Difference between revisions of "Category:OWASP .NET Project"

From OWASP
Jump to: navigation, search
m (Reverted edits by Frank Alexander (talk) to last revision by Dinis.cruz)
 
(28 intermediate revisions by 2 users not shown)
Line 1: Line 1:
==== .NET Project Overview ====
+
=Main=
  
'''Purpose'''
+
<div style="width:100%;height:160px;border:0,margin:0;overflow: hidden;">[[File:OWASP_Project_Header.jpg|link=]]</div>
  
The purpose of the OWASP .NET Project is to provide a central repository of information and tools for software professionals that use the Microsoft .NET Framework for web applications and services. The project will try to include resources from Microsoft and from the Open Source community, the Alt.NET community and other related security resources.
+
{| style="padding: 0;margin:0;margin-top:10px;text-align:left;" |-
 +
| valign="top" style="border-right: 1px dotted gray;padding-right:25px;" |
  
Please review the [[:Category:Vulnerability|vulnerabilities]] section at OWASP for the grand list of web vulnerabilities, many apply to .NET software.  This section has a Quick Reference table for OWASP projects that you can use for your security projects now.  For .NET related content throughout the site, look for the [[:Category:.NET|.NET category]].  There is plenty of work to be done, so feel free to join the OWASP .NET Project (See Joining the project below).  Contribute work or join our mailing list, many voices are better than one, so join today!
+
==OWASP .NET Project==
  
'''Goals'''
+
The OWASP.NET Project is the clearinghouse for all information related to building secure .NET web applications and services. The goal of the project is to provide deep content for all roles related to .NET web applications and services.
  
*To provide a comprehensive collection of security resources for all roles involved with designing, developing and maintaining .NET web applications and services.
+
The focus of the project is on guidance for developers using the framework, OWASP Components that use .NET, and participation in OWASP projects that
  
*To organize content specific to OWASP projects that can be used or referenced for .NET security.
+
Community content is key to security information. The project depends on content from developers throughout the .NET world. Check out the [[OWASP .Net Project Roadmap]] for ways to get involved.
 +
==Purpose==
  
*To reach out and bring in content from the open source community to protect users of .NET web applications and services.
+
* Provide deep, rich guidance for .NET developers in using the security features of .NET
 +
* Create guidance for use of OWASP components that are designed for use with .NET
 +
* Focus on information about working with and on OWASP tools built using .NET
  
==== Resources ====
+
==Licensing==
=== Member Contributions ===
+
OWASP .NET Project is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.
; [https://lists.owasp.org/pipermail/owasp-phoenix/2009-May/000079.html OWASP-Phoenix List Reply regarding GSSP .NET Cert] from [http://twitter.com/atdre Dre]
+
=== Recommended Resources ===
+
Check out the OWASP .NET Recommended Resources wiki page for a quick list of resources available now for secure .NET development:
+
  
; [[OWASP .NET Recommended Resources| OWASP .NET Recommended Resources]]
+
| valign="top"  style="padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;" |
  
=== Security Guides ===
+
== What is the OWASP .NET Project? ==
The following sections include content that can be useful for a specific role in securing .NET web applications and services:
+
  
; [[.NET Security for Architects| .NET Security for Architects]]
+
* Deep, rich guidance for .NET developers in using the security features of .NET
; [[.NET Security for Developers| .NET Security for Developers]]
+
* Guidance for use of OWASP components that are designed for use with .NET
; [[.NET Security for IT Professional| .NET Security for IT Professionals]]
+
* Information about working with and on OWASP tools built using .NET
; [[.NET Penetration Testing| .NET Penetration Testing]]
+
; [[.NET Incident Response| .NET Incident Response]]
+
  
=== Active Projects ===
+
== Project Leader ==
; [[OWASP .NET Active Projects]]
+
  
=== Research Projects ===
+
[https://www.owasp.org/index.php/User:Bill_Sempf Bill Sempf]
; [[OWASP .NET Research]]
+
  
==== Project Tracker ====
 
  
{|class="wikitable" width="75%"
+
== Related Projects ==
|-
+
! Project Tracker
+
|-
+
|
+
  
; [http://forums.asp.net/25.aspx ASP.NET Security Forum]
+
* [[OWASP_Java_Project]]
  
; [http://msdn.microsoft.com/en-us/security/aa570336.aspx MSDN Security Developer Lists and Newsgroups]
+
| valign="top"  style="padding-left:25px;width:200px;" |
  
; [http://silverlight.net/forums/ Silverlight Forums]
 
  
; [http://www.go-mono.com/forums/ Mono Forums]
+
== News and Events ==
 +
* [30 Mar 2014] Project roadmap
 +
* [5 Feb 2014] Project reboot
  
; [http://stackoverflow.com/questions/tagged/security+asp.net StackOverflow.com Security Questions]
+
== Mailing List ==
 +
[https://lists.owasp.org/mailman/listinfo/owasp-dotnet OWASP .NET Mailing List]
  
; [ALT.NET User Groups]
+
==Classifications==
 +
 
 +
  {| width="200" cellpadding="2"
 +
  |-
 +
  | align="center" valign="top" width="50%" rowspan="2"| [[File:Owasp-incubator-trans-85.png|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]
 +
  | align="center" valign="top" width="50%"| [[File:Owasp-builders-small.png|link=]] 
 +
  |-
 +
  | align="center" valign="top" width="50%"| [[File:Owasp-defenders-small.png|link=]]
 +
  |-
 +
  | colspan="2" align="center"  | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]
 +
  |-
 +
  | colspan="2" align="center"  | [[File:Project_Type_Files_DOC.jpg|link=]]
 +
  |}
  
* May 7, 2009 - Updated tabs, added content recommended by Andre Gironda
 
* March 7, 2009 - Converted to new tab format, added Project Tracker tab
 
* February 9, 2009 Added [[OWASP .NET Research]] and removed [[OWASP .NET Vulnerability Research]] from project page.
 
* February 9, 2009 Added [[.NET Framework Rootkits]] to [[OWASP .NET Research]]
 
|-
 
 
|}
 
|}
  
==== Project Identification ====
+
=Resources=
; {{:Project Information:template .NET Project}}
+
  
 +
== Recommended Resources ==
 +
Check out the OWASP .NET Recommended Resources wiki page for a quick list of resources available now for secure .NET development:
  
__NOTOC__
+
; [[OWASP .NET Recommended Resources| OWASP .NET Recommended Resources]]
<headertabs/>
+
 
<br />
+
== Security Guides ==
'''Remember to add the tag: <nowiki>[[Category:OWASP .NET Project]]</nowiki> to the end of new articles so that they're properly categorized.'''
+
The following sections include content that can be useful for a specific role in securing .NET web applications and services:
<br />
+
 
== Joining the Project==
+
; [[.NET Security Cheat Sheet| .NET Security Cheat Sheet]]
 +
; [[.NET Security for Architects| .NET Security for Architects]]
 +
; [[.NET Security for Developers| .NET Security for Developers]]
 +
; [[.NET Security for IT Professional| .NET Security for IT Professionals]]
 +
; [[.NET Penetration Testing| .NET Penetration Testing]]
 +
; [[.NET Incident Response| .NET Incident Response]]
 +
 
 +
== Active Projects ==
 +
; [[OWASP .NET Active Projects]]
 +
 
 +
== Research Projects ==
 +
; [[OWASP .NET Research]]
 +
 
 +
=Joining the Project=
 +
==Get involved==
 +
To get involved join the mailing list (see [[How to join Owasp.Net Mailing List]])
 +
==Project Roadmap==
 
The project's high level roadmap can be found at the [[OWASP .Net Project Roadmap]]
 
The project's high level roadmap can be found at the [[OWASP .Net Project Roadmap]]
 
* Please submit your ideas for articles, content and general feedback to the [[.NET Project Wishlist]].
 
* Please submit your ideas for articles, content and general feedback to the [[.NET Project Wishlist]].
 
* If you'd like to contribute:
 
* If you'd like to contribute:
 
# visit the [[Tutorial]],  
 
# visit the [[Tutorial]],  
# join the mailing list (see [[How to join Owasp.Net Mailing List]])
 
 
# and pick a topic from the [[.NET Project Wishlist]] or suggest a new topic
 
# and pick a topic from the [[.NET Project Wishlist]] or suggest a new topic
 
# or check out our active projects list, [[OWASP .NET Active Projects]], and join one today.
 
# or check out our active projects list, [[OWASP .NET Active Projects]], and join one today.
 +
<br />
 +
'''Remember to add the tag: <nowiki>[[Category:OWASP .NET Project]]</nowiki> to the end of new articles so that they're properly categorized.'''
 +
<br />
 +
=Project Tracker=
 +
==Timeline==
 +
* March 2014 Project Roadmap
 +
* February 2014 Project Reboot
 +
* May 2009 - Updated tabs, added content recommended by Andre Gironda
 +
* March 2009 - Converted to new tab format, added Project Tracker tab
 +
* February 2009 Added [[OWASP .NET Research]] and removed [[OWASP .NET Vulnerability Research]] from project page.
 +
* February 2009 Added [[.NET Framework Rootkits]] to [[OWASP .NET Research]]
 +
==Roadmap==
 +
You can find the project roadmap here: [[OWASP .Net Project Roadmap]]
 +
 +
=FAQs=
 +
==Questions and answers==
 +
; Q1: Why are there so many empty projects?
 +
; A1: Because YOU haven't worked on them! We need your help!
 +
 +
=Volunteers=
 +
==Get involved==
 +
To get involved join the mailing list (see [[How to join Owasp.Net Mailing List]])
 +
==Already involved==
 +
The OWASP .NET project is developed by a worldwide team of volunteers. The original primary contributor is Daniel Brzozowski. Currently the team of advisers includes:
 +
 +
* Jeff Knutson
 +
* Robert Ginsburg
 +
* Kyle Johnson
 +
* Troy Hunt
 +
* Dinis Cruz
 +
* Shamir Charania
 +
* Mohammed Al-Taweel
 +
* Daniel Brzozowski
 +
* Bill Sempf
 +
* Barry Dorrans (Microsoft)
 +
* Reid Borsuk (Microsoft)
 +
 +
We need more help. Please join the low volume mailing list at [https://lists.owasp.org/mailman/listinfo/owasp-dotnet this address] to get project announcements.
 +
 +
= Road Map and Getting Involved =
 +
==What we're doing==
 +
The themes of the .NET Project include:
 +
* Deep, rich guidance for .NET developers in using the security features of .NET
 +
* Guidance for use of OWASP components that are designed for use with .NET
 +
* Information about working with and on OWASP tools built using .NET
 +
==Roadmap==
 +
The [[OWASP .Net Project Roadmap]] has the latest guidance for the project's future. As with all Wiki documents, it is a work in progress.
 +
 +
We need help, especially with content creation and identifying OWASP projects that are .NET related. If you would like to get involved, please join the [https://lists.owasp.org/mailman/listinfo/owasp-dotnet mailing list] and introduce yourself, or email [https://www.owasp.org/index.php/User:Bill_Sempf Bill Sempf]
 +
 +
__NOTOC__ <headertabs />
  
[[Category:OWASP Project|.NET Project]]
+
[[Category:OWASP Project]] [[Category:OWASP_Builders]] [[Category:OWASP_Defenders]] [[Category:OWASP_Document]] [[Category:Technologies]]
[[Category:OWASP Document]]
+
[[Category:OWASP Download]]
+
[[Category:Language]]
+

Latest revision as of 20:17, 10 April 2014

[edit]

OWASP Project Header.jpg

OWASP .NET Project

The OWASP.NET Project is the clearinghouse for all information related to building secure .NET web applications and services. The goal of the project is to provide deep content for all roles related to .NET web applications and services.

The focus of the project is on guidance for developers using the framework, OWASP Components that use .NET, and participation in OWASP projects that

Community content is key to security information. The project depends on content from developers throughout the .NET world. Check out the OWASP .Net Project Roadmap for ways to get involved.

Purpose

  • Provide deep, rich guidance for .NET developers in using the security features of .NET
  • Create guidance for use of OWASP components that are designed for use with .NET
  • Focus on information about working with and on OWASP tools built using .NET

Licensing

OWASP .NET Project is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.

What is the OWASP .NET Project?

  • Deep, rich guidance for .NET developers in using the security features of .NET
  • Guidance for use of OWASP components that are designed for use with .NET
  • Information about working with and on OWASP tools built using .NET

Project Leader

Bill Sempf


Related Projects


News and Events

  • [30 Mar 2014] Project roadmap
  • [5 Feb 2014] Project reboot

Mailing List

OWASP .NET Mailing List

Classifications

Owasp-incubator-trans-85.png Owasp-builders-small.png
Owasp-defenders-small.png
Cc-button-y-sa-small.png
Project Type Files DOC.jpg

Recommended Resources

Check out the OWASP .NET Recommended Resources wiki page for a quick list of resources available now for secure .NET development:

OWASP .NET Recommended Resources

Security Guides

The following sections include content that can be useful for a specific role in securing .NET web applications and services:

.NET Security Cheat Sheet
.NET Security for Architects
.NET Security for Developers
.NET Security for IT Professionals
.NET Penetration Testing
.NET Incident Response

Active Projects

OWASP .NET Active Projects

Research Projects

OWASP .NET Research

Get involved

To get involved join the mailing list (see How to join Owasp.Net Mailing List)

Project Roadmap

The project's high level roadmap can be found at the OWASP .Net Project Roadmap

  • Please submit your ideas for articles, content and general feedback to the .NET Project Wishlist.
  • If you'd like to contribute:
  1. visit the Tutorial,
  2. and pick a topic from the .NET Project Wishlist or suggest a new topic
  3. or check out our active projects list, OWASP .NET Active Projects, and join one today.


Remember to add the tag: [[Category:OWASP .NET Project]] to the end of new articles so that they're properly categorized.

Timeline

Roadmap

You can find the project roadmap here: OWASP .Net Project Roadmap

Questions and answers

Q1
Why are there so many empty projects?
A1
Because YOU haven't worked on them! We need your help!

Get involved

To get involved join the mailing list (see How to join Owasp.Net Mailing List)

Already involved

The OWASP .NET project is developed by a worldwide team of volunteers. The original primary contributor is Daniel Brzozowski. Currently the team of advisers includes:

  • Jeff Knutson
  • Robert Ginsburg
  • Kyle Johnson
  • Troy Hunt
  • Dinis Cruz
  • Shamir Charania
  • Mohammed Al-Taweel
  • Daniel Brzozowski
  • Bill Sempf
  • Barry Dorrans (Microsoft)
  • Reid Borsuk (Microsoft)

We need more help. Please join the low volume mailing list at this address to get project announcements.

What we're doing

The themes of the .NET Project include:

  • Deep, rich guidance for .NET developers in using the security features of .NET
  • Guidance for use of OWASP components that are designed for use with .NET
  • Information about working with and on OWASP tools built using .NET

Roadmap

The OWASP .Net Project Roadmap has the latest guidance for the project's future. As with all Wiki documents, it is a work in progress.

We need help, especially with content creation and identifying OWASP projects that are .NET related. If you would like to get involved, please join the mailing list and introduce yourself, or email Bill Sempf

Subcategories

This category has only the following subcategory.

.

  • [×] .NET(empty)

Pages in category "OWASP .NET Project"

The following 79 pages are in this category, out of 79 total.

'

.

2

A

A cont.

B

C

D

E

F

H

I

J

L

M

O

O cont.

P

R

S

T

V

W

Media in category "OWASP .NET Project"

The following 2 files are in this category, out of 2 total.