Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Mitigation boiler plate DB #91

Closed
7a opened this issue Dec 5, 2013 · 1 comment
Closed

Mitigation boiler plate DB #91

7a opened this issue Dec 5, 2013 · 1 comment
Labels

Comments

@7a
Copy link
Member

7a commented Dec 5, 2013

We need a DB with boiler plate mitigation advice to improve reporting efficiency: This is one of those great ideas I had for a long time but never got a chance to implement :P.

This has also been flagged by our user base:

"I’m seeing a lot of economic pressures in my work forcing less and less time for assessments.

Biggest problem I’ve seen so far is reporting. Explaining web vulns to non technical customers is difficult. Particularly conveying the urgency of fixing XSS and csrf is difficult.
I’d like to see boilerplate vuln explanations verbiage that can be plopped into reports. Actually storing it in database would be nice then flowing it into a msoft word doc "

The ideal scenario would perhaps be either mitigation plugins OR mitigation templates that can be loaded from the reporting rich editor (or surroundings) clicking a button or similar. Of course, additional ideas welcome :)

@viyatb
Copy link
Member

viyatb commented May 20, 2015

Initial implementation in owtf/boilerplate-templates

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

4 participants