Contents

The Open Web Application Security Project (OWASP) is a 501(c)(3) worldwide not-for-profit charitable organization focused on improving the security of software.


Injection

Injection


Cross Site Scripting (XSS)

Cross Site Scripting (XSS)


Broken authentication and Session Management

Broken authentication and Session Management


Insecure Direct Object References

Insecure Direct Object References


Cross Site Request Forgery (CSRF)

Cross Site Request Forgery (CSRF)


Security Misconfiguration

Security Misconfiguration


Insecure Cryptographic Storage

Insecure Cryptographic Storage


Failure To Restrict URL Access

Failure To Restrict URL Access


Insufficient Transport Layer Protection

Insufficient Transport Layer Protection


Unvalidated Redirects and Forwards

Unvalidated Redirects and Forwards


Helpful URL's

Category Description URL
Reference OWASP Top 10 https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project