OWASP / www-project-benchmark
OWASP Foundation Web Respository
☆17Updated 9 months ago
Alternatives and similar repositories for www-project-benchmark:
Users that are interested in www-project-benchmark are comparing it to the libraries listed below
- OSS-Fuzz vulnerabilities for OSV.☆147Updated this week
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆75Updated last month
- SARIF Microsoft Visual Studio Code extension☆113Updated 4 months ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆141Updated 11 months ago
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆105Updated this week
- CVSS2/3/4 library with interactive calculator for Python 2 and Python 3☆89Updated last week
- A place to systematically store software bill of materials (SBOM) documents.☆44Updated last year
- CodeQL queries developed by Trail of Bits☆87Updated 2 months ago
- Securibench Micro is a benchmark for static analysis tools for security.☆26Updated 6 years ago
- An open-source dataset of malicious software packages found in the wild, 100% vetted by humans.☆178Updated this week
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆114Updated last year
- Open Source Vulnerability schema.☆191Updated last week
- Python classes for the SARIF object model☆43Updated 10 months ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆90Updated last week
- Trail of Bits Testing Handbook☆60Updated last week
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different so…☆49Updated last week
- Home page of project "KB"☆117Updated 2 months ago
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆130Updated last year
- ☆93Updated this week
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilit…☆289Updated this week
- NVD/CVE as JSON files☆113Updated this week
- A dataset of software supply chain compromises. Please help us maintain it!☆127Updated 2 years ago
- Scan pypi for typosquatting☆38Updated 2 years ago
- A community collection of security reviews of open source software components.☆93Updated 11 months ago
- Core model including reused documentation☆94Updated 5 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆55Updated 5 months ago
- ☆30Updated 4 months ago
- CodeQL Security Queries☆24Updated last week
- Post Processor for Facebook Static Analysis Tools.☆137Updated this week
- Feed parsing for language package manager updates☆76Updated 2 months ago