mpirnat / lets-be-bad-guysLinks
A deliberately-vulnerable website and exercises for teaching about the OWASP Top 10
☆188Updated last year
Alternatives and similar repositories for lets-be-bad-guys
Users that are interested in lets-be-bad-guys are comparing it to the libraries listed below
Sorting:
- A tool to surface security issues in python code☆227Updated 8 years ago
- Vulnerable Django Application☆208Updated 4 years ago
- Resources for developers and security engineers to learn the ropes of application security☆99Updated 7 years ago
- Minion☆355Updated 6 years ago
- INACTIVE - Collection of Tools & Procedures for double checking GitHub configurations☆137Updated last year
- A high entropy string plugin for OpenStack's bandit project☆48Updated 4 years ago
- A reading list for infosec engineers☆542Updated 7 years ago
- Mittn: Security test tool runner for test automation in CI☆197Updated 2 years ago
- Dlint is a tool for encouraging best coding practices and helping ensure we're writing secure Python code.☆328Updated 5 years ago
- OWASP Python Security Project☆412Updated 4 years ago
- Tool used to continuously monitor a Github org for mistaken public commits☆167Updated 9 years ago
- A REST API security testing framework.☆325Updated 4 years ago
- Python and Django implementation of the OWASP RailsGoat project☆75Updated 3 months ago
- Git plugin that prevents sensitive data from being committed.☆316Updated 5 years ago
- Capture the Flag: Web Edition https://stripe.com/blog/capture-the-flag-20☆278Updated 10 years ago
- A tool to generate statistics and help manage bug bounty reports in HackerOne.☆22Updated 5 years ago
- A project designed to parse public source code repositories and find various types of vulnerabilities.☆193Updated 8 years ago
- A collection of Ansible roles for automating infosec builds.☆92Updated 8 years ago
- SeaSponge is an accessible threat modelling tool from Mozilla☆280Updated 7 years ago
- INACTIVE - Security Testing Tool☆107Updated 9 years ago
- A security tool for grabbing screenshots of many web hosts☆326Updated 8 years ago
- User, contributor and developer friendly vulnerability database☆128Updated 7 years ago
- honeyλ - a simple, serverless application designed to create and monitor fake HTTP endpoints (i.e. URL honeytokens) automatically, on top…☆522Updated 7 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆141Updated last year
- The databases, API's and managers behind https://websecweekly.org☆50Updated 10 years ago
- A Github organization reconnaissance tool.☆218Updated 2 years ago
- Db Database Assessment Tool☆212Updated 7 years ago
- An SSRF-preventing wrapper around Python's requests library. Advocate is no longer maintained, please fork and rename if you would like t…☆95Updated 2 years ago
- Tools for auditing WAFS☆464Updated 5 years ago
- An intercepting proxy for web application testing☆411Updated 7 years ago