WebApp Sec mailing list archives

Re: OWASP Top Ten - My Case For Updating It


From: focus () karsites net
Date: Thu, 14 Jul 2005 00:02:48 +0100 (BST)


This may be of interest, a white paper on secure web 
application development.

http://wd.ittoolbox.com/documents/document.asp?i=4732&rss=1

Kind Regards - Keith Roberts


-----Original Message-----
From: Mark Curphey [mailto:mark () curphey com]

If the problem of web application security is poor software
quality,
it is a natural conclusion that the solution is to build better
software. Not once in the top ten does the list address the fact
that
the majority of software is built without a design, security
requirements or a repeatable software security development
process.


Current thread: