OWASP Overview

Preview:

DESCRIPTION

OWASP Overview. Jeff Williams OWASP Chair jeff.williams@owasp.org. Innocent Code. OWASP’s Mission. OWASP’s is dedicated to finding and fighting the causes of insecure software. The Market for Lemons. OWASP Goals. Widespread lack of understanding - PowerPoint PPT Presentation

Citation preview

Copyright © 2004 - The OWASP FoundationPermission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License.

The OWASP Foundation

OWASP

http://www.owasp.org

OWASP Overview

Jeff WilliamsOWASP Chairjeff.williams@owasp.org

OWASP

Innocent Code

OWASP

OWASP’s Mission

OWASP’s is dedicated to finding and fighting the causes of insecure software

OWASP

The Market for Lemons

OWASP

OWASP Goals

Widespread lack of understandingEstablish application security knowledgebase

Time lag for securing new technologiesConstructive security research

Assist companies to produce secure codeProcess, tools, guidance, standards

OWASP

MediaWiki

Community platform Anyone can create an account and edit Strong review process

OWASP

New Projects

Honeycomb project Java security project underway Ajax project – just starting with new leader Metrics project – new leader Validation project – new leader Testing guide II – alpha draft available Code review project – alpha draft available Summer of Code?

OWASP

Project Honeycomb

Principle

ThreatVulnerability

Attack CountermeasureVulnerability

PrinciplePrinciple

CountermeasureCountermeasureCountermeasure

AttackAttackAttack

OWASP

OWASP AppSec Conference Series

Mike Howard is going to do the keynote at OWASP AppSec Seattle 2006

Recommended