pwndoc-ng / pwndoc-ng-database

Collaborative vulnerability database for Pentesting & Pwndoc-Ng
13 stars 5 forks source link

OWASP MASVS #3

Open CarlesLlobet opened 11 months ago

CarlesLlobet commented 11 months ago

Hi there!

Great project. It would be great to also map all the Mobile vulnerabilities from OWASP's MASVS.

How were the ASVS json's generated? Maybe I could try to help generate some for Mobile.

JulianGR commented 5 months ago

whoops sorry for late reply, wasn't on Watch all activity from this repo

It could be great, why not! I started building first from the WSTG, so probably you'd be better off starting from MSTG:

  1. Building a simple Excel file with structure similar to the Excel file from https://github.com/JulianGR/OWASP_WSTG_ASVS
  2. Add mobile vulnerabilities that you typically include in real assessments
  3. Ping again to work together so that the python script can be adapted to process your Excel