
selenium-wire
Extends Selenium's Python bindings to give you the ability to inspect requests made by the browser.

Extends Selenium's Python bindings to give you the ability to inspect requests made by the browser.

A Burp Extension designed to identify argument injection vulnerabilities.

Rust components for traffic interception and redirection, enabling WireGuard device proxying and local app redirection across macOS, Windows, and…

This is a container of web applications that work with OWASP Bug Bounty for Projects

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

Automated Web Vulnerability Assessment of DVWA using OWASP ZAP to identify and analyze critical security flaws like Remote Code Execution…

OWASP guide for security champions, providing curated resources and learning paths to foster security culture and practices within development teams.


A deliberately vulnerable web application for learning web application security.

Deliberately vulnerable web application with interactive lessons and challenges for learning web application security and penetration testing…

The source files and tools needed to build the OWASP Cornucopia decks in various languages

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how…

The OWASP Benchmark GitHub repo has moved to: https://github.com/OWASP-Benchmark/BenchmarkJava

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

Deploy web honeypots to capture emerging attack data, analyze ModSecurity audit logs via ELK, and share threat intelligence with MISP for…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

Rust client library for the OWASP ZAP API, enabling programmatic access to web application security scanning, vulnerability detection, and proxy…