A collection of hacking / penetration testing resources to make you better!
Updated Mar 18, 2019
A curated list of resources for learning about application security
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific applic…
Python
Updated Mar 21, 2019
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
In-depth DNS Enumeration and Network Mapping
Go
Updated Mar 10, 2019
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content …
Go
Updated Mar 14, 2019
Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more eff…
Automated Security Testing For REST API's
The SpotBugs plugin for security audits of Java web applications and Android applications. (Also work with Groovy and…
In-depth DNS Enumeration and Network Mapping
Go
Updated Mar 21, 2019
DefectDojo is an open-source application vulnerability correlation and security orchestration tool.
Python
Updated Mar 22, 2019
Automated Penetration Testing Framework
A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.
Python
Updated Nov 8, 2018
OWASP ZSC - Shellcode/Obfuscate Code Generator
Python
Updated Apr 24, 2018
OWASP Joomla Vulnerability Scanner Project
Perl 6
Updated Feb 26, 2019
Awesome Node.js Security resources
Updated Mar 9, 2019
OWASP WEB Directory Scanner
Python
Updated Jan 23, 2019
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk …
OWASP VBScan is a Black Box vBulletin Vulnerability Scanner
Perl
Updated Sep 17, 2018
Application Security Automation
Damn Vulnerable NodeJS Application
CSS
Updated Jan 8, 2019
OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server…
PHP
Updated Jun 13, 2018
OWASP Web Application Security Testing Checklist
Updated Mar 14, 2019
Vulnerability Patterns Detector for C# and VB.NET
C#
Updated Feb 15, 2019
This repository contains payload to test NoSQL Injections
Updated Jun 22, 2017
Integrates Dependency-Check reports into SonarQube
🔗 All the resources I could find for learning Ethical Hacking and Penetration Testing.
Updated Mar 8, 2019
CSRF Protector library: standalone library for CSRF mitigation
Capture-the-Flag (CTF) environment setup tools for OWASP Juice Shop
JavaScript
Updated Mar 20, 2019
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabil…
Scala
Updated Feb 18, 2019