Highlights
- Pro
Stars
A list of resources for those interested in getting started in bug bounties
โพ๏ธ Collection and Roadmap for everyone who wants DevSecOps. Hope your DevOps are more safe ๐
Make exploiting race conditions in web applications highly efficient and ease-of-use.
Supply-chain Levels for Software Artifacts
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
OWASP Top 10 Maturity Categories for Security Champions
TorBox is an easy to use, anonymizing router based on Raspberry Pi, which also runs on Debian and Ubuntu based systems.
bee detection tensorflow conv net for a rasp pi on side of a hive
Automatically monitor Wordpress with Sqreen PHP agent
A GitHub Action for running the ZAP Baseline scan
Chromecast Web Sender SDK implementation for Firefox
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
secureCodeBox (SCB) - continuous secure delivery out of the box
R Shiny app to visualize beehive measurement data.
๐ฎ ๐ RegEx Denial of Service (ReDos) Scanner
Automatic SQL injection and database takeover tool
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.org https://twitter.com/owtfp
WS-Attacker is a modular framework for web services penetration testing. It is developed by the Chair of Network and Data Security, Ruhr University Bochum (https://nds.rub.de/ ) and the Hackmanit Gโฆ
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
A collection of ZAP scripts and tips provided by the community - pull requests very welcome!