OWASP Autumn of Code 2006 - Projects: Testing Guide - Progress

Project Main Page

Week 01 - Oct 08

 * Checked out all the documentations
 * Built the index and the state of completeness about each paragraphs
 * Review the index of the OWASP Testing Guide
 * Worked on updating the project page

Week 02 - Oct 15
1 The OWASP Testing Project 2 How To Go About Performing An Application Security Review 3 Principles of Testing 4 Testing Techniques Explained 4.1 Manual Inspections & Reviews 4.2 Threat Modeling 4.3 Source Code Review 4.4 Penetration Testing 4.5 The Need for a Balanced Approach 4.1 Introduction and objectives 4.2 Information Gathering 4.3 Business logic testing 4.4 Authentication Testing 4.5 Session Management Testing 4.6 Data Validation Testing 4.7 Denial of Service Testing 4.8 Infrastructure and configuration Testing 4.9 Web Services Testing 4.10 AJAX Testing
 * Call for participation on webappsec ml
 * Brainstorming about the new Index on OWASP-Testing ml
 * Contacted the best in WebAppSec field to have a feedback about the project
 * 16 people are interested working at the project
 * Created the new [OWASP Testing Guide v2 Table of Contents]
 * Created a new Introduction (Chapter 2):
 * Put the Chapter OWASP Testing Framework as Chapter 3, before the Chapter in which we describe the testing phase in detail.
 * Renamed Chapter 4 from "Manual Testing Techinques" to "Web Application Penetration Testing"
 * Rationalized Chapter 4 and splitted the testing into:
 * Review content of Information Gathering, Data Validation, Infrastructure and Configuration.
 * Created a template for each new paraghraph in Chapter 4.
 * Created a rule for writing
 * Next: 15th Oct: End of brainstorming Index. We have a final Index

Week 03 - Oct 22

 * Assigned a paragraph for each contributor: we have set up a high quality team.
 * Edited the Template for Chapter 4: now we have a new paragraph titled "Brief Summary" in which we describe in "natural language" what we want to test.
 * Begin to write the first draft: deadline 5th November

Week 04 - Oct 29
contact me.
 * Now every contributor is writing his own article.
 * There are already some small teams working together at the same article.
 * A few contributors have added the articles on our Portal. If you have any problem to write the article on the Wiki portal please
 * Contacted each author to know the progress status.