PeterMosmans / devsecops-lab
Demo files
☆20Updated 2 years ago
Alternatives and similar repositories for devsecops-lab:
Users that are interested in devsecops-lab are comparing it to the libraries listed below
- Intentionally Vulnerable Flask app for use in Demos☆29Updated 3 weeks ago
- This is an offensive guide to securing AWS infrastructures. The hope is that by knowing how to take advantage of various types of AWS wea…☆171Updated 6 years ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆64Updated last year
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆18Updated 7 months ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆203Updated 5 months ago
- 🖇️ STRIDE vs. ASVS equivalence table☆76Updated 7 months ago
- Some good resources for getting started with application security☆142Updated 3 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆123Updated 2 years ago
- OWASP Code Review Guide Web Repository☆132Updated 2 years ago
- Damn Vulnerable Java (EE) Application☆138Updated last year
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆107Updated last year
- Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud☆52Updated 3 years ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 9 months ago
- Learn AWS Security by Example☆20Updated 2 years ago
- ☆186Updated 2 years ago
- GraphQL security workshop labs☆103Updated 8 months ago
- Hands-On AWS Penetration Testing with Kali Linux published by Packt☆131Updated 2 years ago
- A very vulnerable implementation of a GraphQL API.☆59Updated 3 years ago
- Puma Prey contains vulnerable .NET target applications to test the Puma Scan rules against. This project contains Web Forms, MVC5, and Co…☆21Updated 11 months ago
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆156Updated 3 years ago
- Fetch the details of assets hosted on AWS.☆86Updated last year
- OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions☆104Updated last year
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆80Updated 2 years ago
- A collection of tools to find data that has been made public in cloud storage systems such as S3 Buckets and Digital Ocean Spaces☆75Updated 3 years ago
- Run Capture the Flags and Security Trainings with OWASP WrongSecrets☆45Updated this week
- ☆76Updated last year
- ☆124Updated last year
- ☆100Updated last year
- A curated list of security tools for Hackers & Builders!☆99Updated 8 months ago
- A tool geared towards pentesting APIs using OpenAPI definitions.☆174Updated 2 years ago