Some good resources for getting started with application security
☆148Jun 2, 2021Updated 5 years ago
Alternatives and similar repositories for Resources-for-Application-Security
Users that are interested in Resources-for-Application-Security are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exh…☆689Aug 7, 2020Updated 6 years ago
- Want to become an Application Security Engineer? Here's a roadmap to help you get there.☆43Sep 3, 2022Updated 4 years ago
- Application Security Vulnerability Periodic Table☆14Aug 25, 2014Updated 12 years ago
- Repo to hold the markdown-ified metadata on AppSec tools that are automation-friendly☆12Jun 13, 2016Updated 10 years ago
- 12-week Geekwise course on web application security and hardening.☆17Mar 19, 2020Updated 6 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- An ongoing & curated collection of awesome software best practices and techniques, libraries and frameworks, E-books and videos, websites…☆71Jul 25, 2025Updated last year
- ☆15Dec 6, 2023Updated 2 years ago
- This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with t…☆14Aug 7, 2019Updated 7 years ago
- Common Security Interview Questions with Answers☆32Jul 4, 2023Updated 3 years ago
- FAANG (MANGA) Security Engineer Interview Collection. An ongoing & curated collection of awesome software, frameworks and libraries, lear…☆110Sep 20, 2022Updated 4 years ago
- This lab is created to demonstrate pass-the-hash, blind sql and SSTI vulnerabilities☆95Jun 11, 2023Updated 3 years ago
- Cracking the Security Engineer Interviews☆61Aug 20, 2022Updated 4 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆21Apr 28, 2019Updated 7 years ago
- This application is developed to test the race condition vulnerability in the web application. We have discussed about this vulnerability…☆14Oct 1, 2016Updated 9 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- SDK for building SecDim Play challenges, an open training game for AppSec, DevSecOps, CloudSec, etc.☆30Aug 24, 2026Updated last month
- Security test tool for Blind XSS☆28Mar 5, 2020Updated 6 years ago
- This is a set of tips and reminders for pentesting processes and scripts/programs. Initially for personal use, but if anyone else finds t…☆53Mar 2, 2020Updated 6 years ago
- ☆244Jun 10, 2021Updated 5 years ago
- CollabOzark is a simple tool which helps the researchers track SSRF, RCE, Blind XSS, XXE, External Resource Access payloads triggers.☆135Sep 25, 2019Updated 7 years ago
- This cheatsheet is aimed at the CTF Players and Beginners to help them understand Web Application Vulnerablity with examples.☆486Mar 14, 2026Updated 6 months ago
- Hands-on practical use of HTTP security headers as browser security controls to help secure web applications☆22Jun 14, 2026Updated 3 months ago
- A curated list of resources for learning about application security☆7,067Feb 22, 2025Updated last year
- Resources I consider useful for security research of web applications☆62Dec 15, 2020Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆215Oct 31, 2024Updated last year
- Roadmap for preparing for OSCP, anyone is free to use this, and also feedback and contributions are welcome☆395Jan 1, 2026Updated 8 months ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆32Jan 22, 2018Updated 8 years ago
- Python script to give you subsets of the nmap "top-ports". For example, I want the 10th to 100th most common TCP ports. Spits out a comma…☆18Mar 8, 2020Updated 6 years ago
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆22Jun 14, 2020Updated 6 years ago
- Every Security Engineer Interview Question From Glassdoor.com☆1,267Mar 2, 2024Updated 2 years ago
- Tests for race conditions in web applications. Includes a RESTful API to integrate into a continuous integration pipeline.☆638Mar 18, 2022Updated 4 years ago
- Bug Bounty Testing Essential Guideline : Startup Bug Hunters☆57Dec 21, 2020Updated 5 years ago
- OSWE Preparation☆689Jul 25, 2022Updated 4 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- SSRF (Server Side Request Forgery) testing resources☆2,506Oct 12, 2024Updated last year
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆331Mar 27, 2024Updated 2 years ago
- Simple burp extension for routing traffic over tor. It instruments tor to switch to a new circuit after every N requests.☆18Jun 20, 2022Updated 4 years ago
- Repository for all the workshop content delivered at nullcon X on 1st of March 2019☆79Apr 4, 2019Updated 7 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆35Nov 17, 2018Updated 7 years ago
- This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with t…☆950Jan 6, 2025Updated last year
- ☆21Dec 23, 2023Updated 2 years ago