Skip to content
@OWASP

OWASP

The OWASP Foundation

Popular repositories Loading

  1. CheatSheetSeries CheatSheetSeries Public

    The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

    Python 31.1k 4.3k

  2. mastg mastg Public

    The OWASP Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes technical processes for verifying the OWA…

    Python 12.7k 2.6k

  3. wstg wstg Public

    The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

    Dockerfile 8.7k 1.5k

  4. Go-SCP Go-SCP Public

    Golang Secure Coding Practices guide

    Go 5.2k 393

  5. Top10 Top10 Public

    Official OWASP Top 10 Document Repository

    HTML 5.1k 1k

  6. Nettacker Nettacker Public

    Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

    Python 4.8k 975

Repositories

Showing 10 of 1347 repositories
  • www-project-vulnerable-web-applications-directory Public

    The OWASP Vulnerable Web Applications Directory Project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.

    OWASP/www-project-vulnerable-web-applications-directory’s past year of commit activity
    JavaScript 73 CC-BY-SA-4.0 43 7 0 Updated Jan 13, 2026
  • Nest Public

    Your gateway to OWASP. Discover, engage, and help shape the future!

    OWASP/Nest’s past year of commit activity
    Python 302 MIT 411 167 (5 issues need help) 54 Updated Jan 13, 2026
  • wrongsecrets Public

    Vulnerable app with examples showing how to not use secrets

    OWASP/wrongsecrets’s past year of commit activity
    Java 1,385 AGPL-3.0 521 25 (9 issues need help) 16 Updated Jan 12, 2026
  • owasp.github.io Public

    OWASP Foundation main site repository

    OWASP/owasp.github.io’s past year of commit activity
    HTML 622 CC-BY-SA-4.0 305 2 1 Updated Jan 12, 2026
  • OWASP/www-event-appsecil’s past year of commit activity
    SCSS 1 14 1 3 Updated Jan 13, 2026
  • www-project-ai-security-and-privacy-guide Public

    OWASP Foundation Web Respository

    OWASP/www-project-ai-security-and-privacy-guide’s past year of commit activity
    HTML 338 88 9 5 Updated Jan 12, 2026
  • www-project-hactu8 Public

    OWASP Foundation web repository

    OWASP/www-project-hactu8’s past year of commit activity
    HTML 0 1 25 0 Updated Jan 12, 2026
  • www-chapter-heilbronn Public

    OWASP Foundation web repository

    OWASP/www-chapter-heilbronn’s past year of commit activity
    HTML 0 1 0 1 Updated Jan 12, 2026
  • www-community Public

    OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.

    OWASP/www-community’s past year of commit activity
    HTML 1,309 791 13 (2 issues need help) 6 Updated Jan 12, 2026
  • railsgoat Public

    A vulnerable version of Rails that follows the OWASP Top 10

    OWASP/railsgoat’s past year of commit activity
    HTML 906 MIT 776 2 0 Updated Jan 12, 2026