
Audio-Video-Communications-Top-10
OWASP top 10 security risks for audio and video communications, documenting common vulnerabilities and threats in modern real-time communication…

OWASP top 10 security risks for audio and video communications, documenting common vulnerabilities and threats in modern real-time communication…

OWASP Foundation Web Respository

Web and mobile application security training platform

Perl-based Joomla CMS vulnerability scanner automating version enumeration, component detection, exploit matching, firewall identification, and…

Deploy web honeypots to capture emerging attack data, analyze ModSecurity audit logs via ELK, and share threat intelligence with MISP for…

A deliberately vulnerable web application for learning web application security.

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

This is a defunct code base. The project is located at: https://github.com/WebGoat

Community-driven project providing guidance and resources to improve browser security, including best practices and educational materials for…

Application Security Verification Standard

Golang Secure Coding Practices guide

Takes third-party HTML and produces HTML that is safe to embed in your web application. Fast and easy to configure.

PHP-RBAC is an authorization library for PHP. It provides developers with NIST Level 2 Standard Role Based Access Control and more, in the fastest…

Given JSON-like content, The JSON Sanitizer converts it to valid JSON.

Static code analysis scanner for WordPress plugins and themes. Detects vulnerabilities like XSS and SQL injection via modular, extensible…

Modular DevSecOps toolset for REST API security testing, designed for developers, sysadmins, and penetration testers to automate security checks…

Structured curriculum for learning application security, covering secure coding, threat modeling, and DevSecOps practices. Designed for self-paced…

Runtime-aware SCA — proves which CVEs are actually reachable, not just installed.