
masvs
The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.


The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

An open source threat modeling tool from OWASP

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will…

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

Automated API security testing tool that generates tests from OpenAPI specs, fuzzes inputs, and checks for OWASP API Top 10 vulnerabilities including…

OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/

The OWASP SecureTea Project provides a one-stop security solution for various devices (personal computers / servers / IoT devices)

OWASP Honeypot, Automated Deception Framework.

The source files and tools needed to build the OWASP Cornucopia decks in various languages

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

OWASP Kubernetes security and compliance tool [WIP]

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber…

The Secure Coding Practices Quick-reference Guide from OWASP

OWASP Thick Client Application Security Verification Standard

⚠️ This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory