pwndoc-ng / pwndoc-ng-database

Collaborative vulnerability database for Pentesting & Pwndoc-Ng
15 stars 5 forks source link

OWASP MASVS #3

Open CarlesLlobet opened 1 year ago

CarlesLlobet commented 1 year ago

Hi there!

Great project. It would be great to also map all the Mobile vulnerabilities from OWASP's MASVS.

How were the ASVS json's generated? Maybe I could try to help generate some for Mobile.

JulianGR commented 10 months ago

whoops sorry for late reply, wasn't on Watch all activity from this repo

It could be great, why not! I started building first from the WSTG, so probably you'd be better off starting from MSTG:

  1. Building a simple Excel file with structure similar to the Excel file from https://github.com/JulianGR/OWASP_WSTG_ASVS
  2. Add mobile vulnerabilities that you typically include in real assessments
  3. Ping again to work together so that the python script can be adapted to process your Excel