mgreiler / awesome-code-review-checklists
β39Updated last month
Alternatives and similar repositories for awesome-code-review-checklists:
Users that are interested in awesome-code-review-checklists are comparing it to the libraries listed below
- Sample exploits of common vulnerabilities in Java librariresβ23Updated 11 months ago
- Awesome Java Security Resources πΆβπβ303Updated last year
- ZAP Management Scriptsβ21Updated 3 weeks ago
- β91Updated last month
- OWASP Code Review Guide Web Repositoryβ123Updated 2 years ago
- OWASP Foundation Web Respositoryβ129Updated 2 weeks ago
- This plugin adds an ability to perform automatic code scan by Checkmarx server and shows results summary and trend in Jenkins interface.β42Updated last month
- β37Updated 3 years ago
- Demonstrate how usage of the Java Security Manager can prevent Remote Code Execution (RCE) exploits.β25Updated 11 months ago
- This is a working copy of the OWASP Project Handbook and is the draft where changes are made before publishing a final version on the OWAβ¦β15Updated 7 years ago
- exercises for this training course offered via O'Reillyβ17Updated last year
- An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilitiesβ18Updated 4 years ago
- An intentionally-vulnerable web application, ported from https://github.com/jzheaux/terracotta-bank-springβ38Updated last year
- β181Updated last year
- The aim of this project is to protect Java applications against CSRF attacks with the use of Synchronizer Tokensβ82Updated last week
- This is a curated list of resources about code reviews: articles, tools, trainings...β202Updated 2 weeks ago
- Artwork for all official ZAP swag - posters, stickers, t-shirts etcβ14Updated 8 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.β55Updated 2 months ago
- Identify vulnerable libraries in Maven dependenciesβ46Updated last year
- Jenkins Plugin from Contrast Securityβ13Updated 3 months ago
- Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning β¦β41Updated 5 months ago
- oauth security guidelinesβ219Updated 5 years ago
- Cloud security projects with Spring Cloud Config Server and Vaultβ27Updated this week
- Lab Material for the One-Day Web Application Penetration Testing Fundamentals Courseβ8Updated 3 years ago
- code reviews to practiceβ16Updated 3 years ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.β37Updated this week
- Externalize Java application access to protected resources as log messages.