<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; taxonomy</title>
	<atom:link href="http://www.darknet.org.uk/tag/taxonomy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>OWASP &#8211; Fortify Bug Taxonomy</title>
		<link>http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/</link>
		<comments>http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/#comments</comments>
		<pubDate>Thu, 10 Aug 2006 22:55:39 +0000</pubDate>
		<dc:creator>Darknet</dc:creator>
				<category><![CDATA[Countermeasures]]></category>
		<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[fortify]]></category>
		<category><![CDATA[open-web-application-security-project]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[taxonomy]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[web-app-sec]]></category>
		<category><![CDATA[web-application-security]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/</guid>
		<description><![CDATA[Ah at last a good solid collaborative effort to identify and categorise software vulnerabilities with a solid taxonomy and good organisation! It seems very well written too in terms that anyone familiar with software development or programming can understand. Fortify Software, which identifies and remediates software vulnerabilities, has contributed its collection of 115 types of [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Ah at last a good solid collaborative effort to identify and categorise software vulnerabilities with a solid taxonomy and good organisation!</p>
<p>It seems very well written too in terms that anyone familiar with software development or programming can understand.</p>
<blockquote><p>Fortify Software, which identifies and remediates software vulnerabilities, has contributed its collection of 115 types of software security errors to the Open Web Application Security Project (OWASP), a six-year old non-profit with almost 5,000 members whose &#8220;mission is to find and fight the causes of insecure software.&#8221;</p>
<p>The work will become part of OWASP&#8217;s Honeycomb Project.</p>
<p>This is a very good thing.</p></blockquote>
<p><a href="http://www.owasp.org/index.php/Category:OWASP_Honeycomb_Project">The OWASP Honeycomb project.</a></p>
<blockquote><p>In the Honeycomb project, OWASP is assembling the most comprehensive and integrated guide ever attempted to the fundamental building blocks of application security (principles, threats, attacks, vulnerabilities, and countermeasures) through collaborative community efforts.</p></blockquote>
<p>You can find the taxonomy itself here:</p>
<p><a href="http://vulncat.fortifysoftware.com/">The Fortify Taxonomy of Software Security Errors</a></p>
<blockquote><p>This site presents a taxonomy of software security errors developed by the Fortify Software Security Research Group together with Dr. Gary McGraw. Each vulnerability category is accompanied by a detailed description of the issue with references to original sources, and code excerpts, where applicable, to better illustrate the problem.</p></blockquote>
<p></p>
<p>Source: <a href="http://blogs.zdnet.com/open-source/index.php?p=728">Zdnet Blog</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=OWASP+%E2%80%93+Fortify+Bug+Taxonomy+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D308+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/&amp;t=OWASP+%E2%80%93+Fortify+Bug+Taxonomy" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/&amp;title=OWASP+%E2%80%93+Fortify+Bug+Taxonomy" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/&amp;title=OWASP+%E2%80%93+Fortify+Bug+Taxonomy" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/&amp;title=OWASP+%E2%80%93+Fortify+Bug+Taxonomy" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/&amp;title=OWASP+%E2%80%93+Fortify+Bug+Taxonomy" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2006%2F08%2Fowasp-fortify-bug-taxonomy%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2006/08/owasp-fortify-bug-taxonomy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

