OWASP / Top10
Official OWASP Top 10 Document Repository
☆4,590Updated 5 months ago
Alternatives and similar repositories for Top10
Users that are interested in Top10 are comparing it to the libraries listed below
Sorting:
- Application Security Verification Standard☆2,993Updated this week
- OWASP API Security Project☆2,159Updated 4 months ago
- The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.☆7,924Updated 2 weeks ago
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,518Updated last year
- OWASP Juice Shop: Probably the most modern and sophisticated insecure web application☆11,196Updated this week
- A curated list of amazingly awesome Burp Extensions☆3,173Updated 2 months ago
- OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.☆1,205Updated this week
- The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topic…☆29,486Updated last week
- Web application fuzzer☆6,169Updated 8 months ago
- OWASP based Web Application Security Testing Checklist is an Excel based checklist which helps you to track the status of completed and p…☆1,602Updated 2 years ago
- Nikto web server scanner☆9,243Updated last week
- A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the communit…☆3,278Updated last month
- Awesome XSS stuff☆4,912Updated 6 months ago
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆5,804Updated last week
- Web and mobile application security training platform☆1,376Updated 10 months ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,787Updated 3 years ago
- 🔥 Web-application firewalls (WAFs) from security standpoint.☆6,639Updated 6 months ago
- Next generation web scanner☆5,864Updated 9 months ago
- scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.☆3,824Updated last month
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆879Updated 6 months ago
- This challenge is Inon Shkedy's 31 days API Security Tips.☆2,120Updated 3 years ago
- Security Knowledge Framework (SKF) Python Flask / Angular project☆820Updated last year
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,147Updated 3 months ago
- OWASP Foundation Web Respository☆1,200Updated 8 months ago
- Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.o…☆1,862Updated last month
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,932Updated last year
- Fast web fuzzer written in Go☆13,934Updated 2 weeks ago
- WebGoat is a deliberately insecure application☆7,469Updated this week
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,284Updated 6 months ago
- The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Nod…☆1,943Updated 10 months ago