Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

Projects in Awesome Lists by OWASP

A curated list of projects in awesome lists by OWASP .

https://github.com/owasp/cheatsheetseries

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

application-security appsec best-practices cheatsheets code owasp security

Last synced: 01 Aug 2024

https://github.com/OWASP/owasp-mstg

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).

android android-application compliancy-checklist dynamic-analysis hacking ios ios-app mast mastg mobile-app mobile-security mstg network-analysis pentesting reverse-engineering reverse-enginnering runtime-analysis static-analysis testing-cryptography

Last synced: 04 Aug 2024

https://github.com/owasp/wstg

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security

Last synced: 01 Aug 2024

https://github.com/OWASP/wstg

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

application-security appsec best-practices bugbounty guide hacking hacktoberfest owasp penetration-testing pentesting security

Last synced: 01 Aug 2024

https://github.com/OWASP/Go-SCP

Golang Secure Coding Practices guide

appsec golang

Last synced: 01 Aug 2024

https://github.com/owasp/top10

Official OWASP Top 10 Document Repository

Last synced: 01 Aug 2024

https://github.com/owasp/asvs

Application Security Verification Standard

Last synced: 01 Aug 2024

https://github.com/OWASP/ASVS

Application Security Verification Standard

Last synced: 01 Aug 2024

https://github.com/OWASP/DevGuide

The OWASP Guide

Last synced: 01 Aug 2024

https://github.com/owasp/devguide

The OWASP Guide

Last synced: 01 Aug 2024

https://github.com/owasp/api-security

OWASP API Security Project

api documentation-portal owasp-top security web-api

Last synced: 01 Aug 2024

https://github.com/OWASP/owasp-masvs

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

android-app audit gitbook ios-app mastg masvs mobile mstg owasp penetration-testing penetration-tests security security-audit security-standards standard verification

Last synced: 31 Jul 2024

https://github.com/owasp/nodegoat

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how to effectively address them.

docker heroku javascript nodegoat nodejs owasp-top-ten owasp-zap vulnerabilities

Last synced: 31 Jul 2024

https://github.com/owasp/qrljacking

QRLJacking or Quick Response Code Login Jacking is a simple-but-nasty attack vector affecting all the applications that relays on “Login with QR code” feature as a secure way to login into accounts which aims for hijacking users session by attackers.

Last synced: 01 Aug 2024

https://github.com/OWASP/QRLJacking

QRLJacking or Quick Response Code Login Jacking is a simple-but-nasty attack vector affecting all the applications that relays on “Login with QR code” feature as a secure way to login into accounts which aims for hijacking users session by attackers.

Last synced: 31 Jul 2024

https://github.com/owasp/securityshepherd

Web and mobile application security training platform

Last synced: 01 Aug 2024

https://github.com/OWASP/SecurityShepherd

Web and mobile application security training platform

Last synced: 31 Jul 2024

https://github.com/OWASP/joomscan

OWASP Joomla Vulnerability Scanner Project https://www.secologist.com/

0day exploit joomla joomla-cms joomscan owasp scanner vulnerability-scanners vunerability

Last synced: 31 Jul 2024

https://github.com/OWASP/crAPI

completely ridiculous API (crAPI)

api apisecurity hacktoberfest owasp

Last synced: 31 Jul 2024

https://github.com/OWASP/railsgoat

A vulnerable version of Rails that follows the OWASP Top 10

appsec owasp-top rails ruby ruby-on-rails security vulnerabilities

Last synced: 31 Jul 2024

https://github.com/owasp/railsgoat

A vulnerable version of Rails that follows the OWASP Top 10

appsec owasp-top rails ruby ruby-on-rails security vulnerabilities

Last synced: 01 Aug 2024

https://github.com/OWASP/OWASP-VWAD

The OWASP Vulnerable Web Applications Directory project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.

appsec owasp vulnerable vulnerable-web-app vulnerable-web-application

Last synced: 02 Aug 2024

https://github.com/owasp/owasp-vwad

The OWASP Vulnerable Web Applications Directory project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.

appsec owasp vulnerable vulnerable-web-app vulnerable-web-application

Last synced: 01 Aug 2024

https://github.com/OWASP/threat-dragon

An open source threat modeling tool from OWASP

owasp owasp-threat-dragon sdlc threat-dragon threat-modeling

Last synced: 01 Aug 2024

https://github.com/OWASP/DevSecOpsGuideline

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

devsecops owasp security shift-left

Last synced: 06 Aug 2024

https://github.com/OWASP/ZSC

OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/

assembly linux obfuscator osx owasp python shellcode windows

Last synced: 03 Aug 2024

https://github.com/OWASP/Docker-Security

Getting a handle on container security

Last synced: 31 Jul 2024

https://github.com/OWASP/OWASP-WebScarab

OWASP WebScarab

Last synced: 31 Jul 2024

https://github.com/owasp/owasp-webscarab

OWASP WebScarab

Last synced: 01 Aug 2024

https://github.com/OWASP/www-project-kubernetes-top-ten

OWASP Foundation Web Respository

kubernetes owasp security

Last synced: 01 Aug 2024

https://github.com/owasp/dvsa

a Damn Vulnerable Serverless Application

Last synced: 01 Aug 2024

https://github.com/OWASP/glue

Application Security Automation

ci-cd devsecops owasp tool

Last synced: 03 Aug 2024

https://github.com/owasp/owasp-java-encoder

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will help Java web developers defend against Cross Site Scripting!

defense encoding java xss

Last synced: 01 Aug 2024

https://github.com/OWASP/OFFAT

The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving towards completion.

api-hacking api-rest api-security api-security-testing offat owasp

Last synced: 03 Aug 2024

https://github.com/OWASP/rbac

PHP-RBAC is an authorization library for PHP. It provides developers with NIST Level 2 Standard Role Based Access Control and more, in the fastest implementation yet.

Last synced: 03 Aug 2024

https://github.com/OWASP/Python-Honeypot

OWASP Honeypot, Automated Deception Framework.

cybersecurity deception honeynet honeypot informationsecurity infosec owasp security

Last synced: 01 Aug 2024

https://github.com/OWASP/igoat

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

Last synced: 03 Aug 2024

https://github.com/OWASP/threat-model-cookbook

This project is about creating and publishing threat model examples.

appsec threat-model threat-modeling threat-modelling threat-models

Last synced: 02 Aug 2024

https://github.com/OWASP/samm

SAMM stands for Software Assurance Maturity Model.

maturity-models owasp-samm security

Last synced: 01 Aug 2024

https://github.com/OWASP/iGoat-Swift

OWASP iGoat (Swift) - A Damn Vulnerable Swift Application for iOS

insecure-data-storage ios-security ios-swift ipa owasp-igoat owasp-top-10 runtime-security

Last synced: 03 Aug 2024

https://github.com/owasp/o-saft

O-Saft - OWASP SSL advanced forensic tool

certificate ciphers perl ssl tls

Last synced: 01 Aug 2024

https://github.com/OWASP/O-Saft

O-Saft - OWASP SSL advanced forensic tool

certificate ciphers perl ssl tls

Last synced: 01 Aug 2024

https://github.com/OWASP/vbscan

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

exploit owasp vbscan vbulletin vulnerability vulnerability-scanners

Last synced: 01 Aug 2024

https://github.com/OWASP/Serverless-Goat

OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws

Last synced: 31 Jul 2024

https://github.com/OWASP/SecureTea-Project

The OWASP SecureTea Project provides a one-stop security solution for various devices (personal computers / servers / IoT devices)

antivirus firewall intrusion-detection-system local-web-deface-detection owasp owasp-securetea waf webapplicationfirewall

Last synced: 02 Aug 2024

https://github.com/OWASP/pysap

pysap is an open source Python library that provides modules for crafting and sending packets using SAP's NI, Diag, Enqueue, Router, MS, SNC, IGS, RFC and HDB protocols.

cbas python sap scapy

Last synced: 02 Aug 2024

https://github.com/OWASP/www-chapter-japan

OWASP Foundation Web Respository

Last synced: 31 Jul 2024

https://github.com/OWASP/owasp-summit-2017

Content for OWASP Summit 2017 site

Last synced: 02 Aug 2024

https://github.com/OWASP/SEDATED

SEDATED® Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure)

sensitive-data-exposure

Last synced: 01 Aug 2024

https://github.com/OWASP/raider

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

authentication authorization finite-state-machine fsm hy hylang lisp owasp python raiderauth security

Last synced: 03 Aug 2024

https://github.com/OWASP/Container-Security-Verification-Standard

Container Security Verification Standard

Last synced: 02 Aug 2024

https://github.com/OWASP/www-project-integration-standards

OWASP Foundation Web Respository

Last synced: 04 Aug 2024

https://github.com/OWASP/Benchmark

The OWASP Benchmark GitHub repo has moved to: https://github.com/OWASP-Benchmark/BenchmarkJava

Last synced: 03 Aug 2024

https://github.com/owasp/benchmark

The OWASP Benchmark GitHub repo has moved to: https://github.com/OWASP-Benchmark/BenchmarkJava

Last synced: 01 Aug 2024