coreruleset / ftwLinks
Framework for Testing WAFs (FTW!)
☆134Updated last year
Alternatives and similar repositories for ftw
Users that are interested in ftw are comparing it to the libraries listed below
Sorting:
- Framework for Testing WAFs (FTW!)☆266Updated 2 years ago
- multitenant ModSecurity compatible WAF engine from Edgio☆88Updated last year
- Make TLS/SSL security mass scans with testssl.sh and import results into ElasticSearch☆110Updated 7 years ago
- WAFBench (wb) is a tool to measure the performance of WAF(Web Application Firewall) . It's based on latest code of ab (ApacheBench), and …☆113Updated 2 weeks ago
- The official ModSecurity Docker images☆132Updated 3 years ago
- A command line security audit tool for Amazon Web Services☆82Updated 6 years ago
- Finding exposed secrets and personal data in GitLab☆202Updated last year
- Chef Cookbook which provisions apache+mod_security+owasp-crs☆37Updated 7 years ago
- CSP (Content Security Policy) reports server which forwards reports to Elasticsearch.☆59Updated 2 years ago
- Build a local copy of Security Tracker. Notify via E-mail/Slack if there is an update.☆148Updated last week
- Elasticsearch for Offensive Security☆141Updated 5 years ago
- Logstash configuration filter set framework to parse modsecurity audit logs☆112Updated 5 years ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆64Updated 6 years ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project…☆110Updated last year
- Vulnerability Data in ES☆143Updated 8 years ago
- The clever vulnerability dependency finder☆96Updated 3 years ago
- Vulnerability Information Aggregator for CVEs☆124Updated 6 years ago
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Updated 4 years ago
- A repository for OSSEC rules and decoders☆54Updated 2 years ago
- Container Security Verification Standard☆58Updated 6 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 7 years ago
- Signature-free approach library to detect injection and commanding attacks☆97Updated 3 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆104Updated 3 years ago
- Declarative penetration testing orchestration framework☆293Updated 6 years ago
- Yar is a tool for plunderin' organizations, users and/or repositories.☆239Updated 4 years ago
- for AWS Security material☆249Updated 3 years ago
- Measures the effectiveness of your Web Application Firewall (WAF)☆82Updated 5 months ago
- collector/runner☆64Updated 3 months ago
- Passive DNS collection using Zeek☆181Updated 2 years ago
- Fully open-source SAST scanner supporting a range of languages and frameworks. Integrates with major CI pipelines and IDE such as Azure D…☆150Updated 5 years ago