An open API service indexing awesome lists of open source software.

Projects in Awesome Lists by Contrast-Security-OSS

A curated list of projects in awesome lists by Contrast-Security-OSS .

https://github.com/contrast-security-oss/cassandra-migration

Database migration (evolution) tool for Apache Cassandra

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/contrast-ro0

A tiny Java agent that blocks attacks against unsafe deserialization

Last synced: 28 Aug 2025

https://github.com/contrast-security-oss/djangoat

Python and Django implementation of the OWASP RailsGoat project

django-application owasp-top-ten

Last synced: 12 May 2025

https://github.com/Contrast-Security-OSS/DjanGoat

Python and Django implementation of the OWASP RailsGoat project

django-application owasp-top-ten

Last synced: 07 May 2025

https://github.com/contrast-security-oss/spring-kafka-poc-cve-2023-34040

POC for Spring Kafka Deserialization Vulnerability CVE-2023-34040

Last synced: 02 Aug 2025

https://github.com/contrast-security-oss/go-test-bench

Intentionally vulnerable Go web app.

Last synced: 06 Apr 2025

https://github.com/contrast-security-oss/safelog4j

Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning or upgrading

iast java log4j log4shell rasp security security-testing vulnerability vulnerability-scanner

Last synced: 11 Sep 2025

https://github.com/Contrast-Security-OSS/safelog4j

Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning or upgrading

iast java log4j log4shell rasp security security-testing vulnerability vulnerability-scanner

Last synced: 11 Jul 2025

https://github.com/contrast-security-oss/joogle

A static analysis API for finding deserialization attack gadgets

Last synced: 22 Aug 2025

https://github.com/contrast-security-oss/jinfinity

An API for consuming all the memory of Java apps using deserialization

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/java-sarif

POJOs generated from the Static Analysis Results Interchange Format (SARIF) JSON schema.

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/vulnpy

Purposely-vulnerable Python functions

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/agent-operator

A K8s operator to inject agents into existing K8s workloads.

Last synced: 29 Jun 2025

https://github.com/Contrast-Security-OSS/Burptrast

Burp Plugin for Contrast Security

Last synced: 13 May 2025

https://github.com/contrast-security-oss/burptrast

Burp Plugin for Contrast Security

Last synced: 28 Jul 2025

https://github.com/contrast-security-oss/generativeaipolicy

Open Source Generative AI Policy

Last synced: 05 Jan 2026

https://github.com/contrast-security-oss/join-the-team

Information about working with the Contrast Engineering Team.

Last synced: 16 Feb 2026

https://github.com/contrast-security-oss/contrast-sca-action

Contrast SCA GitHub Action

sca

Last synced: 09 Mar 2026

https://github.com/contrast-security-oss/nodetestbenches

A collection of intentionally vulnerable test bench applications for testing the Contrast Security Node Agent.

Last synced: 05 Oct 2025

https://github.com/contrast-security-oss/contrast-sdk-java

Java SDK for Contrast Security

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/ticketbook

This is a purposely insecure web application.

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/contrast-sdk-dotnet

.Net API for the Contrast REST API

Last synced: 22 Jun 2025

https://github.com/contrast-security-oss/java-microservice-sample-apps

A small microservice that demonstrating how Contrast works with microservices

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/integration-eks-github-action

A github action that builds, deploys, and instruments a Contrast Security Agent with an application via Amazon Elastic Kubernetes Service.

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/mysql-forensics-tool

Tool for generating MySQL forensics specifically for TeamServer.

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/contrast-dotnet-examples

Example code examples and scripts to complement documentation for Contrast .NET Agents

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/google-apps-script

Google Apps Scripts for connecting TeamServer with Google Apps such as Sheets

apps-script contrast-security google-app-script google-apps-script google-appscripts google-sheets

Last synced: 10 Feb 2026

https://github.com/contrast-security-oss/integration-aks-github-action

A github action that builds, deploys, and instruments a Contrast Security Agent with an application via Azure Kubernetes Service.

Last synced: 13 Apr 2026

https://github.com/contrast-security-oss/ansible-packer-docker

Build an ansible-packer Docker container

Last synced: 01 Jul 2025

https://github.com/contrast-security-oss/integration-verify-github-action

GitHub Action to verify an application by determining whether the application violates a job outcome policy or threshold of open vulnerabilities

assess contrast github-actions security verify

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/integration-azure-spring-cloud-github-action

A github action that deploys and instruments a Contrast Security Agent with an application via Azure Spring Cloud.

Last synced: 09 May 2026

https://github.com/contrast-security-oss/contrastsplunkapp

Contrast Security App for Splunk

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/contrast-integrations-cli

A CLI tool for adding Contrast Integrations via rule customizations.

Last synced: 17 Jul 2025

https://github.com/contrast-security-oss/integrations-scw

Script to populate a Contrast environment with links to Secure Code Warrior videos and training exercises.

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/log4shell_serverless

Exploit of the log4shell vulnerability in an AWS Lambda function

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/workshop

Contrast Security Workshop

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/dotnet-dvnr

Standalone utility for collecting Windows IIS server information

Last synced: 09 Apr 2026

https://github.com/contrast-security-oss/nginx-contrast-connector

readonly mirror of contrast nginx-contrast-connector repo.

Last synced: 11 May 2026

https://github.com/contrast-security-oss/vizt

A command line tool for visualizing Contrast trace XML exports.

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/contrast-local-scan-action

Contrast Local Scanner Github action

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/sailstestbench

Intentionally Vulnerable Sails Applications

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/node-aws-docker

Docker image for building node projects and deploying to AWS Lambda

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/eop-examples

Setting up EOP TeamServer on Various Platforms

Last synced: 13 May 2026

https://github.com/contrast-security-oss/chef-contrast-java-agent

A Chef cookbook to install the contrast security java agent.

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/csvdltool

CSVDLTool is a tool that can export information on vulnerabilities and libraries in CSV format.

Last synced: 10 Apr 2026

https://github.com/contrast-security-oss/sdet-hire-project

A set of directions for SDET candidates to complete

Last synced: 05 Jan 2026

https://github.com/contrast-security-oss/agent-operator-images

Images of agents for the agent-operator.

Last synced: 11 Mar 2026

https://github.com/contrast-security-oss/maven-yarn-docker

Dockerfile which builds an image containing maven and yarn build tools

Last synced: 12 Jun 2025

https://github.com/contrast-security-oss/spring-petclinic

A sample Spring-based application

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/contrastsecurity-node-docker-onboarding-guide-sample-project

This repo is a companion to the Contrast agent deployment in Docker - Node.js guide.

Last synced: 08 Oct 2025

https://github.com/Contrast-Security-Inc/contrast-semantic-conventions

Semantic Conventions that apply to Contrast sensors

Last synced: 08 Oct 2025

https://github.com/contrast-security-oss/proxy-agent-docker

Docker images for building, deploying, and testing Contrast proxy (WAF) agent

Last synced: 28 Jan 2026

https://github.com/contrast-security-oss/oapi-build-docker

Tools for building Open API specification projects in CI

Last synced: 03 May 2026

https://github.com/contrast-security-oss/contrastbot

A place to host ContrastBot - Contrasts Slack bot

Last synced: 19 May 2026

https://github.com/contrast-security-oss/sarif-java

A java library to assist with sarif creation and serialization.

Last synced: 19 May 2026

https://github.com/contrast-security-oss/concourse-ci

Reusable Contrast Concourse CI tasks and example pipelines

concourse concourse-ci contrast contrast-sca contrast-scan

Last synced: 04 Jan 2026

https://github.com/contrast-security-oss/designversioningtest

Test Repo for the Kactus tool

Last synced: 04 Jan 2026

https://github.com/contrast-security-oss/find-package-json

Look up through directories to find package.json

Last synced: 19 May 2026

https://github.com/contrast-security-oss/contrast-s2i-jre

Injecting the Contrast Security Java Agent into Openshift s2i images

Last synced: 29 Apr 2026

https://github.com/contrast-security-oss/contrast-intellij-plugin-v2

New Intellij Plugin

Last synced: 21 Mar 2025

https://github.com/contrast-security-oss/agent-operator-demo

Resources for demoing the agent-operator.

Last synced: 03 Sep 2025

https://github.com/contrast-security-oss/cve-2021-44228

Professional Service scripts to aid in the identification of affected Java applications in TeamServer

Last synced: 29 Apr 2026

https://github.com/contrast-security-oss/node-code-events

Create handler for v8 code events

Last synced: 09 Jul 2025