joswha / Secure-Coding-Handbook
Web Application Secure Coding Handbook resource.
☆347Updated 2 years ago
Alternatives and similar repositories for Secure-Coding-Handbook:
Users that are interested in Secure-Coding-Handbook are comparing it to the libraries listed below
- Ongoing Infosec Deals☆111Updated 5 months ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆204Updated 5 months ago
- My cheatsheet notes to pentest AWS infrastructure☆673Updated 2 years ago
- Checklist of the most important security countermeasures when designing, creating, testing your web/mobile application☆610Updated 5 years ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆316Updated last year
- ☆750Updated 10 months ago
- Storage Explorer - Publicly open storage viewer (Amazon S3 Bucket, Azure Blob, FTP server, HTTP Index Of/)☆444Updated last year
- 📚 A curated list of awesome Docker security resources☆667Updated 5 months ago
- A curated list of awesome CI CD security resources☆541Updated 5 months ago
- Bugbounty Resources☆539Updated last year
- Golden Guide☆484Updated last year
- A collection of hacker tools using HackerOne's API☆266Updated 3 years ago
- Some good resources for getting started with application security☆142Updated 3 years ago
- Tool to find JavaScript files on Websites☆519Updated last year
- Astra is a tool to find URLs and secrets inside a webpage/files☆211Updated 2 years ago
- ☆222Updated 3 years ago
- 🦄🔒 Awesome list of secrets in environment variables 🖥️☆887Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆266Updated 2 years ago
- A small collection of potentially useful contract templates☆387Updated 3 years ago
- Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exh…☆668Updated 4 years ago
- BugBountyTips☆407Updated 10 months ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆122Updated 2 years ago
- a mindmap on pentest #pentestmindmap #oscp #lpt #ecsa #ceh #bugbounty☆245Updated 3 years ago
- DNSTake — A fast tool to check missing hosted DNS zones that can lead to subdomain takeover☆839Updated 2 years ago
- Our OSCP repo: from popping shells to mental health.☆343Updated 2 years ago
- ☆168Updated 4 years ago
- Purposely vulnerable Java application to help lead secure coding workshops☆179Updated 10 months ago
- A step by step workshop to exploit various vulnerabilities in Node.js and Java applications☆156Updated last year
- An organized list of resources including tools, blog-posts and how-to tutorials compiled and created by SCSP community members.☆433Updated 2 years ago
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆288Updated last year