RE: Open Source Code Review
"Calderon, Juan Carlos (GE Commercial Finance, NonGE)" <[email protected]>
| Newsgroups | gmane.comp.security.programming |
|---|---|
| Message-ID | <999169B0CC0F2A418615C28851C5C0710305FA0E@CINMLVEM09.e2k.ad.ge.com> |
my mistake, I meant "OWASP web application penetration testing checklist" Althouhg "OWASP testing guide Part 1" will be available soon Regards JC -----Original Message----- From: Calderon, Juan Carlos (GE Commercial Finance, NonGE) Sent: Saturday, April 24, 2004 2:41 PM To: Angus; [email protected] Subject: RE: Open Source Code Review Hi Angus I would recommend you recently released "OWASP testing guide", It covers most of the security issues found in web applications security, and it is focused in testing/auditing web applications as a pen testing perspective, you can download it from www.owasp.org, if you have any problem with this site you could download it from www.sourceforge.net/projects/owasp/ as well cheers JC PS Perhaps this recommendation can help AJ Dexter also -----Original Message----- From: Angus [mailto:[email protected]] Sent: Friday, April 23, 2004 11:35 AM To: [email protected] Subject: Open Source Code Review Is anyone aware of any open source code review programs. I'd like to know if there are any that deal with all aspects of security, including but not limited to efficiency and breakin/overflow issues. In paticular, I'd like one for Coldfusion, however any others would be appreciated. __________________________________ Do you Yahoo!? Yahoo! Photos: High-quality 4x6 digital prints for 25¢ http://photos.yahoo.com/ph/print_splash