[Owasp-board] BlackTop - Project sponsorship from Ounce

Dinis Cruz dinis at ddplus.net
Tue Jun 26 00:10:51 UTC 2007

Hi Guys

Any comments on the idea below?

My plan is to add it to this list:



*From:* Claudia Dent
*Sent:* Monday, June 25, 2007 9:19 PM
*To:* Dinis Cruz
*Cc:* Ryan Berg; Jack Danahy
*Subject:* OWASP Project proposal

Hello Dinis,

Ounce Labs would like to sponsor a new OWASP project named "BlackTop". We
are offering a sponsorship level of $10,000 for the complete solution as
described below.

Develop and document a "blackbox" pen testing code analysis solution capable
of providing runtime coverage analysis for applications written in Java and
.NET. In order to ensure the solution does not require access to the
applications' source code, the solution should use the AspectJ and PostSharp
bytecode weaving frameworks.  The project must produce an open source,
release quality application, including a GUI and documentation.  The project
should utilize a license; either the Eclipse Public License or the Mozilla
Public license is allowable.  The tool should provide code level details and
call trace information of all ingress and egress points of the application
and be able to identify gaps in the "blackbox" testing to facilitate more
accurate and complete pen testing.  All output and configuration should be
done using an open format (such as XML) and enable command line execution of
the application.


Claudia Dent

Senior VP, Product Marketing

*Ounce Labs*

Office: 781-547-7013
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.owasp.org/pipermail/owasp-board/attachments/20070626/c69b1353/attachment-0002.html>

More information about the Owasp-board mailing list