
Nest
Your gateway to OWASP. Discover, engage, and help shape the future!

Your gateway to OWASP. Discover, engage, and help shape the future!

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

OWASP SAPKiln is a graphical user interface (GUI) tool designed to facilitate securing and auditing SAP systems effectively.

A collection of hacking / penetration testing resources to make you better!

A collection of awesome platforms, blogs, documents, books, resources and cool stuff about security

Next generation web scanner

Curated list of web application security resources including books, tools, cheat sheets, labs, and courses for learning penetration testing and…

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Go client to communicate with Chaos DB API.

Scans public code repositories and code snippet platforms to extract and validate AI service API keys with real-time dashboard and multi-format…

Broken Object Level Authorization (BOLA) in CERN's Indico leads to authenticated user enumeration.

SDK for querying the Intelligence X search engine and data archive, supporting selectors like email, domain, IP, and phone. Includes API wrappers in…

RESTful API wrapping Nmap for automated network scanning, port detection, service enumeration, and vulnerability analysis with optional AI-powered…

API-first subdomain discovery service using Certificate Transparency logs for fast, passive enumeration of subdomains via a REST API with JSON or…

The OWASP SecureTea Project provides a one-stop security solution for various devices (personal computers / servers / IoT devices)

An open, vendor-neutral verification standard for traceable, reviewable, and rights-aware open-source intelligence. Current release: OOVS v0.1.0.

Maryam: Open-source Intelligence(OSINT) Framework

OWASP D4N155 - Intelligent and dynamic wordlist using OSINT