An open source, online threat modelling tool from OWASP
☆484Jul 18, 2025Updated 9 months ago
Alternatives and similar repositories for owasp-threat-dragon
Users that are interested in owasp-threat-dragon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An installable desktop variant of OWASP Threat Dragon☆592Jan 29, 2026Updated 3 months ago
- Application Security Automation☆526Sep 5, 2023Updated 2 years ago
- SeaSponge is an accessible threat modelling tool from Mozilla☆281Apr 16, 2018Updated 8 years ago
- This project is about creating and publishing threat model examples.☆433Nov 10, 2021Updated 4 years ago
- SAMM stands for Software Assurance Maturity Model.☆398May 17, 2022Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A Pythonic framework for threat modeling☆1,125May 2, 2026Updated last week
- threatspec - continuous threat modeling, through code☆383Dec 30, 2020Updated 5 years ago
- OWASP Threat Dragon core files☆11Jan 26, 2026Updated 3 months ago
- OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development☆188Aug 28, 2025Updated 8 months ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆281Feb 17, 2026Updated 2 months ago
- Security Knowledge Framework (SKF) Python Flask / Angular project☆830Mar 12, 2024Updated 2 years ago
- Draw.io libraries for threat modeling diagrams☆791Nov 12, 2020Updated 5 years ago
- Microsoft Threat Modeling Template files☆202Nov 28, 2022Updated 3 years ago
- ThreadFix is a software vulnerability management platform. This GitHub site is far out of date. Please go to www.threadfix.it for up-to-d…☆340Dec 16, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Security Champions Playbook v 2.1☆393Sep 25, 2023Updated 2 years ago
- OWASP Threat Dragon with Gitlab Integration☆27Nov 6, 2017Updated 8 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆181Dec 7, 2018Updated 7 years ago
- A Continuous Threat Modeling methodology☆327Jun 24, 2022Updated 3 years ago
- An application to assist in the organization and prioritization of software security activities.☆139Jun 10, 2021Updated 4 years ago
- Repo to hold the markdown-ified metadata on AppSec tools that are automation-friendly☆12Jun 13, 2016Updated 9 years ago
- goSDL☆521Nov 3, 2025Updated 6 months ago
- Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM☆195Aug 27, 2018Updated 7 years ago
- Open Threat Modeling Template☆52Jul 10, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Open-Source Unified Vulnerability Management, DevSecOps & ASPM☆4,672May 2, 2026Updated last week
- ☆56Jun 17, 2020Updated 5 years ago
- Agile Threat Modeling Toolkit☆760Apr 8, 2026Updated last month
- Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.☆741Mar 18, 2024Updated 2 years ago
- Open-source pentesting management and automation platform by Salesforce Product Security☆601Feb 12, 2022Updated 4 years ago
- OWASP Foundation Web Respository☆28Dec 22, 2025Updated 4 months ago
- Application Security Verification Standard☆3,418Mar 17, 2026Updated last month
- Run DependencyCheck Against Your Orgs GitHub Repos.☆14Jan 5, 2018Updated 8 years ago
- BDD Automated Security Tests for Web Applications☆572Nov 16, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- AppSecPipeline Specification for DevOps automation.☆40Dec 8, 2022Updated 3 years ago
- A curated list of threat modeling resources (Books, courses - free and paid, videos, tools, tutorials and workshops to practice on ) for …☆1,748Aug 2, 2024Updated last year
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,456Jun 11, 2025Updated 10 months ago
- The Elevation of Privilege Threat Modeling Game☆353Jun 20, 2024Updated last year
- Security Monkey monitors AWS, GCP, OpenStack, and GitHub orgs for assets and their changes over time.☆4,373Feb 11, 2021Updated 5 years ago
- Content for OWASP Summit 2017 site☆129Nov 12, 2020Updated 5 years ago
- An information security preparedness tool to do adversarial simulation.☆1,138Apr 1, 2019Updated 7 years ago