Skip to content
@OWASP

OWASP

The OWASP Foundation

Popular repositories Loading

  1. CheatSheetSeries CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Python 31.1k 4.3k

  2. mastg mastg Public

    The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWA…

    JavaScript 12.7k 2.6k

  3. wstg wstg Public

    The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

    Dockerfile 8.7k 1.5k

  4. Go-SCP Go-SCP Public

    Golang Secure Coding Practices guide

    Go 5.2k 394

  5. Top10 Top10 Public

    Official OWASP Top 10 Document Repository

    HTML 5.1k 1k

  6. Nettacker Nettacker Public

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    Python 4.8k 984

Repositories

Showing 10 of 1347 repositories
  • mas-website Public

    The OWASP Mobile Application Security Project website is the central hub for industry-leading standards, guides, and resources—helping developers and security professionals build, test, and secure mobile applications.

    OWASP/mas-website’s past year of commit activity
    Dockerfile 5 CC-BY-SA-4.0 4 7 6 Updated Jan 19, 2026
  • mastg Public

    The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWASP Mobile Security Weakness Enumeration (MASWE) weaknesses, which are in alignment with the OWASP MASVS.

    OWASP/mastg’s past year of commit activity
    JavaScript 12,668 CC-BY-SA-4.0 2,644 207 62 Updated Jan 19, 2026
  • www-project-ai-security-and-privacy-guide Public

    OWASP Foundation Web Respository

    OWASP/www-project-ai-security-and-privacy-guide’s past year of commit activity
    HTML 342 89 9 5 Updated Jan 19, 2026
  • crAPI Public

    completely ridiculous API (crAPI)

    OWASP/crAPI’s past year of commit activity
    Java 1,408 Apache-2.0 495 29 (1 issue needs help) 20 Updated Jan 19, 2026
  • www-project-thick-client-application-security-verification-standard Public

    OWASP Thick Client Application Security Verification Standard

    OWASP/www-project-thick-client-application-security-verification-standard’s past year of commit activity
    Python 22 CC-BY-SA-4.0 6 13 (1 issue needs help) 1 Updated Jan 19, 2026
  • OCSD Public

    OWASP Certified Secure-Software Developer

    OWASP/OCSD’s past year of commit activity
    21 8 26 0 Updated Jan 19, 2026
  • www-chapter-aarhus Public

    OWASP Foundation Web Respository

    OWASP/www-chapter-aarhus’s past year of commit activity
    CSS 5 3 0 0 Updated Jan 19, 2026
  • cornucopia Public

    The source files and tools needed to build the OWASP Cornucopia decks in various languages

    OWASP/cornucopia’s past year of commit activity
    Svelte 86 CC-BY-SA-4.0 41 24 (6 issues need help) 5 Updated Jan 19, 2026
  • Nest Public

    Your gateway to OWASP. Discover, engage, and help shape the future!

    OWASP/Nest’s past year of commit activity
    Python 318 MIT 430 167 (3 issues need help) 48 Updated Jan 19, 2026
  • wrongsecrets-binaries Public

    Source code for the Binaries of OWASP WrongSecrets

    OWASP/wrongsecrets-binaries’s past year of commit activity
    Shell 11 AGPL-3.0 7 2 1 Updated Jan 19, 2026