righettod / poc-csrf
POC in order to materialize CSRF prevention concepts described in the following OWASP CSRF cheatsheet
☆30Updated 7 years ago
Alternatives and similar repositories for poc-csrf:
Users that are interested in poc-csrf are comparing it to the libraries listed below
- OWASP CSRFGuard 3.1.0☆161Updated 2 years ago
- The aim of this project is to protect Java applications against CSRF attacks with the use of Synchronizer Tokens☆85Updated 2 weeks ago
- Repository to showcase various configuration recipes with various technologies☆35Updated 2 years ago
- Coverity Security Library (CSL) is a lightweight set of escaping routines for fixing cross-site scripting (XSS), SQL injection, and other…☆202Updated 8 years ago
- OWASP Security Logging library for Java☆116Updated last year
- Sample exploits of common vulnerabilities in Java librarires☆23Updated last year
- Identify vulnerable libraries in Maven dependencies☆46Updated 2 years ago
- Maven plugin for integrating with HCL AppScan Source☆9Updated last year
- OWASP SonarQube Project☆110Updated 5 years ago
- Artwork for all official ZAP swag - posters, stickers, t-shirts etc☆14Updated last year
- An intentionally-vulnerable web application, ported from https://github.com/jzheaux/terracotta-bank-spring☆38Updated 2 years ago
- An insecure example application (Java)☆32Updated 2 months ago
- A simple Java command-line utility to mirror the entire contents of VulnDB.☆44Updated 3 months ago
- Vulnerable Java based Web Application☆31Updated 5 years ago
- A tiny Java agent that blocks attacks against unsafe deserialization☆83Updated 7 years ago
- Spring-Boot app for demonstrating security vulnaribilities☆13Updated 5 years ago
- Application Intrusion Detection projects☆19Updated 7 months ago
- Plattform to develop and experiment with existing java web attacks.☆31Updated 7 years ago
- Glassfish SVN repository passive mirror - dead repository from bad old times☆11Updated 10 years ago
- Using Apache Shiro JDBC Realm with MySQL Database☆30Updated last year
- a library for performing fast, configurable cleansing of HTML coming from untrusted sources☆196Updated this week
- ZAP Admin☆29Updated this week
- ☆13Updated 11 months ago
- A deliberately insecure Java web application☆36Updated last month
- A Java library for calculating CVSSv2 and CVSSv3 scores and vectors☆44Updated 3 months ago
- LAPSE+ is a security scanner, based on the white box analysis of code for detecting vulnerabilities in Java EE Applications.☆25Updated 7 years ago
- POC in order to protect an document upload application feature against "malicious" document submission.☆43Updated 4 years ago
- A rule for the Maven enforcer plugin to check for vulnerable artifacts within a project.☆40Updated 4 years ago
- The OWASP Testing Guide includes a "best practice" penetration testing framework which users can implement in their own organizations and…☆75Updated 5 years ago
- ☆32Updated 3 years ago