Top #owasp Tools & Software

Explore 17 hand-picked tools and software tagged with owasp — ranked by popularity and community signals.

CheatSheetSeries

github

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Security Python
★ 31,782

juice-shop

github

OWASP Juice Shop: Probably the most modern and sophisticated insecure web application

Security TypeScript
★ 13,068

wstg

github

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

Security
★ 9,179

awesome-appsec

github

A curated list of resources for learning about application security

Security PHP
★ 6,902

awesome-web-hacking

github

A list of web application security

Security
★ 6,819

WhatWeb

github

Next generation web scanner

Security Ruby
★ 6,562

Nettacker

github

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Security Python
★ 5,144

django-DefectDojo

github

Open-Source Unified Vulnerability Management, DevSecOps & ASPM

Security
★ 4,677

dependency-track

github

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Security Java
★ 3,788

bluemonday

github

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

Security Go
★ 3,667

coreruleset

github

OWASP CRS (Official Repository)

Security Python
★ 3,105

awesome-nodejs-security

github

Awesome Node.js Security resources

Security
★ 3,001

Astra

github

Automated Security Testing For REST API's

Security Python
★ 2,645

bearer

github

Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.

Security Go
★ 2,641

find-sec-bugs

github

The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Kotlin, Groovy and Scala projects)

Security Java
★ 2,422

masvs

github

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

Security Python
★ 2,367

API-Security

github

OWASP API Security Project

Security
★ 2,276