
CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Curated collection of LLVM security resources covering binary lifting, code obfuscation, static analysis, symbolic execution, sanitizers, and…

List of mixed boolean-arithmetic resources

Using code search to help fix/mitigate log4j CVE-2021-44228

Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network…

Educational presentation analyzing CVE-2021-21193, a use-after-free vulnerability in Google Chrome's Blink engine, including exploitation details and…

CVE intelligence pipeline that compares public CVEs against Nuclei templates to identify missing vulnerability coverage, classify types, and rank…

Comprehensive reference guide to Twitter advanced search operators for precise social media data gathering, including filters for content, users,…

A DAST benchmark of intentionally-vulnerable apps with ground-truth answer keys for scoring scanners

Curated directory of static analysis (SAST) tools and linters for programming languages, configs, build tools, and CI, focused on improving code…

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

Curated index of high-quality resources, tools, and learning materials across software development, security, platforms, and more, maintained by the…

Community curated list of templates for the nuclei engine to find security vulnerabilities.

A collection of ZAP scripts and tips provided by the community - pull requests very welcome!

Fast, developer-friendly JS/TS dependency vulnerability scanner with local lockfile scanning, OSV matching, direct vs transitive visibility, --fix,…

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

Trail of Bits Claude Code skills for security research, vulnerability detection, and audit workflows

A collection of useful resources for hacking WordPress and it's plugins and themes