OWASP


Also found in: Acronyms, Wikipedia.

OWASP

(Open Web Application Security Project) An organization founded by Mark Curphey in 2001 to help make open source software secure. With member communities around the world, OWASP projects are involved with specific programming languages, functions and applications as well as general rules for developing protected applications. For more information, visit www.owasp.org.
References in periodicals archive ?
Uncovering the technical details of the OWASP Top 10 vulnerabilities
OWASP is big on keeping sensitive data secure on the move or at rest through using traditional web apps.
Nearly three out of four applications produced by third-party software vendors and SaaS suppliers fail the OWASP Top 10 when initially assessed.
The OWASP Foundation came online on December 1, 2001.
This paper summarizes the important steps of testing security of WApps and brings the important information from different resources like OWASP (The Open Web Application Security Project), ISO standards or recommendation of professionals.
About New York Metro Joint Cyber Security Conference: This is the first collaborative event cooperatively developed, organized, and sponsored by the following leading information security industry organizations and chapters: InfraGard (New York Metro), ISACA (New York Metro, New Jersey, and Greater Hartford CT), ISCU (New Jersey), ISSA (New York Metro) - OWASP (New York Metro, Brooklyn and Long Island), HTCIA (Northeast) and ACFE (New Jersey).
Customers using Retina CS or the standard edition of Retina Network Security Scanner can also now add an optional Web Essentials module, which increases Retina's OWASP Top 10 scanning coverage from five to eight critical web application security threats.
2], InfraGard, OWASP and the Cloud Security Alliance.
AppSec Europe, from 23-26 June, is organized by the OWASP (Open Web Application Security Project) Foundation, an open-source organization with over 45,000 corporate, educational and individual participants from around the world.
Take a look at the OWASP Top 10, for example, RFI and Directory Traversal were not identified as top vulnerabilities, yet our research shows that these are two of the most common attacks used by hackers to steal data.
Delivered through a SaaS model, QualysGuard WAS delivers automated crawling and testing for custom Web applications to identify most common vulnerabilities such as those in the OWASP Top 10 and WASC Threat Classification, including SQL injection and cross-site scripting.
OWASP is a community project, staffed by developers from across the world who have agreed to share their experience and expertise in order to identify common threats and advise on how to prevent them.