OWASP Mobile Application Security Weakness Enumeration (MASWE)

August 14, 2025 ยท View on GitHub

OWASP Mobile Application Security Weakness Enumeration (MASWE)

OWASP Flagship Creative Commons License

Markdown Linter URL Checker

The OWASP Mobile Application Security Weakness Enumeration (MASWE) is a list of common security and privacy weaknesses in mobile applications. It is intended to be used as a reference for developers, security researchers, and security professionals. It acts as the bridge between the OWASP Mobile Application Security Verification Standard (MASVS) and the OWASP Mobile Application Security Testing Guide (MASTG).

For its definition we draw inspiration from the Common Weakness Enumeration (CWE), which is a community-developed list of common software security weaknesses. The MASWE is intended to be a complementary list to the CWE, focusing specifically on security weaknesses in mobile applications.

OWASP MAS: OWASP MASVS โžก OWASP MASWE โžก OWASP MASTG




Trusted by

The OWASP MASWE, MASVS and MASTG are trusted by the following platform providers and standardization, governmental and educational institutions. Learn more.

๐Ÿฅ‡ MAS Advocates

MAS Advocates are industry adopters of the OWASP MASWE, MASVS and MASTG who have invested a significant and consistent amount of resources to push the project forward by providing consistent high-impact contributions and continuously spreading the word. Learn more.




Authors

Carlos Holguera

Carlos Holguera

cpholguera

Sven Schleier

Sven Schleier

sushi2k

Jeroen Beckers

Jeroen Beckers

TheDauntless