WASC Web Application Security Statistics Published
Written by Chuck Willis
Thanks to Veracode’s Blog for pointing me to the Web Application Security Consortium (WASC) Web Application Security Statistics that were recently published.
Overall, I think that the paper has some very interesting data and statistics. As Chris Wysopal at Veracode pointed out, it provides some good evidence to back up the seemingly common sense idea that white box testing (where the testers have access to source code, design documents, and internal resources) is more likely to find certain issues than black box testing. Read the rest
Tags: Black Box, Statistics, Veracode, WASC, Web Application, White Box
. 02 Nov 09 | The Whiteboard | Comments (0)

