websecurity@lists.webappsec.org

The Web Security Mailing List

View all threads

Web Application Security Check List 2012 (Mainly for Auditors)

BD
Bunyamin Demir
Thu, Mar 1, 2012 10:20 PM

Hi Folks,

We released our project for web application security check list. I hope,
you will like it.

http://code.google.com/p/wasclist/

Your comment and suggestion are wellcome!

Best Regards,

--
Bünyamin Demir
OWASP-Turkey Chapter Lead
http://www.webguvenligi.org
http://www.owasp.org/index.php/Turkey

Türkçe Web Uygulama Güvenliği E-Posta Listesine üye olmak için:
https://lists.owasp.org/mailman/listinfo/owasp-turkey

Hi Folks, We released our project for web application security check list. I hope, you will like it. http://code.google.com/p/wasclist/ Your comment and suggestion are wellcome! Best Regards, -- Bünyamin Demir OWASP-Turkey Chapter Lead http://www.webguvenligi.org http://www.owasp.org/index.php/Turkey Türkçe Web Uygulama Güvenliği E-Posta Listesine üye olmak için: https://lists.owasp.org/mailman/listinfo/owasp-turkey
CH
Christian Heinrich
Thu, Mar 1, 2012 10:41 PM

Bunyamin,

2012/3/2 Bunyamin Demir bunyamindemir@gmail.com:

Your comment and suggestion are wellcome!

Is this the correlation between ASVS and the OWASP Testing Guide as
part of the OWASP "Common Numbering Project"?

--
Regards,
Christian Heinrich

http://cmlh.id.au/contact

Bunyamin, 2012/3/2 Bunyamin Demir <bunyamindemir@gmail.com>: > Your comment and suggestion are wellcome! Is this the correlation between ASVS and the OWASP Testing Guide as part of the OWASP "Common Numbering Project"? -- Regards, Christian Heinrich http://cmlh.id.au/contact
BD
Bunyamin Demir
Thu, Mar 1, 2012 11:12 PM

Christian,

It is not a correlation between ASVS and The OWASP Testing Guide. But, we
have a mapping with Testing Guide and ASVS Categories. Maybe we can say
that our project state is among ASVS and OWASP Testing Guide.

We have a plan to use Testing Guide Checklist, Secure Coding Quick
References etc. under our checklist rules. Because they have very detailed
rules for pentesters or developers. Our checklist will cover all positions
who work on application life cycle (mainly for auditors).

Best Regards,

2012/3/2 Christian Heinrich christian.heinrich@cmlh.id.au

Bunyamin,

2012/3/2 Bunyamin Demir bunyamindemir@gmail.com:

Your comment and suggestion are wellcome!

Is this the correlation between ASVS and the OWASP Testing Guide as
part of the OWASP "Common Numbering Project"?

--
Regards,
Christian Heinrich

http://cmlh.id.au/contact

--
Bünyamin Demir
OWASP-Turkey Chapter Lead
http://www.webguvenligi.org
http://www.owasp.org/index.php/Turkey

Türkçe Web Uygulama Güvenliği E-Posta Listesine üye olmak için:
https://lists.owasp.org/mailman/listinfo/owasp-turkey

Christian, It is not a correlation between ASVS and The OWASP Testing Guide. But, we have a mapping with Testing Guide and ASVS Categories. Maybe we can say that our project state is among ASVS and OWASP Testing Guide. We have a plan to use Testing Guide Checklist, Secure Coding Quick References etc. under our checklist rules. Because they have very detailed rules for pentesters or developers. Our checklist will cover all positions who work on application life cycle (mainly for auditors). Best Regards, 2012/3/2 Christian Heinrich <christian.heinrich@cmlh.id.au> > Bunyamin, > > 2012/3/2 Bunyamin Demir <bunyamindemir@gmail.com>: > > Your comment and suggestion are wellcome! > > Is this the correlation between ASVS and the OWASP Testing Guide as > part of the OWASP "Common Numbering Project"? > > > -- > Regards, > Christian Heinrich > > http://cmlh.id.au/contact > -- Bünyamin Demir OWASP-Turkey Chapter Lead http://www.webguvenligi.org http://www.owasp.org/index.php/Turkey Türkçe Web Uygulama Güvenliği E-Posta Listesine üye olmak için: https://lists.owasp.org/mailman/listinfo/owasp-turkey