Skip to content
@OWASP

OWASP

The OWASP Foundation

Popular repositories Loading

  1. CheatSheetSeries CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Python 29.3k 4.1k

  2. owasp-mastg owasp-mastg Public

    The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the contr…

    Python 12.1k 2.4k

  3. wstg wstg Public

    The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

    Dockerfile 7.8k 1.4k

  4. Go-SCP Go-SCP Public

    Golang Secure Coding Practices guide

    Go 5k 380

  5. Top10 Top10 Public

    Official OWASP Top 10 Document Repository

    HTML 4.6k 871

  6. Nettacker Nettacker Public

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    Python 3.9k 841

Repositories

Showing 10 of 1256 repositories
  • www-project-threat-dragon Public

    OWASP Foundation Threat Dragon Project Web Repository

    OWASP/www-project-threat-dragon’s past year of commit activity
    HTML 79 Apache-2.0 30 1 0 Updated Apr 13, 2025
  • ASVS Public

    Application Security Verification Standard

    OWASP/ASVS’s past year of commit activity
    HTML 2,940 CC-BY-SA-4.0 699 63 5 Updated Apr 13, 2025
  • www-project-asvs-security-evaluation-templates-with-nuclei Public

    OWASP ASVS Security Evaluation Templates with Nuclei

    OWASP/www-project-asvs-security-evaluation-templates-with-nuclei’s past year of commit activity
    Python 31 MIT 6 0 0 Updated Apr 13, 2025
  • threat-dragon Public

    An open source threat modeling tool from OWASP

    OWASP/threat-dragon’s past year of commit activity
    JavaScript 1,062 Apache-2.0 278 70 (6 issues need help) 2 Updated Apr 13, 2025
  • www-chapter-jis-university-student-chapter Public

    OWASP Foundation web repository

    OWASP/www-chapter-jis-university-student-chapter’s past year of commit activity
    HTML 3 0 0 0 Updated Apr 13, 2025
  • wrongsecrets Public

    Vulnerable app with examples showing how to not use secrets

    OWASP/wrongsecrets’s past year of commit activity
    Java 1,296 AGPL-3.0 429 23 (11 issues need help) 12 Updated Apr 13, 2025
  • owasp-mastg Public

    The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).

    OWASP/owasp-mastg’s past year of commit activity
    Python 12,131 CC-BY-SA-4.0 2,413 307 37 Updated Apr 13, 2025
  • owasp.github.io Public

    OWASP Foundation main site repository

    OWASP/owasp.github.io’s past year of commit activity
    HTML 578 CC-BY-SA-4.0 279 11 10 Updated Apr 13, 2025
  • www-community Public

    OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.

    OWASP/www-community’s past year of commit activity
    HTML 1,194 720 12 (2 issues need help) 2 Updated Apr 13, 2025
  • www-project-nightingale Public

    OWASP Foundation Web Respository

    OWASP/www-project-nightingale’s past year of commit activity
    HTML 9 3 0 0 Updated Apr 13, 2025