Open Web Application Security Project (OWASP)

The Open Web Application Security Project (OWASP) is an open community organization that is dedicated to improving the security of application software. All of the OWASP information, tools, documents, and forums are free to anyone interested in learning about web-based security and how to improve it within their environments.

The OWASP Top Ten Project provides a list of web vulnerabilities, as well as the remediation steps required to eliminate them.

OWASP also provides an Application Security Verification Standard (ASVS) document, which outlines a standard that can be implemented to test for web application security vulnerabilities.

For additional information on the Top Ten Project and the ASVS document, visit the OWASP website at https://www.owasp.org/index.php/Main_Page.