PeterMosmans / devsecops-lab
Demo files
☆20Updated 2 years ago
Alternatives and similar repositories for devsecops-lab:
Users that are interested in devsecops-lab are comparing it to the libraries listed below
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆120Updated 2 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆16Updated 6 months ago
- ☆75Updated last year
- The OWASP DevSecOps Guideline explains how we can implement a secure pipeline and use best practices and introduce tools that we can use …☆62Updated 8 months ago
- A very vulnerable implementation of a GraphQL API.☆59Updated 3 years ago
- A Broken Application - Very Vulnerable!☆142Updated this week
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆107Updated last year
- ☆184Updated last year
- ☆11Updated last year
- OWASP Code Review Guide Web Repository☆129Updated 2 years ago
- Some good resources for getting started with application security☆141Updated 3 years ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆63Updated last year
- Damn Vulnerable Java (EE) Application☆134Updated last year
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 7 months ago
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆189Updated 3 years ago
- This repo contains the code for my secure code review challenges☆88Updated this week
- 🖇️ STRIDE vs. ASVS equivalence table☆75Updated 5 months ago
- OWASP Project Developer Guide - Document and Project Web pages☆107Updated last week
- Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud☆51Updated 2 years ago
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆89Updated 11 months ago
- ☆82Updated 3 years ago
- ☆18Updated 3 years ago
- A tool geared towards pentesting APIs using OpenAPI definitions.☆174Updated 2 years ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- Core model including reused documentation☆94Updated 5 months ago
- Awesome list for cloud security related projects☆84Updated 2 years ago
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆78Updated 2 years ago
- Target practice for ffuf☆61Updated 3 years ago
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆156Updated 3 years ago
- Damn Vulnerable C# Application (API)☆72Updated 7 months ago