mgreiler / secure-code-review-checklistLinks
☆188Updated 2 years ago
Alternatives and similar repositories for secure-code-review-checklist
Users that are interested in secure-code-review-checklist are comparing it to the libraries listed below
Sorting:
- A starter secure code review checklist☆182Updated 6 years ago
- OWASP Code Review Guide Web Repository☆137Updated 3 years ago
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆294Updated last year
- Some good resources for getting started with application security☆142Updated 4 years ago
- A Broken Application - Very Vulnerable!☆163Updated 3 weeks ago
- This repo contains the code for my secure code review challenges☆143Updated last week
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆128Updated 2 years ago
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆79Updated 2 years ago
- My personal collection of resources (mostly tools and training materials) for source code security audits.☆88Updated 10 months ago
- ☆81Updated 2 years ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆316Updated last year
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.☆108Updated last year
- ☆32Updated 4 years ago
- Damn Vulnerable Java (EE) Application☆139Updated last year
- materials we hand out☆147Updated 3 months ago
- Purposely vulnerable Java application to help lead secure coding workshops☆184Updated last year
- GraphQL security workshop labs☆112Updated this week
- oauth security guidelines☆224Updated 6 years ago
- Awesome information for WebSockets security research☆271Updated 3 years ago
- Websec interview questions by tib3rius answered☆308Updated last year
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆209Updated 8 months ago
- 🚀 Join us for 30days of daily API security tests. #30days30tests We've spent last 120days building amazing API security tests for the c…☆212Updated 2 years ago
- ☆123Updated last year
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆233Updated last year
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆231Updated 3 years ago
- Vulnerable code snippets with fixes for Web2, Web3, API, iOS, Android and Infrastructure-as-Code (IaC)☆163Updated 10 months ago
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆188Updated 3 years ago
- Damn Vulnerable Python Web App☆172Updated last year
- A collection of content, tips and considerations from the AppSec community to spread the word of DevSecOps and guide aspirants who don't …☆26Updated 7 months ago
- A tool geared towards pentesting APIs using OpenAPI definitions.☆178Updated 2 years ago