Difference between revisions of "OWASP Summer 0f Code 2008 : Selection"

From OWASP
Jump to: navigation, search
(Majority vote - First round)
(Majority vote - Second round)
Line 172: Line 172:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#OpenPGP Extensions for HTTP - Enigform and mod_openpgp|OpenPGP Extensions for HTTP - Enigform and mod_openpgp]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#OpenPGP Extensions for HTTP - Enigform and mod_openpgp|OpenPGP Extensions for HTTP - Enigform and mod_openpgp]]'''
Line 190: Line 190:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |  
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#OWASP Backend Security Project|OWASP Backend Security Project]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#OWASP Backend Security Project|OWASP Backend Security Project]]'''
Line 199: Line 199:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |  
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#P003/P013 - OWASP Application Security Tool Benchmarking Environment and Site Generator refresh.=|OWASP Application Security Tool Benchmarking Environment and Site Generator refresh]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#P003/P013 - OWASP Application Security Tool Benchmarking Environment and Site Generator refresh.=|OWASP Application Security Tool Benchmarking Environment and Site Generator refresh]]'''
Line 208: Line 208:
 
| align="CENTER" | Mark Roxberry
 
| align="CENTER" | Mark Roxberry
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |  
+
| align="CENTER" | Dinis Cruz
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Teachable Static Analysis Workbench|Teachable Static Analysis Workbench]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Teachable Static Analysis Workbench|Teachable Static Analysis Workbench]]'''
Line 217: Line 217:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#P025 OWASP Positive Security Project|OWASP Positive Security Project]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#P025 OWASP Positive Security Project|OWASP Positive Security Project]]'''
Line 226: Line 226:
 
| align="CENTER" | Wagner Elias
 
| align="CENTER" | Wagner Elias
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#GTK+ GUI for w3af project|GTK+ GUI for w3af project]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#GTK+ GUI for w3af project|GTK+ GUI for w3af project]]'''
Line 235: Line 235:
 
| align="CENTER" | Andres Riancho
 
| align="CENTER" | Andres Riancho
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Source Code Review OWASP Projects]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Source Code Review OWASP Projects]]'''
Line 244: Line 244:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | tbd
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#OWASP Interceptor Project - 2008 Update|OWASP Interceptor Project - 2008 Update]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#OWASP Interceptor Project - 2008 Update|OWASP Interceptor Project - 2008 Update]]'''
Line 253: Line 253:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | tbd
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Skavenger|Skavenger]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Skavenger|Skavenger]]'''
Line 262: Line 262:
 
| align="CENTER" | Rogan Dawes
 
| align="CENTER" | Rogan Dawes
 
| align="CENTER" | Achim Hoffmann
 
| align="CENTER" | Achim Hoffmann
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#SQL Injector Benchmarking Project (SQLiBENCH)|SQL Injector Benchmarking Project (SQLiBENCH)]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#SQL Injector Benchmarking Project (SQLiBENCH)|SQL Injector Benchmarking Project (SQLiBENCH)]]'''
Line 271: Line 271:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#P017 - OWASP AppSensor - Detect and Respond to Attacks from Within the Application|OWASP AppSensor - Detect and Respond to Attacks from Within the Application]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#P017 - OWASP AppSensor - Detect and Respond to Attacks from Within the Application|OWASP AppSensor - Detect and Respond to Attacks from Within the Application]]'''
Line 280: Line 280:
 
| align="CENTER" | Eric Sheridan
 
| align="CENTER" | Eric Sheridan
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#The Owasp Orizon Project|Owasp Orizon Project]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications - Need Futher Clarifications#The Owasp Orizon Project|Owasp Orizon Project]]'''
Line 298: Line 298:
 
| align="CENTER" | Neal Kirschner  
 
| align="CENTER" | Neal Kirschner  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | tbd
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#OWASP AntiSamy .NET| OWASP AntiSamy .NET]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#OWASP AntiSamy .NET| OWASP AntiSamy .NET]]'''
Line 307: Line 307:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#Python Static Analysis|Python Static Analysis]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#Python Static Analysis|Python Static Analysis]]'''
Line 316: Line 316:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#OWASP Classic ASP Security Project|OWASP Classic ASP Security Project]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#OWASP Classic ASP Security Project|OWASP Classic ASP Security Project]]'''
Line 325: Line 325:
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | Not applicable
 
|-
 
|-
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#OWASP Live CD 2008 Project|OWASP Live CD 2008 Project]]'''
 
| height="18" bgcolor="#FFFFFF" align="CENTER" valign="MIDDLE" | '''[[OWASP Summer of Code 2008 Applications#OWASP Live CD 2008 Project|OWASP Live CD 2008 Project]]'''
Line 334: Line 334:
 
| align="CENTER" | Dustin Dykes
 
| align="CENTER" | Dustin Dykes
 
| align="CENTER" |  
 
| align="CENTER" |  
| align="CENTER" |
+
| align="CENTER" | tbd
 
|-
 
|-
 
|}
 
|}

Revision as of 12:13, 19 May 2008

This page contains the applications, the Jury's evaluation and the projects sponsored on the OWASP Summer of Code 2008.

Contents

Individual and Global OWASP Board Member’s Assessment

Applications Assessment Type Jury to Edit SoC's 2008 Results
Majority vote - 1st round Majority vote - 1st round - Finalized Majority vote - 1st round - Finalized
Majority vote/Further clarifications were required - 2nd round Majority vote - 2nd round - Finalized Majority vote - 2nd round - Finalized
Selection criteria vote - 3rd round Selection criteria vote - 3rd round - Finalized Selection criteria vote - 3rd round - Finalized

OWASP Summer of Code 2008 Applications - Final Assessment

Majority vote - First round

Application Applicant's Name Assessment Selection Sponsorship Reviewer 1 Reviewer 2 Reviewer 3

OWASP Board

OWASP Code review guide, V1.1 Eoin Keary By vote YES 5.000 US$ tbd
The Ruby on Rails Security Guide v2 Heiko Webers By vote YES 2.500 US$ tbd
OWASP UI Component Verification Project (a.k.a. OWASP JSP Testing Tool) Jason Li By vote YES 2.500 US$ Not applicable
Internationalization Guidelines and OWASP-Spanish Project Juan Carlos Calderon By Vote YES 5.000 US$ Not applicable
OWASP Application Security Desk Reference (ASDR) Leonardo Cavallari Militelli By vote YES 5.000 US$ Jeff Williams (TBC)
OWASP .NET Project Leader Mark Roxberry By vote YES 2.500 US$ Eoin Keary Dinis Cruz
OWASP Education Project Martin Knobloch By vote YES 2.500 US$ tbd
The OWASP Testing Guide v3 Matteo Meucci By vote YES 5.000 US$ tbd
OWASP Application Security Verification Standard Mike Boberski By vote YES 2.500 US$ Jeff Williams Not applicable
Online code signing and integrity verification service for open source community (OpenSign Server) Phil Potisk and Richard Conway By vote YES 2.500 US$ Not applicable
Securing WebGoat using ModSecurity Stephen Evans By vote YES 2.500 US$ Ivan Ristic & Breach Group Not applicable
OWASP Book Cover & Sleeve Design LXstudios By vote YES 6.000 US$ Dinis Cruz
OWASP Individual & Corporate Member Packs, Conference Attendee Packs Brief LXstudios By vote YES 2.000 US$ Dinis Cruz

Majority vote - Second round

Application Applicant's Name Assessment Selection Sponsorship Reviewer 1 Reviewer 2 Reviewer 3

OWASP Board

OWASP Access Control Rules Tester Andrew Petukhov By vote YES 2.500 US$ Not applicable
OpenPGP Extensions for HTTP - Enigform and mod_openpgp Arturo 'Buanzo' Busleiman By vote YES 2.500 US$ Mark Roxberry Dinis Cruz
OWASP-WeBekci Project Bunyamin Demir By vote YES 2.500 US$ Not applicable
OWASP Backend Security Project Carlo Pelliccioni By vote YES 2.500 US$ Not applicable
OWASP Application Security Tool Benchmarking Environment and Site Generator refresh Dmitry Kozlov By vote YES 5000 US$ Mark Roxberry Dinis Cruz
Teachable Static Analysis Workbench Dmitry Kozlov, Igor Konnov By vote YES 5000 US$ Not applicable
OWASP Positive Security Project Eduardo Vianna de Camargo Neves By vote YES 2.500 US$ Wagner Elias Not applicable
GTK+ GUI for w3af project Facundo Batista By vote YES 2.500 US$ Andres Riancho Not applicable
OWASP Summer of Code 2008 Applications - Need Futher Clarifications#Source Code Review OWASP Projects James Walden By vote YES 2.500 US$ tbd
OWASP Interceptor Project - 2008 Update Justin Derry By vote YES 2.500 US$ tbd
Skavenger Matthias Rohr By vote YES 2.500 US$ Rogan Dawes Achim Hoffmann Not applicable
SQL Injector Benchmarking Project (SQLiBENCH) Mesut Timur & Bedirhan Urgun By vote YES 2.500 US$ Not applicable
OWASP AppSensor - Detect and Respond to Attacks from Within the Application Michael Coates By vote YES 2.500 US$ Eric Sheridan Not applicable
Owasp Orizon Project Paolo Perego By vote YES 2.500 US$ Eoin Keary Dinis Cruz
OWASP Corporate Application Security Rating Guide Parvathy Iyer By vote YES 2.500 US$ Neal Kirschner tbd
OWASP AntiSamy .NET Arshan Dabirsiaghi By vote YES 2.500 US$ Not applicable
Python Static Analysis Georgy Klimov By vote YES 2.500 US$ Not applicable
OWASP Classic ASP Security Project Juan Carlos Calderon By vote YES 2.500 US$ Not applicable
OWASP Live CD 2008 Project Matt Tesauro By vote YES 2.500 US$ Dustin Dykes tbd

Majority vote - Third round

Application Applicant's Name Assessment Selection Sponsorship Reviewer 1 Reviewer 2 Reviewer 3

OWASP Board

OWASP Code Crawler Alessio Marziali By selection criteria YES 2.500 US$ Eoin Keary Dinis Cruz Not applicable