OWASP releases Application Security Verification Standard for developers, security pros, and buyers(情報元のブックマーク数)
OWASPがアプリケーションセキュリティの検証標準を出したそうです。
レベルによってどの程度までやるか、とかが記載されていてASVS Level2までとか言いやすくなってるみたい。これはィィ!
"Now there's an open industry standard for Web application and Web service security: The Open Web Application Security Project (OWASP) Foundation has released the Application Security Verification Standard (ASVS).
OWASP releases Application Security Verification Standard for developers, security pros, and buyers