Upgrade to Pro
— share decks privately, control downloads, hide ads and more …
Speaker Deck
Features
Speaker Deck
PRO
Sign in
Sign up for free
Search
Search
LT - OWASP AMASS
Search
Sponsored
·
SiteGround - Reliable hosting with speed, security, and support you can count on.
→
Akitsugu Ito
February 09, 2020
Technology
270
0
Share
LT - OWASP AMASS
I presented about OWASP AMASS at OWASP Sendai Day 2020 as Lightning Talks.
Akitsugu Ito
February 09, 2020
More Decks by Akitsugu Ito
See All by Akitsugu Ito
OWASP SAMM Ver.2 Introduction JP
springmoon6
0
3.1k
OWASP SAMM Ver.2 Introduction EN
springmoon6
0
750
What’s Security Engineering Manager?
springmoon6
1
1k
PSIRT Service Framework のご紹介
springmoon6
0
1.2k
セキュリティキャンプ 2018 企業プレゼン
springmoon6
0
510
Other Decks in Technology
See All in Technology
ARIA Notifyについて
ryokatsuse
1
120
KGDC_13_Amazon Q Developerで挑む! 13事例から見えたAX組織変革の最前線_公開情報
kikugawa
0
120
Keeping Ruby Running on Cygwin
fd0
0
140
扱える不確実性を増やしていく - スタートアップEMが考える「任せ方」
kadoppe
0
290
データを"持てない"環境でのアノテーション基盤設計
sansantech
PRO
1
110
実践ハーネスエンジニアリング:TAKTで実現するAIエージェント制御 / Practical Harness Engineering: AI Agent Control Enabled by TAKT
nrslib
9
4.4k
MLOps導入のための組織作りの第一歩
akasan
0
320
Azure Static Web Apps の自動ビルドがタイムアウトしやすくなった状況に対応した件/global-azure2026
thara0402
0
390
社内エンジニア勉強会の醍醐味と苦しみ/tamadev
nishiuma
0
170
Master Dataグループ紹介資料
sansan33
PRO
1
4.6k
Azure PortalなどにみるWebアクセシビリティ
tomokusaba
0
410
AWS DevOps Agentはチームメイトになれるのか?/ Can AWS DevOps Agent become a teammate
kinunori
6
720
Featured
See All Featured
Prompt Engineering for Job Search
mfonobong
0
270
Practical Orchestrator
shlominoach
191
11k
Navigating Weather and Climate Data
rabernat
0
170
Marketing to machines
jonoalderson
1
5.2k
The Cult of Friendly URLs
andyhume
79
6.8k
The Impact of AI in SEO - AI Overviews June 2024 Edition
aleyda
5
800
Efficient Content Optimization with Google Search Console & Apps Script
katarinadahlin
PRO
1
500
New Earth Scene 8
popppiees
3
2.1k
The Invisible Side of Design
smashingmag
302
52k
Navigating Algorithm Shifts & AI Overviews - #SMXNext
aleyda
1
1.2k
Amusing Abliteration
ianozsvald
1
150
svc-hook: hooking system calls on ARM64 by binary rewriting
retrage
2
210
Transcript
OWASP AMASS Akitsugu Ito(@springmoon6)
None
Requirement Design Develop Testing Implement Operation ① Requirement OWASP Top
10 Project ② Design Development OWASP Cheat Sheet Series OWASP Application Security Verification Standard (ASVS) OWASP Security Shepherd OWASP Security Knowledge Framework ③ Testing OWASP Zed Attack Proxy OWASP Juice Shop OWASP Web Security Testing Guide OWASP Mobile Security Testing Guide ④ Implement Operation OWASP ModSecurity Core Rule Set OWASP APPSensor OWASP CSRFGuard OWASP Dependency Check OWASP Dependency Track
Requirement Design Develop Testing Implement Operation ① Requirement OWASP Top
10 Project ② Design Development OWASP Cheat Sheet Series OWASP Application Security Verification Standard (ASVS) OWASP Security Shepherd OWASP Security Knowledge Framework ③ Testing OWASP Zed Attack Proxy OWASP Juice Shop OWASP Web Security Testing Guide OWASP Mobile Security Testing Guide ④ Implement Operation OWASP ModSecurity Core Rule Set OWASP APPSensor OWASP CSRFGuard OWASP Dependency Check OWASP Amass OWASP Dependency Track
What is Amass? • In-depth DNS Enumeration, Attack Surface Mapping
and External Asset Discovery. • DNS enumeration and network mapping to aid in understanding an organization’s attack surface on the Internet https://owasp.org/www-project-amass/
How to install • Docker • Security OS
Results
Visualization https://github.com/OWASP/Amass/blob/master/doc/user_guide.md