coreruleset / ftwLinks
Framework for Testing WAFs (FTW!)
☆129Updated last year
Alternatives and similar repositories for ftw
Users that are interested in ftw are comparing it to the libraries listed below
Sorting:
- Framework for Testing WAFs (FTW!)☆266Updated 2 years ago
- WAFBench (wb) is a tool to measure the performance of WAF(Web Application Firewall) . It's based on latest code of ab (ApacheBench), and …☆110Updated 2 years ago
- multitenant ModSecurity compatible WAF engine from Edgio☆88Updated 5 months ago
- Make TLS/SSL security mass scans with testssl.sh and import results into ElasticSearch☆108Updated 6 years ago
- Python Bindings for ModSecurity v3☆86Updated last year
- Measures the effectiveness of your Web Application Firewall (WAF)☆79Updated last week
- Chef Cookbook which provisions apache+mod_security+owasp-crs☆37Updated 6 years ago
- Signature-free approach library to detect injection and commanding attacks☆91Updated 3 years ago
- Vulnerability Data in ES☆146Updated 7 years ago
- Build a local copy of Security Tracker. Notify via E-mail/Slack if there is an update.☆144Updated last week
- Passive DNS collection using Zeek☆182Updated 2 years ago
- CSP (Content Security Policy) reports server which forwards reports to Elasticsearch.☆57Updated 2 years ago
- Container Security Verification Standard☆58Updated 5 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆138Updated 5 years ago
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Updated 3 years ago
- Finding exposed secrets and personal data in GitLab☆198Updated 6 months ago
- WAF Research☆180Updated 2 years ago
- The official ModSecurity Docker images☆133Updated 2 years ago
- A command line security audit tool for Amazon Web Services☆82Updated 6 years ago
- Web Application Firewall Testing Framework - Go version☆148Updated 2 weeks ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- SIAC is an enterprise SIEM built on open-source technology.☆114Updated 6 years ago
- A Simple Elasticsearch Honeypot☆187Updated 9 years ago
- Python API library for DefectDojo☆42Updated 2 years ago
- A repository for OSSEC rules and decoders☆54Updated last year
- Terraform module which provides easy to configure AWS environment for running automated security scanning solutions at scheduled interval…☆46Updated 6 years ago
- Useful resources for Zeek(https://zeek.org/) (Bro(http://bro.org/))☆31Updated 5 years ago
- Hayat is a script for report and analyze Google Cloud Platform resources.☆80Updated 5 years ago
- Set of CLI tools to transform ModSecurity logs into a meaningful information, given a context.☆52Updated 2 years ago