Explore the world
of cyber security

Driven by volunteers, OWASP resources are accessible for everyone.



Quick access to our highlighted
flagship resources
See all flagship resources(15)
Documentation
Top Ten
The reference standard for the most critical web application security risks
Documentation
ASVS
Application security verification standard
Documentation
Cheat Sheets
List of crucial app security information
Have an idea for a project?
Take advantage of our resources and
let it grow with OWASP.



Upcoming at OWASP


Trustwave Transfers ModSecurity Custodianship to OWASP

image

Harold Blankenship, January 9, 2024

After serving as its steward for over a decade, Trustwave has agreed to transfer the reins of the renowned open-source web application firewall (WAF) engine, ModSecurity, to the Open Worldwide Application Security Project (OWASP). This landmark move promises to inject fresh energy and perspectives into the project, ensuring its continued evolution as a vital line of defense for countless websites worldwide.

The transition, commencing on January 25th, 2024, isn’t just about changing hands. OWASP, the leading open community dedicated to application security, is already responsible for the Core Rule Set, the dominant WAF rule set on the market. By formally assuming custodianship of the entire project, OWASP can now steer ModSecurity’s development with a holistic view, fostering even tighter integration between the core rule set and the underlying framework.

...read more


Recent OWASP News & Opinions

Upcoming Conferences