mailing list archives
Start(up) API project security
From: Sergey Chernyshev <sergey.chernyshev () gmail com>
Date: Thu, 18 Aug 2011 10:15:08 -0400
Hello from fellow Open Sourcerer.
I'm working on a project to help people build web apps, called Startup API
(thinking of renaming it to Start API to make it less cool, but more
Having seen too many startups keeping the passwords in clear
and committing many similar security "crimes", I'm very much concerned about
it and want to establish some security process around building the apps.
I've started gathering information about security-related issues on the
project's wiki (not only for Startup API software itself, but for best
practice collection in general):
Right now, I'm trying to understand what are the most common and / or most
dangerous security issues surrounding web apps.
I feel that this group should have a pretty good experience tracking those
down and I'd love any thoughts you might want to share.
If you have any links to good articles or videos about web app security, I'd
really appreciate that too.
- Start(up) API project security Sergey Chernyshev (Aug 18)