List,

    Next week the owls team (Javier and I) are going to be planning
our next two sprint. These past weeks have been fun, Javier is
learning a lot about the framework and his *real* developer skills
make him find tons of places for improvement; which were added by my
*hacker* developer skills :) We're going to analyze the Trac items
that have the highest priority and choose a mix of bugs to fix, cool
features to add, and missing documentation to write.

    I'm thinking about different cool features we could add to the
framework and I would like your opinion:

[0] Add a link from the vulnerability to the exploit: In the results
window, and only if the vulnerability can be exploited, add a
button/link that will take you to the Exploit tab and will
automatically exploit the vulnerability.
[1] Intelligent form filling - Get information from the HTML context.
[2] Detect permanent xss attacks done by a third party
[3] Create plugin that estimates human hours for web app audit

    Which one do you guys like the most? Keep in mind that sprints are
two weeks long and we're not going to dedicate all time to "cool
features", so things like "Javascript support" are out of the picture
for now.

[0] http://sourceforge.net/apps/trac/w3af/ticket/146768
[1] http://sourceforge.net/apps/trac/w3af/ticket/133315
[2] http://sourceforge.net/apps/trac/w3af/ticket/146411
[3] https://sourceforge.net/apps/trac/w3af/ticket/150340

Regards,
-- 
Andrés Riancho
Founder, Bonsai - Information Security
http://www.bonsai-sec.com/
http://w3af.sf.net/

------------------------------------------------------------------------------
Nokia and AT&T present the 2010 Calling All Innovators-North America contest
Create new apps & games for the Nokia N8 for consumers in  U.S. and Canada
$10 million total in prizes - $4M cash, 500 devices, nearly $6M in marketing
Develop with Nokia Qt SDK, Web Runtime, or Java and Publish to Ovi Store 
http://p.sf.net/sfu/nokia-dev2dev
_______________________________________________
W3af-develop mailing list
W3af-develop@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/w3af-develop

Reply via email to