Pinned Repositories
API-Security
OWASP API Security Project
ASVS
Application Security Verification Standard
CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
DevGuide
The OWASP Developer Guide
Go-SCP
Golang Secure Coding Practices guide
mastg
The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.
masvs
The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.
Nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
Top10
Official OWASP Top 10 Document Repository
wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
OWASP's Repositories
OWASP/phpsec
OWASP PHP Security Project - THIS PROJECT IS INACTIVE AND MAY CONTAIN SECURITY FLAWS
OWASP/OWASP-Testing-Guide
OWASP Testing Guide
OWASP/WebGoat.NET
OWASP WebGoat.NET
OWASP/WebGoat
This is a defunct code base. The project is located at: https://github.com/WebGoat
OWASP/OWASP-Proxy
Owasp Proxy
OWASP/DotNet_ANSA
.NET ASP.NET Security Analyser - Consolidation of multiple ASP.NET OWASP tools
OWASP/WebSpa
A Java web knocking tool for sending a single HTTP/S request to your web server in order to authorise the execution of a premeditated Operating System (O/S) command.
OWASP/AppSecEurope2017
OWASP/SSVL
Simple Software Vulnerability Language (SSVL)
OWASP/Quick-Start-Guide
Repo for the OWASP Quick Start Guide
OWASP/owasp-java-validator
OWASP/OWASP-Project-Metrics
OWASP Project Metrics
OWASP/Vicnum-BasicCTF
A rather basic (intentionally) vulnerable Web application written in PHP, part of the OWASP Vicnum Project
OWASP/appsec-template
Jekyll web site template for OWASP AppSec conference web sites
OWASP/Cuiaba
OWASP Cuiaba, Brazil. A brilliant idea to have the entire chapter and their projects in github! Go Brazil!
OWASP/open-swamp
SWAMP open source
OWASP/owasp-summit-2017-Outcomes
owasp summit 2017 Outcomes
OWASP/Owbot
This is the OWASP Hubot (called OwBot)
OWASP/passfault-docker
Docker image base for OWASP passfault
OWASP/Threat-Modeling-Cheat-Sheets
OWASP/Threat-Modeling-Tools
OWASP/github-template
Templates recommended for GitHub repositories of OWASP projects
OWASP/Maturity-Models-API
Repo to hold the API backend files for the Maturity-Models project
OWASP/Maturity-Models-QA
Repo of QA files of BSIMM site (i.e. browser automation and performance tests)
OWASP/opensammbenchmark
Documents and code relating to the OpenSAMM benchmarking efforts
OWASP/passfault-docker-template
This is a template for customizing a passfault image with your own wordlists
OWASP/dev-pages
Developer Focused OWASP Pages
OWASP/Threat-Modeling-Lightweight-Process
OWASP/owasp-summit-2017-site
Site pages for the owasp-summit-2017
OWASP/Threat-Modeling-Templates