2-day longest streak
-
Benchmark ⑂
Clone of OWASP Benchmark Project (Java) where all test cases have a dedicated directory more easy to manage by a human.
Java ★ 2 5y agoExplain → -
perf-agent
No description.
Java ★ 2 5y agoExplain → -
juice-shop ⑂
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
TypeScript ★ 1 3y agoExplain → -
java-security-demo ⑂
No description.
★ 0 3y agoExplain → -
sonar-secrets-pre-commit
Simulate Public sonar-secrets-pre-commit
★ 0 8mo agoExplain → -
SuiteCRM ⑂
SuiteCRM - Open source CRM for the world
★ 0 5y agoExplain → -
gemini-cli ⑂
An open-source AI agent that brings the power of Gemini directly into your terminal.
★ 0 11mo agoExplain → -
leaky-repo-nofork
No description.
Python ★ 0 1y agoExplain → -
skills-introduction-to-secret-scanning
GitHub Skills: Introduction to Secret Scanning
★ 0 6mo agoExplain → -
leaky-repo ⑂
Benchmarking repo for secrets scanning
Python ★ 0 1y agoExplain → -
coost ⑂
A tiny boost library in C++11.
★ 0 1y agoExplain → -
phasar ⑂
A LLVM-based static analysis framework.
★ 0 1y agoExplain → -
InvenTree ⑂
Open Source Inventory Management System
Python ★ 0 1y agoExplain → -
cve-2022-42889-text4shell-docker ⑂
Dockerized POC for CVE-2022-42889 Text4Shell
★ 0 3y agoExplain → -
main-repo-submodules
No description.
Java ★ 0 1y agoExplain → -
submodule1
Just to simulate SubModules (submodule1)
Java ★ 0 2y agoExplain → -
pljson ⑂
PL/JSON is a generic JSON object written in PL/SQL. Using PL/SQL object syntax, users instantiate a JSON object and then add members, arrays and additional JSON objects. This object type can store JSON data, in Oracle, persistently.
★ 0 2y agoExplain → -
bicep ⑂
Bicep is a declarative language for describing and deploying Azure resources
★ 0 2y agoExplain → -
wrongsecrets ⑂
Vulnerable app with examples showing how to not use secrets
★ 0 2y agoExplain → -
terraform-aws-s3-bucket ⑂
Terraform module which creates S3 bucket resources on AWS 🇺🇦
HCL ★ 0 3y agoExplain → -
singletons
No description.
Java ★ 0 3y agoExplain → -
Vulnerable-Code-Snippets ⑂
A small collection of vulnerable code snippets
★ 0 3y agoExplain → -
capital ⑂
A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Security vulnerabilities within your own API Security CTF.
★ 0 3y agoExplain → -
tfc-guide-example ⑂
Example Terraform configuration
HCL ★ 0 3y agoExplain → -
analyzers-playground
No description.
Java ★ 0 3y agoExplain → -
FlowBlot.NET ⑂
FlowBlot is static code analysis benchmark project by Codethreat, including sink-source challenges grouped into various technical analysis concepts.
★ 0 5y agoExplain → -
mastodon ⑂
Your self-hosted, globally interconnected microblogging community
★ 0 3y agoExplain → -
Vulnerable-Flask-App ⑂
Erlik 2 - Vulnerable-Flask-App
★ 0 3y agoExplain → -
KubeCon-Sonar
No description.
★ 0 3y agoExplain → -
brokencrystals ⑂
A Broken Application - Very Vulnerable!
★ 0 3y agoExplain → -
odoo ⑂
Odoo. Open Source Apps To Grow Your Business.
★ 0 3y agoExplain → -
compodoc ⑂
:notebook_with_decorative_cover: The missing documentation tool for your Angular, Nest & Stencil application
TypeScript ★ 0 3y agoExplain → -
angular-starter ⑂
Angular Starter
JavaScript ★ 0 3y agoExplain → -
material-ui ⑂
MUI Core is a collection of React UI libraries for shipping new features faster. Start with Material UI, our fully-loaded component library, or bring your own design system to our production-ready components.
★ 0 3y agoExplain → -
DefinitelyTyped ⑂
The repository for high quality TypeScript type definitions.
★ 0 3y agoExplain → -
babel ⑂
🐠 Babel is a compiler for writing next generation JavaScript.
★ 0 3y agoExplain → -
gutenberg ⑂
The Block Editor project for WordPress and beyond. Plugin is available from the official repository.
★ 0 3y agoExplain → -
appsmith ⑂
Low code project to build admin panels, internal tools, and dashboards. Integrates with 15+ databases and any API.
★ 0 3y agoExplain → -
GDevelop ⑂
:video_game: Open-source, cross-platform game engine designed to be used by everyone.
★ 0 3y agoExplain → -
discourse ⑂
A platform for community discussion. Free, open, simple.
★ 0 3y agoExplain → -
vscode ⑂
Visual Studio Code
★ 0 3y agoExplain → -
TypeScript ⑂
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
★ 0 3y agoExplain → -
1up-ng-too-many-parameters ⑂
Created with StackBlitz ⚡️
★ 0 4y agoExplain → -
spyder ⑂
Official repository for Spyder - The Scientific Python Development Environment
★ 0 4y agoExplain → -
sunpy ⑂
SunPy - Python for Solar Physics
★ 0 4y agoExplain → -
rehearsal-pycon1
No description.
★ 0 4y agoExplain → -
swagger-core ⑂
Examples and server integrations for generating the Swagger API Specification, which enables easy access to your REST API
★ 0 4y agoExplain → -
kubestriker ⑂
A Blazing fast Security Auditing tool for Kubernetes
★ 0 4y agoExplain → -
langtron ⑂
No description.
★ 0 4y agoExplain → -
regula ⑂
Regula checks infrastructure as code templates (Terraform, CloudFormation, k8s manifests) for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego
★ 0 4y agoExplain → -
validation_ghaction_extpr
No description.
PHP ★ 0 4y agoExplain → -
matomo ⑂
Liberating Web Analytics. Star us on Github? +1. Matomo is the leading open alternative to Google Analytics that gives you full control over your data. Matomo lets you easily collect data from websites & apps and visualise this data and extract insights. Privacy is built-in. We love Pull Requests!
★ 0 4y agoExplain → -
trojan-source ⑂
Trojan Source: Invisible Vulnerabilities
★ 0 4y agoExplain → -
elyze ⑂
No description.
★ 0 4y agoExplain → -
swisscovid-app-android ⑂
SwissCovid is the official contact tracing app of Switzerland.
Java ★ 0 4y agoExplain → -
gotodev-chrome ⑂
goto.dev - Pull request superpowers
★ 0 5y agoExplain → -
validation_sc
No description.
JavaScript ★ 0 4y agoExplain → -
vulnerable-node ⑂
A very vulnerable web site written in NodeJS with the purpose of have a project with identified vulnerabilities to test the quality of security analyzers tools tools
JavaScript ★ 0 5mo agoExplain → -
dojox_validation_sc
No description.
JavaScript ★ 0 4y agoExplain → -
Lenia ⑂
Lenia - Mathematical Life Forms
★ 0 4y agoExplain → -
GrooveScribe ⑂
Sheet Music Creation, Groove Experimentation, and Practice Tool for drummers.
JavaScript ★ 0 4y agoExplain → -
phpstan-src ⑂
PHPStan's source code. This is where development happens. Check https://github.com/phpstan/phpstan for the distribution repository.
★ 0 4y agoExplain → -
SecurityShepherd ⑂
Web and mobile application security training platform
Java ★ 0 4y agoExplain → -
NodeGoat ⑂
The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how to effectively address them.
★ 0 4y agoExplain → -
DroidBench ⑂
A micro-benchmark suite to assess the stability of taint-analysis tools for Android
★ 0 5y agoExplain → -
apkleaks ⑂
Scanning APK file for URIs, endpoints & secrets.
★ 0 5y agoExplain → -
mvt ⑂
MVT is a forensic tool to look for signs of infection in smartphone devices
★ 0 4y agoExplain → -
algoliasearch-client-kotlin ⑂
⚡️ A fully-featured and blazing-fast Kotlin/Android API client to interact with Algolia.
★ 0 5y agoExplain → -
compiler-explorer ⑂
Run compilers interactively from your web browser and interact with the assembly
JavaScript ★ 0 5y agoExplain → -
mutillidae ⑂
OWASP Mutillidae II is a free, open source, deliberately vulnerable web-application providing a target for web-security enthusiast. Mutillidae can be installed on Linux and Windows using LAMP, WAMP, and XAMMP. It is pre-installed on SamuraiWTF and OWASP BWA. The existing version can be updated on these platforms. With dozens of vulnerabilities and hints to help the user; this is an easy-to-use web hacking environment designed for labs, security enthusiast, classrooms, CTF, and vulnerability assessment tool targets. Mutillidae has been used in graduate security courses, corporate web sec training courses, and as an "assess the assessor" target for vulnerability assessment software.
★ 0 5y agoExplain → -
AltoroJ ⑂
WARNING: This app contains security vulnerabilities. AltoroJ is a sample banking J2EE web application. It shows what happens when web applications are written with consideration of app functionality but not app security. It's a simple and uncluttered platform for demonstrating and learning more about real-life application security issues.
Java ★ 0 5y agoExplain → -
jd_scripts ⑂
No description.
JavaScript ★ 0 5y agoExplain → -
vulnerabilities ⑂
Appknox vulnerabilities list
★ 0 5y agoExplain → -
tool-compare ⑂
No description.
★ 0 5y agoExplain → -
ovaa ⑂
Oversecured Vulnerable Android App
Java ★ 0 5y agoExplain → -
cwa-app-android ⑂
Native Android app using the Apple/Google exposure notification API.
Kotlin ★ 0 5y agoExplain → -
cdkgoat ⑂
CdkGoat is Bridgecrew's "Vulnerable by Design" AWS CDK repository. CdkGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.
★ 0 5y agoExplain → -
cfngoat ⑂
Cfngoat is Bridgecrew's "Vulnerable by Design" Cloudformation repository. Cfngoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.
★ 0 5y agoExplain → -
terragoat ⑂
TerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.
★ 0 5y agoExplain → -
VulnerableApp ⑂
OWASP VulnerableApp Project: For Security Enthusiasts by Security Enthusiasts.
Java ★ 0 5y agoExplain → -
laminas-mvc-skeleton ⑂
Skeleton application for creating laminas-mvc based projects.
★ 0 5y agoExplain → -
storybook ⑂
📓 The UI component explorer. Develop, document, & test for React, Vue, Angular, Ember, Web Components, & more!
★ 0 5y agoExplain → -
demo
No description.
PHP ★ 0 4y agoExplain → -
codyze-java-testcases
Java Test Cases inspired from Codyze that can be compiled and scanned with SonarCloud
Java ★ 0 5y agoExplain → -
Secure-C-Coding-Samples ⑂
No description.
★ 0 5y agoExplain → -
PT.SourceStats ⑂
Utility for statistics collection for different projects. C#, Java and PHP supported for now.
★ 0 7y agoExplain → -
dvws-node ⑂
Damn Vulnerable Web Service is a vulnerable web service/API/application that can be used to learn webservices/API vulnerabilities.
JavaScript ★ 0 5y agoExplain → -
dvws ⑂
Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn real world web service vulnerabilities. NOTE: This project is out of date, please use https://github.com/snoopysecurity/dvws-node
★ 0 6y agoExplain → -
strapi ⑂
🚀 Open source Node.js Headless CMS to easily build customisable APIs
JavaScript ★ 0 5y agoExplain → -
userbase ⑂
Create secure and private web apps using only static JavaScript, HTML, and CSS.
★ 0 6y agoExplain → -
sqlmap ⑂
Automatic SQL injection and database takeover tool
★ 0 6y agoExplain → -
python-wordlist-generator ⑂
Create awesome wordlist with python, demo: https://asciinema.org/a/101677
★ 0 7y agoExplain → -
sonar-mass-issues-plugin
Generate tons of fake issues on files
Java ★ 0 10y agoExplain → -
zulip ⑂
Zulip server - powerful open source team chat
Python ★ 0 6y agoExplain → -
mot ⑂
Multi-Object-Tracking for garbage detection
★ 0 6y agoExplain → -
skf-labs ⑂
Repo for all the OWASP-SKF Docker lab examples
★ 0 6y agoExplain → -
deplacement-covid-19 ⑂
Service de génération de l'attestation de déplacement dérogatoire à présenter dans le cadre du confinement lié au virus covid-19
★ 0 6y agoExplain → -
CppCoreGuidelines ⑂
The C++ Core Guidelines are a set of tried-and-true guidelines, rules, and best practices about coding in C++
★ 0 6y agoExplain → -
sast_community_reproducer ⑂
No description.
JavaScript ★ 0 6y agoExplain → -
dotnet-security-unit-tests ⑂
A web application that contains several unit tests for the purpose of .NET security
★ 0 8y agoExplain → -
spring-petclinic-contrast-java8 ⑂
Vulnerable Version of PetClinic to Validate MMF-1707
Java ★ 0 6y agoExplain → -
OWASP-WebGoat.NET ⑂
OWASP WebGoat.NET
C# ★ 0 6y agoExplain → -
WebGoat.Net ⑂
OWASP's official repository for WebGoat (ASP.NET version)
C# ★ 0 6y agoExplain → -
sonarsource-community-13571-autoscan-php
No description.
PHP ★ 0 6y agoExplain → -
gitignore ⑂
A collection of useful .gitignore templates
★ 0 7y agoExplain → -
PHP-Vulnerability-test-suite ⑂
Collection of vulnerable and fixed PHP synthetic test cases
PHP ★ 0 7y agoExplain → -
extract-sonar-issues
Extract Issues from SonarQube/SonarCloud using the "api/issues/search" API
Java ★ 0 7y agoExplain → -
magento2 ⑂
All Submissions you make to Magento Inc. ("Magento") through GitHub are subject to the following terms and conditions: (1) You grant Magento a perpetual, worldwide, non-exclusive, no charge, royalty free, irrevocable license under your applicable copyrights and patents to reproduce, prepare derivative works of, display, publically perform, sublicense and distribute any feedback, ideas, code, or other information (“Submission") you submit through GitHub. (2) Your Submission is an original work of authorship and you are the owner or are legally entitled to grant the license stated above. (3) You agree to the Contributor License Agreement found here: https://github.com/magento/magento2/blob/master/CONTRIBUTOR_LICENSE_AGREEMENT.html
PHP ★ 0 7y agoExplain → -
minitest-with-shoulda ⑂
Source code for the Minitest with Shoulda article.
Ruby ★ 0 12y agoExplain → -
sonarcloud_go_qscanner_travis ⑂
Go project analyzed on SonarCloud using Travis
Go ★ 0 8y agoExplain → -
dotfiles ⑂
No description.
Shell ★ 0 8y agoExplain → -
jack2 ⑂
jack2 codebase
C++ ★ 0 9y agoExplain → -
sonarlint-website ⑂
No description.
HTML ★ 0 9y agoExplain → -
sonar-erlang ⑂
No description.
Erlang ★ 0 9y agoExplain → -
sqlmap-scripts
No description.
CSS ★ 0 9y agoExplain → -
sonar-ws-list
List all APIs of SonarQube and store them into a file
Java ★ 0 9y agoExplain → -
TestSonarGitHubPlugin ⑂
No description.
Java ★ 0 10y agoExplain → -
sonar-toxicity-chart ⑂
Create a Toxicity Chart based on metrics provided by checkstyle rules.
Java ★ 0 11y agoExplain →
No repos match these filters.