A Guide to Building Secure Web Applications and Web Services
Posted in Security on June 26th, 2002 Comments Off
This document sets out to describe technical components, people processes and management issues that are needed to design, build and maintain a secure web application. It includes requirements for architects and designers building common things like password reset systems, session management mechanisms and input filtering as well as architectural guidance. [OWASP]