Skip to content
@OWASP

OWASP

The OWASP Foundation

Popular repositories Loading

  1. CheatSheetSeries CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Python 28.6k 4k

  2. owasp-mastg owasp-mastg Public

    The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the contr…

    Python 11.9k 2.4k

  3. wstg wstg Public

    The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

    Dockerfile 7.5k 1.4k

  4. Go-SCP Go-SCP Public

    Golang Secure Coding Practices guide

    Go 4.9k 375

  5. Top10 Top10 Public

    Official OWASP Top 10 Document Repository

    HTML 4.4k 848

  6. Nettacker Nettacker Public

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    Python 3.8k 803

Repositories

Showing 10 of 1220 repositories
  • www-project-ai-maturity-assessment Public

    OWASP Foundation web repository

    OWASP/www-project-ai-maturity-assessment’s past year of commit activity
    HTML 2 Apache-2.0 1 0 1 Updated Jan 20, 2025
  • owasp-mastg Public

    The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).

    OWASP/owasp-mastg’s past year of commit activity
    Python 11,900 CC-BY-SA-4.0 2,364 311 32 Updated Jan 20, 2025
  • wrongsecrets Public

    Vulnerable app with examples showing how to not use secrets

    OWASP/wrongsecrets’s past year of commit activity
    Java 1,259 AGPL-3.0 381 25 (12 issues need help) 12 Updated Jan 20, 2025
  • CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    OWASP/CheatSheetSeries’s past year of commit activity
    Python 28,649 CC-BY-SA-4.0 4,013 44 5 Updated Jan 20, 2025
  • wrongsecrets-ctf-party Public Forked from juice-shop/multi-juicer

    Run Capture the Flags and Security Trainings with OWASP WrongSecrets

    OWASP/wrongsecrets-ctf-party’s past year of commit activity
    JavaScript 43 Apache-2.0 140 8 (5 issues need help) 14 Updated Jan 20, 2025
  • www-chapter-fukuoka Public

    OWASP Foundation Web Respository

    OWASP/www-chapter-fukuoka’s past year of commit activity
    HTML 2 1 0 0 Updated Jan 20, 2025
  • www-project-secure-headers Public

    The OWASP Secure Headers Project

    OWASP/www-project-secure-headers’s past year of commit activity
    Python 143 Apache-2.0 40 1 0 Updated Jan 20, 2025
  • www-project-dungeons-and-daemons Public

    This repository contains OWASP Dungeons & Daemons a collection of security games. It's purpose is to promote security awareness and practices.

    OWASP/www-project-dungeons-and-daemons’s past year of commit activity
    Svelte 3 CC-BY-SA-4.0 0 0 5 Updated Jan 20, 2025
  • www-project-open-source-software-top-10 Public

    OWASP Top 10 Open Source Software Risks

    OWASP/www-project-open-source-software-top-10’s past year of commit activity
    HTML 7 CC-BY-SA-4.0 5 0 1 Updated Jan 20, 2025
  • www-project-threat-dragon Public

    OWASP Foundation Threat Dragon Project Web Repository

    OWASP/www-project-threat-dragon’s past year of commit activity
    HTML 74 Apache-2.0 28 2 2 Updated Jan 20, 2025