Application Security Verification Standard
About
What is OWASP ASVS?
Official OWASP ASVS Documentation: https://owasp.org/www-project-application-security-verification-standard/
Why is OWASP ASVS Important ?
ASVS Security Verification Levels
ASVS Categories and Controls
V1: Architecture, Design, and Threat Modeling
V2: Authentication and Session Management
V3: Access Control
V4: Input Validation and Sanitization
V5: Cryptography
V6: Stored and Transmitted Data Protection
V7: Error Handling and Logging
V8: Data Integrity Protection
V9: Communication Security
V10: Malicious Code and Security Hardening
V11: Business Logic Security
V12: API and Web Service Security
V13: Configuration and Deployment Security
V14: Mobile Security (Optional)
How to Implement ASVS in Development Lifecycle ?
Requirements Phase
Development Phase
Testing Phase
Deployment and Maintenance
OWASP ASVS vs. OWASP Top 10
Feature
OWASP ASVS
OWASP Top 10
Last updated