The OWASP Top 10 Web Application Security Risks for 2010 are:

  • A1: Injection
  • A2: Cross-Site Scripting (XSS)
  • A3: Broken Authentication and Session Management
  • A4: Insecure Direct Object References
  • A5: Cross-Site Request Forgery (CSRF)
  • A6: Security Misconfiguration
  • A7: Insecure Cryptographic Storage
  • A8: Failure to Restrict URL Access
  • A9: Insufficient Transport Layer Protection
  • A10: Unvalidated Redirects and Forwards
Share
Related Documents
  1. OWASP Testing Guide (2075)
  2. [Free] WebGoat : Security Testing Tool (2022)
  3. New Advanced SQL Injection For Advanced Security Testing (1707)
  4. Steps to do security testing (1613)
  5. Password Recovery for Security Testing (1358)
  6. Security Testing Reference : SQL Injection (2158)
  7. [Ebook] Linux 101 Hacks (2336)
  8. Using JTest for Security Testing (1875)
  9. [Free] Security Software Testing Suite (SSTS) : Application-based security testing (1519)
  10. [Ebook] Hacker Attack (2380)
  11. [Ebook] Google Hacks : 2nd Edition (2268)
  12. How to Secure CXF Web Services with SSL/TLS and WS-Security (1319)
  13. Security Testing Reference : Cross-Site Scripting (XSS) (2043)
  14. Putting Security Into Your Virtual World (536)
  15. CGISecurity : Web Server and Application Database website (662)
  16. [Paid] Sunbelt Network Security Inspector : Network Vulnerability Assessment Scanning (1272)
  17. Types of Web Security Testing? (1054)
  18. 2010-10-27, SecureWorld Expo @ USA (1365)
  19. [Video] Software Security Testing: Strengthening Your Defense Strategy (762)
  20. [Free] x5s : XSS security testing assistant tool (1734)