Pinned Repositories
community
Public feedback discussions for: GitHub Mobile, GitHub Discussions, GitHub Codespaces, GitHub Sponsors, GitHub Issues and more!
Benchmark
OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web app written in Java, it supports analysis by Static (SAST), Dynamic (DAST), and Runtime (IAST) tools that support Java. The idea is that since it is fully runnable and all the vulnerabilities are actually exploitable, it’s a fair test for any kind of vulnerability detection tool. For more details on this project, please see the OWASP Benchmark Project home page.
esapi-java-legacy
ESAPI (The OWASP Enterprise Security API) is a free, open source, web application security control library that makes it easier for programmers to write lower-risk applications.
jbom
security-unit-tests
TestGitHubAdvSec
Testing out GitHubs' new Advanced Security Feature
www-community
OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.
codeql
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
Top10
Official OWASP Top 10 Document Repository
spotbugs
SpotBugs is FindBugs' successor. A tool for static analysis to look for bugs in Java code.
davewichers's Repositories
davewichers/security-unit-tests
davewichers/Benchmark
OWASP Benchmark is a test suite designed to verify the speed and accuracy of software vulnerability detection tools. A fully runnable web app written in Java, it supports analysis by Static (SAST), Dynamic (DAST), and Runtime (IAST) tools that support Java. The idea is that since it is fully runnable and all the vulnerabilities are actually exploitable, it’s a fair test for any kind of vulnerability detection tool. For more details on this project, please see the OWASP Benchmark Project home page.
davewichers/esapi-java-legacy
ESAPI (The OWASP Enterprise Security API) is a free, open source, web application security control library that makes it easier for programmers to write lower-risk applications.
davewichers/jbom
davewichers/TestGitHubAdvSec
Testing out GitHubs' new Advanced Security Feature
davewichers/www-community
OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.