Difference between revisions of "OWASP O2 Platform"

From OWASP
Jump to: navigation, search
(Looking into Fortify for my new job - wondering if using O2 will simplify the burden of Fortify - noticed a stale URL so I fixed it for ya Dinis. Hope all's well - Neil)
(41 intermediate revisions by 5 users not shown)
Line 1: Line 1:
'''NOTE: this OWASP section of O2 is still under very heavy construction, so for now, please see  http://www.o2-ounceopen.com for the latest O2-related updates and downloads'''
+
= Main =
 +
Welcome to OWASP O2 Platform project.
  
==== Home Page ====
+
''The O2 platform represents a new paradigm for how to perform, document and distribute Web Application security reviews.
  
{| width="100%"
+
O2 is designed to '''Automate Security Consultants Knowledge and Workflows''' and to '''Allow non-security experts to access and consume Security Knowledge'''''
|-
+
! width="50%" | About O2
+
! O2Platform on Twitter
+
|- valign="top"
+
|{{:OWASP_O2_Platform/WIKI/HomePage}}
+
  
| <!-- Twitter Box -->
+
== DOWNLOAD O2 ==
{|
+
'''Latest Release: September 2012 - v4.3'''[https://dl.dropbox.com/u/81532342/O2Platform%20Tools/O2%20Platform%20-%20Main%20O2%20Gui%20v4.3.exe O2 Platform - Main O2 Gui v4.3.exe] - this is a '''Windows Stand-Alone exe''' which will create a number of folders on first load (dependencies and temp files)
|-
+
| style="border: 1px solid rgb(204, 204, 204); width: 100%; font-size: 95%; color: rgb(0, 0, 0); background-color: rgb(236, 236, 236);" |
+
<twitter>90148956</twitter>
+
'''[http://twitter.com/O2Platform Follow O2Platform on Twitter!]''' or use the '''[http://search.twitter.com/search?q=O2Platform #O2Platform]''' hashtag for your tweets
+
  
| style="width: 110px; font-size: 95%; color: rgb(0, 0, 0);" |
+
[[Image:O2Download_Button_6_22_2010_7_07_03_PM_tmp9E0.jpg| link=https://dl.dropbox.com/u/81532342/O2Platform%20Tools/O2%20Platform%20-%20Main%20O2%20Gui%20v4.3.exe]]
|}
+
<!-- End Banner -->
+
  
 +
'''Requirements:'': Windows and .NET Framework 4.0
  
|}
+
'''Source code''': The source code for the O2 Platform is availabled for download at GutHub:
  
 +
'''Git Hub repositories'''
 +
* Installer: https://github.com/o2platform/O2_Install/zipball/master
 +
* FluentSharp: https://github.com/o2platform/O2.FluentSharp
 +
* O2 Platform Projects: https://github.com/o2platform/O2.Platform.Projects
 +
* O2 Platform Scripts: https://github.com/o2platform/O2.Platform.Scripts
 +
* Misc and Legacy projects: https://github.com/o2platform/O2.Platform.Projects.Misc_and_Legacy
  
==== "I'm lost! Where to I start? ====
+
==O2-Platform.com website (external to owasp)==  
  
{{:OWASP_O2_Platform/WIKI/Where_to_start}}
+
For more details on the O2 Platform see  http://o2platform.wordpress.com website which currently being used to host the help files and documentation pages.
  
==== Sub-Projects ====
+
[[Image:10_4_2010_1_54_50_PM_tmp472.jpg | link=http://o2platform.wordpress.com|200px|border=1]]
  
* [[OWASP O2 Platform/Sub-Projects/OSSAD| OSSAD - One Security Static Analyzer per Developer]]
+
=== Mailing list===
 +
The best place to keep updated with the lastest news and developers it to subscribe to the [https://lists.owasp.org/mailman/listinfo/owasp-o2-platform OWASP O2 Platform Mailing list] (you can read its [https://lists.owasp.org/mailman/listinfo/owasp-o2-platform archives here] )
  
==== Supported Technologies ====
+
<!---- ====Project Details====
 +
{{:OWASP O2 Platform Project - Project Identification}} --->
  
* [[OWASP O2 Platform/Spring Framework/MVC|Spring Framework (MVC)]]
+
= Project About =
 +
{{:Projects/OWASP O2 Platform Project | Project About}}
  
==== O2 Documentation ====
+
__NOTOC__
 +
<headertabs />
  
{{:OWASP_O2_Platform/WIKI/O2_Documentation}}
 
  
==== Research ====
+
[[Category:OWASP_O2_Platform|O2 Platform]]
{{:OWASP_O2_Platform/Research}}
+
==== Mailing list, O2 Presentations ====
+
 
+
You can join the O2 Platform Mailing list [https://lists.owasp.org/mailman/listinfo/owasp-o2-platform using this form] or you can read its [https://lists.owasp.org/mailman/listinfo/owasp-o2-platform archives here]. After being subscribed you can email this list using the owasp-o2-platform (at) lists.owasp.org email address
+
 
+
* OWASP AppSec DC Conference, USA (13-Nov-09) - "OWASP O2 Platform - Open Platform for automating application security knowledge and workflows", Dinis Cruz
+
:''In this talk Dinis Cruz will show the OWASP O2 Platform which is an open source toolkit specifically designed for developers and security consultants to be able to perform quick, effective and thorough 'source-code-driven' application security reviews. The OWASP O2 Platform (http://www.owasp.org/index.php/OWASP_O2_Platform) consumes results from the scanning engines from Ounce Labs, Microsoft's CAT.NET tool, FindBugs, CodeCrawler and AppScan DE, and also provides limited support for Fortify and OWASP WebScarab dumps. In the past, there has been a very healthy skepticism on the usability of Source Code analysis engines to find commonly found vulnerablities in real world applications. This presentation will show that with some creative and powerful tools, it IS possible to use O2 to discover those issues. This presentation will also show O2's advanced support for Struts and Spring MVC.''
+
* OWASP AppSec Brazil Conference
+
* OWASP AppSec Ireland
+
* OWASP London Chapter
+
* UK Developer Event (Microsoft Oxford Research Campus)
+
* OWASP AppSec Poland Conference
+
* Confidence Conference (Poland)
+
 
+
 
+
==== External Blogs & Media References ====
+
 
+
{{:OWASP_O2_Platform/WIKI/External_References}}
+
 
+
 
+
==== Project Details  ====
+
 
+
{{:OWASP O2 Platform Project - Project Identification}}
+
 
+
 
+
[[Category:OWASP_O2_Platform]]
+

Revision as of 19:10, 14 October 2012

[edit]

Welcome to OWASP O2 Platform project.

The O2 platform represents a new paradigm for how to perform, document and distribute Web Application security reviews.

O2 is designed to Automate Security Consultants Knowledge and Workflows and to Allow non-security experts to access and consume Security Knowledge

DOWNLOAD O2

Latest Release: September 2012 - v4.3: O2 Platform - Main O2 Gui v4.3.exe - this is a Windows Stand-Alone exe which will create a number of folders on first load (dependencies and temp files)

O2Download Button 6 22 2010 7 07 03 PM tmp9E0.jpg

'Requirements:: Windows and .NET Framework 4.0

Source code: The source code for the O2 Platform is availabled for download at GutHub:

Git Hub repositories

O2-Platform.com website (external to owasp)

For more details on the O2 Platform see http://o2platform.wordpress.com website which currently being used to host the help files and documentation pages.

border=1

Mailing list

The best place to keep updated with the lastest news and developers it to subscribe to the OWASP O2 Platform Mailing list (you can read its archives here )


PROJECT INFO
What does this OWASP project offer you?
RELEASE(S) INFO
What releases are available for this project?
what is this project?
Name: OWASP O2 Platform Project (home page)
Purpose: Collection of Open Source modules that help Web Application Security Professionals to maximize their efforts and quickly obtain high visibility into an application's security profile.

NOTE: most of the O2 Platform content is still on the external website
www.o2platform.com

License: Apache License, Version 2.0
who is working on this project?
Project Leader(s):
how can you learn more?
Project Pamphlet: Not Yet Created
Project Presentation:
Mailing list: Mailing List Archives
Project Roadmap: View
Main links:
Key Contacts
  • Contact the GPC to report a problem or concern about this project or to update information.
current release
O2 Platform v4.0 beta - 04/April/2012 - (download)
Release description: N/A
Rating: Yellow button.JPG Not Reviewed - Assessment Details
last reviewed release
Not Yet Reviewed


other releases