SWAT - Securing Web Application Technologies Checklist from SANS
Securing Web Application Technologies [SWAT] Checklist
The SWAT Checklist provides an easy to reference set of best practices that raise awareness and help development teams create more secure applications. It's a first step toward building a base of security knowledge around web application security. Use this checklist to identify the minimum standard that is required to neutralize vulnerabilities in your critical applications.
Source-