Wstg: addition to "The Web Security Testing Framework"

Created on 6 May 2020  路  8Comments  路  Source: OWASP/wstg

What would you like added?
It's an addition to an existing topic? "The Web Security Testing Framework"
As I was the original author of the section, I didn't quite complete the section. I would like to add more information based on existing section. Refer here.
https://github.com/OWASP/wstg/blob/master/document/3-The_OWASP_Testing_Framework/0-The_Web_Security_Testing_Framework.md

Here is my proposed plan.

  1. Add contents for each industry methodology for the overview, methodology, and applicable tips
  2. Add other methodology, FedRAMP penetration
  3. Complete the exisitng "NIST800-115" contents (NIST 800-171, 800-145, 800-53, as references)

Would you like to be assigned to this issue?
I will submit a PR to add the proposed content.

  • [x] Assign me, please!
new

Most helpful comment

Hi @Hsiang-Chih
I will provide you with the steps to submit your work in the most frictionless fashion (hopefully):

  1. Delete your fork and create a new fork of the project.
  2. Create a new branch
  3. Go to the directory -> wstg/document/3-The_OWASP_Testing_Framework/1-... It's going to be on the following URL once you fork: https://github.com/Hsiang-Chih/wstg/blob/master/document/3-The_OWASP_Testing_Framework/1-Penetration_Testing_Methodologies.md
  4. Edit the file you're targeting and paste your content instead of the current existent content.
  5. Come to the main repository OWASP/wstg and create a Pull Request.

Hope this helps.

All 8 comments

Hi @Hsiang-Chih ! Thank you for reaching out and putting effort on this section of the guide. We'd love to receive your new content!
The section you referred to is 3.1 - Penetration Testing Methodologies. Let us know how we can land a hand if needed :smile:

Thank you. working on it.

Can you help to assign this issue to me again? My mistake wrongly clicked the "assign" button.

@Hsiang-Chih are you going to be able to tackle this?

Yes working on it. Thanks to remind me again

@kingthorin I have done the updated version. How can I submit for review? refer to the attached
1-Penetration_Testing_Methodologies.txt

Hi @Hsiang-Chih
I will provide you with the steps to submit your work in the most frictionless fashion (hopefully):

  1. Delete your fork and create a new fork of the project.
  2. Create a new branch
  3. Go to the directory -> wstg/document/3-The_OWASP_Testing_Framework/1-... It's going to be on the following URL once you fork: https://github.com/Hsiang-Chih/wstg/blob/master/document/3-The_OWASP_Testing_Framework/1-Penetration_Testing_Methodologies.md
  4. Edit the file you're targeting and paste your content instead of the current existent content.
  5. Come to the main repository OWASP/wstg and create a Pull Request.

Hope this helps.

It helps. I have submitted the pull request for your review. thanks.

Was this page helpful?
0 / 5 - 0 ratings

Related issues

ThunderSon picture ThunderSon  路  5Comments

kingthorin picture kingthorin  路  9Comments

victoriadrake picture victoriadrake  路  5Comments

Abhi-M picture Abhi-M  路  8Comments

johanna-a picture johanna-a  路  4Comments