Examples of well-designed and secure web applications

Most people will know OWASP WebGoat or Foundstone Hacme Books and Hacme Bank . These are intentionally insecure beginner education applications about common security vulnerabilities.

On the contrary, I could not find any application that was intentionally protected. It is provided that such an application is not completely safe, but are there any applications that will implement a collection of best practices that most other applications should follow?

PS: To clarify my needs, I’m looking for the “safe equivalent” of Webgoat or even the better, safe Pet Store app. The design of the security compromises discussed in the document / website / blog will be a bonus.

PPS: Now this is a wiki community, especially since there may / may be several correct answers - it does not depend on the language.

+3
source share
2 answers

The OWASP manual contains this information.

+1
source

I think the more interesting question: “Can you show me the code that can safely do X and Y” are multiple fragments of protected code that take some input and produce the result of a security check.

0
source

Source: https://habr.com/ru/post/1715582/


All Articles