Checkmarx / JS-SCP
JavaScript Secure Coding Practices guide
☆178Updated 3 years ago
Alternatives and similar repositories for JS-SCP:
Users that are interested in JS-SCP are comparing it to the libraries listed below
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆62Updated 4 years ago
- A Node.js vulnerability finding tool.☆95Updated 4 years ago
- Documentation for Essential Node.js Security☆96Updated last year
- Research on GraphQL from an AppSec point of view.☆411Updated last year
- Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries.☆201Updated 7 months ago
- ☆35Updated 3 years ago
- OWASP Testing Guide☆110Updated 9 years ago
- An invoice management application built on the MEAN stack with intentional vulnerabilities used to demonstrate insecure configurations an…☆16Updated 4 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- A python script that filters, checks the validity, generates clickable link(s) of subdomain(s), and reports their status☆89Updated 4 years ago
- Security Payload Unit Test Repository (SPUTR)☆86Updated last year
- ☆62Updated last year
- Content released at NorthSec 2018 for my talk on prototype pollution☆516Updated 8 months ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- Curated list of public penetration testing reports released by several consulting firms☆47Updated 6 years ago
- It is a note about security on nodejs☆48Updated 6 years ago
- The OWASP AppSec Browser Bundle is an open source Linux based penetration testing browser bundle built over Mozilla Firefox. It comes pre…☆93Updated 11 years ago
- Nodejs application intentionally vulnerable to SSRF☆41Updated last year
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆157Updated 6 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆62Updated last year
- TLS Redirection☆119Updated 7 years ago
- Content for OWASP Summit 2017 site☆128Updated 4 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆99Updated last year
- Automatically exported from code.google.com/p/mustache-security☆23Updated 9 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆140Updated 6 months ago
- Actarus is a custom tool for bug bounty☆76Updated 5 years ago
- General Open Architecture Security Questionnaire☆31Updated last year
- Extreme Vulnerable Node Application☆93Updated 6 years ago
- Security design pattern support for Node.js☆24Updated 5 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆178Updated 6 years ago