[Owasp-leaders] Security 101 Mailing List?

Seba seba at owasp.org
Thu Jan 26 07:29:16 UTC 2012


+1
I know it was discussed before, and let this not distract from the main
idea which we have to pursue: how about setting this up in a forum style
with owasp moderators/experts, that way we can persist threads and have a
more modern interface than mailman?

--Seba

On Thu, Jan 26, 2012 at 4:30 AM, Rex Booth <rex.booth at owasp.org> wrote:

> Excellent idea, but we'll need to commit to reasonable response times.
>
> Rex
>
> On Jan 25, 2012, at 6:33 PM, Jerry Hoff <jerry at owasp.org> wrote:
>
> > I think it is a great idea!
> >
> > Il giorno Jan 25, 2012, alle ore 3:26 PM, Michael Coates <
> michael.coates at owasp.org> ha scritto:
> >
> >>
> >> I recently gave a security presentation to a group of developers in the
> health care startup scene.  There was great turnout and they really loved
> Webgoat (delivered via OWASP BWA).  As I left the presentation I pointed
> them at a variety of OWASP links - top 10, cheat sheets, secure coding
> guidelines - but I felt that it was a missed opportunity to really engage
> the group that had so much to gain from OWASP.
> >>
> >> What are people's thoughts about establishing a OWASP-Security-101
> mailing list?  The idea would be to have this be a public list where
> developers would ask basic/intro web security questions.  We (OWASP
> leaders) would then direct people to available OWASP resources or answer
> the questions directly.
> >>
> >> This idea would create an ecosystem with developers that are not
> security experts per se (e.g. getting past the echo chamber). In addition,
> this will quickly identify gaps in OWASP resources ( 5 questions about
> topic X and we have no OWASP page on that topic).
> >>
> >> The goal here isn't to replace something like stack overflow, but
> instead to create an inviting space within OWASP where we can integrate
> more developers and publicize/enhance OWASP tools, resources, etc.
> >>
> >> One important thing for this new list would be that it's a safe place
> to ask "dumb" questions.  I think we could really distinguish ourselves
> here since many people are nervous about jumping into a more technical
> mailing list and just getting the "Did you google it?" type answer.
> >>
> >>
> >> Thoughts?  OWASP-Security-101?
> >>
> >>
> >>
> >>
> >>
> >> Michael Coates
> >> OWASP
> >> michael.coates at owasp.org
> >>
> >>
> >>
> >> _______________________________________________
> >> OWASP-Leaders mailing list
> >> OWASP-Leaders at lists.owasp.org
> >> https://lists.owasp.org/mailman/listinfo/owasp-leaders
> > _______________________________________________
> > OWASP-Leaders mailing list
> > OWASP-Leaders at lists.owasp.org
> > https://lists.owasp.org/mailman/listinfo/owasp-leaders
> _______________________________________________
> OWASP-Leaders mailing list
> OWASP-Leaders at lists.owasp.org
> https://lists.owasp.org/mailman/listinfo/owasp-leaders
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.owasp.org/pipermail/owasp-leaders/attachments/20120126/5979b1c2/attachment.html>


More information about the OWASP-Leaders mailing list