This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Project Inventory"
(Hid the table of contents) |
(Cleaned up formatting of the page to streamline the content) (Tag: Visual edit) |
||
Line 1: | Line 1: | ||
− | |||
− | |||
− | |||
[[File:Flagship_banner.jpg]] | [[File:Flagship_banner.jpg]] | ||
The OWASP Flagship designation is given to projects that have demonstrated strategic value to OWASP and application security as a whole. | The OWASP Flagship designation is given to projects that have demonstrated strategic value to OWASP and application security as a whole. | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | + | '''Tool Projects''' | |
+ | * [[OWASP_Zed_Attack_Proxy_Project|OWASP Zed Attack Proxy]] | ||
+ | * [[OWASP_Web_Testing_Environment_Project|OWASP Web Testing Environment Project]] | ||
+ | * [[OWASP_OWTF|OWASP OWTF]] | ||
+ | * [[OWASP_Dependency_Check|OWASP Dependency Check]] | ||
+ | * [[OWASP_Security_Shepherd|OWASP Security Shepherd]] | ||
+ | '''Code Projects''' | ||
+ | * [[:Category:OWASP_ModSecurity_Core_Rule_Set_Project|OWASP ModSecurity Core Rule Set Project]] | ||
+ | * [[:Category:OWASP_CSRFGuard_Project|OWASP CSRFGuard Project]] | ||
+ | * [[OWASP_AppSensor_Project|OWASP AppSensor Project]] | ||
+ | '''Documentation Projects''' | ||
+ | * [[:Category:OWASP_Application_Security_Verification_Standard_Project|OWASP Application Security Verification Standard Project]] | ||
+ | * [[:Category:Software_Assurance_Maturity_Model|OWASP Software Assurance Maturity Model (SAMM)]] | ||
+ | * [[OWASP_AppSensor_Project|OWASP AppSensor Project]] | ||
+ | * [[:Category:OWASP_Top_Ten_Project|OWASP Top Ten Project]] | ||
+ | * [[OWASP_Testing_Project|OWASP Testing Project]] | ||
[[File:Lab banner.jpg]] | [[File:Lab banner.jpg]] | ||
− | OWASP Labs projects represent projects that have produced a deliverable of value | + | OWASP Labs projects represent projects that have produced a deliverable of value and ready for mainstream usage. |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | = | + | '''Tool Projects''' |
+ | * [[O-Saft|OWASP O-Saft]] | ||
+ | * [[OWASP_Dependency_Track_Project|OWASP Dependency Track Project]] | ||
+ | * [[:Category:OWASP_EnDe|OWASP EnDe Project]] | ||
+ | * [[OWASP_Hackademic_Challenges_Project|OWASP Hackademic Challenges Project]] | ||
+ | * [[OWASP_Mantra_-_Security_Framework|OWASP Mantra Security Framework]] | ||
+ | * [[OWASP_Mobile_Security_Project|OWASP Mobile Security Project]] | ||
+ | * [[OWASP_O2_Platform|OWASP O2 Platform]] | ||
+ | * [[OWASP_Passfault|OWASP Passfault]] | ||
+ | * [[:Category:OWASP Security Ninjas AppSec Training Program|OWASP Security Ninjas Appsec Training Program]] | ||
+ | * [[:Category:OWASP WebGoat Project|OWASP WebGoat Project]] | ||
+ | * [[OWASP_Xenotix_XSS_Exploit_Framework|OWASP Xenotix XSS Exploit Framework]] | ||
+ | * [[OWASP_Code_Pulse_Project|OWASP Code Pulse Project]] | ||
+ | * [[OWASP_Security_Knowledge_Framework#tab=Main | OWASP Security Knowledge Framework]] | ||
+ | *[[OWASP_SeraphimDroid_Project|OWASP SeraphimDroid Project]] | ||
+ | '''Code Projects''' | ||
+ | * [[:Category:OWASP_Enterprise_Security_API|OWASP Enterprise Security API]] | ||
+ | * [[OWASP_Python_Security_Project|OWASP Python Security Project]] | ||
+ | * [[OWASP_Security_Logging_Project|OWASP Security Logging Project]] | ||
+ | '''Documentation Projects''' | ||
+ | * [[OWASP_Application_Security_Guide_For_CISOs_Project|OWASP Application Security Guide For CISOs]] | ||
+ | * [[Cheat_Sheets|OWASP Cheat Sheets Project]] | ||
+ | * [[OWASP_CISO_Survey|OWASP CISO Survey]] | ||
+ | * [[:Category:OWASP_Code_Review_Project|OWASP Code Review Guide Project]] | ||
+ | * [[OWASP_Codes_of_Conduct|OWASP Codes of Conduct]] | ||
+ | * [[OWASP_Cornucopia|OWASP Cornucopia]] | ||
+ | * [[:Category:OWASP_Guide_Project|OWASP Guide Project]] | ||
+ | * [[OWASP_Podcast|OWASP Podcast Project]] | ||
+ | * [[OWASP_Proactive_Controls|OWASP Proactive Controls]] | ||
+ | * [[OWASP_Internet_of_Things_Top_Ten_Project|OWASP Internet of Things Top Ten Project]] | ||
+ | * [[OWASP_Top_10_Privacy_Risks_Project|OWASP Top 10 Privacy Risks Project]] | ||
+ | * [[OWASP_Reverse_Engineering_and_Code_Modification_Prevention_Project|OWASP Reverse Engineering and Code Modification Prevention Project]] | ||
+ | '''Contest Projects''' | ||
+ | *[[OWASP_University_Challenge|OWASP University Challenge]] | ||
+ | * [[:Category:OWASP_CTF_Project|OWASP CTF Project]] | ||
[[File:Incubator_banner.jpg]] | [[File:Incubator_banner.jpg]] | ||
− | OWASP Incubator projects represent the experimental playground where projects are still being fleshed out, ideas are still being proven, and development is still underway. | + | OWASP Incubator projects represent the experimental playground where projects are still being fleshed out, ideas are still being proven, and development is still underway. |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | + | '''Tool Projects''' | |
− | * [[Benchmark|OWASP Benchmark | + | * [[Benchmark|OWASP Benchmark]] |
− | * [[OWASP_Wordpress_Vulnerability_Scanner_Project | OWASP Wordpress Vulnerability Scanner | + | * [[OWASP_Wordpress_Vulnerability_Scanner_Project | OWASP Wordpress Vulnerability Scanner]] |
− | * [[OWASP_Threat_Dragon | OWASP Threat Dragon | + | * [[OWASP_Threat_Dragon | OWASP Threat Dragon]] |
− | * [[OWASP_Faux_Bank_Project|OWASP Faux Bank Project | + | * [[OWASP_Faux_Bank_Project|OWASP Faux Bank Project]] |
− | * [[OWASP_Droid10_Project|OWASP Droid | + | * [[OWASP_Droid10_Project|OWASP Droid]] |
− | *[[OWASP_WAP-Web_Application_Protection|WAP Web Application_Protection | + | *[[OWASP_WAP-Web_Application_Protection|OWASP WAP Web Application_Protection]] |
− | *[[OWASP_Mutillidae_2_Project|OWASP Mutillidae 2 Project | + | *[[OWASP_Mutillidae_2_Project|OWASP Mutillidae 2 Project]] |
− | *[[OWASP_WebSpa_Project|OWASP WebSpa Project | + | *[[OWASP_WebSpa_Project|OWASP WebSpa Project]] |
− | *[[OWASP_Pyttacker_Project|OWASP Pyttacker Project | + | *[[OWASP_Pyttacker_Project|OWASP Pyttacker Project]] |
− | *[[OWASP Rainbow Maker Project | OWASP Rainbow Maker Project | + | *[[OWASP Rainbow Maker Project | OWASP Rainbow Maker Project]] |
− | * [[OWASP_ZSC_Tool_Project|OWASP ZSC Tool Project | + | * [[OWASP_ZSC_Tool_Project|OWASP ZSC Tool Project]] |
− | *[[OWASP_DefectDojo_Project|OWASP DefectDojo Project | + | *[[OWASP_DefectDojo_Project|OWASP DefectDojo Project]] |
− | *[[OWASP_Web_Malware_Scanner_Project|OWASP_Web Malware Scanner Project | + | *[[OWASP_Web_Malware_Scanner_Project|OWASP_Web Malware Scanner Project]] |
− | *[[OWASP_Basic_Expression_%26_Lexicon_Variation_Algorithms_(BELVA)_Project| OWASP Basic Expression Lexicon Variation Algorithms (Belva) Project] | + | *[[OWASP_Basic_Expression_%26_Lexicon_Variation_Algorithms_(BELVA)_Project| OWASP Basic Expression Lexicon Variation Algorithms (Belva) Project]]] |
− | *[[OWASP_VBScan_Project| OWASP VBScan | + | *[[OWASP_VBScan_Project| OWASP VBScan]] |
− | *[[OWASP_AppSec_Pipeline|OWASP Appsec Pipeline | + | *[[OWASP_AppSec_Pipeline|OWASP Appsec Pipeline]] |
− | *[[OWASP_Juice_Shop_Project|OWASP Juice Shop Project | + | *[[OWASP_Juice_Shop_Project|OWASP Juice Shop Project]] |
− | *[[OWASP_Bug_Logging_Tool|OWASP Bug Logging Tool | + | *[[OWASP_Bug_Logging_Tool|OWASP Bug Logging Tool]] |
*[[OWASP_iGoat_Tool_Project|OWASP iGoat Tool Project]] | *[[OWASP_iGoat_Tool_Project|OWASP iGoat Tool Project]] | ||
− | + | '''Code Projects''' | |
− | + | * [[OWASP_Java_Encoder_Project|OWASP Java Encoder Project]] | |
− | *[[ | + | * [[OWASP_Java_HTML_Sanitizer|OWASP Java HTML Sanitizer Project]] |
+ | * [[Projects/OWASP_Node_js_Goat_Project|OWASP Node.js Goat Project]] | ||
+ | * [[OWASP_Mth3l3m3nt_Framework_Project|OWASP Mth3l3m3nt Framework Project]] | ||
+ | * [[WebGoatPHP|OWASP WebGoat PHP Project]] | ||
+ | * [[OWASP_Secure_Headers_Project|OWASP Secure Headers Project]] | ||
+ | * [[OWASP_Vicnum_Project | OWASP Vicnum Projct]] | ||
+ | * [[OWASP_DeepViolet_TLS/SSL_Scanner|OWASP DeepViolet TLS/SSL_Scanner]] | ||
+ | * [[OWASP_Off_the_record_4_Java_Project|OWASP Off the record 4 Java Project]] | ||
+ | * [[OWASP_Learning_Gateway_Project|OWASP Learning Gateway Project]] | ||
+ | '''Documentation Projects''' | ||
+ | *[[OWASP_Snakes_and_Ladders|OWASP Snakes and Ladders Project]] | ||
*[[OWASP Automated Threats to Web Applications]] [[File:Thumbsup.png|15px]] | *[[OWASP Automated Threats to Web Applications]] [[File:Thumbsup.png|15px]] | ||
*[[OWASP_Vulnerable_Web_Applications_Directory_Project|OWASP Vulnerable Web Applications Directory Project]][[File:Thumbsup.png|15px]] | *[[OWASP_Vulnerable_Web_Applications_Directory_Project|OWASP Vulnerable Web Applications Directory Project]][[File:Thumbsup.png|15px]] | ||
Line 137: | Line 110: | ||
*[[OWASP_Mobile_Security_Testing_Guide|OWASP Mobile Security Testing Guide]][[File:Thumbsup.png|15px]] | *[[OWASP_Mobile_Security_Testing_Guide|OWASP Mobile Security Testing Guide]][[File:Thumbsup.png|15px]] | ||
*[[OWASP_Anti-Ransomware_Guide_Project|OWASP Ransomeware Guide Project]][[File:Thumbsup.png|15px]] | *[[OWASP_Anti-Ransomware_Guide_Project|OWASP Ransomeware Guide Project]][[File:Thumbsup.png|15px]] | ||
+ | '''Research''' | ||
+ | * [[OWASP_WASC_Distributed_Web_Honeypots_Project|OWASP WASC Distributed Web Honeypots Project]] | ||
==Educational Initiatives== | ==Educational Initiatives== | ||
Line 168: | Line 143: | ||
==Donated Projects== | ==Donated Projects== | ||
− | OWASP Donated Projects are inactive projects that have been donated to the OWASP | + | OWASP Donated Projects are inactive projects that have been donated to the OWASP Foundation. |
====Tools==== | ====Tools==== |
Revision as of 00:57, 4 June 2017
The OWASP Flagship designation is given to projects that have demonstrated strategic value to OWASP and application security as a whole.
Tool Projects
- OWASP Zed Attack Proxy
- OWASP Web Testing Environment Project
- OWASP OWTF
- OWASP Dependency Check
- OWASP Security Shepherd
Code Projects
Documentation Projects
- OWASP Application Security Verification Standard Project
- OWASP Software Assurance Maturity Model (SAMM)
- OWASP AppSensor Project
- OWASP Top Ten Project
- OWASP Testing Project
OWASP Labs projects represent projects that have produced a deliverable of value and ready for mainstream usage.
Tool Projects
- OWASP O-Saft
- OWASP Dependency Track Project
- OWASP EnDe Project
- OWASP Hackademic Challenges Project
- OWASP Mantra Security Framework
- OWASP Mobile Security Project
- OWASP O2 Platform
- OWASP Passfault
- OWASP Security Ninjas Appsec Training Program
- OWASP WebGoat Project
- OWASP Xenotix XSS Exploit Framework
- OWASP Code Pulse Project
- OWASP Security Knowledge Framework
- OWASP SeraphimDroid Project
Code Projects
Documentation Projects
- OWASP Application Security Guide For CISOs
- OWASP Cheat Sheets Project
- OWASP CISO Survey
- OWASP Code Review Guide Project
- OWASP Codes of Conduct
- OWASP Cornucopia
- OWASP Guide Project
- OWASP Podcast Project
- OWASP Proactive Controls
- OWASP Internet of Things Top Ten Project
- OWASP Top 10 Privacy Risks Project
- OWASP Reverse Engineering and Code Modification Prevention Project
Contest Projects
OWASP Incubator projects represent the experimental playground where projects are still being fleshed out, ideas are still being proven, and development is still underway.
Tool Projects
- OWASP Benchmark
- OWASP Wordpress Vulnerability Scanner
- OWASP Threat Dragon
- OWASP Faux Bank Project
- OWASP Droid
- OWASP WAP Web Application_Protection
- OWASP Mutillidae 2 Project
- OWASP WebSpa Project
- OWASP Pyttacker Project
- OWASP Rainbow Maker Project
- OWASP ZSC Tool Project
- OWASP DefectDojo Project
- OWASP_Web Malware Scanner Project
- OWASP Basic Expression Lexicon Variation Algorithms (Belva) Project]
- OWASP VBScan
- OWASP Appsec Pipeline
- OWASP Juice Shop Project
- OWASP Bug Logging Tool
- OWASP iGoat Tool Project
Code Projects
- OWASP Java Encoder Project
- OWASP Java HTML Sanitizer Project
- OWASP Node.js Goat Project
- OWASP Mth3l3m3nt Framework Project
- OWASP WebGoat PHP Project
- OWASP Secure Headers Project
- OWASP Vicnum Projct
- OWASP DeepViolet TLS/SSL_Scanner
- OWASP Off the record 4 Java Project
- OWASP Learning Gateway Project
Documentation Projects
- OWASP Snakes and Ladders Project
- OWASP Automated Threats to Web Applications
- OWASP Vulnerable Web Applications Directory Project
- OWASP .NET Project*Review Needed
- OWASP WASC Web Hacking Incidents Database Project*Review Needed
- OWASP Incident Response Project*
- OWASP KALP Mobile Project*Review Needed
- OWSP_Application_Security_Program_Quick_Start_Guide_Project*Review Needed
- OWASP_Secure_Configuration_Guide*Review Needed
- OWASP_Knowledge_Based_Authentication_Performance_Metrics_Project
- OWASP RFP Criteria*Review Needed
- OWASP Web Mapper Project
- OWASP 10 Fuer Entwickler*Review Needed
- WASC_OWASP_Web_Application_Firewall_Evaluation_Criteria_Project
- OWASP Mobile Security Testing Guide
- OWASP Ransomeware Guide Project
Research
Educational Initiatives
Health Check February 2016
- OWASP Student Chapters Project
- OWASP Education Project
- OWASP Speakers Project
- OWASP Media Project
- OWASP PHP Security Training Project
- OWASP Online Academy
Low Activity Projects
Low Activity (LABS)[Reviewed July 2015] Health Check February 2016
These projects had no releases in at least a year, however have shown to be valuable tools Code [Low Activity] Health Check February 2016
Tools Health Check February 2016
Documentation [Low Activity] Health Check February 2016
- OWASP AppSec Tutorial Series
- OWASP Legal Project
- Virtual Patching Best Practices
- OWASP Secure Coding Practices - Quick Reference Guide
Donated Projects
OWASP Donated Projects are inactive projects that have been donated to the OWASP Foundation.