Skip to content
@OWASP

OWASP

The OWASP Foundation

Popular repositories Loading

  1. CheatSheetSeries CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Python 30.7k 4.3k

  2. mastg mastg Public

    The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWA…

    Python 12.5k 2.5k

  3. wstg wstg Public

    The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

    Dockerfile 8.5k 1.5k

  4. Go-SCP Go-SCP Public

    Golang Secure Coding Practices guide

    Go 5.2k 386

  5. Top10 Top10 Public

    Official OWASP Top 10 Document Repository

    HTML 4.9k 947

  6. Nettacker Nettacker Public

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    Python 4.6k 934

Repositories

Showing 10 of 1326 repositories
  • www-project-application-security-verification-standard Public

    OWASP Foundation Web Respository

    OWASP/www-project-application-security-verification-standard’s past year of commit activity
    HTML 81 22 0 1 Updated Nov 10, 2025
  • ASVS Public

    Application Security Verification Standard

    OWASP/ASVS’s past year of commit activity
    HTML 3,226 CC-BY-SA-4.0 775 73 7 Updated Nov 10, 2025
  • Nest Public

    Your gateway to OWASP. Discover, engage, and help shape the future!

    OWASP/Nest’s past year of commit activity
    Python 221 MIT 271 102 38 Updated Nov 10, 2025
  • www-project-ai-security-and-privacy-guide Public

    OWASP Foundation Web Respository

    OWASP/www-project-ai-security-and-privacy-guide’s past year of commit activity
    HTML 328 82 8 5 Updated Nov 10, 2025
  • mastg Public

    The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.

    OWASP/mastg’s past year of commit activity
    Python 12,545 CC-BY-SA-4.0 2,547 305 38 Updated Nov 10, 2025
  • threat-dragon Public

    An open source threat modeling tool from OWASP

    OWASP/threat-dragon’s past year of commit activity
    JavaScript 1,233 Apache-2.0 317 94 (6 issues need help) 4 Updated Nov 10, 2025
  • crAPI Public

    completely ridiculous API (crAPI)

    OWASP/crAPI’s past year of commit activity
    Java 1,365 Apache-2.0 477 28 (1 issue needs help) 16 Updated Nov 10, 2025
  • www-project-top-10-for-large-language-model-applications Public

    OWASP Top 10 for Large Language Model Apps (Part of the GenAI Security Project)

    OWASP/www-project-top-10-for-large-language-model-applications’s past year of commit activity
    TeX 947 260 3 30 Updated Nov 10, 2025
  • www-project-ai-testing-guide Public

    OWASP Foundation web repository

    OWASP/www-project-ai-testing-guide’s past year of commit activity
    Python 432 82 2 1 Updated Nov 10, 2025
  • mas-website Public

    The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and security professionals build, test, and secure mobile applications.

    OWASP/mas-website’s past year of commit activity
    Dockerfile 4 CC-BY-SA-4.0 3 6 5 Updated Nov 10, 2025