OWASP / www-project-dependency-checkLinks
OWASP Foundation Web Respository
☆17Updated last month
Alternatives and similar repositories for www-project-dependency-check
Users that are interested in www-project-dependency-check are comparing it to the libraries listed below
Sorting:
- Purposely vulnerable Java application to help lead secure coding workshops☆191Updated last year
- Checkmarx Scan and Result Orchestration☆99Updated last month
- Checkmarx Python SDK☆30Updated 3 weeks ago
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆122Updated 2 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated last year
- API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities☆406Updated 8 years ago
- oauth security guidelines☆230Updated 6 years ago
- ☆225Updated last month
- Collection of python helper API's for interacting with LGTM.com in ways the official API doesn't support.☆24Updated 3 years ago
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure D…☆150Updated 5 years ago
- Software Component Verification Standard (SCVS)☆153Updated 10 months ago
- GitHub Satellite 2020 workshops on finding security vulnerabilities with CodeQL for Java/JavaScript.☆211Updated last year
- IriusRisk Community☆71Updated 2 years ago
- A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use☆14Updated 7 years ago
- OWASP Benchmark Project Utilities - Provides scorecard generation and crawling tools for Benchmark style test suites.☆19Updated this week
- (aka Kotlin Goat) - an intentionally vulnerable Kotlin application☆36Updated last year
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos enginee…☆226Updated last year
- Generic SAST Library☆135Updated 7 months ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆51Updated 2 weeks ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 5 years ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆62Updated 8 months ago
- Damn Vulnerable Java (EE) Application☆144Updated 2 years ago
- Global Security Database☆317Updated last year
- Public disclosure channel for security vulnerabilities☆18Updated 2 months ago
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.2, purl, and vers…☆135Updated last week
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆63Updated 5 years ago
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆14Updated last year
- Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning …☆43Updated 3 months ago
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆195Updated 7 years ago
- Container Security Verification Standard☆58Updated 6 years ago