« Bypassing OWASP ESAPI XSS Protection inside Javascript | Main | AppSec DC 2009 »

WASC Threat Classification v2 updates

We're nearing the completion of the WASC Threat Classification v2 (2 sections left!) and have added the following new sections since my last couple of posts.

We've also heavily updated the following sections

Additionally I've added the following sections outlining The Threat Classification's Evolution, as well as a section on Using the Threat Classification.

A more complete picture can be found on our working wiki at http://projects.webappsec.org/Threat-Classification-Working


Feed You can follow this conversation by subscribing to the comment feed for this post.

All Comments are Moderated and will be delayed!