mike-goodwin / owasp-threat-dragonView external linksLinks
An open source, online threat modelling tool from OWASP
☆484Jul 18, 2025Updated 6 months ago
Alternatives and similar repositories for owasp-threat-dragon
Users that are interested in owasp-threat-dragon are comparing it to the libraries listed below
Sorting:
- An installable desktop variant of OWASP Threat Dragon☆592Jan 29, 2026Updated 2 weeks ago
- Application Security Automation☆526Sep 5, 2023Updated 2 years ago
- SeaSponge is an accessible threat modelling tool from Mozilla☆281Apr 16, 2018Updated 7 years ago
- This project is about creating and publishing threat model examples.☆427Nov 10, 2021Updated 4 years ago
- A Pythonic framework for threat modeling☆1,103Feb 9, 2026Updated last week
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆280Feb 3, 2026Updated 2 weeks ago
- OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development☆186Aug 28, 2025Updated 5 months ago
- SAMM stands for Software Assurance Maturity Model.☆398May 17, 2022Updated 3 years ago
- threatspec - continuous threat modeling, through code☆378Dec 30, 2020Updated 5 years ago
- OWASP Threat Dragon core files☆11Jan 26, 2026Updated 3 weeks ago
- Security Knowledge Framework (SKF) Python Flask / Angular project☆827Mar 12, 2024Updated last year
- Open Threat Modeling Template☆52Jul 10, 2024Updated last year
- Draw.io libraries for threat modeling diagrams☆785Nov 12, 2020Updated 5 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆182Dec 7, 2018Updated 7 years ago
- ThreadFix is a software vulnerability management platform. This GitHub site is far out of date. Please go to www.threadfix.it for up-to-d…☆342Dec 16, 2022Updated 3 years ago
- A Continuous Threat Modeling methodology☆324Jun 24, 2022Updated 3 years ago
- Microsoft Threat Modeling Template files☆201Nov 28, 2022Updated 3 years ago
- Open-source pentesting management and automation platform by Salesforce Product Security☆599Feb 12, 2022Updated 4 years ago
- Security Champions Playbook v 2.1☆391Sep 25, 2023Updated 2 years ago
- Agile Threat Modeling Toolkit☆723Nov 20, 2025Updated 2 months ago
- Fingerprint a web app using local files as the fingerprint sources☆38May 16, 2017Updated 8 years ago
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆195Aug 27, 2018Updated 7 years ago
- Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.☆739Mar 18, 2024Updated last year
- BDD Automated Security Tests for Web Applications☆568Nov 16, 2022Updated 3 years ago
- An application to assist in the organization and prioritization of software security activities.☆139Jun 10, 2021Updated 4 years ago
- An information security preparedness tool to do adversarial simulation.☆1,142Apr 1, 2019Updated 6 years ago
- Open-Source Unified Vulnerability Management, DevSecOps & ASPM☆4,519Updated this week
- AppSecPipeline Specification for DevOps automation.☆40Dec 8, 2022Updated 3 years ago
- Mittn: Security test tool runner for test automation in CI☆196Jan 2, 2024Updated 2 years ago
- A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for …☆1,707Aug 2, 2024Updated last year
- goSDL☆521Nov 3, 2025Updated 3 months ago
- A toolkit for building self-defending applications through real-time event detection and response☆285Dec 16, 2022Updated 3 years ago
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,435Jun 11, 2025Updated 8 months ago
- 🔐 A concurrent, command-line AWS S3 Fuzzer. Written in Go.☆45Oct 14, 2017Updated 8 years ago
- Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.☆4,373Feb 11, 2021Updated 5 years ago
- OWASP Threat Dragon with Gitlab Integration☆27Nov 6, 2017Updated 8 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆25Nov 7, 2017Updated 8 years ago
- Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Applica…☆534Aug 1, 2018Updated 7 years ago
- ☆57Jun 17, 2020Updated 5 years ago