
HybridTestFramework
End to End testing of Web, API, Cloud, Events and Security

End to End testing of Web, API, Cloud, Events and Security

Autonomous AI red team agent for penetration testing with 13+ specialized agents, 120+ OWASP test cases, and MITRE ATT&CK integration. Supports 15+…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

An open source threat modeling tool from OWASP

The source files and tools needed to build the OWASP Cornucopia decks in various languages

OWASP IoT Security Verification Standard (ISVS)

OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws

OWASP Serverless Top 10

OWASP Secure Agent Playbook Project

Web-based tool for assessing and tracking software security maturity using the OWASP SAMM and DSOMM models, with Docker support and automated mailing.


Vulnerable app with examples showing how to not use secrets



The Governed Agentic AI Operating System — Rust + Tauri 2.0 | 65 crates, 658 commands, 84 pages, 5,029 tests, 10/10 OWASP

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding security and…

a Damn Vulnerable Serverless Application