OWASP / wrongsecretsLinks
Vulnerable app with examples showing how to not use secrets
☆1,390Updated this week
Alternatives and similar repositories for wrongsecrets
Users that are interested in wrongsecrets are comparing it to the libraries listed below
Sorting:
- The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.☆1,011Updated 3 weeks ago
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testing☆1,162Updated last year
- An open source threat modeling tool from OWASP☆1,292Updated this week
- A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for …☆1,698Updated last year
- Awesome secure by default libraries to help you eliminate bug classes!☆700Updated last month
- Practical resources for offensive CI/CD security research. Curated the best resources I've seen since 2021.☆564Updated 2 months ago
- A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.☆2,182Updated last year
- Security interview questions with possible explanation for roles in AppSec, Pentesting, Cloud Security, DevSecOps, Network Security and s…☆398Updated last year
- A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigatin…☆475Updated 7 months ago
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆316Updated 5 months ago
- completely ridiculous API (crAPI)☆1,409Updated this week
- Security Champions Playbook v 2.1☆386Updated 2 years ago
- Checklist for container security - devsecops practices☆1,611Updated 4 months ago
- Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethica…☆884Updated 3 weeks ago
- ☆557Updated this week
- Twitter vulnerable snippets☆1,092Updated 10 months ago
- Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.☆1,316Updated 5 months ago
- 🛡️ Awesome Cloud Security Resources ⚔️☆2,345Updated last year
- My cheatsheet notes to pentest AWS infrastructure☆702Updated 3 years ago
- Security Remediation Guides☆744Updated 2 months ago
- Create your own vulnerable by design AWS penetration testing playground☆428Updated 3 weeks ago
- ☆423Updated 3 years ago
- Websec interview questions by tib3rius answered☆307Updated 2 years ago
- Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.☆1,811Updated 3 months ago
- AWSGoat : A Damn Vulnerable AWS Infrastructure☆1,963Updated 8 months ago
- OWASP Foundation Web Respository☆599Updated 2 months ago
- Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threa…☆1,402Updated 7 months ago
- Open source templates you can use to bootstrap your security programs☆885Updated 3 weeks ago
- An AI-powered threat modeling tool that leverages OpenAI's GPT models to generate threat models for a given application based on the STRI…☆958Updated 3 weeks ago
- This is a companion to the Security Engineer Questions☆204Updated 2 years ago