Owasp

Browse 213 owasp tools

WebGoat Logo

WebGoat is an OWASP-maintained deliberately insecure web application designed to teach web application security through hands-on exercises with intentional vulnerabilities.

0
OWASP SamuraiWTF Logo

The best security training environment for Developers and AppSec Professionals.

1
Bearer CLI Logo

Bearer CLI is a static application security testing tool that scans source code across multiple programming languages to identify and prioritize OWASP Top 10 and CWE Top 25 security vulnerabilities through data flow analysis.

0
OWASP TOP 10 Presentation Logo

A presentation about the OWASP Top 10, a list of the most critical security risks to web applications.

0
OWASP Juice Shop CTF Extension Logo

A Node.js CLI tool that automates the setup of CTF events using OWASP Juice Shop challenges across multiple CTF frameworks.

0
OWASP AppSec Europe '16 Logo

The OWASP AppSec Europe '16 Conference is a leading gathering in web application security, featuring keynote speakers and in-depth trainings in application security topics.

0
Android App Security Checklist Logo

A security checklist based on OWASP standards that provides comprehensive guidelines for designing, testing, and releasing secure Android applications.

0
OWASP Application Security Wiki Logo

A comprehensive online resource for application security knowledge

0
OWASP WrongSecrets Logo

OWASP WrongSecrets is an educational game that teaches proper secrets management by demonstrating common mistakes through interactive challenges across various deployment platforms.

0
OWASP Testing Checklist v4 Markdown Logo

Markdown version of OWASP Testing Checklist v4 for various platforms.

0
Nuxt Security Logo

A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.

0
OWASP OWTF Logo

OWASP OWTF is a penetration testing framework focused on efficiency and alignment with security standards.

0
OWASP ServerlessGoat Logo

A serverless application that demonstrates common serverless security flaws and weaknesses

0
OWASP Mobile Application Security Testing Guide (MASTG) Logo

Comprehensive manual for mobile app security testing and reverse engineering with technical processes for verifying controls.

0
AzureGoat Logo

AzureGoat is a deliberately vulnerable Azure cloud infrastructure that incorporates OWASP Top 10 vulnerabilities and Azure service misconfigurations for security training and penetration testing practice.

0
NodeGoat Logo

NodeGoat provides an environment to learn and address OWASP Top 10 security risks in Node.js web applications.

0
OWASP Foundation Logo

A non-profit organization focused on improving the security of software through resources and training.

0
OWASP Damn Vulnerable Web Sockets (DVWS) Logo

A deliberately vulnerable web application that uses WebSocket communication to provide a training environment for learning about WebSocket-related security vulnerabilities.

0
Amass Logo

Amass is an open-source OWASP tool for comprehensive attack surface mapping and asset discovery through domain reconnaissance and subdomain enumeration.

0
WackoPicko Vulnerable Website Logo

WackoPicko is an intentionally vulnerable web application used for security testing, penetration testing practice, and vulnerability scanner evaluation.

0
OWASP Hackademic Challenges Logo

OWASP Hackademic Challenges is an educational web platform offering 10 realistic vulnerability scenarios for learning information security concepts through hands-on exploitation in a controlled environment.

0