veracode / verademo
A deliberately insecure Java web application
☆36Updated last month
Alternatives and similar repositories for verademo:
Users that are interested in verademo are comparing it to the libraries listed below
- Externalize Java application access to protected resources as log messages.☆41Updated 10 months ago
- Damn Vulnerable Java (EE) Application☆135Updated last year
- Safelog4j is an instrumentation-based security tool to help teams discover, verify, and solve log4shell vulnerabilities without scanning …☆41Updated 9 months ago
- Evaluation Framework for Dependency Analysis (EFDA)☆43Updated 2 years ago
- An insecure example application (Java)☆33Updated 2 months ago
- Automate security tests using Burp Suite.☆225Updated 9 months ago
- Exports vulnerability scan data from the Checkmarx SAST platform for use in analytical tools.☆19Updated 4 months ago
- Purposely vulnerable Java application to help lead secure coding workshops☆179Updated 9 months ago
- Java Observability Toolkit☆61Updated 10 months ago
- (aka Kotlin Goat) - an intentionally vulnerable Kotlin application☆33Updated 11 months ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- OWASP Foundation Web Respository☆34Updated 6 months ago
- ☆32Updated last year
- A Burp plugin to export findings to DefectDojo☆30Updated last year
- IriusRisk Community☆64Updated last year
- Software Component Verification Standard (SCVS)☆142Updated 11 months ago
- Checkmarx Python SDK☆28Updated last week
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆80Updated 2 years ago
- Repository to showcase various configuration recipes with various technologies☆35Updated 2 years ago
- Vulnerable Java based Web Application☆31Updated 5 years ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆10Updated 4 years ago
- ☆33Updated 3 years ago
- Owasp Orizon is a source code static analyzer tool designed to spot security issues in Java applications.☆144Updated 8 years ago
- vulnerable single sign on☆147Updated 7 months ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆278Updated this week
- Python API library for DefectDojo☆41Updated 2 years ago
- A deliberately vulnerable java app for educational purposes☆17Updated last year
- Sample exploits of common vulnerabilities in Java librarires☆23Updated last year
- A tool geared towards pentesting APIs using OpenAPI definitions.☆174Updated 2 years ago
- A zero-dependency tool for finding secrets in directories☆10Updated 4 years ago