


OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

Pen Test Report Generation and Assessment Collaboration

REST/JSON API to the Burp Suite security tool.


SAML2 Burp Extension

Interactive platform linking security standards and guidelines for designing, developing, testing, and procuring secure software. Provides a unified…

IoTGoat is a deliberately insecure firmware based on OpenWrt.

burpsuite 的Spring漏洞扫描插件。SpringVulScan:支持检测:路由泄露|CVE-2022-22965|CVE-2022-22963|CVE-2022-22947|CVE-2016-4977

Zed Attack Proxy Scripts for finding CVEs and Secrets.

OWASP Kubernetes security and compliance tool [WIP]

Hands-on AI security learning platform with intentionally vulnerable LLM applications. Explore OWASP Top 10 for LLMs through interactive pizza shop…

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

Discover hidden parameters in Caido

OWASP Certified Secure-Software Developer

OWASP SAPKiln is a graphical user interface (GUI) tool designed to facilitate securing and auditing SAP systems effectively.

A Burp Extender plugin, that will take deserialized AMF objects and encode them in XML using the Xtream library