Skip to content
@OWASP

OWASP

The OWASP Foundation

Popular repositories Loading

  1. CheatSheetSeries CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Python 30.5k 4.3k

  2. mastg mastg Public

    The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWA…

    Python 12.5k 2.5k

  3. wstg wstg Public

    The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

    Dockerfile 8.5k 1.5k

  4. Go-SCP Go-SCP Public

    Golang Secure Coding Practices guide

    Go 5.2k 386

  5. Top10 Top10 Public

    Official OWASP Top 10 Document Repository

    HTML 4.8k 933

  6. Nettacker Nettacker Public

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    Python 4.5k 921

Repositories

Showing 10 of 1325 repositories
  • cornucopia Public

    The source files and tools needed to build the OWASP Cornucopia decks in various languages

    OWASP/cornucopia’s past year of commit activity
    Elixir 81 CC-BY-SA-4.0 31 23 1 Updated Oct 21, 2025
  • Nest Public

    Your gateway to OWASP. Discover, engage, and help shape the future!

    OWASP/Nest’s past year of commit activity
    Python 200 MIT 229 82 36 Updated Oct 21, 2025
  • www-chapter-aarhus Public

    OWASP Foundation Web Respository

    OWASP/www-chapter-aarhus’s past year of commit activity
    CSS 5 4 0 0 Updated Oct 21, 2025
  • pytm Public

    A Pythonic framework for threat modeling

    OWASP/pytm’s past year of commit activity
    Python 1,050 201 45 (6 issues need help) 15 Updated Oct 21, 2025
  • www-project-smart-contract-top-10 Public

    OWASP Smart Contract Top 10

    OWASP/www-project-smart-contract-top-10’s past year of commit activity
    HTML 59 17 0 0 Updated Oct 21, 2025
  • www-project-dungeons-and-daemons Public

    This repository contains OWASP Dungeons & Daemons a collection of security games. It's purpose is to promote security awareness and practices.

    OWASP/www-project-dungeons-and-daemons’s past year of commit activity
    Svelte 5 CC-BY-SA-4.0 2 0 6 Updated Oct 21, 2025
  • owasp.github.io Public

    OWASP Foundation main site repository

    OWASP/owasp.github.io’s past year of commit activity
    HTML 605 CC-BY-SA-4.0 297 6 1 Updated Oct 21, 2025
  • AISVS Public
    OWASP/AISVS’s past year of commit activity
    Python 34 CC-BY-SA-4.0 25 7 2 Updated Oct 20, 2025
  • www-project-csrfguard Public

    The aim of this project is to protect Java applications against CSRF attacks with the use of Synchronizer Tokens

    OWASP/www-project-csrfguard’s past year of commit activity
    Java 89 BSD-3-Clause 49 8 (4 issues need help) 6 Updated Oct 20, 2025
  • www-project-penetration-testing-kit Public

    OWASP Foundation Web Respository

    OWASP/www-project-penetration-testing-kit’s past year of commit activity
    HTML 21 4 0 1 Updated Oct 20, 2025