Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Two organizations promise to help. The Open Web Application Security Project (OWASP) mainly targets software developers and the application architects who manage them, aiming to stamp out security bugs in the applications themselves. The Web Application Security Consortium (WASC) is broader, focusing on threat classification and all means of mitigation.
The link for this article located at IT Architect is no longer available.