A simple web app that helps developers understand the ASVS requirements. Now supporting ASVS 5.0
☆167Jun 3, 2026Updated last week
Alternatives and similar repositories for asvs
Users that are interested in asvs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆125Nov 8, 2023Updated 2 years ago
- OWASP ASVS checklist for audits☆216Jan 5, 2024Updated 2 years ago
- A curated collection of security tools, frameworks, and resources for Enumeration, Cloud Security, Static Analysis, Threat Intelligence, …☆22Dec 2, 2025Updated 6 months ago
- ☆22Jan 6, 2022Updated 4 years ago
- Yet Another SCA tool☆13Nov 10, 2022Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆21Jan 18, 2022Updated 4 years ago
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆111Jan 8, 2025Updated last year
- We borrow the concept of 'personas' from UX/service design and apply it to threat actors to improve understanding between security, techn…☆11Jun 17, 2020Updated 5 years ago
- OWASP Application Security Verification Standard 4.0 Checklist☆33Apr 15, 2019Updated 7 years ago
- ☆69Jul 18, 2025Updated 10 months ago
- 🖇️ equivalence table between OWASP ASVS standard and STRIDE threat modeling methodology.☆76Aug 22, 2024Updated last year
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆195Aug 27, 2018Updated 7 years ago
- Systematic Universal Security Testing Orchestration☆37Mar 28, 2022Updated 4 years ago
- Pin designs for security related items☆37Feb 16, 2026Updated 3 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- The Outlook HTML Leak Test Project☆41May 12, 2018Updated 8 years ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆123Apr 14, 2023Updated 3 years ago
- Attack Tree modeling sheet for Dia☆20Oct 9, 2018Updated 7 years ago
- REST/JSON interface to Burp Suite☆34Oct 12, 2020Updated 5 years ago
- OWASP Foundation Web Respository☆20May 20, 2026Updated 3 weeks ago
- A place to gather and organize information about using threat modeling frameworks to deal with social conflict in online systems☆57Jun 19, 2025Updated 11 months ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆25Apr 19, 2017Updated 9 years ago
- Python script to check GitHub accounts for world-editable wiki pages☆21May 8, 2023Updated 3 years ago
- SAMM stands for Software Assurance Maturity Model.☆398May 17, 2022Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Agile Threat Modeling Toolkit☆768Apr 8, 2026Updated 2 months ago
- SubdomainDB is a simple self-hosted API that allows you to maintain your own subdomain database.☆31Jan 8, 2018Updated 8 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆121Apr 26, 2021Updated 5 years ago
- Maturity Model Collaborative project☆15Feb 27, 2023Updated 3 years ago
- ☆35May 13, 2021Updated 5 years ago
- OWASP Threat Dragon core files☆29May 15, 2021Updated 5 years ago
- The command-line client for Journal☆12Oct 26, 2024Updated last year
- Reapsaw is a continuous security devsecops tool, which helps in enabling security into CI/CD Pipeline. It supports coverage for multiple …☆41Sep 23, 2020Updated 5 years ago
- Security Champions Playbook v 2.1☆393Sep 25, 2023Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Scripts and auxiliary files for fuzzing PHP's unserialize function☆46Aug 13, 2017Updated 8 years ago
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆33Mar 13, 2018Updated 8 years ago
- A tool for analyzing the attack surface of an application☆19Mar 5, 2025Updated last year
- ☆74Sep 30, 2020Updated 5 years ago
- An open source, online threat modelling tool from OWASP☆484Jul 18, 2025Updated 10 months ago
- Provide some tips to handle Injection into application code (OWASP TOP 10 - A1).☆10Nov 11, 2020Updated 5 years ago
- OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development☆192Aug 28, 2025Updated 9 months ago