diff | hist) . . (+14) . . Testing Guide Introduction (→Principles of Testing: - Reviewed)
- 14:25, 29 August 2008 (diff | hist) . . (+56) . . Testing Guide Introduction (→The OWASP Testing Project: - Reviewed (Also see Discussion tab))
- 14:23, 29 August 2008 (diff | hist) . . (+268) . . Talk:Testing Guide Introduction (→Reviewer Comments 20080829)
- 14:20, 29 August 2008 (diff | hist) . . (+13) . . Talk:Testing Guide Introduction (→Reviewer Comments)
- 14:20, 29 August 2008 (diff | hist) . . (+493) . . Talk:Testing Guide Introduction
- 14:03, 29 August 2008 (diff | hist) . . (+473) . . N Talk:Testing Guide Foreword (New page: __TOC__ == Reviewer Comments == Within the "Tailoring and Prioritizing" section.<br> "If you have standard security technologies, you should tailor your testing to ensure they are being ...) (current)
- 14:00, 29 August 2008 (diff | hist) . . (+41) . . m Testing Guide Foreword (→Tailoring and Prioritizing: - Reviewed (See Discussion Tab as well))
- 13:56, 29 August 2008 (diff | hist) . . (+10) . . m Testing Guide Foreword (→Why OWASP?: - Reviewed)
- 13:54, 29 August 2008 (diff | hist) . . (+60) . . m Testing Guide Foreword (→Foreword by Jeff Williams, OWASP Chair: - Reviewed)
- 14:23, 13 August 2008 (diff | hist) . . (+2) . . m Testing for SQL Wildcard Attacks (OWASP-DS-001) (→Gray Box testing and example: - Reviewed)
- 14:23, 13 August 2008 (diff | hist) . . (+44) . . m Testing for SQL Wildcard Attacks (OWASP-DS-001) (→Black Box testing and example: - Reviewed)
- 14:19, 13 August 2008 (diff | hist) . . (+2) . . m Talk:Testing for SQL Wildcard Attacks (OWASP-DS-001)
- 14:19, 13 August 2008 (diff | hist) . . (+8) . . m Talk:Testing for SQL Wildcard Attacks (OWASP-DS-001)
- 14:17, 13 August 2008 (diff | hist) . . (+202) . . Nm Talk:Testing for SQL Wildcard Attacks (OWASP-DS-001) (New page: :: v3 Reviewer Notes:: I don't think we should list "%" as an "extra" wildcard as it is the standard SQL (Oracle, MS, My, etc) wildcard. ~~~~)
- 14:17, 13 August 2008 (diff | hist) . . (-5) . . m Testing for SQL Wildcard Attacks (OWASP-DS-001) (→Description of the Issue: - Reviewed)
- 14:12, 13 August 2008 (diff | hist) . . (+223) . . m Testing for Stored Cross site scripting (OTG-INPVAL-002) (→References: - Reviewed)
- 14:08, 13 August 2008 (diff | hist) . . (+10) . . Testing for Stored Cross site scripting (OTG-INPVAL-002) (→Gray Box testing and example: - Reviewed)
- 14:05, 13 August 2008 (diff | hist) . . (+28) . . Testing for Stored Cross site scripting (OTG-INPVAL-002) (→Black Box testing and example: - Reviewed)
- 13:44, 13 August 2008 (diff | hist) . . (+76) . . m Testing for Stored Cross site scripting (OTG-INPVAL-002) (→Description of the Issue: - Reviewed)
- 13:40, 13 August 2008 (diff | hist) . . (0) . . m Testing for Stored Cross site scripting (OTG-INPVAL-002) (→Brief Summary: - Reviewed)
- 13:29, 13 August 2008 (diff | hist) . . (+238) . . Nm Talk:Testing for Privilege escalation (OTG-AUTHZ-003) (New page: ::v3 Reviewer Notes:: The following sections require further work or removal (because they're empty). Result Expected:<br> Gray Box testing and example <br> References<br> ~~~~)
- 13:23, 13 August 2008 (diff | hist) . . (+109) . . m Testing for Privilege escalation (OTG-AUTHZ-003) (→Black Box testing and example: - Reviewed)
- 13:15, 13 August 2008 (diff | hist) . . (+25) . . m Testing for Privilege escalation (OTG-AUTHZ-003) (→Description of the Issue: - Reviewed)
- 13:12, 13 August 2008 (diff | hist) . . (+3) . . m Testing for Privilege escalation (OTG-AUTHZ-003) (→Brief Summary: - Reviewed)
- 13:12, 13 August 2008 (diff | hist) . . (-9) . . m OWASP Testing Guide v3 Table of Contents (4.6.1 Has not even been started....removing 100% text)
- 16:47, 22 July 2008 (diff | hist) . . (+22) . . m Testing for cookies attributes (OTG-SESS-002) (→Black Box testing and example)
- 16:43, 22 July 2008 (diff | hist) . . (+12) . . Testing for cookies attributes (OTG-SESS-002) (Reviewed)
- 14:33, 22 July 2008 (diff | hist) . . (+162) . . m Talk:Testing for cookies attributes (OTG-SESS-002) (→Re: Section Title)
- 14:06, 22 July 2008 (diff | hist) . . (+9) . . Talk:Testing for cookies attributes (OTG-SESS-002)
- 14:06, 22 July 2008 (diff | hist) . . (-2) . . m Talk:Testing for cookies attributes (OTG-SESS-002)
- 14:05, 22 July 2008 (diff | hist) . . (+442) . . Nm Talk:Testing for cookies attributes (OTG-SESS-002) (New page: === Re: Section Title === "Testing for cookies attributes" Something is wrong with this title. One of the following should be used:<br> Testing for cookies' attributes<br> (Multiple attri...)
- 16:06, 16 July 2008 (diff | hist) . . (+24) . . Testing for Directory Traversal (→Gray Box testing and example: - Reviewed)
- 14:58, 16 July 2008 (diff | hist) . . (+4) . . Testing for Directory Traversal (→Black Box testing and example: - Reviewed)
- 14:52, 16 July 2008 (diff | hist) . . (-3) . . Testing for Directory Traversal (→Description of the Issue: - Reviewed)
- 15:06, 15 July 2008 (diff | hist) . . (+62) . . Talk:Testing Guide Introduction (→v3 Review Comments)
- 14:48, 15 July 2008 (diff | hist) . . (+62) . . m Talk:Identify application entry points (OTG-INFO-006)
- 14:46, 15 July 2008 (diff | hist) . . (-67) . . Testing Guide Introduction (→Security Test Data Analysis and Reporting: - Reviewed)
- 13:40, 15 July 2008 (diff | hist) . . (+4) . . Testing Guide Introduction (→Developers' Security Tests: - Reviewed ( Please also review the discussion tab))
- 13:34, 15 July 2008 (diff | hist) . . (+35) . . m Talk:Testing Guide Introduction (→v3 Review Comments)
- 13:33, 15 July 2008 (diff | hist) . . (+329) . . m Talk:Testing Guide Introduction (New section: v3 Review Comments)
- 13:28, 15 July 2008 (diff | hist) . . (+1) . . m OWASP Testing Guide v3 Table of Contents (→2. Introduction: - Fixed another link)
(newest | oldest) View (newer 100 | older 100) (20 | 50 | 100 | 250 | 500)