New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Perform a gap analysis with ENISA's "SMASHING - Smartphone Secure development Guidelines" #203
Comments
|
Please ensure we check only the latest report :-) |
|
I'd like to work on this issue. I checked the first two ENISA categories and documented my thoughts in this google sheet. I'd like to discuss them first to see if it leads in the right direction. Mapping MASVS and ENISA Smartphone guidelines |
|
Hi @codethatrocks , thank you for your mapping! I would like to take a similar approach here as we did with #189, which means:
It would be good to check #189 as it might well be that all 4 sources give overlapping results :-) |
|
Great first part of the analysis! I have added my comments to the first set. Thank you for your hard work! I will analyze the rest later this/next week. When @sushi2k has done his analysis as well, we can start creating actionable items in this issue & link them to #189 if they are covered there as well. |
|
Well done @codethatrocks ! I have added them all to the top so we can start linking issues :). |
|
@sushi2k , should we really create an issue in the MSTG for 19? because i am not sure how important that is.. |
|
Removed pre-listing comments for better overview... |
|
With the final PR this is no longer relevant for the MASVS. Closing donw. Thank you all! |
fix for last open items at OWASP/owasp-masvs#203
Just to see if they cover something that we missed:
https://www.enisa.europa.eu/topics/iot-and-smart-infrastructures/smartphone-guidelines-tool
Analysis result:
Actionlist:
The text was updated successfully, but these errors were encountered: