OWASP / www-project-integration-standards

OWASP Foundation Web Respository
27 stars 16 forks source link

CRE MVP #22

Closed northdpole closed 3 years ago

northdpole commented 4 years ago
  1. select 3 sources: ASVS, Cheatsheets and WSTG
  2. pick small selection in ASVS, session mgmt and login functionality
  3. mapping file is yaml of the proposed format here
  4. Build a CRE updater that reads mapping file and builds CRE-Source Relations and creates a markdown CRE table
  5. Create CREs for a small selection of 2.
  6. Link CREs from 5. to tool CRE mappings
  7. Auto produce a visualization of complete CRE documents with CRE metadata, details and links
ThunderSon commented 4 years ago

Since we already have the Error logging ones, we can start off with that, and then have the session management ones. We just need to add testing CRE IDs to the lists.

northdpole commented 3 years ago

MVP is here http://www.opencre.org/ and here https://github.com/owaSP/common-requirement-enumeration