-
Updated
Sep 23, 2020 - Python
#
owasp
Here are 331 public repositories matching this topic...
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
A collection of hacking / penetration testing resources to make you better!
exploit
reverse-engineering
malware
mitm
hacking
owasp
penetration-testing
ctf
privilege-escalation
buffer-overflow
windows-privilege-escalation
privilege-escalation-linux
-
Updated
Sep 15, 2020
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
python
rest
static-analysis
apk
owasp
dynamic-analysis
web-security
ipa
malware-analysis
mobsf
android-security
mobile-security
windows-mobile-security
ios-security
mobile-security-framework
api-testing
cwe
devsecops
cvssv2
runtime-security
-
Updated
Sep 24, 2020 - Python
A curated list of resources for learning about application security
-
Updated
Jun 17, 2020 - PHP
In-depth Attack Surface Mapping and Asset Discovery
-
Updated
Sep 24, 2020 - Go
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
javascript
hacking
owasp
application-security
pentesting
ctf
vulnerable
appsec
hacktoberfest
owasp-top-10
owasp-top-ten
24pullrequests
vulnapp
-
Updated
Sep 24, 2020 - JavaScript
Next generation web scanner
ruby
security
web
scanner
hacking
owasp
penetration-testing
application-security
pentesting
recon
pentest
kali-linux
appsec
network-security
web-hacking
security-tools
penetration-test
hacking-tools
pentesting-tools
penetration-testing-tools
-
Updated
Sep 21, 2020 - Ruby
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS
go
html
sanitization
security
whitelist
risk
xss
data-uri
owasp
html-element
scenario
turns
nofollow
bluemonday
-
Updated
Aug 13, 2020 - Go
Automated Security Testing For REST API's
python
security
owasp
ci-cd
penetration-testing
postman-collection
sdlc
security-automation
penetration-testing-framework
restapiautomation
-
Updated
Aug 19, 2019 - Python
ThunderSon
commented
Sep 12, 2020
What's the issue?
Overwritten test scenario, can be summarized and link to payload lists from other repos
How do we solve it?
Chop down the content to the required and needed information, link to payload lists instead of enumerating all possible usernames and passwords, provide further guidance on how to test.
If no one is up to handle it, I can take care of it
h3xstream
commented
Oct 3, 2019
DefectDojo is an open-source application vulnerability correlation and security orchestration tool.
python
kubernetes
security
automation
django
analytics
owasp
helm-charts
vulnerability-databases
vulnerability-management
security-orchestration
security-automation
devsecops
vulnerability-correlation
-
Updated
Sep 24, 2020 - HTML
Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.org https://twitter.com/owtfp
python
linux
security
nist
framework
passive
mozilla
traffic
owasp
pentest
impact
kali-linux
owtf
semi-passive
web-application-security
-
Updated
Sep 7, 2020 - Python
Easy to use cryptographic framework for data protection: secure messaging with forward secrecy and secure data storage. Has unified APIs across 14 platforms.
javascript
ruby
python
java
swift
rust
golang
php
security
ios
cryptography
encryption
authentication
objective-c
owasp
cryptography-library
secure-messenger
asymmetric-cryptography
symmetric-cryptography
secure-storage
-
Updated
Sep 5, 2020 - C
Awesome Node.js Security resources
-
Updated
Sep 9, 2020 - JavaScript
Automated Penetration Testing Framework
python
automation
bruteforce
owasp
penetration-testing
network-analysis
vulnerability-scanners
information-gathering
portscanner
penetration-testing-framework
-
Updated
Sep 8, 2020 - Python
hackers
hacking
resources
owasp
penetration-testing
exploitation
youtube-channel
web-hacking
vulnerable-applications
learning-hacking
-
Updated
Aug 2, 2020
Dependency-Track is an intelligent Supply Chain Component Analysis platform that allows organizations to identify and reduce risk from the use of third-party and open source components.
security
owasp
bom
vulnerabilities
vulndb
appsec
component-analysis
nvd
vulnerability-detection
sca
software-security
security-automation
devsecops
software-composition-analysis
bill-of-materials
ossindex
purl
package-url
sbom
cyclonedx
-
Updated
Sep 24, 2020 - Java
OWASP Joomla Vulnerability Scanner Project
-
Updated
May 20, 2020 - Perl 6
OWASP WEB Directory Scanner
proxy
scanner
bruteforce
proxies
dirscanner
owasp
dir-scanner
dir-search
pentest
directories-scanner
blackarch
dirsearch
-
Updated
May 9, 2020 - Python
Damn Vulnerable NodeJS Application
-
Updated
Aug 24, 2020 - CSS
The OWASP Vulnerable Web Applications Directory project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.
-
Updated
Sep 15, 2020
Open
Document ZAP
1
omerlh
opened
May 9, 2018
Improve this page
Add a description, image, and links to the owasp topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the owasp topic, visit your repo's landing page and select "manage topics."


The upstream project has added support for CSS inspection. ZAP's Wappalyzer add-on should add support for the same.
It's currently unclear to me if this is applicable to inline styles, just .css files, or both. However, the funct