YaleUniversity / ZAP_ASVS_ChecksLinks
ZAP scripts to implement ASVS L1 checking
☆15Updated 3 years ago
Alternatives and similar repositories for ZAP_ASVS_Checks
Users that are interested in ZAP_ASVS_Checks are comparing it to the libraries listed below
Sorting:
- Maturity Model Collaborative project☆15Updated 2 years ago
- InfoSec OpenAI Examples☆19Updated last year
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Updated 3 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- ☆10Updated 3 years ago
- Appsecco training course content on Attacking and Auditing Dockers Containers and Kubernetes Clusters☆14Updated 5 years ago
- ☆24Updated 3 years ago
- A set of AWS resources for testing the Log4Shell vulnerability, deployable with terraform☆12Updated 3 years ago
- Salesforce Policy Deviation Checker☆30Updated 4 years ago
- Tools to automate AWS Cloud security assessments☆25Updated 5 years ago
- ZAP Management Scripts☆23Updated last week
- OWASP Threat Dragon with Gitlab Integration☆27Updated 7 years ago
- Assess certain AWS network configurations☆12Updated 6 years ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆31Updated 3 years ago
- A combined list of helpful awscli commands from Scott Piper's flaws.cloud exercise as well as from Beau Bullock's Breaching the Cloud Tra…☆19Updated 4 years ago
- AWS Security Checks☆39Updated 7 years ago
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆13Updated last year
- A tool to run nmap against each line in a script.☆17Updated 4 years ago
- A Java library for programmatically calculating OWASP Risk Rating scores☆18Updated 2 years ago
- OWASP Foundation Web Respository☆9Updated this week
- A small library to alter AWS API requests; Used for fuzzing research☆22Updated last year
- ☆14Updated 2 years ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- ☆19Updated 3 years ago
- Collection of Semgrep rules for security analysis☆10Updated last year
- Updated incident response generator for training classes☆44Updated 4 years ago
- ☆41Updated 3 months ago
- DefectDojo Community Content☆18Updated 7 months ago
- Virtual Security Operations Center☆50Updated last year
- A Burp plugin to export findings to DefectDojo☆30Updated last year