Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




pen-test logo Penetration Testing mailing list archives

WASC Releases Web Security Threat Classification
From: Jeremiah Grossman <jeremiah () whitehatsec com>
Date: Wed, 28 Jul 2004 04:50:42 -0700


Web Application Security Consortium Establishes Official Charter and Delivers Web Security Threat Classification

Group Promotes Industry Standard Terminology of Web Security Threats

Web Application Security Consortium (WASC), a group dedicated to developing and promoting "security standards of best practice" for the World Wide Web, announced the completion of the WASC official Charter and Web Security Threat Classification.

The Web Security Threat Classification is a cooperative effort to clarify and organize the threats to the security of a Web site. The members of the WASC created this project to develop and promote industry standard terminology for describing these issues. With the creation of the Web Security Threat Classification, application developers, security professionals, software vendors and compliance auditors have the ability to access a consistent language for Web security related issues.

Our first release of the Threat Classification document is available for download here:

http://www.webappsec.org/threat.html


Regards,

Jeremiah Grossman
WASC Spokesman



  By Date           By Thread  

Current thread:
  • WASC Releases Web Security Threat Classification Jeremiah Grossman (Jul 28)
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]