Contrast-Security-OSS / NodeTestBenchLinks
Intentionally Vulnerable Node Applications
☆16Updated 5 years ago
Alternatives and similar repositories for NodeTestBench
Users that are interested in NodeTestBench are comparing it to the libraries listed below
Sorting:
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 5 years ago
- A zoo for malicious NPM packages☆20Updated 3 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- Externalize Java application access to protected resources as log messages.☆43Updated 2 months ago
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆195Updated 7 years ago
- A Node.js vulnerability finding tool.☆96Updated 4 months ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆157Updated last year
- An invoice management application built on the MEAN stack with intentional vulnerabilities used to demonstrate insecure configurations an…☆16Updated 5 years ago
- Generic SAST Library☆133Updated 6 months ago
- ☆16Updated 7 years ago
- Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.☆80Updated 6 years ago
- Java Observability Toolkit☆62Updated last year
- Container Security and Serverless Training☆13Updated 3 years ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 3 years ago
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆63Updated 5 years ago
- Security Payload Unit Test Repository (SPUTR)☆86Updated 2 years ago
- Automate security tests using Burp Suite.☆232Updated last year
- flask-webgoat is a deliberately-vulnerable application written with the Flask web framework.☆20Updated 3 months ago
- Vendor-Neutral Security Tool Automation Controller (over REST)☆28Updated 6 years ago
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos enginee…☆227Updated last year
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- Evaluation Framework for Dependency Analysis (EFDA)☆44Updated 3 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- BountyDash is a tool to combine your rewards from all platforms, giving you insights about your progress and bug hunting patterns.☆160Updated 8 months ago
- Purposely vulnerable Java application to help lead secure coding workshops☆191Updated last year
- Cure53 Browser Security White Paper☆299Updated 8 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆182Updated 7 years ago
- Vulnerable Java based Web Application☆271Updated last year
- Python API library for DefectDojo☆43Updated 2 years ago
- An extended Node.js runtime with additional security mechanisms built-in. Protects your Node.js applications from injection attacks such …☆31Updated 4 years ago