Difference between revisions of "OWASP ASIDE Project"

From OWASP
Jump to: navigation, search
Line 1: Line 1:
 
==== Main  ====
 
==== Main  ====
  
This project is led by [[http://www.linkedin.com/pub/jing-xie/45/890/a1a| Jing Xie]] & [[User: Bill Chu|Bill Chu]]. Other major contributors include [[User:Jun Zhu|Jun Zhu]], [http://hci.sis.uncc.edu:8080/richter Heather Richter Lipford], [[User:John Melton|John Melton]] & [[User: Will Stranathan|Will Stranathan]].<br>
+
This project is led by [[http://www.linkedin.com/pub/jing-xie/45/890/a1a Jing Xie]] & [[User: Bill Chu|Bill Chu]]. Other major contributors include [[User:Jun Zhu|Jun Zhu]], [http://hci.sis.uncc.edu:8080/richter Heather Richter Lipford], [[User:John Melton|John Melton]] & [[User: Will Stranathan|Will Stranathan]].<br>
  
 
We have presented our talk [http://www.appsecusa.org/talks.html#ide Secure Programming Support in IDE] at [http://www.appsecusa.org/ AppSec USA 2011] in Minneapolis.  
 
We have presented our talk [http://www.appsecusa.org/talks.html#ide Secure Programming Support in IDE] at [http://www.appsecusa.org/ AppSec USA 2011] in Minneapolis.  

Revision as of 17:10, 22 February 2012

Main

This project is led by [Jing Xie] & Bill Chu. Other major contributors include Jun Zhu, Heather Richter Lipford, John Melton & Will Stranathan.

We have presented our talk Secure Programming Support in IDE at AppSec USA 2011 in Minneapolis.

You can view and download our presentation here.

Project About

PROJECT INFO
What does this OWASP project offer you?
RELEASE(S) INFO
What releases are available for this project?
what is this project?
Name: OWASP ASIDE Project (home page)
Purpose: ASIDE is an abbreviation for Application Security Integrated Development Environment. It is an Eclipse Plugin which is a software tool primarily designed to help students write more secure code by detecting and identifying potentially vulnerable code and providing informative fixes during the construction of programs in IDEs. ASIDE may be useful by professional developers as well.
License: N/A
who is working on this project?
Project Leader(s):
how can you learn more?
Project Pamphlet: Not Yet Created
Project Presentation: View
Mailing list: Mailing List Archives
Project Roadmap: Not Yet Created
Key Contacts
  • Contact Jun Zhu @ to contribute to this project
  • Contact Jun Zhu @ to review or sponsor this project
  • Contact the GPC to report a problem or concern about this project or to update information.
current release
Not Yet Published
last reviewed release
Not Yet Reviewed


other releases

Take a Look

ASIDE is still under development. But in order to give you a sense of what it should be doing, we have this ASIDE DEMO. You will need Adobe Flash to display it.

Download

The first publicly available ASIDE can be downloaded here. You also need to download the complementary logging facility to make ASIDE work properly. ASIDE is built upon Eclipse IDE for Java EE Developers Version 3.5+.

To make it work, please place the two jar files under the plugins folder of your Eclipse installation directory and then restart your Eclipse.

Source Code

The source code is located at https://github.com/Jing-Xie/owasp-aside

Research Activities

1. Jing Xie, Heather Richter Lipford, and Bill Chu, Evaluating Interactive Support for Secure Programming, To appear at ACM Conference on Human Factors in Computing Systems (CHI), May 2012, Austin, Texas, USA

2. Jing Xie, Bill Chu, Heather Richter Lipford, and John T. Melton, ASIDE:IDE Support for Web Application Security, In Proceedings of 27th Annual Computer Security Applications Conference (ACSAC), December 5–9, 2011, Orlando, FL, USA

3. Jing Xie, Heather Richter Lipford, and Bill Chu, Why do programmers make security errors?, In Proceedings of IEEE Symposium on Visual Languages and Human-Centric Computing (VL/HCC), September 18–22, 2011, Pittsburgh, PA, USA

4. Jing Xie, Bill Chu, and Heather Richter Lipford Interactive Support for Secure Software Development, In Proceedings of Engineering Secure Software and Systems Third International Symposium (ESSoS), February 2011, Madrid, Spain