Top #appsec Tools & Software
Explore 17 hand-picked tools and software tagged with appsec — ranked by popularity and community signals.
CheatSheetSeries
githubThe OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
SafeLine
githubSafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
zaproxy
githubThe ZAP by Checkmarx Core project
dirsearch
githubWeb path scanner
juice-shop
githubOWASP Juice Shop: Probably the most modern and sophisticated insecure web application
wstg
githubThe Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
awesome-web-hacking
githubA list of web application security
WhatWeb
githubNext generation web scanner
Security-101
github8 Lessons, Kick-start Your Cybersecurity Learning.
faraday
githubOpen Source Vulnerability Management Platform
w3af
githubw3af: web application attack and audit framework, the open source web vulnerability scanner.
django-DefectDojo
githubOpen-Source Unified Vulnerability Management, DevSecOps & ASPM
interactsh
githubAn OOB interaction gathering server and client library
dependency-track
githubDependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
bearer
githubCode security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
kics
githubFind security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.
cicd-goat
githubA deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.