Developer / Builder |
|
|
Access Control |
|
AJAX Security |
|
Authentication |
|
Choosing and Using Security Questions |
|
Clickjacking Defense |
|
C-Based Toolchain Hardening |
|
Cross-Site Request Forgery (CSRF) Prevention |
|
Cryptographic Storage>Cryptographic Storage |
|
DOM based XSS Prevention>DOM based XSS Prevention |
|
Forgot Password |
|
HTML5 Security |
|
Input Validation |
|
JAAS |
|
LDAP Injection Preven |
|
Logging |
|
Mass Assignment |
|
.NET Security |
|
OWASP Top Ten |
|
Password Storage |
|
Pinning |
|
Query Parameterization |
|
Ruby on Rails |
|
REST Security |
|
Session Management |
|
SAML Security |
|
SQL Injection Prevention |
|
Transaction Authorization |
|
Transport Layer Protection |
|
Unvalidated Redirects and Forwards |
|
User Privacy Protection |
|
Web Service Security |
|
XSS (Cross Site Scripting) Prevention |
|
XML External Entity (XXE) Prevention |
Assessment / Breaker |
|
|
Attack Surface Analysis |
|
XSS Filter Evasion |
|
REST Assessment |
|
Web Application Security Testing |
Mobile |
|
|
IOS Developer |
|
Mobile Jailbreaking |
OpSec / Defender |
|
|
Virtual Patching |
Draft and Beta |
|
|
3rd Party Javascript Management |
|
Android Testing |
|
Application Security Architecture |
|
Business Logic Security |
|
Injection Prevention |
|
PHP Security |
|
Secure Coding |
|
Secure SDLC |
|
Threat Modeling |
|
Grails Secure Code Review |
|
IOS Application Security Testing |
|
Key Management |
|
Insecure Direct Object Reference Prevention |
|
Content Security Policy |