BlazingWind / OWASP-ASVS-4.0-testing-guideLinks
โ124Updated 2 years ago
Alternatives and similar repositories for OWASP-ASVS-4.0-testing-guide
Users that are interested in OWASP-ASVS-4.0-testing-guide are comparing it to the libraries listed below
Sorting:
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.โ111Updated last year
- ๐๏ธ STRIDE vs. ASVS equivalence tableโ77Updated last year
- โ88Updated 4 years ago
- โ69Updated 4 months ago
- materials we hand outโ148Updated 4 months ago
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.โ135Updated 5 years ago
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.โ111Updated 10 months ago
- Semgrep rules corresponding to the OWASP ASVS standardโ28Updated 5 years ago
- A simple web app that helps developers understand the ASVS requirements.โ162Updated 3 weeks ago
- A small tool to help developers understand a huge set of security requirements from appsec teamsโ47Updated 3 years ago
- Segment's Threat Modeling training for our engineersโ245Updated 4 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestratโฆโ279Updated last month
- A checklist of practices for organizations dealing with account takeover (ATO)โ274Updated last year
- OWASP ASVS checklist for auditsโ208Updated last year
- Presentations, training modules, and other education materials from Duo Security's Application Security team.โ77Updated 4 years ago
- A Continuous Threat Modeling methodologyโ327Updated 3 years ago
- Docs: Vulnerability management aggregation of AppSec & OpSec (Tools Listing)โ31Updated 2 years ago
- โ35Updated 4 years ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulneโฆโ31Updated 2 years ago
- โ35Updated 4 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. โฆโ67Updated 4 months ago
- This repository stores content that can be used to design a Rapid Threat Model Prototyping process for a software development group.โ164Updated 2 years ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wikiโ212Updated last year
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!โ134Updated 2 years ago
- ๐งฎ An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessmentโ162Updated 4 years ago
- threatspec - continuous threat modeling, through codeโ370Updated 4 years ago
- OWASP Cloud Security - Enabling conversations through threat and control storiesโ182Updated 6 years ago
- NextJS-based single-page application for completing and reviewing SAMM assessmentsโ77Updated 2 years ago
- Sample scan files for testing DefectDojo importsโ84Updated 2 months ago
- โ20Updated 3 years ago