diff --git a/_data/chapters.json b/_data/chapters.json index 820114483..d283713b6 100644 --- a/_data/chapters.json +++ b/_data/chapters.json @@ -367,6 +367,22 @@ "country": "Peru", "meetings": 0 }, + { + "name": "Maceio", + "url": "https://owasp.org/www-chapter-maceio/", + "created": "2025-09-05", + "updated": "2025-09-30", + "build": "built", + "codeurl": "", + "title": "OWASP Maceio", + "level": "-1", + "type": "", + "region": "South America", + "pitch": "More info soon...", + "meetup-group": "owasp-maceio-chapter", + "country": "Brazil", + "meetings": 0 + }, { "name": "Medellin", "url": "https://owasp.org/www-chapter-medellin/", @@ -611,7 +627,7 @@ "name": "Sao Paulo", "url": "https://owasp.org/www-chapter-sao-paulo/", "created": "2019-09-12", - "updated": "2025-09-17", + "updated": "2025-10-07", "build": "built", "codeurl": "", "title": "OWASP Sao Paulo", @@ -659,7 +675,7 @@ "name": "Uruguay", "url": "https://owasp.org/www-chapter-uruguay/", "created": "2019-09-12", - "updated": "2025-07-16", + "updated": "2025-10-08", "build": "built", "codeurl": "", "title": "OWASP Uruguay", @@ -851,7 +867,7 @@ "name": "Austin", "url": "https://owasp.org/www-chapter-austin/", "created": "2019-09-12", - "updated": "2025-09-08", + "updated": "2025-10-06", "build": "built", "codeurl": "", "title": "OWASP Austin", @@ -1059,7 +1075,7 @@ "name": "Colorado Springs", "url": "https://owasp.org/www-chapter-colorado-springs/", "created": "2019-09-12", - "updated": "2025-01-13", + "updated": "2025-09-30", "build": "built", "codeurl": "", "title": "OWASP Colorado Springs", @@ -1427,7 +1443,7 @@ "name": "Las Vegas", "url": "https://owasp.org/www-chapter-las-vegas/", "created": "2019-09-12", - "updated": "2022-07-18", + "updated": "2025-09-26", "build": "built", "codeurl": "", "title": "OWASP Las Vegas", @@ -1459,7 +1475,7 @@ "name": "Los Angeles", "url": "https://owasp.org/www-chapter-los-angeles/", "created": "2019-09-12", - "updated": "2025-09-10", + "updated": "2025-09-30", "build": "built", "codeurl": "", "title": "OWASP Los Angeles", @@ -1795,7 +1811,7 @@ "name": "Ottawa", "url": "https://owasp.org/www-chapter-ottawa/", "created": "2019-09-12", - "updated": "2025-09-22", + "updated": "2025-10-05", "build": "built", "codeurl": "", "title": "OWASP Ottawa", @@ -1987,7 +2003,7 @@ "name": "Saint Louis", "url": "https://owasp.org/www-chapter-saint-louis/", "created": "2019-09-12", - "updated": "2025-07-25", + "updated": "2025-09-29", "build": "built", "codeurl": "", "title": "OWASP Saint Louis", @@ -3167,6 +3183,22 @@ "country": "", "meetings": 0 }, + { + "name": "Gitam", + "url": "https://owasp.org/www-chapter-gitam/", + "created": "2025-10-01", + "updated": "2025-10-01", + "build": "built", + "codeurl": "", + "title": "OWASP GITAM", + "level": "-1", + "type": "", + "region": "Needs Website Update", + "pitch": "More info soon...", + "meetup-group": "", + "country": "India", + "meetings": 0 + }, { "name": "Guadalajara", "url": "https://owasp.org/www-chapter-guadalajara/", @@ -3647,22 +3679,6 @@ "country": "Macedonia", "meetings": 0 }, - { - "name": "Maceio", - "url": "https://owasp.org/www-chapter-maceio/", - "created": "2025-09-05", - "updated": "2025-09-25", - "build": "built", - "codeurl": "", - "title": "OWASP Maceio Chapter", - "level": "-1", - "type": "", - "region": "Needs Website Update", - "pitch": "More info soon...", - "meetup-group": "owasp-maceio-chapter", - "country": "Brazil", - "meetings": 0 - }, { "name": "Maine", "url": "https://owasp.org/www-chapter-maine/", @@ -4303,6 +4319,22 @@ "country": "", "meetings": 0 }, + { + "name": "University Of Exeter", + "url": "https://owasp.org/www-chapter-university-of-exeter/", + "created": "2025-10-07", + "updated": "2025-10-07", + "build": "built", + "codeurl": "", + "title": "OWASP University of Exeter", + "level": "-1", + "type": "", + "region": "Needs Website Update", + "pitch": "More info soon...", + "meetup-group": "", + "country": "United Kingdom", + "meetings": 0 + }, { "name": "Uttaranchal School Of Computing Sciences", "url": "https://owasp.org/www-chapter-uttaranchal-school-of-computing-sciences/", @@ -4643,14 +4675,14 @@ "name": "Bristol Uk", "url": "https://owasp.org/www-chapter-bristol-uk/", "created": "2019-09-12", - "updated": "2025-09-16", + "updated": "2025-10-06", "build": "built", "codeurl": "https://github.com/OWASP/www-chapter-bristol-uk", "title": "OWASP Bristol", "level": "-1", "type": "", "region": "Europe", - "pitch": "More info soon...", + "pitch": "This OWASP Chapter meets in person at various locations in Bristol, England.", "meetup-group": "OWASP-Bristol", "country": "United Kingdom", "meetings": 0 @@ -4755,7 +4787,7 @@ "name": "Czech Republic", "url": "https://owasp.org/www-chapter-czech-republic/", "created": "2019-09-12", - "updated": "2025-09-16", + "updated": "2025-10-02", "build": "built", "codeurl": "", "title": "OWASP Czech Republic", @@ -4819,7 +4851,7 @@ "name": "Dublin", "url": "https://owasp.org/www-chapter-dublin/", "created": "2019-09-12", - "updated": "2025-09-22", + "updated": "2025-10-08", "build": "built", "codeurl": "", "title": "OWASP Dublin", @@ -4883,7 +4915,7 @@ "name": "Germany", "url": "https://owasp.org/www-chapter-germany/", "created": "2019-09-12", - "updated": "2025-09-12", + "updated": "2025-10-08", "build": "built", "codeurl": "", "title": "OWASP Germany", @@ -5155,7 +5187,7 @@ "name": "Leiria", "url": "https://owasp.org/www-chapter-leiria/", "created": "2025-01-16", - "updated": "2025-06-17", + "updated": "2025-10-08", "build": "built", "codeurl": "", "title": "OWASP Leiria", @@ -5251,7 +5283,7 @@ "name": "London", "url": "https://owasp.org/www-chapter-london/", "created": "2019-09-12", - "updated": "2025-09-24", + "updated": "2025-10-07", "build": "built", "codeurl": "https://github.com/OWASP/www-chapter-london", "title": "OWASP London", @@ -5635,7 +5667,7 @@ "name": "Stuttgart", "url": "https://owasp.org/www-chapter-stuttgart/", "created": "2024-03-13", - "updated": "2025-07-09", + "updated": "2025-10-01", "build": "built", "codeurl": "https://github.com/OWASP/www-chapter-stuttgart", "title": "OWASP Stuttgart", @@ -6195,7 +6227,7 @@ "name": "Bangkok", "url": "https://owasp.org/www-chapter-bangkok/", "created": "2023-02-02", - "updated": "2025-08-20", + "updated": "2025-09-30", "build": "built", "codeurl": "", "title": "OWASP Bangkok", @@ -6303,6 +6335,22 @@ "country": "India", "meetings": 0 }, + { + "name": "Bilaspur", + "url": "https://owasp.org/www-chapter-bilaspur/", + "created": "2025-09-26", + "updated": "2025-09-29", + "build": "built", + "codeurl": "", + "title": "OWASP Bilaspur", + "level": "-1", + "type": "", + "region": "Asia", + "pitch": "More info soon...", + "meetup-group": "owasp-bilaspur-chapter", + "country": "India", + "meetings": 0 + }, { "name": "Bishkek", "url": "https://owasp.org/www-chapter-bishkek/", @@ -7603,7 +7651,7 @@ "name": "Mahendra Engineering College", "url": "https://owasp.org/www-chapter-mahendra-engineering-college/", "created": "2023-02-28", - "updated": "2025-05-06", + "updated": "2025-10-06", "build": "built", "codeurl": "", "title": "OWASP Mahendra Engineering College Student Chapter", @@ -7891,7 +7939,7 @@ "name": "National Institute Of Engineering Mysuru", "url": "https://owasp.org/www-chapter-national-institute-of-engineering-mysuru/", "created": "2023-07-12", - "updated": "2025-09-25", + "updated": "2025-10-01", "build": "built", "codeurl": "", "title": "OWASP National Institute of Engineering Mysuru", @@ -7999,6 +8047,22 @@ "country": "India", "meetings": 0 }, + { + "name": "Pccoe", + "url": "https://owasp.org/www-chapter-pccoe/", + "created": "2025-10-07", + "updated": "2025-10-08", + "build": "built", + "codeurl": "https://github.com/OWASP/www-chapter-pccoe", + "title": "OWASP PCCOE", + "level": "-1", + "type": "", + "region": "Asia", + "pitch": "More info soon...", + "meetup-group": "owasp-pccoe-chapter", + "country": "India", + "meetings": 0 + }, { "name": "Penang", "url": "https://owasp.org/www-chapter-penang/", @@ -8227,7 +8291,7 @@ "name": "Salem", "url": "https://owasp.org/www-chapter-salem/", "created": "2021-06-11", - "updated": "2025-07-07", + "updated": "2025-10-07", "build": "built", "codeurl": "", "title": "OWASP Salem", @@ -8335,6 +8399,22 @@ "country": "India", "meetings": 0 }, + { + "name": "Sies Graduate School Of Technology", + "url": "https://owasp.org/www-chapter-sies-graduate-school-of-technology/", + "created": "2025-09-30", + "updated": "2025-10-04", + "build": "errored", + "codeurl": "", + "title": "OWASP SIES Graduate School of Technology", + "level": "-1", + "type": "", + "region": "Asia", + "pitch": "More info soon...", + "meetup-group": "", + "country": "India", + "meetings": 0 + }, { "name": "Singapore", "url": "https://owasp.org/www-chapter-singapore/", @@ -8931,7 +9011,7 @@ "name": "Algiers", "url": "https://owasp.org/www-chapter-algiers/", "created": "2023-11-06", - "updated": "2025-09-24", + "updated": "2025-10-02", "build": "built", "codeurl": "https://github.com/OWASP/www-chapter-algiers", "title": "OWASP Algiers", diff --git a/_data/committees.json b/_data/committees.json index eb2dc7c80..0886ca1ce 100644 --- a/_data/committees.json +++ b/_data/committees.json @@ -3,7 +3,7 @@ "name": "Chapter", "url": "https://owasp.org/www-committee-chapter/", "created": "2020-08-06", - "updated": "2025-08-25", + "updated": "2025-09-27", "build": "built", "codeurl": "https://github.com/OWASP/www-committee-chapter", "title": "OWASP Chapter Committee", diff --git a/_data/leaders.json b/_data/leaders.json index 5135f0cbb..9ac5bc3c2 100644 --- a/_data/leaders.json +++ b/_data/leaders.json @@ -629,6 +629,20 @@ "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-bhubaneswar/" }, + { + "name": "Akriti Sagar", + "email": "akriti.sagar@owasp.org", + "group": "OWASP Bilaspur", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-bilaspur/" + }, + { + "name": "Abijeet Singh", + "email": "abijeet.singh@owasp.org", + "group": "OWASP Bilaspur", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-bilaspur/" + }, { "name": "Jim Gumbley", "email": "jim.gumbley@owasp.org", @@ -1645,8 +1659,8 @@ "group_url": "https://owasp.org/www-chapter-dubai/" }, { - "name": "Denise Murtagh-Dunne", - "email": "denise.murtaghdunne@owasp.org", + "name": "Vaibhav Gupta", + "email": "vaibhav.gupta@owasp.org", "group": "OWASP Dublin", "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-dublin/" @@ -1903,6 +1917,41 @@ "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-germany/" }, + { + "name": "Sandeep Varma Kalidindi", + "email": "kottali.rohankarthik@owasp.org", + "group": "OWASP GITAM", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-gitam/" + }, + { + "name": "TANISH ANAND", + "email": "shruti.mishra@owasp.org", + "group": "OWASP GITAM", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-gitam/" + }, + { + "name": "Bandi Mohan", + "email": "bandi.mohan@owasp.org", + "group": "OWASP GITAM", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-gitam/" + }, + { + "name": "KOTTALI ROHAN KARTHIK", + "email": "tanish.anand@owasp.org", + "group": "OWASP GITAM", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-gitam/" + }, + { + "name": " Shruti Mishra", + "email": "sandeep.kalidindi@owasp.org", + "group": "OWASP GITAM", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-gitam/" + }, { "name": "Asheesh Tiwari ", "email": "asheesh.tiwari@owasp.org", @@ -3114,13 +3163,6 @@ "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-leiria/" }, - { - "name": "Luis Serra", - "email": "luis.serra@owasp.org", - "group": "OWASP Leiria", - "group-type": "chapter", - "group_url": "https://owasp.org/www-chapter-leiria/" - }, { "name": "John Vargas", "email": "john.vargas@owasp.org", @@ -3341,28 +3383,28 @@ { "name": "Wesley Marinho", "email": "wesley.marinho@owasp.org", - "group": "OWASP Maceio Chapter", + "group": "OWASP Maceio", "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-maceio/" }, { "name": "Byron Lanverly", "email": "lanverly@owasp.org", - "group": "OWASP Maceio Chapter", + "group": "OWASP Maceio", "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-maceio/" }, { "name": "Arthur Melo", "email": "arthur.melo@owasp.org", - "group": "OWASP Maceio Chapter", + "group": "OWASP Maceio", "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-maceio/" }, { "name": "Felipe Tenorio", "email": "felipe.tenorio@owasp.org", - "group": "OWASP Maceio Chapter", + "group": "OWASP Maceio", "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-maceio/" }, @@ -4234,6 +4276,27 @@ "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-patna/" }, + { + "name": "Asmita Manna", + "email": "asmita.manna@owasp.org", + "group": "OWASP PCCOE", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-pccoe/" + }, + { + "name": "Aaryan Bhujang ", + "email": "aaryan.bhujang@owasp.org", + "group": "OWASP PCCOE", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-pccoe/" + }, + { + "name": "Zeeshan Siddique", + "email": "zeeshan.siddique@owasp.org", + "group": "OWASP PCCOE", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-pccoe/" + }, { "name": "Eiman Haqimi Bin Arrifin", "email": "eiman.haqimi@owasp.org", @@ -5298,6 +5361,41 @@ "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-shiv-nadar-chennai/" }, + { + "name": "Swapnil Wani", + "email": "swapnil.wani@owasp.org", + "group": "OWASP SIES Graduate School of Technology", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-sies-graduate-school-of-technology/" + }, + { + "name": "Vedant Borade", + "email": "vedant.borade@owasp.org", + "group": "OWASP SIES Graduate School of Technology", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-sies-graduate-school-of-technology/" + }, + { + "name": "Abdurrahman Sarguroh", + "email": "abdurrahman.sarguroh@owasp.org", + "group": "OWASP SIES Graduate School of Technology", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-sies-graduate-school-of-technology/" + }, + { + "name": "Ninad Bodke", + "email": "ninad.bodke@owasp.org", + "group": "OWASP SIES Graduate School of Technology", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-sies-graduate-school-of-technology/" + }, + { + "name": "Gaganraj Singh", + "email": "gaganraj.singh.org", + "group": "OWASP SIES Graduate School of Technology", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-sies-graduate-school-of-technology/" + }, { "name": "Wong Onn Chee", "email": "ocwong@owasp.org", @@ -5991,6 +6089,34 @@ "group-type": "chapter", "group_url": "https://owasp.org/www-chapter-universidad-politecnica-de-yucatan-student-chapter/" }, + { + "name": "Mohammed Mohtesham Ali", + "email": "mohtesham.ali@owasp.org", + "group": "OWASP University of Exeter", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-university-of-exeter/" + }, + { + "name": "Achim D. Brucker", + "email": "achim.brucker@owasp.org", + "group": "OWASP University of Exeter", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-university-of-exeter/" + }, + { + "name": "Nehir Yurtsever", + "email": "nehir.yurtsever@owasp.org", + "group": "OWASP University of Exeter", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-university-of-exeter/" + }, + { + "name": "Maxime Pierre Claude Reynaud", + "email": "maxime.reynaud@owasp.org", + "group": "OWASP University of Exeter", + "group-type": "chapter", + "group_url": "https://owasp.org/www-chapter-university-of-exeter/" + }, { "name": "Ali Dehghantanha", "email": "ali.dehghantanha@owasp.org", @@ -6547,28 +6673,21 @@ { "name": "Rob van der Veer", "email": "rob.vanderveer@owasp.org", - "group": "OWASP AI Security and Privacy Guide", + "group": "OWASP AI Exchange", "group-type": "project", "group_url": "https://owasp.org/www-project-ai-security-and-privacy-guide/" }, { "name": "Aruneesh Salhotra", "email": "aruneesh.salhotra@owasp.org", - "group": "OWASP AI Security and Privacy Guide", - "group-type": "project", - "group_url": "https://owasp.org/www-project-ai-security-and-privacy-guide/" - }, - { - "name": "Chris Ancharski", - "email": "ancharskiadvisory@gmail.com", - "group": "OWASP AI Security and Privacy Guide", + "group": "OWASP AI Exchange", "group-type": "project", "group_url": "https://owasp.org/www-project-ai-security-and-privacy-guide/" }, { "name": "Behnaz Karimi", - "email": "behnazkarimi91.bk67@gmail.com", - "group": "OWASP AI Security and Privacy Guide", + "email": "behnaz.karimi@owasp.org", + "group": "OWASP AI Exchange", "group-type": "project", "group_url": "https://owasp.org/www-project-ai-security-and-privacy-guide/" }, @@ -6915,6 +7034,13 @@ "group-type": "project", "group_url": "https://owasp.org/www-project-blockchain-appsec-standard/" }, + { + "name": "Zoe Braiterman", + "email": "zoe.braiterman@owasp.org", + "group": "OWASP Blockchain AppSec Standard", + "group-type": "project", + "group_url": "https://owasp.org/www-project-blockchain-appsec-standard/" + }, { "name": "DonnieBLT on slack", "email": "donnie.brown@owasp.org", @@ -7673,7 +7799,7 @@ }, { "name": "Josh Summitt", - "email": "josh.summitt80@owasp.org", + "email": "josh.summitt@owasp.org", "group": "OWASP Faction", "group-type": "project", "group_url": "https://owasp.org/www-project-faction/" @@ -7937,6 +8063,13 @@ "group-type": "project", "group_url": "https://owasp.org/www-project-kubernetes-top-ten/" }, + { + "name": "Cailyn Edwards, Senior Software Engineer, Cloud Security, @ Auth0 by Okta", + "email": "cailyncodes@gmail.com", + "group": "OWASP Kubernetes Top Ten", + "group-type": "project", + "group_url": "https://owasp.org/www-project-kubernetes-top-ten/" + }, { "name": "Jesus Martinez", "email": "jesuscmartinez@owasp.org", @@ -9192,7 +9325,7 @@ }, { "name": "Starr Brown", - "email": "starr.brown63@owasp.org", + "email": "starr.brown@owasp.org", "group": "OWASP Top 10 in XR", "group-type": "project", "group_url": "https://owasp.org/www-project-top-10-in-xr/" @@ -9442,6 +9575,20 @@ "group-type": "project", "group_url": "https://owasp.org/www-project-waf-advanced-ruleset-management/" }, + { + "name": "Ramin Ghorbani", + "email": "ramin.ghorbani@owasp.org", + "group": "OWASP WAFControl", + "group-type": "project", + "group_url": "https://owasp.org/www-project-wafcontrol/" + }, + { + "name": "Majid Adigozalpour", + "email": "majid.adigozalpour@owasp.org", + "group": "OWASP WAFControl", + "group-type": "project", + "group_url": "https://owasp.org/www-project-wafcontrol/" + }, { "name": "Tony Turner", "email": "tony.turner@owasp.org", diff --git a/_data/project_levels.json b/_data/project_levels.json index 138b9cbd6..aebbcac00 100644 --- a/_data/project_levels.json +++ b/_data/project_levels.json @@ -1923,5 +1923,10 @@ "name": "Top 10 The Game", "repo": "www-project-top-10-the-game", "level": 2 + }, + { + "name": "Finance", + "repo": "www-project-finance", + "level": 2 } ] \ No newline at end of file diff --git a/_data/projects.json b/_data/projects.json index bc3964542..71c176e04 100644 --- a/_data/projects.json +++ b/_data/projects.json @@ -1 +1 @@ -[{"name": ".net", "url": "https://owasp.org/www-project-.net/", "created": "2019-09-12", "updated": "2023-04-13", "build": "no pages", "codeurl": "", "title": "OWASP .Net", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Access Log Parser", "url": "https://owasp.org/www-project-access-log-parser/", "created": "2020-05-08", "updated": "2025-08-01", "build": "built", "codeurl": "https://github.com/OWASP/www-project-access-log-parser", "title": "OWASP Access Log Parser", "level": "-1", "type": "code", "region": "Unknown", "pitch": "Parse and format web access logs for analysis.", "meetup-group": "", "country": ""}, {"name": "Aegis4j", "url": "https://owasp.org/www-project-aegis4j/", "created": "2022-01-07", "updated": "2025-09-21", "build": "no pages", "codeurl": "https://github.com/gredler/aegis4j\thttps://github.com/gredler/aegis4j", "title": "OWASP aegis4j", "level": "2", "type": "code", "region": "Unknown", "pitch": "A Java agent that disables platform features you don't use, before an attacker uses them against you.", "meetup-group": "", "country": ""}, {"name": "Agent Observability Standard 2", "url": "https://owasp.org/www-project-agent-observability-standard-2/", "created": "2025-06-08", "updated": "2025-09-08", "build": "built", "codeurl": "", "title": "OWASP Agent Observability Standard", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Ai Maturity Assessment", "url": "https://owasp.org/www-project-ai-maturity-assessment/", "created": "2024-12-01", "updated": "2025-09-24", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ai-maturity-assessment\thttps://github.com/OWASP/www-project-ai-maturity-assessment", "title": "OWASP AI Maturity Assessment", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "OWASP AI Maturity Assessment", "meetup-group": "", "country": ""}, {"name": "Ai Model Watermarking", "url": "https://owasp.org/www-project-ai-model-watermarking/", "created": "2025-06-30", "updated": "2025-08-16", "build": "built", "codeurl": "", "title": "OWASP AI Model Watermarking", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Ai Security And Privacy Guide", "url": "https://owasp.org/www-project-ai-security-and-privacy-guide/", "created": "2023-01-25", "updated": "2025-09-25", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ai-security-and-privacy-guide\thttps://github.com/OWASP/www-project-ai-security-and-privacy-guide", "title": "OWASP AI Security and Privacy Guide", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Guidance on designing, creating, testing, and procuring secure and privacy-preserving AI systems", "meetup-group": "", "country": ""}, {"name": "Ai Testing Guide", "url": "https://owasp.org/www-project-ai-testing-guide/", "created": "2025-06-10", "updated": "2025-09-24", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ai-testing-guide", "title": "OWASP AI Testing Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "Methodology to perform an AI System Assessment", "meetup-group": "", "country": ""}, {"name": "Ai Threatmaster", "url": "https://owasp.org/www-project-ai-threatmaster/", "created": "2024-03-13", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/san3ncrypt3d/AI-ThreatMaster\thttps://github.com/san3ncrypt3d/AI-ThreatMaster", "title": "OWASP AI-ThreatMaster", "level": 2, "type": "Tool", "region": "Unknown", "pitch": "OWASP AI-ThreatMaster is a threat modeling tool; great for both developers and defenders to adopt as part of shift left approach", "meetup-group": "", "country": ""}, {"name": "Ai Top Ten", "url": "https://owasp.org/www-project-ai-top-ten/", "created": "2023-09-11", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP AI Top Ten", "level": "2", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Aibom", "url": "https://owasp.org/www-project-aibom/", "created": "2024-10-25", "updated": "2025-09-23", "build": "built", "codeurl": "", "title": "OWASP AI Bill of Materials (AIBOM)", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "Bringing transparency and security to AI model supply chains through standardized documentation", "meetup-group": "", "country": ""}, {"name": "Amass", "url": "https://owasp.org/www-project-amass/", "created": "2019-09-12", "updated": "2025-03-05", "build": "building", "codeurl": "https://github.com/owasp-amass/amass", "title": "OWASP Amass", "level": "4", "type": "code", "region": "Unknown", "pitch": "An open source framework that helps information security professionals perform network mapping of attack surfaces and external asset discovery using open source intelligence gathering and reconnaissance techniques!", "meetup-group": "", "country": ""}, {"name": "Androgoat", "url": "https://owasp.org/www-project-androgoat/", "created": "2020-09-28", "updated": "2023-07-17", "build": "no pages", "codeurl": "", "title": "OWASP AndroGoat", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Android Security Inspector Toolkit", "url": "https://owasp.org/www-project-android-security-inspector-toolkit/", "created": "2020-05-28", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/deepsecurity-pe/OWASP-Android-Security-Inspector-Toolkit\thttps://github.com/deepsecurity-pe/ApkAnalyzer", "title": "OWASP Android Security Inspector Toolkit", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Anti Ransomware Guide", "url": "https://owasp.org/www-project-anti-ransomware-guide/", "created": "2019-09-12", "updated": "2024-08-05", "build": "no pages", "codeurl": "", "title": "OWASP Anti-Ransomware Guide", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Antiforensics Project", "url": "https://owasp.org/www-project-antiforensics-project/", "created": "2023-11-09", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Antiforensics Project", "level": 2, "type": "documentation", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Antisamy", "url": "https://owasp.org/www-project-antisamy/", "created": "2019-12-27", "updated": "2022-07-05", "build": "built", "codeurl": "https://github.com/nahsra/antisamy\thttps://github.com/nahsra/antisamy", "title": "OWASP AntiSamy", "level": "3", "type": "code", "region": "Unknown", "pitch": "AntiSamy is a Java component that can sanitize HTML/CSS to eliminate potentially malicious JavaScript.", "meetup-group": "", "country": ""}, {"name": "Api Governance", "url": "https://owasp.org/www-project-api-governance/", "created": "2023-07-24", "updated": "2025-07-02", "build": "built", "codeurl": "https://github.com/OWASP/www-project-api-governance", "title": "OWASP API Governance", "level": "2", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Api Security", "url": "https://owasp.org/www-project-api-security/", "created": "2019-09-12", "updated": "2025-08-03", "build": "built", "codeurl": "", "title": "OWASP API Security Project", "level": "3.5", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Api Security Testing Framework", "url": "https://owasp.org/www-project-api-security-testing-framework/", "created": "2025-03-01", "updated": "2025-09-16", "build": "built", "codeurl": "https://github.com/OWASP/api-security-testing-framework\thttps://github.com/OWASP/www-project-api-security-testing-framework", "title": "OWASP API Security Testing Framework", "level": 2, "type": "code", "region": "Unknown", "pitch": "A comprehensive automated testing framework for detecting API security vulnerabilities based on the OWASP API Security Top 10", "meetup-group": "", "country": ""}, {"name": "Apicheck", "url": "https://owasp.org/www-project-apicheck/", "created": "2020-09-09", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/bbva/apicheck\thttps://github.com/BBVA/apicheck", "title": "OWASP APICheck", "level": "2", "type": "code", "region": "Unknown", "pitch": "The DevSecOps toolset for HTTP APIs", "meetup-group": "", "country": ""}, {"name": "Application Gateway", "url": "https://owasp.org/www-project-application-gateway/", "created": "2021-01-18", "updated": "2024-10-29", "build": "built", "codeurl": "https://github.com/gianlucafrei/Application-Gateway\thttps://github.com/gianlucafrei/Application-Gateway", "title": "OWASP Application Gateway", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP Application Gateway is an HTTP proxy that handles Oauth2 authentication and session management and can issue verifyable JWT tokens for downstream systems.", "meetup-group": "", "country": ""}, {"name": "Application Security Awareness Campaigns", "url": "https://owasp.org/www-project-application-security-awareness-campaigns/", "created": "2022-01-28", "updated": "2025-09-25", "build": "built", "codeurl": "", "title": "OWASP Application Security Awareness Campaigns", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Application Security Awareness posters, email templates and other material for creating awareness campaigns for your engineers.", "meetup-group": "", "country": ""}, {"name": "Application Security Curriculum", "url": "https://owasp.org/www-project-application-security-curriculum/", "created": "2019-09-12", "updated": "2025-02-20", "build": "built", "codeurl": "https://github.com/OWASP/Application-Security-Curriculum", "title": "OWASP Application Security Curriculum", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Application Security Hardening", "url": "https://owasp.org/www-project-application-security-hardening/", "created": "2021-06-24", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Application Security Hardening", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Application Security Monitoring Standard", "url": "https://owasp.org/www-project-application-security-monitoring-standard/", "created": "2022-11-14", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP Application Security Monitoring Standard", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Application Security Playbook", "url": "https://owasp.org/www-project-application-security-playbook/", "created": "2022-07-12", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP Application Security Playbook", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Application Security Verification Standard", "url": "https://owasp.org/www-project-application-security-verification-standard/", "created": "2019-09-12", "updated": "2025-09-21", "build": "built", "codeurl": "https://github.com/OWASP/ASVS\thttps://github.com/OWASP/ASVS", "title": "OWASP Application Security Verification Standard (ASVS)", "level": "4", "type": "standards", "region": "Unknown", "pitch": "The OWASP Application Security Verification Standard (ASVS) Project is a framework of security requirements that focus on defining the security controls required when designing, developing and testing modern web applications and web services.", "meetup-group": "", "country": ""}, {"name": "Appsec Contract Builder", "url": "https://owasp.org/www-project-appsec-contract-builder/", "created": "2024-01-10", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP AppSec Contract Builder", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Appsec Discovery", "url": "https://owasp.org/www-project-appsec-discovery/", "created": "2024-11-24", "updated": "2024-11-24", "build": "built", "codeurl": "https://github.com/dmarushkin/appsec-discovery", "title": "OWASP Appsec Discovery", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Appsec Minimum Requirements", "url": "https://owasp.org/www-project-appsec-minimum-requirements/", "created": "2021-05-20", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP AppSec Minimum Requirements", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Appsec Pipeline", "url": "https://owasp.org/www-project-appsec-pipeline/", "created": "2019-09-12", "updated": "2023-10-31", "build": "no pages", "codeurl": "", "title": "OWASP Appsec Pipeline", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The AppSec Pipeline is a resource for AppSec teams to learn the best methods of adding automation and continual testing to an AppSec / Product Security / DevSecOps program.", "meetup-group": "", "country": ""}, {"name": "Appsensor", "url": "https://owasp.org/www-project-appsensor/", "created": "2019-09-12", "updated": "2021-11-05", "build": "built", "codeurl": "https://github.com/jtmelton/appsensor\thttps://github.com/jtmelton/appsensor", "title": "OWASP AppSensor", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Artificial Intelligence Security Verification Standard Aisvs Docs", "url": "https://owasp.org/www-project-artificial-intelligence-security-verification-standard-aisvs-docs/", "created": "2025-04-27", "updated": "2025-09-11", "build": "built", "codeurl": "https://github.com/OWASP/AISVS\thttps://github.com/OWASP/AISVS", "title": "OWASP Artificial Intelligence Security Verification Standard AISVS Docs", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "OWASP AI verification standard for developers and testers", "meetup-group": "", "country": ""}, {"name": "Artificial Intelligence Vulnerability Scoring System", "url": "https://owasp.org/www-project-artificial-intelligence-vulnerability-scoring-system/", "created": "2025-04-27", "updated": "2025-09-11", "build": "built", "codeurl": "https://github.com/OWASP/www-project-artificial-intelligence-vulnerability-scoring-system", "title": "OWASP AI Vulnerability Scoring System (AIVSS)", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Asvs Graph", "url": "https://owasp.org/www-project-asvs-graph/", "created": "2020-08-27", "updated": "2022-07-26", "build": "built", "codeurl": "https://github.com/OWASP/ASVS", "title": "OWASP ASVS-Graph", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP Application Security Verification Standard (ASVS) is a great knowledgebase. This greatly helps organizations by providing guidance as well as in generating Application Security Metrics. With OWASP ASVS-Graph, ASVS is converted to a knowledge-graph derived deep and unexplored relationships with the ASVS Data.", "meetup-group": "", "country": ""}, {"name": "Asvs Security Evaluation Templates With Nuclei", "url": "https://owasp.org/www-project-asvs-security-evaluation-templates-with-nuclei/", "created": "2023-04-03", "updated": "2025-09-13", "build": "built", "codeurl": "https://github.com/OWASP/www-project-asvs-security-evaluation-templates-with-nuclei\thttps://github.com/OWASP/www-project-asvs-security-evaluation-templates-with-nuclei", "title": "OWASP ASVS Security Evaluation Templates with Nuclei", "level": "-1", "type": "code", "region": "Unknown", "pitch": "This project aims to develop nuclei templates for evaluating OWASP Application Security Verification Standard (ASVS) on websites.", "meetup-group": "", "country": ""}, {"name": "Attack Surface Detector", "url": "https://owasp.org/www-project-attack-surface-detector/", "created": "2019-09-12", "updated": "2024-09-10", "build": "built", "codeurl": "https://github.com/zaproxy/zap-extensions\thttps://github.com/secdec/attack-surface-detector-zap", "title": "OWASP Attack Surface Detector", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Attack Surface Management Top 10", "url": "https://owasp.org/www-project-attack-surface-management-top-10/", "created": "2025-04-27", "updated": "2025-09-11", "build": "built", "codeurl": "", "title": "OWASP Attack Surface Management Top 10", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Auth", "url": "https://owasp.org/www-project-auth/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Auth", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Authoritative Privacy Reference Project", "url": "https://owasp.org/www-project-authoritative-privacy-reference-project/", "created": "2025-03-05", "updated": "2025-09-11", "build": "built", "codeurl": "", "title": "OWASP Authoritative Privacy Reference Project", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Auto Devsecops", "url": "https://owasp.org/www-project-auto-devsecops/", "created": "2024-08-03", "updated": "2024-11-11", "build": "built", "codeurl": "", "title": "OWASP Auto DevSecOps", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Automated Threats To Web Applications", "url": "https://owasp.org/www-project-automated-threats-to-web-applications/", "created": "2019-09-12", "updated": "2025-09-20", "build": "built", "codeurl": "https://github.com/OWASP/www-project-automated-threats-to-web-applications\thttps://github.com/OWASP/www-project-automated-threats-to-web-applications", "title": "OWASP Automated Threats to Web Applications", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Automotive Emb 60", "url": "https://owasp.org/www-project-automotive-emb-60/", "created": "2020-05-06", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP Automotive EMB 60", "level": "2", "type": "", "region": "Unknown", "pitch": "", "meetup-group": "", "country": ""}, {"name": "Awscanner", "url": "https://owasp.org/www-project-awscanner/", "created": "2020-08-27", "updated": "2022-07-26", "build": "built", "codeurl": "https://github.com/OWASP/awscanner", "title": "OWASP AWScanner", "level": "2", "type": "code", "region": "Unknown", "pitch": "Finds internet-exposed resources in an AWS account.", "meetup-group": "", "country": ""}, {"name": "Barbarus", "url": "https://owasp.org/www-project-barbarus/", "created": "2021-06-24", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/nebrass/owasp-barbarus-spring-boot-starter", "title": "OWASP Barbarus", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP Barbarus is a secure authentication layer for web applications using a smartphone client application (Android & iOS).", "meetup-group": "", "country": ""}, {"name": "Baremetal", "url": "https://owasp.org/www-project-baremetal/", "created": "2025-06-19", "updated": "2025-06-19", "build": "built", "codeurl": "", "title": "OWASP BareMetal", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Belva", "url": "https://owasp.org/www-project-belva/", "created": "2019-09-12", "updated": "2023-05-01", "build": "no pages", "codeurl": "", "title": "OWASP belva", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Benchmark", "url": "https://owasp.org/www-project-benchmark/", "created": "2019-09-12", "updated": "2025-06-25", "build": "built", "codeurl": "https://github.com/OWASP-Benchmark/BenchmarkJava", "title": "OWASP Benchmark", "level": "3", "type": "code", "region": "Unknown", "pitch": "The OWASP Benchmark Project is a Java test suite designed to evaluate the accuracy, coverage, and speed of automated software vulnerability detection tools.", "meetup-group": "", "country": ""}, {"name": "Best Practices In Vulnerability Disclosure And Bug Bounty Programs", "url": "https://owasp.org/www-project-best-practices-in-vulnerability-disclosure-and-bug-bounty-programs/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Best Practices In Vulnerability Disclosure And Bug Bounty Programs", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Big Data", "url": "https://owasp.org/www-project-big-data/", "created": "2020-07-09", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-big-data", "title": "OWASP Big Data Security Verification Standard", "level": "2", "type": "Documentation", "region": "Unknown", "pitch": "The goal of this project is to provide security requirements for Big Data applications", "meetup-group": "", "country": ""}, {"name": "Blade Framework", "url": "https://owasp.org/www-project-blade-framework/", "created": "2025-04-27", "updated": "2025-09-11", "build": "built", "codeurl": "", "title": "OWASP BLADE Framework", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Blend", "url": "https://owasp.org/www-project-blend/", "created": "2021-09-08", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Blend", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Blockchain Appsec Standard", "url": "https://owasp.org/www-project-blockchain-appsec-standard/", "created": "2023-04-20", "updated": "2025-09-14", "build": "built", "codeurl": "https://github.com/OWASP/www-project-blockchain-appsec-standard", "title": "OWASP Blockchain AppSec Standard", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "We focus on security of in blockchain and web3 and share our knowledge on attack vectors and defense mechanisms. We strongly encourage your contribution to these topics and content.", "meetup-group": "", "country": ""}, {"name": "Blockchain Distributed Infrastructure", "url": "https://owasp.org/www-project-blockchain-distributed-infrastructure/", "created": "2021-01-18", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Blockchain Distributed Infrastructure", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Blockchain Security Framework", "url": "https://owasp.org/www-project-blockchain-security-framework/", "created": "2019-09-12", "updated": "2023-09-01", "build": "no pages", "codeurl": "", "title": "OWASP Blockchain Security Framework", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Broken Web Applications", "url": "https://owasp.org/www-project-broken-web-applications/", "created": "2019-09-12", "updated": "2025-03-23", "build": "no pages", "codeurl": "", "title": "OWASP Broken Web Applications", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Bug Logging Tool", "url": "https://owasp.org/www-project-bug-logging-tool/", "created": "2019-09-12", "updated": "2024-11-24", "build": "built", "codeurl": "https://github.com/OWASP/BLT", "title": "OWASP Bug Logging Tool", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "OWASP BLT is a tool enabling internet users to report all kinds of issues they encounter, thereby improving internet security, with a unique feature of rewarding users for bug reporting and allowing companies to launch their own bug hunting programs, promoting responsible disclosure and fostering a safer online environment.", "meetup-group": "", "country": ""}, {"name": "Bullet Proof React", "url": "https://owasp.org/www-project-bullet-proof-react/", "created": "2023-09-25", "updated": "2025-02-25", "build": "built", "codeurl": "", "title": "OWASP Bullet-proof React", "level": "2", "type": "", "region": "Unknown", "pitch": "Bullet-Proof React is a comprehensive resource engineered to enhance the security of React and Node.js applications", "meetup-group": "", "country": ""}, {"name": "Cdxgen", "url": "https://owasp.org/www-project-cdxgen/", "created": "2025-09-24", "updated": "2025-09-25", "build": "built", "codeurl": "", "title": "OWASP cdxgen", "level": "-1", "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Certified Secure Developer", "url": "https://owasp.org/www-project-certified-secure-developer/", "created": "2024-10-09", "updated": "2025-09-11", "build": "built", "codeurl": "", "title": "OWASP Certified Secure Developer", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cervantes", "url": "https://owasp.org/www-project-cervantes/", "created": "2023-02-12", "updated": "2023-06-26", "build": "built", "codeurl": "", "title": "OWASP Cervantes", "level": "2", "type": "code", "region": "Unknown", "pitch": "Cervantes is an opensource collaborative platform for pentesters or red teams who want to save time to manage their projects, clients, vulnerabilities and reports in one place.", "meetup-group": "", "country": ""}, {"name": "Chaingoat", "url": "https://owasp.org/www-project-chaingoat/", "created": "2022-02-15", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP ChainGoat", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cheat Code Series", "url": "https://owasp.org/www-project-cheat-code-series/", "created": "2025-04-27", "updated": "2025-06-09", "build": "built", "codeurl": "https://github.com/OWASP/www-project-cheat-code-series", "title": "OWASP Cheat Code Series", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cheat Sheets", "url": "https://owasp.org/www-project-cheat-sheets/", "created": "2019-09-12", "updated": "2025-06-16", "build": "built", "codeurl": "https://github.com/OWASP/CheatSheetSeries\thttps://github.com/OWASP/CheatSheetSeries", "title": "OWASP Cheat Sheet Series", "level": "4", "type": "documentation", "region": "Unknown", "pitch": "The OWASP Cheat Sheet Series project provides a set of concise good practice guides for application developers and defenders to follow.", "meetup-group": "", "country": ""}, {"name": "Chirps", "url": "https://owasp.org/www-project-chirps/", "created": "2023-09-11", "updated": "2023-10-05", "build": "built", "codeurl": "https://github.com/mantiumai/chirps\thttps://github.com/mantiumai/chirps", "title": "OWASP Chirps", "level": "2", "type": "code", "region": "Unknown", "pitch": "Chirps is an open source, Django-based, Python web application that allows users to scan LLMs for Prompt Injection and search and scan vector databases for sensitive data.", "meetup-group": "", "country": ""}, {"name": "Cloud Native Application Security Top 10", "url": "https://owasp.org/www-project-cloud-native-application-security-top-10/", "created": "2019-09-12", "updated": "2025-07-25", "build": "built", "codeurl": "https://github.com/OWASP/www-project-cloud-native-application-security-top-10", "title": "OWASP Cloud-Native Application Security Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The primary goal of the OWASP Cloud-Native Application Security Top 10 document is to provide assistance and education for organizations looking to adopt Cloud-Native Applications securely. The guide provides information about what are the most prominent security risks for Cloud-Native applications, the challenges involved, and how to overcome them.", "meetup-group": "", "country": ""}, {"name": "Cloud Native Security Project", "url": "https://owasp.org/www-project-cloud-native-security-project/", "created": "2020-07-02", "updated": "2023-04-19", "build": "no pages", "codeurl": "", "title": "OWASP Cloud-Native Security Project", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "A top-level project to unite all that is Cloud-Native security", "meetup-group": "", "country": ""}, {"name": "Cloud Security", "url": "https://owasp.org/www-project-cloud-security/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "https://github.com/owasp-cloud-security/owasp-cloud-security", "title": "OWASP cloud security", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Cloud Security Mentor", "url": "https://owasp.org/www-project-cloud-security-mentor/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Cloud Security Mentor", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Cloud Security Testing Guide", "url": "https://owasp.org/www-project-cloud-security-testing-guide/", "created": "2020-08-27", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Cloud Security Testing Guide", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cloud Tenant Isolation", "url": "https://owasp.org/www-project-cloud-tenant-isolation/", "created": "2023-01-31", "updated": "2023-09-25", "build": "built", "codeurl": "", "title": "OWASP Cloud Tenant Isolation", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "A guide for mitigating cross-tenant vulnerabilities in cloud application development", "meetup-group": "", "country": ""}, {"name": "Cloud Testing Guide", "url": "https://owasp.org/www-project-cloud-testing-guide/", "created": "2019-09-12", "updated": "2024-08-05", "build": "no pages", "codeurl": "", "title": "OWASP Cloud Testing Guide", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Cloudsheep", "url": "https://owasp.org/www-project-cloudsheep/", "created": "2021-01-18", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP CloudSheep", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Code Pulse", "url": "https://owasp.org/www-project-code-pulse/", "created": "2019-09-12", "updated": "2024-09-10", "build": "built", "codeurl": "https://github.com/codedx/codepulse", "title": "OWASP Code Pulse", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Code Review Guide", "url": "https://owasp.org/www-project-code-review-guide/", "created": "2019-09-12", "updated": "2025-09-08", "build": "built", "codeurl": "https://github.com/OWASP/www-project-code-review-guide", "title": "OWASP Code Review Guide", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Code The Flag", "url": "https://owasp.org/www-project-code-the-flag/", "created": "2021-06-25", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Code the Flag", "level": "2", "type": "", "region": "Unknown", "pitch": "Security development hands-on training for developers", "meetup-group": "", "country": ""}, {"name": "Cognito Catastrophe", "url": "https://owasp.org/www-project-cognito-catastrophe/", "created": "2023-03-22", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP Cognito Catastrophe", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Common Lifecycle Enumeration", "url": "https://owasp.org/www-project-common-lifecycle-enumeration/", "created": "2024-01-29", "updated": "2025-03-04", "build": "built", "codeurl": "https://github.com/Ecma-TC54/ECMA-xxx-CLE", "title": "OWASP Common Lifecycle Enumeration", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "The Common Lifecycle Enumeration (CLE) is an open standard supporting component aliasing, component lifecycle changes such as end-of-life and end-of-support, and provenance chaining over time.", "meetup-group": "", "country": ""}, {"name": "Consigliere Your Sast Fixing Advisor", "url": "https://owasp.org/www-project-consigliere---your-sast-fixing-advisor/", "created": "2023-11-09", "updated": "2024-11-11", "build": "built", "codeurl": "", "title": "OWASP Consigliere - Your SAST Fixing Advisor", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Container Security Verification Standard", "url": "https://owasp.org/www-project-container-security-verification-standard/", "created": "2019-09-12", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Container Security Verification Standard", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Continuous Penetration Testing Framework", "url": "https://owasp.org/www-project-continuous-penetration-testing-framework/", "created": "2022-07-27", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP Continuous Penetration Testing Framework", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Coraza Web Application Firewall", "url": "https://owasp.org/www-project-coraza-web-application-firewall/", "created": "2022-01-28", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/corazawaf/coraza-server\thttps://github.com/corazawaf/coraza", "title": "OWASP Coraza Web Application Firewall", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "OWASP Coraza is a golang enterprise-grade WAF framework compatible with Modsecurity and OWASP Core Ruleset.", "meetup-group": "", "country": ""}, {"name": "Core Business Application Security", "url": "https://owasp.org/www-project-core-business-application-security/", "created": "2020-05-06", "updated": "2025-06-14", "build": "built", "codeurl": "https://github.com/SecuritySilverbacks/CBAS-SAP-SecurityVerificationStandard\\"\thttps://github.com/OWASP/www-project-core-business-application-security", "title": "OWASP Core Business Application Security", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cornucopia", "url": "https://owasp.org/www-project-cornucopia/", "created": "2019-09-12", "updated": "2025-09-25", "build": "built", "codeurl": "https://github.com/OWASP/cornucopia", "title": "OWASP Cornucopia", "level": "3.5", "type": "documentation", "region": "Unknown", "pitch": "OWASP Cornucopia provides card game decks (printable cards, online cards, online game) to assist the whole software development team undertake threat modeling of applications (currently website apps and mobile apps)", "meetup-group": "", "country": ""}, {"name": "Crapi", "url": "https://owasp.org/www-project-crapi/", "created": "2021-01-18", "updated": "2024-11-29", "build": "built", "codeurl": "https://github.com/OWASP/crAPI", "title": "OWASP crAPI", "level": "2", "type": "code", "region": "Unknown", "pitch": "crAPI will help you to understand the ten most critical API security risks. crAPI is vulnerable by design, but you'll be able to safely run it to educate/train yourself.", "meetup-group": "", "country": ""}, {"name": "Csrfguard", "url": "https://owasp.org/www-project-csrfguard/", "created": "2019-09-12", "updated": "2025-09-25", "build": "built", "codeurl": "https://github.com/OWASP/www-project-csrfguard\thttps://github.com/OWASP/www-project-csrfguard", "title": "OWASP CSRFGuard", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "OWASP CSRFGuard is a library that implements a variant of the synchronizer token pattern to mitigate the risk of Cross-Site Request Forgery (CSRF) attacks.", "meetup-group": "", "country": ""}, {"name": "Csrfprotector", "url": "https://owasp.org/www-project-csrfprotector/", "created": "2020-01-03", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/mebjas/CSRF-Protector-PHP\thttps://github.com/mebjas/CSRF-Protector-PHP", "title": "OWASP CSRFProtector Project", "level": "2", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Ctf", "url": "https://owasp.org/www-project-ctf/", "created": "2019-09-12", "updated": "2024-07-27", "build": "no pages", "codeurl": "", "title": "OWASP Ctf", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Cumulus", "url": "https://owasp.org/www-project-cumulus/", "created": "2023-04-05", "updated": "2025-06-27", "build": "built", "codeurl": "https://github.com/OWASP/cumulus\thttps://github.com/OWASP/cumulus", "title": "OWASP Cumulus", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Cumulus. Threat Modeling the Clouds.", "meetup-group": "", "country": ""}, {"name": "Cwe Toolkit", "url": "https://owasp.org/www-project-cwe-toolkit/", "created": "2020-08-03", "updated": "2024-08-24", "build": "built", "codeurl": "https://github.com/OWASP/cwe-sdk-javascript", "title": "OWASP CWE Toolkit", "level": "2", "type": "easy and accessible tooling to analyze, organize and manage CWE data", "region": "Unknown", "pitch": "", "meetup-group": "", "country": ""}, {"name": "Cyber Controls Matrix", "url": "https://owasp.org/www-project-cyber-controls-matrix/", "created": "2020-05-09", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Cyber Controls Matrix (OCCM)", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Solve the problem of multiple cyber standards by consolidating them, reducing timelines and effort by months!", "meetup-group": "", "country": ""}, {"name": "Cyber Defense Framework", "url": "https://owasp.org/www-project-cyber-defense-framework/", "created": "2021-01-05", "updated": "2024-04-07", "build": "built", "codeurl": "", "title": "OWASP Cyber Defense Framework", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cyber Defense Matrix", "url": "https://owasp.org/www-project-cyber-defense-matrix/", "created": "2020-01-07", "updated": "2025-09-14", "build": "no pages", "codeurl": "", "title": "OWASP Cyber Defense Matrix", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Cyber Scavenger Hunt", "url": "https://owasp.org/www-project-cyber-scavenger-hunt/", "created": "2020-08-27", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/arthurakay/cyberscavengerhunt", "title": "OWASP Cyber Scavenger Hunt", "level": "2", "type": "code", "region": "Unknown", "pitch": "A simple scavenger hunt to learn about pentesting a website or web application.", "meetup-group": "", "country": ""}, {"name": "Cyber Security Enterprise Operations Architecture", "url": "https://owasp.org/www-project-cyber-security-enterprise-operations-architecture/", "created": "2020-05-13", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Cyber Security Enterprise Operations Architecture", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cybersecurity Certification Course", "url": "https://owasp.org/www-project-cybersecurity-certification-course/", "created": "2024-01-12", "updated": "2025-06-18", "build": "no pages", "codeurl": "", "title": "OWASP Cybersecurity Certification Course", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cybersecurity Risk Register", "url": "https://owasp.org/www-project-cybersecurity-risk-register/", "created": "2021-03-23", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Cybersecurity Risk Register", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Cyclonedx", "url": "https://owasp.org/www-project-cyclonedx/", "created": "2021-06-04", "updated": "2025-01-13", "build": "built", "codeurl": "", "title": "OWASP CycloneDX (ECMA-424)", "level": "4", "type": "standards", "region": "Unknown", "pitch": "OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction.", "meetup-group": "", "country": ""}, {"name": "D4n155", "url": "https://owasp.org/www-project-d4n155/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "https://github.com/OWASP/D4N155", "title": "OWASP D4N155", "level": "2", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Damn Vulnerable Crypto Wallet", "url": "https://owasp.org/www-project-damn-vulnerable-crypto-wallet/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Damn Vulnerable Crypto Wallet", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Damn Vulnerable Thick Client Application", "url": "https://owasp.org/www-project-damn-vulnerable-thick-client-application/", "created": "2020-08-28", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Damn Vulnerable Thick Client Application", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Damn Vulnerable Web Sockets", "url": "https://owasp.org/www-project-damn-vulnerable-web-sockets/", "created": "2021-01-18", "updated": "2025-03-09", "build": "built", "codeurl": "https://github.com/interference-security/DVWS\thttps://github.com/interference-security/DVWS", "title": "OWASP Damn Vulnerable Web Sockets", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Data Analysis Visualization And Ingestion Domain", "url": "https://owasp.org/www-project-data-analysis-visualization-and-ingestion-domain/", "created": "2023-04-05", "updated": "2023-04-05", "build": "built", "codeurl": "", "title": "OWASP Data Analysis Visualization and Ingestion Domain (DAVID)", "level": "-1", "type": "code", "region": "Unknown", "pitch": "A community project to support the data analysis and visualization needs of open source projects.", "meetup-group": "", "country": ""}, {"name": "Data Security Top 10", "url": "https://owasp.org/www-project-data-security-top-10/", "created": "2021-05-20", "updated": "2025-09-06", "build": "built", "codeurl": "", "title": "OWASP Data Security Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Best practices guide for securing data, whether at rest or in motion. The guide provides information about the most major security risks for storing and moving sensitive and PII information, the challenges involved, and how to overcome them.", "meetup-group": "", "country": ""}, {"name": "De Addiction", "url": "https://owasp.org/www-project-de-addiction/", "created": "2024-01-10", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP De-addiction", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Deepsecrets", "url": "https://owasp.org/www-project-deepsecrets/", "created": "2023-06-28", "updated": "2025-02-12", "build": "built", "codeurl": "https://github.com/ntoskernel/deepsecrets\thttps://github.com/ntoskernel/deepsecrets", "title": "OWASP DeepSecrets", "level": "2", "type": "code", "region": "Unknown", "pitch": "Secrets scanner that understands code", "meetup-group": "", "country": ""}, {"name": "Deepviolet Tls Ssl Scanner", "url": "https://owasp.org/www-project-deepviolet-tls-ssl-scanner/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP deepviolet-tls-ssl-scanner", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Defectdojo", "url": "https://owasp.org/www-project-defectdojo/", "created": "2019-09-12", "updated": "2025-06-13", "build": "built", "codeurl": "https://github.com/DefectDojo/django-DefectDojo\thttps://github.com/DefectDojo/django-DefectDojo", "title": "OWASP Defectdojo", "level": "4", "type": "code", "region": "Unknown", "pitch": "The leading open source application vulnerability management tool built for DevOps and continuous security integration.", "meetup-group": "", "country": ""}, {"name": "Dep Scan", "url": "https://owasp.org/www-project-dep-scan/", "created": "2023-08-15", "updated": "2025-01-28", "build": "built", "codeurl": "https://github.com/owasp-dep-scan/dep-scan\thttps://github.com/owasp-dep-scan/dep-scan", "title": "OWASP dep-scan", "level": 2, "type": "code", "region": "Unknown", "pitch": "Next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies.", "meetup-group": "", "country": ""}, {"name": "Dependency Check", "url": "https://owasp.org/www-project-dependency-check/", "created": "2019-09-12", "updated": "2025-02-17", "build": "built", "codeurl": "https://github.com/dependency-check/DependencyCheck", "title": "OWASP Dependency-Check", "level": "4", "type": "code", "region": "Unknown", "pitch": "Dependency-Check is a Software Composition Analysis (SCA) tool suite that identifies project dependencies and checks if there are any known, publicly disclosed, vulnerabilities.", "meetup-group": "", "country": ""}, {"name": "Dependency Track", "url": "https://owasp.org/www-project-dependency-track/", "created": "2019-09-12", "updated": "2025-06-24", "build": "built", "codeurl": "", "title": "OWASP Dependency-Track", "level": "4", "type": "code", "region": "Unknown", "pitch": "Intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.", "meetup-group": "", "country": ""}, {"name": "Desktop App Security Top 10", "url": "https://owasp.org/www-project-desktop-app-security-top-10/", "created": "2021-03-14", "updated": "2025-02-14", "build": "built", "codeurl": "https://github.com/OWASP/www-project-desktop-app-security-top-10", "title": "OWASP Desktop App Security Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Consists of vulnerabilities for all major desktop app platform, derived from publicaly known exploits, CVEs etc.", "meetup-group": "", "country": ""}, {"name": "Developer Guide", "url": "https://owasp.org/www-project-developer-guide/", "created": "2020-01-26", "updated": "2025-09-16", "build": "built", "codeurl": "", "title": "OWASP Developer Guide", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "The Developer Guide allows businesses, developers, designers", "meetup-group": "", "country": ""}, {"name": "Developer Outreach Program", "url": "https://owasp.org/www-project-developer-outreach-program/", "created": "2021-05-20", "updated": "2025-01-27", "build": "built", "codeurl": "https://github.com/OWASP/www-project-developer-outreach-program", "title": "OWASP AppSec Days Developer Outreach Program", "level": "2", "type": "", "region": "Unknown", "pitch": "Developer Outreach Program by OWASP", "meetup-group": "", "country": ""}, {"name": "Devguard", "url": "https://owasp.org/www-project-devguard/", "created": "2024-01-29", "updated": "2025-09-18", "build": "built", "codeurl": "https://github.com/othneildrew/Best-README-Template\thttps://github.com/l3montree-dev/devguard", "title": "OWASP DevGuard", "level": "-1", "type": "", "region": "Unknown", "pitch": "A usable central vulnerability management system for developers and security teams.", "meetup-group": "", "country": ""}, {"name": "Devsecops", "url": "https://owasp.org/www-project-devsecops/", "created": "2023-03-30", "updated": "2024-06-01", "build": "built", "codeurl": "https://github.com/OWASP/DevSecOpsGuideline", "title": "OWASP DevSecOps", "level": "-1", "type": "other", "region": "Unknown", "pitch": "The OWASP DevSecOps Project gives you clarity and indepth view of DevSecOps Umbrella", "meetup-group": "", "country": ""}, {"name": "Devsecops Automation Matrix", "url": "https://owasp.org/www-project-devsecops-automation-matrix/", "created": "2024-02-27", "updated": "2025-01-07", "build": "built", "codeurl": "", "title": "OWASP DevSecOps Automation Matrix", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "Security Automation Framework for Humans.", "meetup-group": "", "country": ""}, {"name": "Devsecops Guideline", "url": "https://owasp.org/www-project-devsecops-guideline/", "created": "2020-05-13", "updated": "2025-09-14", "build": "built", "codeurl": "https://github.com/OWASP/DevSecOpsGuideline\thttps://github.com/OWASP/DevSecOpsGuideline", "title": "OWASP DevSecOps Guideline", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The OWASP DevSecOps Guideline can help us to embeding security as a part of pipeline.", "meetup-group": "", "country": ""}, {"name": "Devsecops Maturity Model", "url": "https://owasp.org/www-project-devsecops-maturity-model/", "created": "2019-09-12", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/wurstbrot/DevSecOps-MaturityModel", "title": "OWASP Devsecops Maturity Model", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Devsecops Top 10", "url": "https://owasp.org/www-project-devsecops-top-10/", "created": "2023-03-13", "updated": "2025-05-09", "build": "built", "codeurl": "https://github.com/OWASP/www-project-devsecops-top-10", "title": "OWASP DevSecOps Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Top 10 categories for your DevSecOps Landscape", "meetup-group": "", "country": ""}, {"name": "Devsecops Verification Standard", "url": "https://owasp.org/www-project-devsecops-verification-standard/", "created": "2022-02-24", "updated": "2025-09-11", "build": "built", "codeurl": "https://github.com/OWASP/www-project-devsecops-verification-standard\thttps://github.com/OWASP/www-project-devsecops-verification-standard", "title": "OWASP DevSecOps Verification Standard", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The DSOVS is a framework to identify gaps in implementing security within software development lifecyle", "meetup-group": "", "country": ""}, {"name": "Devslop", "url": "https://owasp.org/www-project-devslop/", "created": "2019-10-09", "updated": "2022-02-17", "build": "built", "codeurl": "", "title": "OWASP DevSlop", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "OWASP-DevSlop-Project", "country": ""}, {"name": "Docker Top 10", "url": "https://owasp.org/www-project-docker-top-10/", "created": "2019-09-12", "updated": "2023-05-16", "build": "built", "codeurl": "https://github.com/OWASP/Docker-Security\thttps://github.com/OWASP/Docker-Security", "title": "OWASP Docker Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "none yet", "meetup-group": "", "country": ""}, {"name": "Docksec", "url": "https://owasp.org/www-project-docksec/", "created": "2025-07-06", "updated": "2025-07-06", "build": "built", "codeurl": "", "title": "OWASP DockSec", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Dojo Shield", "url": "https://owasp.org/www-project-dojo-shield/", "created": "2025-03-03", "updated": "2025-03-04", "build": "built", "codeurl": "", "title": "OWASP Dojo Shield", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "Dojo Shield is an open-source, hands-on workshop framework designed to teach secure coding practices through collaborative, real-world challenge solving.", "meetup-group": "", "country": ""}, {"name": "Domain Protect", "url": "https://owasp.org/www-project-domain-protect/", "created": "2022-11-14", "updated": "2025-05-29", "build": "built", "codeurl": "https://github.com/domain-protect/domain-protect\thttps://github.com/domain-protect/terraform-aws-domain-protect", "title": "OWASP Domain Protect", "level": "2", "type": "code", "region": "Unknown", "pitch": "Protect against subdomain takeover", "meetup-group": "", "country": ""}, {"name": "Dpd", "url": "https://owasp.org/www-project-dpd/", "created": "2020-05-13", "updated": "2022-10-28", "build": "built", "codeurl": "", "title": "OWASP DPD (DDOS Prevention using DPI)", "level": "2", "type": "Documentation, Tool", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Dragon Gpt", "url": "https://owasp.org/www-project-dragon-gpt/", "created": "2023-11-09", "updated": "2024-10-01", "build": "built", "codeurl": "https://github.com/LuizBoina/dragon-gpt\thttps://github.com/LuizBoina/dragon-gpt", "title": "OWASP Dragon-GPT", "level": 2, "type": "code", "region": "Unknown", "pitch": "An automatic OpenAI-powered threat modeling analysis based on OWASP Threat Dragon diagram", "meetup-group": "", "country": ""}, {"name": "Drill", "url": "https://owasp.org/www-project-drill/", "created": "2020-05-28", "updated": "2023-03-06", "build": "built", "codeurl": "", "title": "OWASP Extensions for Apache Drill", "level": "1", "type": "", "region": "Unknown", "pitch": "The Security Engineer's Data Tool Kit", "meetup-group": "", "country": ""}, {"name": "Dungeons And Daemons", "url": "https://owasp.org/www-project-dungeons-and-daemons/", "created": "2024-10-21", "updated": "2025-09-22", "build": "built", "codeurl": "", "title": "OWASP Dungeons and Daemons", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "OWASP\u00ae Dungeons & Daemons is a collection of open source games for promoting awareness and knowledge about application security and security practices.", "meetup-group": "", "country": ""}, {"name": "Dvsa", "url": "https://owasp.org/www-project-dvsa/", "created": "2019-09-12", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP DVSA", "level": "0", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Ebpfshield", "url": "https://owasp.org/www-project-ebpfshield/", "created": "2023-03-16", "updated": "2025-09-12", "build": "built", "codeurl": "", "title": "OWASP eBPFShield", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Eks Goat", "url": "https://owasp.org/www-project-eks-goat/", "created": "2025-03-05", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/OWASP/www-project-eks-goat", "title": "OWASP EKS Goat", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Embedded Application Security", "url": "https://owasp.org/www-project-embedded-application-security/", "created": "2019-09-12", "updated": "2025-04-11", "build": "built", "codeurl": "https://github.com/scriptingxss/embeddedappsec.\thttps://github.com/OWASP/www-project-embedded-application-security", "title": "OWASP Embedded Application Security", "level": "0", "type": "documentation", "region": "Unknown", "pitch": "The Embedded Application Security Project produces a document that will provide a detailed technical pathway for manufacturers to build secure devices for an increasingly insecure world.", "meetup-group": "", "country": ""}, {"name": "Ende", "url": "https://owasp.org/www-project-ende/", "created": "2019-09-12", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP Ende", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Enterprise Devsecops", "url": "https://owasp.org/www-project-enterprise-devsecops/", "created": "2021-02-04", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP Enterprise DevSecOps", "level": "2", "type": "other", "region": "Unknown", "pitch": "Enterprise Security Program Design with OWASP", "meetup-group": "", "country": ""}, {"name": "Enterprise Security Api", "url": "https://owasp.org/www-project-enterprise-security-api/", "created": "2019-09-12", "updated": "2025-06-28", "build": "built", "codeurl": "https://github.com/ESAPI/esapi-java-legacy", "title": "OWASP Enterprise Security API (ESAPI)", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Explainable Ai", "url": "https://owasp.org/www-project-explainable-ai/", "created": "2025-07-21", "updated": "2025-08-02", "build": "built", "codeurl": "", "title": "OWASP Explainable AI", "level": "-1", "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Faction", "url": "https://owasp.org/www-project-faction/", "created": "2025-03-01", "updated": "2025-03-13", "build": "built", "codeurl": "https://github.com/sponsors/factionsecurity\thttps://github.com/factionsecurity/faction", "title": "OWASP Faction", "level": 2, "type": "code", "region": "Unknown", "pitch": "Faction is a pentesting assessment collaboration framework that helps automate pentesting reports, schedule larege scale assessments, manage vulnerability tracking, and increase collaboration in your teams.", "meetup-group": "", "country": ""}, {"name": "Fiasse", "url": "https://owasp.org/www-project-fiasse/", "created": "2025-06-30", "updated": "2025-08-14", "build": "built", "codeurl": "https://github.com/Xcaciv/securable_software_engineering", "title": "OWASP FIASSE", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "security that is relentlessly practical to software engineering", "meetup-group": "", "country": ""}, {"name": "Financial Systems Security", "url": "https://owasp.org/www-project-financial-systems-security/", "created": "2021-03-23", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Financial Systems Security", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Find Security Bugs", "url": "https://owasp.org/www-project-find-security-bugs/", "created": "2019-09-12", "updated": "2024-09-02", "build": "built", "codeurl": "https://github.com/find-sec-bugs/find-sec-bugs\thttps://github.com/find-sec-bugs/find-sec-bugs", "title": "OWASP Find Security Bugs", "level": "3", "type": "code", "region": "Unknown", "pitch": "Find Security Bugs is a SpotBugs plugin for security audits of Java web applications and Android applications.", "meetup-group": "", "country": ""}, {"name": "Forensics Testing Guide", "url": "https://owasp.org/www-project-forensics-testing-guide/", "created": "2020-09-30", "updated": "2024-08-05", "build": "built", "codeurl": "", "title": "OWASP Forensics Testing Guide", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Four Clover", "url": "https://owasp.org/www-project-four-clover/", "created": "2023-05-03", "updated": "2023-08-09", "build": "built", "codeurl": "https://github.com/fourcloverorg/FourClover", "title": "OWASP Four Clover", "level": "-1", "type": "code", "region": "Unknown", "pitch": "OWASP Four Clover is your vigilant guardian against file tampering, delivering comprehensive integrity monitoring with customizable scans and policy enforcement.", "meetup-group": "", "country": ""}, {"name": "G0rking", "url": "https://owasp.org/www-project-g0rking/", "created": "2021-08-23", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/BlueVirtualNerds/G0rKing\thttps://github.com/PrateekOWASP/G0rKing", "title": "OWASP G0rKing", "level": "2", "type": "code", "region": "Unknown", "pitch": "A tool for quickly analyzing the common vulnerabilities in your domain with the help of Google Dorking.", "meetup-group": "", "country": ""}, {"name": "Game Security Framework", "url": "https://owasp.org/www-project-game-security-framework/", "created": "2019-09-12", "updated": "2025-08-12", "build": "no pages", "codeurl": "", "title": "OWASP Game Security Framework", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Gamesec Framework", "url": "https://owasp.org/www-project-gamesec-framework/", "created": "2024-12-06", "updated": "2025-06-25", "build": "built", "codeurl": "", "title": "OWASP GameSec Framework", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Glue Tool", "url": "https://owasp.org/www-project-glue-tool/", "created": "2019-09-12", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP Glue Tool", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Go Secure Coding Practices Guide", "url": "https://owasp.org/www-project-go-secure-coding-practices-guide/", "created": "2019-09-12", "updated": "2024-08-05", "build": "built", "codeurl": "", "title": "OWASP Go Secure Coding Practices Guide", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Google Assistant", "url": "https://owasp.org/www-project-google-assistant/", "created": "2019-09-18", "updated": "2025-04-12", "build": "no pages", "codeurl": "https://github.com/owasp/www-projectchapter-example", "title": "OWASP Project and Chapter Example", "level": "1", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Hack Heroes", "url": "https://owasp.org/www-project-hack-heroes/", "created": "2025-07-06", "updated": "2025-08-13", "build": "built", "codeurl": "https://github.com/itscooper/hackheroes\thttps://github.com/itscooper/hackheroes", "title": "OWASP Hack Heroes", "level": 2, "type": "code", "region": "Unknown", "pitch": "Inspiring young people to explore cybersecurity through fun, interactive challenges", "meetup-group": "", "country": ""}, {"name": "Hackademic Challenges", "url": "https://owasp.org/www-project-hackademic-challenges/", "created": "2019-09-12", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP Hackademic Challenges", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Hacking Lab", "url": "https://owasp.org/www-project-hacking-lab/", "created": "2019-09-12", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP hacking-lab", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Hactu8", "url": "https://owasp.org/www-project-hactu8/", "created": "2025-03-02", "updated": "2025-07-18", "build": "built", "codeurl": "https://github.com/OWASP/www-project-hactu8", "title": "OWASP HACTU8", "level": 2, "type": "code", "region": "Unknown", "pitch": "\u201cPreparing for SkyNet\u201d \u2013 OWASP hactu8 is an active security testing platform for robotics, IoT, and consumer electronics, integrating LLM-powered automation with OWASP security frameworks to empower ethical hackers and security professionals.", "meetup-group": "", "country": ""}, {"name": "Honeypot", "url": "https://owasp.org/www-project-honeypot/", "created": "2019-11-01", "updated": "2024-11-04", "build": "built", "codeurl": "https://github.com/SpiderLabs/owasp-distributed-web-honeypots\thttps://github.com/OWASP/Honeypot-Project", "title": "OWASP Honeypot", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "How To Get Into Appsec", "url": "https://owasp.org/www-project-how-to-get-into-appsec/", "created": "2021-03-14", "updated": "2024-09-01", "build": "built", "codeurl": "", "title": "OWASP How to Get Into AppSec", "level": "2", "type": "", "region": "Unknown", "pitch": "Helping new comers to AppSec with advice and guidance.", "meetup-group": "", "country": ""}, {"name": "Ide Vulscanner", "url": "https://owasp.org/www-project-ide-vulscanner/", "created": "2023-03-13", "updated": "2025-09-24", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ide-vulscanner", "title": "OWASP IDE-VulScanner", "level": "2", "type": "", "region": "Unknown", "pitch": "Checks code vulnerability during implementation phase", "meetup-group": "", "country": ""}, {"name": "Ignita", "url": "https://owasp.org/www-project-ignita/", "created": "2021-05-20", "updated": "2025-04-11", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ignita", "title": "OWASP iGNITA", "level": "0", "type": "project", "region": "Unknown", "pitch": "standalone analyser to detect vulnerabilities where the OWASP iGNITA Scanner", "meetup-group": "", "country": ""}, {"name": "Igoat Tool", "url": "https://owasp.org/www-project-igoat-tool/", "created": "2019-09-12", "updated": "2023-04-06", "build": "built", "codeurl": "https://github.com/swaroopsy/test", "title": "OWASP iGoat Tool", "level": "-1", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Incident Response", "url": "https://owasp.org/www-project-incident-response/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Incident Response", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Information Security Metrics Bank", "url": "https://owasp.org/www-project-information-security-metrics-bank/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Information Security Metrics Bank", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Infrastructure Security Testing Guide", "url": "https://owasp.org/www-project-infrastructure-security-testing-guide/", "created": "2024-10-21", "updated": "2025-09-12", "build": "built", "codeurl": "", "title": "OWASP Infrastructure Security Testing Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "OWASP Infrastructure Security Testing Guide", "meetup-group": "", "country": ""}, {"name": "Injectbot", "url": "https://owasp.org/www-project-injectbot/", "created": "2021-03-23", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP InjectBot", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Integration Standards", "url": "https://owasp.org/www-project-integration-standards/", "created": "2019-11-19", "updated": "2025-03-02", "build": "built", "codeurl": "https://github.com/OWASP/www-project-integration-standards", "title": "OWASP Integration Standards", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "Standards to integrate between standardisation projects to properly handle content linking between documents and data exchange between tools", "meetup-group": "", "country": ""}, {"name": "Intelligent Intrusion Detection System", "url": "https://owasp.org/www-project-intelligent-intrusion-detection-system/", "created": "2019-09-12", "updated": "2022-10-26", "build": "built", "codeurl": "https://github.com/OWASP/Intelligent-Intrusion-Detection-System", "title": "OWASP Intelligent Intrusion Detection System", "level": "2", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Internet Of Things", "url": "https://owasp.org/www-project-internet-of-things/", "created": "2019-10-29", "updated": "2025-05-21", "build": "built", "codeurl": "https://github.com/scriptingxss/OWASP-IoT-Top-10-2018-Mapping", "title": "OWASP Internet of Things", "level": "3", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Internet Of Things Top 10", "url": "https://owasp.org/www-project-internet-of-things-top-10/", "created": "2019-09-12", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP internet of things top 10", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Iot Analytics 4industry4", "url": "https://owasp.org/www-project-iot-analytics-4industry4/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Iot Analytics 4Industry4", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Iot Security Testing Guide", "url": "https://owasp.org/www-project-iot-security-testing-guide/", "created": "2023-08-15", "updated": "2024-08-05", "build": "built", "codeurl": "https://github.com/OWASP/owasp-istg", "title": "OWASP IoT Security Testing Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The OWASP IoT Security Testing Guide provides a comprehensive methodology for penetration tests in the IoT field.", "meetup-group": "", "country": ""}, {"name": "Iot Security Verification Standard", "url": "https://owasp.org/www-project-iot-security-verification-standard/", "created": "2020-02-06", "updated": "2022-07-26", "build": "built", "codeurl": "https://github.com/OWASP/IoT-Security-Verification-Standard-ISVS", "title": "OWASP IoT Security Verification Standard", "level": "2", "type": "documentation or other", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Java Encoder", "url": "https://owasp.org/www-project-java-encoder/", "created": "2019-09-12", "updated": "2024-10-18", "build": "built", "codeurl": "https://github.com/OWASP/owasp-java-encoder\thttps://github.com/OWASP/owasp-java-encoder", "title": "OWASP Java Encoder", "level": "0", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Java Html Sanitizer", "url": "https://owasp.org/www-project-java-html-sanitizer/", "created": "2019-09-12", "updated": "2025-05-06", "build": "built", "codeurl": "https://github.com/owasp/java-html-sanitizer", "title": "OWASP Java HTML Sanitizer", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Java Security Toolkit", "url": "https://owasp.org/www-project-java-security-toolkit/", "created": "2024-02-28", "updated": "2025-07-28", "build": "no pages", "codeurl": "", "title": "OWASP Java Security Toolkit", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Javascript Security", "url": "https://owasp.org/www-project-javascript-security/", "created": "2021-12-01", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP JavaScript Security", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Joomscan", "url": "https://owasp.org/www-project-joomscan/", "created": "2020-09-30", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Joomscan", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Jotp", "url": "https://owasp.org/www-project-jotp/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Jotp", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Js", "url": "https://owasp.org/www-project--js/", "created": "2024-08-03", "updated": "2024-08-10", "build": "built", "codeurl": "", "title": "OWASP-js", "level": 2, "type": "code", "region": "Unknown", "pitch": "Follow OWASP's application security best practices for Node.js applications.", "meetup-group": "", "country": ""}, {"name": "Json Sanitizer", "url": "https://owasp.org/www-project-json-sanitizer/", "created": "2019-09-12", "updated": "2024-12-08", "build": "no pages", "codeurl": "", "title": "OWASP Json Sanitizer", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Juice Shop", "url": "https://owasp.org/www-project-juice-shop/", "created": "2019-09-12", "updated": "2025-09-13", "build": "built", "codeurl": "https://github.com/juice-shop/juice-shop\thttps://github.com/juice-shop/juice-shop#from-sources", "title": "OWASP Juice Shop", "level": "4", "type": "code", "region": "Unknown", "pitch": "Probably the most modern and sophisticated insecure web application for security trainings, awareness demos and CTFs. Also great voluntary guinea pig for your security tools and DevSecOps pipelines!", "meetup-group": "", "country": ""}, {"name": "Jupiter", "url": "https://owasp.org/www-project-jupiter/", "created": "2019-09-12", "updated": "2021-07-07", "build": "built", "codeurl": "https://github.com/xpert98/jupiter-collector-service", "title": "OWASP Jupiter", "level": "0", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Jvmxray", "url": "https://owasp.org/www-project-jvmxray/", "created": "2020-05-06", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP jvmxray", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Knowledge Based Authentication Performance Metrics", "url": "https://owasp.org/www-project-knowledge-based-authentication-performance-metrics/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Knowledge Based Authentication Performance Metrics", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Kubefim", "url": "https://owasp.org/www-project-kubefim/", "created": "2023-06-20", "updated": "2024-07-14", "build": "built", "codeurl": "https://github.com/abhijitio/OWASP-KubeFIM", "title": "OWASP KubeFIM", "level": "2", "type": "Code", "region": "Unknown", "pitch": "OWASP KubeFIM is an eBPF based Kubernetes File Integrity Monitoring solution.", "meetup-group": "", "country": ""}, {"name": "Kubernetes Scanner", "url": "https://owasp.org/www-project-kubernetes-scanner/", "created": "2022-11-10", "updated": "2022-12-15", "build": "built", "codeurl": "https://github.com/sttor/kubelight", "title": "OWASP KubeLight", "level": "2", "type": "", "region": "Unknown", "pitch": "Kubernetes Security and Compliance Scanner.", "meetup-group": "", "country": ""}, {"name": "Kubernetes Security Testing Guide", "url": "https://owasp.org/www-project-kubernetes-security-testing-guide/", "created": "2020-05-28", "updated": "2025-05-24", "build": "built", "codeurl": "", "title": "OWASP Kubernetes Security Testing Guide", "level": "2", "type": "", "region": "Unknown", "pitch": "A comprehensive guide to Kubernetes Security Testing", "meetup-group": "", "country": ""}, {"name": "Kubernetes Top Ten", "url": "https://owasp.org/www-project-kubernetes-top-ten/", "created": "2022-03-31", "updated": "2025-09-22", "build": "built", "codeurl": "https://github.com/OWASP/www-project-kubernetes-top-ten\thttps://github.com/OWASP/www-project-kubernetes-top-ten", "title": "OWASP Kubernetes Top Ten", "level": "2", "type": "", "region": "Unknown", "pitch": "Welcome to the OWASP Top Ten for Kubernetes", "meetup-group": "", "country": ""}, {"name": "Laravel Goat", "url": "https://owasp.org/www-project-laravel-goat/", "created": "2021-01-18", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Laravel Goat", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Learning Gateway", "url": "https://owasp.org/www-project-learning-gateway/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Learning Gateway", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Lets Threat Model", "url": "https://owasp.org/www-project-lets-threat-model/", "created": "2025-09-08", "updated": "2025-09-08", "build": "built", "codeurl": "https://github.com/jesuscmartinez/lets-threat-model-core|https:", "title": "OWASP Lets Threat Model", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Little Web Application Firewall", "url": "https://owasp.org/www-project-little-web-application-firewall/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP little web application firewall", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Llm Prompt Hacking", "url": "https://owasp.org/www-project-llm-prompt-hacking/", "created": "2023-07-18", "updated": "2025-08-21", "build": "built", "codeurl": "", "title": "OWASP LLM Prompt Hacking", "level": "-1", "type": "", "region": "Unknown", "pitch": "A Playground for LLM Application Hacking and Defensive Techniques", "meetup-group": "", "country": ""}, {"name": "Llm Verification Standard", "url": "https://owasp.org/www-project-llm-verification-standard/", "created": "2023-08-08", "updated": "2025-09-10", "build": "built", "codeurl": "https://github.com/OWASP/www-project-llm-verification-standard\thttps://github.com/OWASP/www-project-llm-verification-standard", "title": "OWASP LLM Security Verification Standard", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The standard provides a basis for designing, building, and testing robust LLM backed applications", "meetup-group": "", "country": ""}, {"name": "Lock It", "url": "https://owasp.org/www-project-lock-it/", "created": "2019-09-12", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Lock It", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Machine Learning Minefield", "url": "https://owasp.org/www-project-machine-learning-minefield/", "created": "2023-04-05", "updated": "2025-07-29", "build": "no pages", "codeurl": "", "title": "OWASP Machine Learning Minefield", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Machine Learning Security Top 10", "url": "https://owasp.org/www-project-machine-learning-security-top-10/", "created": "2019-09-12", "updated": "2025-09-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-machine-learning-security-top-10\thttps://github.com/OWASP/www-project-machine-learning-security-top-10", "title": "OWASP Machine Learning Security Top Ten", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Maryam", "url": "https://owasp.org/www-project-maryam/", "created": "2019-09-12", "updated": "2024-12-06", "build": "built", "codeurl": "https://github.com/saeeddhqan/Maryam", "title": "OWASP Maryam", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP Maryam is a modular/optional open-source framework based on OSINT and data gathering. Maryam is written in the Python programming language and has been designed to provide a powerful environment to harvest data from open-sources and search engines and collect data quickly and thoroughly.", "meetup-group": "", "country": ""}, {"name": "Mcp Top 10", "url": "https://owasp.org/www-project-mcp-top-10/", "created": "2025-06-18", "updated": "2025-09-13", "build": "built", "codeurl": "", "title": "OWASP MCP Top 10", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Media Archive", "url": "https://owasp.org/www-project-media-archive/", "created": "2019-09-12", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP Media", "level": "-1", "type": "other", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Memory Safety", "url": "https://owasp.org/www-project-memory-safety/", "created": "2023-08-24", "updated": "2025-07-29", "build": "no pages", "codeurl": "", "title": "OWASP Memory Safety Project", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Mimosa", "url": "https://owasp.org/www-project-mimosa/", "created": "2022-07-20", "updated": "2022-08-06", "build": "built", "codeurl": "https://github.com/OWASP/SSO_Project\thttps://github.com/OWASP/mimosa", "title": "OWASP Mimosa", "level": "2", "type": "code", "region": "Unknown", "pitch": "Mimosa, your companion to learn secure coding", "meetup-group": "", "country": ""}, {"name": "Mlsecops Verification Standard", "url": "https://owasp.org/www-project-mlsecops-verification-standard/", "created": "2023-01-31", "updated": "2024-08-05", "build": "built", "codeurl": "", "title": "OWASP Machine Learning Security Verification Standard", "level": "2", "type": "standards", "region": "Unknown", "pitch": "The OWASP Machine Learning Security Verification Standards (MLSVS) Project is a framework of security requirements that focus on defining the security controls when designing, developing and testing machine learning systems and models.", "meetup-group": "", "country": ""}, {"name": "Mobile App Security", "url": "https://owasp.org/www-project-mobile-app-security/", "created": "2019-09-12", "updated": "2025-09-18", "build": "built", "codeurl": "https://github.com/OWASP/mastg\thttps://github.com/OWASP/owasp-mastg", "title": "OWASP Mobile Application Security", "level": "4", "type": "documentation", "region": "Unknown", "pitch": "The OWASP Mobile Application Security (MAS) project consists of a series of documents that establish a security and privacy standard for mobile apps and a comprehensive testing guide that covers the processes, techniques, and tools used during a mobile application security assessment, as well as an exhaustive set of test cases that enables testers to deliver consistent and complete results.", "meetup-group": "", "country": ""}, {"name": "Mobile Audit", "url": "https://owasp.org/www-project-mobile-audit/", "created": "2021-01-18", "updated": "2025-03-07", "build": "built", "codeurl": "https://github.com/mpast/mobileAudit\thttps://github.com/mpast/mobileAudit", "title": "OWASP Mobile Audit", "level": "2", "type": "code", "region": "Unknown", "pitch": "DevSecOps Tool to perform SAST and Malware analysis in Android APKs", "meetup-group": "", "country": ""}, {"name": "Mobile Security", "url": "https://owasp.org/www-project-mobile-security/", "created": "2019-09-12", "updated": "2024-07-27", "build": "no pages", "codeurl": "https://github.com/OWASP/MSTG-Hacking-Playground\">MSTG\thttps://github.com/OWASP/MSTG-Hacking-Playground", "title": "OWASP mobile security", "level": "3", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Mobile Top 10", "url": "https://owasp.org/www-project-mobile-top-10/", "created": "2019-10-18", "updated": "2025-09-24", "build": "built", "codeurl": "https://github.com/OWASP/www-project-mobile-top-10", "title": "OWASP Mobile Top 10", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Modsecurity", "url": "https://owasp.org/www-project-modsecurity/", "created": "2024-01-22", "updated": "2025-08-06", "build": "built", "codeurl": "https://github.com/owasp-modsecurity/modsecurity", "title": "OWASP ModSecurity", "level": 3.5, "type": "code", "region": "Unknown", "pitch": "ModSecurity is the standard open-source web application firewall (WAF) engine.", "meetup-group": "", "country": ""}, {"name": "Modsecurity Core Rule Set", "url": "https://owasp.org/www-project-modsecurity-core-rule-set/", "created": "2019-09-12", "updated": "2025-09-04", "build": "built", "codeurl": "https://github.com/coreruleset/coreruleset\thttps://github.com/coreruleset/coreruleset", "title": "OWASP CRS", "level": "4", "type": "code", "region": "Unknown", "pitch": "The OWASP CRS is a set of generic attack detection rules for use with ModSecurity or compatible web application firewalls. The CRS aims to protect web applications from a wide range of attacks, including the OWASP Top Ten, with a minimum of false alerts.", "meetup-group": "", "country": ""}, {"name": "Mqtt Guide", "url": "https://owasp.org/www-project-mqtt-guide/", "created": "2025-06-28", "updated": "2025-06-28", "build": "built", "codeurl": "", "title": "OWASP MQTT Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Mth3l3m3nt Framework", "url": "https://owasp.org/www-project-mth3l3m3nt-framework/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Mth3L3M3Nt Framework", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Mutillidae Ii", "url": "https://owasp.org/www-project-mutillidae-ii/", "created": "2021-11-11", "updated": "2025-04-14", "build": "built", "codeurl": "https://github.com/webpwnized/mutillidae", "title": "OWASP Mutillidae II", "level": "3", "type": "code", "region": "Unknown", "pitch": "A free, open-source, deliberately vulnerable web application providing a target for web security training", "meetup-group": "", "country": ""}, {"name": "Naivesystems Analyze", "url": "https://owasp.org/www-project-naivesystems-analyze/", "created": "2024-01-10", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP NaiveSystems Analyze", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Nasi Lemak", "url": "https://owasp.org/www-project-nasi-lemak/", "created": "2021-11-17", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Nasi Lemak", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Nest", "url": "https://owasp.org/www-project-nest/", "created": "2024-08-03", "updated": "2025-09-26", "build": "built", "codeurl": "https://github.com/OWASP/Nest\thttps://github.com/owasp/nest", "title": "OWASP Nest", "level": 2, "type": "code", "region": "Unknown", "pitch": "Your gateway to OWASP. Discover, engage, and help shape the future!", "meetup-group": "", "country": ""}, {"name": "Netryx", "url": "https://owasp.org/www-project-netryx/", "created": "2024-03-14", "updated": "2025-03-29", "build": "built", "codeurl": "", "title": "OWASP Netryx", "level": 2, "type": "code", "region": "Unknown", "pitch": "Advanced Java Security Framework", "meetup-group": "", "country": ""}, {"name": "Nettacker", "url": "https://owasp.org/www-project-nettacker/", "created": "2019-09-12", "updated": "2025-09-25", "build": "built", "codeurl": "https://github.com/OWASP/Nettacker\thttps://github.com/OWASP/Nettacker", "title": "OWASP Nettacker", "level": "3", "type": "code", "region": "Unknown", "pitch": "OWASP Nettacker is an open source software in Python language which helps you to perform automated penetration testing and automated Information Gathering.", "meetup-group": "", "country": ""}, {"name": "Nightingale", "url": "https://owasp.org/www-project-nightingale/", "created": "2021-11-12", "updated": "2025-09-01", "build": "built", "codeurl": "https://github.com/RAJANAGORI/Nightingale", "title": "OWASP Nightingale", "level": "2", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Node.js Goat", "url": "https://owasp.org/www-project-node.js-goat/", "created": "2019-09-12", "updated": "2023-05-03", "build": "built", "codeurl": "https://github.com/OWASP/NodeGoat", "title": "OWASP Node.js Goat", "level": "2", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Noir", "url": "https://owasp.org/www-project-noir/", "created": "2024-06-13", "updated": "2025-09-19", "build": "built", "codeurl": "https://github.com/owasp-noir/noir", "title": "OWASP Noir", "level": 2, "type": "code", "region": "Unknown", "pitch": "An open-source project that identifies attack surfaces to enhance whitebox security testing and security pipelines.", "meetup-group": "", "country": ""}, {"name": "Non Human Identities Top 10", "url": "https://owasp.org/www-project-non-human-identities-top-10/", "created": "2024-09-05", "updated": "2025-09-16", "build": "built", "codeurl": "", "title": "OWASP Non-Human Identities Top 10", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The primary goal of the \"OWASP Non-Human Identities Top 10\" document is to provide assistance and education for organizations looking to secure the non-human identities in their organization's environment. The guide provides information about what the most prominent security risks are for such identities, the challenges involved, and how to overcome them.", "meetup-group": "", "country": ""}, {"name": "O Saft", "url": "https://owasp.org/www-project-o-saft/", "created": "2019-09-12", "updated": "2023-04-23", "build": "built", "codeurl": "https://github.com/OWASP/O-Saft\thttps://github.com/OWASP/O-Saft", "title": "OWASP O-Saft", "level": "2", "type": "code", "region": "Unknown", "pitch": "O-Saft is an easy to use tool to show informations about SSL certificate and tests the SSL connection according given list of ciphers and various SSL configurations.", "meetup-group": "", "country": ""}, {"name": "O2 Platform", "url": "https://owasp.org/www-project-o2-platform/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP O2 Platform", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Off The Record 4 Java", "url": "https://owasp.org/www-project-off-the-record-4-java/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Off The Record 4 Java", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Online Academy", "url": "https://owasp.org/www-project-online-academy/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Online Academy", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Ontology Driven Threat Modeling Framework", "url": "https://owasp.org/www-project-ontology-driven-threat-modeling-framework/", "created": "2020-08-28", "updated": "2024-09-11", "build": "built", "codeurl": "https://github.com/nets4geeks/DockerComposeDataset\thttps://github.com/OWASP/OdTM", "title": "OWASP Ontology Driven Threat Modeling Framework", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP Ontology-driven Threat Modelling (OdTM) framework is a set of means for implementation of an ontological approach into automatic threat modelling of computer systems.", "meetup-group": "", "country": ""}, {"name": "Open Appsec Tooling Api", "url": "https://owasp.org/www-project-open-appsec-tooling-api/", "created": "2021-03-14", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Open AppSec Tooling API", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Open Sammy", "url": "https://owasp.org/www-project-open-sammy/", "created": "2024-11-21", "updated": "2025-02-20", "build": "built", "codeurl": "https://github.com/OWASP/Open-SAMMY\thttps://github.com/OWASP/open-sammy", "title": "OWASP Open SAMMY", "level": 2, "type": "code", "region": "Unknown", "pitch": "Open SAMMY is an open source OWASP SAMM management and implementation tool", "meetup-group": "", "country": ""}, {"name": "Open Security Information Base", "url": "https://owasp.org/www-project-open-security-information-base/", "created": "2023-06-06", "updated": "2023-06-15", "build": "built", "codeurl": "https://github.com/OWASP/OSIB\thttps://github.com/OWASP/OSIB", "title": "OWASP Open Security Information Base", "level": "2", "type": "code, documentation", "region": "Needs Website Update", "pitch": "The project delivers MkDocs macros that provide a central management of links in MkDocs documents. This includes the versioning of links inside a project, standard or a group of documents and to external sources.", "meetup-group": "", "country": ""}, {"name": "Open Source Security Application Platform", "url": "https://owasp.org/www-project-open-source-security-application-platform/", "created": "2021-08-25", "updated": "2024-09-06", "build": "built", "codeurl": "", "title": "OWASP Open Source Security Applications Platform", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Open Source Software Top 10", "url": "https://owasp.org/www-project-open-source-software-top-10/", "created": "2023-10-24", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/OWASP/www-project-open-source-software-top-10", "title": "OWASP Top 10 Risks for Open Source Software", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "Top-10 security and operational risks related to using OSS.", "meetup-group": "", "country": ""}, {"name": "Operational Technology Top 10", "url": "https://owasp.org/www-project-operational-technology-top-10/", "created": "2024-07-23", "updated": "2025-08-27", "build": "built", "codeurl": "", "title": "OWASP Operational Technology Top 10", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Ot Top Ten", "url": "https://owasp.org/www-project-ot-top-ten/", "created": "2024-11-24", "updated": "2025-09-21", "build": "no pages", "codeurl": "", "title": "OWASP OT Top Ten", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Owtf", "url": "https://owasp.org/www-project-owtf/", "created": "2019-09-12", "updated": "2025-09-05", "build": "built", "codeurl": "https://github.com/owtf/owtf", "title": "OWASP OWTF", "level": "4", "type": "code", "region": "Unknown", "pitch": "Offensive Web Testing Framework (OWTF), is an OWASP+PTES focused try to unite great tools and make pen testing more efficient, written mostly in Python.", "meetup-group": "", "country": ""}, {"name": "Passfault", "url": "https://owasp.org/www-project-passfault/", "created": "2019-09-12", "updated": "2023-04-06", "build": "no pages", "codeurl": "", "title": "OWASP Passfault", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Patton", "url": "https://owasp.org/www-project-patton/", "created": "2019-09-12", "updated": "2024-08-12", "build": "no pages", "codeurl": "https://github.com/BBVA/patton\thttps://github.com/BBVA/patton", "title": "OWASP Patton", "level": "2", "type": "code", "region": "Unknown", "pitch": "The vulnerability knowledge database", "meetup-group": "", "country": ""}, {"name": "Pci Dss Toolkit", "url": "https://owasp.org/www-project-pci-dss-toolkit/", "created": "2025-03-02", "updated": "2025-04-08", "build": "built", "codeurl": "", "title": "OWASP PCI DSS Toolkit", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Penetration Test Reporting Standard", "url": "https://owasp.org/www-project-penetration-test-reporting-standard/", "created": "2024-06-20", "updated": "2025-08-30", "build": "built", "codeurl": "https://github.com/OWASP/www-project-penetration-test-reporting-standard", "title": "OWASP Penetration Test Reporting Standard (OPTRS)", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A unified, machine-readable standard for penetration test reporting to drive consistency, automation, and interoperability.", "meetup-group": "", "country": ""}, {"name": "Penetration Testing Kit", "url": "https://owasp.org/www-project-penetration-testing-kit/", "created": "2021-05-20", "updated": "2025-05-24", "build": "built", "codeurl": "https://github.com/DenisPodgurskii/pentestkit", "title": "OWASP Penetration Testing Kit", "level": "2", "type": "code", "region": "Unknown", "pitch": "PTK is a cross-browser extension that helps application security practitioners to get an insight into the app and do runtime scanning for SQL, XSS, OS Command injections, and more.", "meetup-group": "", "country": ""}, {"name": "Pentest Best Practices", "url": "https://owasp.org/www-project-pentest-best-practices/", "created": "2024-03-27", "updated": "2024-03-27", "build": "built", "codeurl": "", "title": "OWASP Pentest Best Practices", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Pentext", "url": "https://owasp.org/www-project-pentext/", "created": "2022-03-09", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP PenText", "level": "2", "type": "code", "region": "Unknown", "pitch": "A full-featured framework to automatically generate PDF quotes, documents and pentest reports. Can be used in CI/CD pipelines to automatically generate PDF reports from pentests.", "meetup-group": "", "country": ""}, {"name": "Php", "url": "https://owasp.org/www-project-php/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Php", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Php Security Training", "url": "https://owasp.org/www-project-php-security-training/", "created": "2019-09-12", "updated": "2025-07-16", "build": "no pages", "codeurl": "", "title": "OWASP Php Security Training", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Podcast", "url": "https://owasp.org/www-project-podcast/", "created": "2019-09-12", "updated": "2022-01-07", "build": "built", "codeurl": "", "title": "OWASP Podcast", "level": "3", "type": "other", "region": "Unknown", "pitch": "The official OWASP podcast for audio interviews focusing on OWASP projects, chapters and leaders, as well as industry cybersecurity experts and DevOps/DevSecOps champions.", "meetup-group": "", "country": ""}, {"name": "Port And Service Information", "url": "https://owasp.org/www-project-port-and-service-information/", "created": "2021-06-25", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-port-and-service-information", "title": "OWASP Port and Service Information", "level": "2", "type": "", "region": "Unknown", "pitch": "Nmap Script to extend the functionality of scanning by providing more information about ports,services,exploits and fuzzing.", "meetup-group": "", "country": ""}, {"name": "Privacy Toolkit", "url": "https://owasp.org/www-project-privacy-toolkit/", "created": "2024-03-07", "updated": "2024-06-28", "build": "built", "codeurl": "https://github.com/OWASP/www-project-privacy-toolkit", "title": "OWASP Privacy Toolkit", "level": 2, "type": "", "region": "Unknown", "pitch": "A browser plugin for users' Privacy", "meetup-group": "", "country": ""}, {"name": "Prodsecman", "url": "https://owasp.org/www-project-prodsecman/", "created": "2025-02-05", "updated": "2025-02-05", "build": "built", "codeurl": "", "title": "OWASP ProdSecMan", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Product Security Capability Framework", "url": "https://owasp.org/www-project-product-security-capability-framework/", "created": "2023-11-09", "updated": "2025-07-29", "build": "built", "codeurl": "https://github.com/OWASP/PSCF\thttps://github.com/OWASP/PSCF", "title": "OWASP Product Security Capability Framework", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The capabilities required for product teams to build secure products in a secure manner.", "meetup-group": "", "country": ""}, {"name": "Product Security Guide", "url": "https://owasp.org/www-project-product-security-guide/", "created": "2024-01-29", "updated": "2024-11-27", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ai-security-and-privacy-guide\thttps://github.com/OWASP/www-project-product-security-guide", "title": "OWASP Product Security Guide", "level": "-1", "type": "Documentation", "region": "Unknown", "pitch": "The OWASP Product Security Guide project educates developers and organizations on security considerations for various products, offering a curated list of vulnerabilities and promoting awareness and solutions within the development community.", "meetup-group": "", "country": ""}, {"name": "Promptme", "url": "https://owasp.org/www-project-promptme/", "created": "2025-07-25", "updated": "2025-09-15", "build": "built", "codeurl": "https://github.com/OWASP/www-project-promptme\thttps://github.com/OWASP/www-project-promptme", "title": "OWASP PromptMe", "level": 2, "type": "code", "region": "Unknown", "pitch": "A vulnerable application designed to demonstrate the OWASP Top 10 for Large Language Model (LLM) Applications.", "meetup-group": "", "country": ""}, {"name": "Pryingdeep", "url": "https://owasp.org/www-project-pryingdeep/", "created": "2024-01-12", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP Pryingdeep", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Psirt", "url": "https://owasp.org/www-project-psirt/", "created": "2025-01-23", "updated": "2025-05-06", "build": "built", "codeurl": "", "title": "OWASP PSIRT", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Purpleteam", "url": "https://owasp.org/www-project-purpleteam/", "created": "2021-01-30", "updated": "2025-04-21", "build": "built", "codeurl": "", "title": "OWASP PurpleTeam", "level": "-1", "type": "code", "region": "Unknown", "pitch": "Web Security Regression Testing CLI & SaaS for your build pipeline", "meetup-group": "", "country": ""}, {"name": "Pygoat", "url": "https://owasp.org/www-project-pygoat/", "created": "2020-05-06", "updated": "2025-09-04", "build": "built", "codeurl": "https://github.com/adeyosemanputra/pygoat", "title": "Pygoat", "level": "2", "type": "", "region": "Unknown", "pitch": "\"Pygoat gives both developers and testers a platform for learning how to test applications and how to code securely.\"", "meetup-group": "", "country": ""}, {"name": "Python Honeypot", "url": "https://owasp.org/www-project-python-honeypot/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Python Honeypot", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Python Security", "url": "https://owasp.org/www-project-python-security/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Python Security", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Pytm", "url": "https://owasp.org/www-project-pytm/", "created": "2019-09-12", "updated": "2025-09-09", "build": "built", "codeurl": "https://github.com/izar/pytm", "title": "OWASP pytm", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Pyttacker", "url": "https://owasp.org/www-project-pyttacker/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Pyttacker", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Qraclib", "url": "https://owasp.org/www-project-qraclib/", "created": "2024-01-10", "updated": "2024-01-10", "build": "built", "codeurl": "https://github.com/OWASP/www-project-qraclib", "title": "OWASP Qraclib", "level": "-1", "type": "Code", "region": "Unknown", "pitch": "A library of Quantum Oracles for cryptographic algorithms", "meetup-group": "", "country": ""}, {"name": "Qrljacker", "url": "https://owasp.org/www-project-qrljacker/", "created": "2019-09-12", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP Qrljacker", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Raider", "url": "https://owasp.org/www-project-raider/", "created": "2021-09-08", "updated": "2022-12-10", "build": "built", "codeurl": "https://github.com/OWASP/raider", "title": "OWASP Raider", "level": "2", "type": "code", "region": "Unknown", "pitch": "A novel framework for manipulating the HTTP processes of persistent sessions", "meetup-group": "", "country": ""}, {"name": "Rat", "url": "https://owasp.org/www-project-rat/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP rat", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Rbtm", "url": "https://owasp.org/www-project-rbtm/", "created": "2024-08-20", "updated": "2025-02-18", "build": "built", "codeurl": "", "title": "OWASP RBTM", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Redteam Toolkit", "url": "https://owasp.org/www-project-redteam-toolkit/", "created": "2020-05-06", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP Redteam Toolkit", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Revelo", "url": "https://owasp.org/www-project-revelo/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Revelo", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Reverse Engineering And Code Modification Prevention", "url": "https://owasp.org/www-project-reverse-engineering-and-code-modification-prevention/", "created": "2019-09-12", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP Reverse Engineering And Code Modification Prevention", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Rfp Criteria", "url": "https://owasp.org/www-project-rfp-criteria/", "created": "2019-09-12", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP Rfp-Criteria", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Risk Assessment Framework", "url": "https://owasp.org/www-project-risk-assessment-framework/", "created": "2019-09-12", "updated": "2025-06-04", "build": "built", "codeurl": "", "title": "OWASP Risk Assessment Framework", "level": "2", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Safetypes", "url": "https://owasp.org/www-project-safetypes/", "created": "2022-06-22", "updated": "2022-08-03", "build": "built", "codeurl": "https://github.com/OWASP/safetypes", "title": "OWASP safetypes", "level": "2", "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Samm", "url": "https://owasp.org/www-project-samm/", "created": "2019-09-12", "updated": "2025-08-24", "build": "built", "codeurl": "https://github.com/OWASP/SAMM\thttps://github.com/owaspsamm/core", "title": "OWASP SAMM", "level": "4", "type": "documentation", "region": "Unknown", "pitch": "A Software Assurance Maturity Model (SAMM) that provides an effective and measurable way for all types of organizations to analyse and improve their software security posture.", "meetup-group": "owasp-samm", "country": ""}, {"name": "Sammwise", "url": "https://owasp.org/www-project-sammwise/", "created": "2024-03-25", "updated": "2024-11-05", "build": "built", "codeurl": "", "title": "OWASP SAMMwise", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Samuraiwtf", "url": "https://owasp.org/www-project-samuraiwtf/", "created": "2019-09-12", "updated": "2024-09-06", "build": "built", "codeurl": "https://github.com/SamuraiWTF/samuraiwtf", "title": "OWASP SamuraiWTF", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "SamuraiWTF (Web Training Framework) is a collection of tools and training bundled into a platform to provide a lab environment and training on web application testing.", "meetup-group": "", "country": ""}, {"name": "Sap Threat Modeling Builder", "url": "https://owasp.org/www-project-sap-threat-modeling-builder/", "created": "2024-07-31", "updated": "2024-08-05", "build": "built", "codeurl": "https://github.com/redrays-io/SAP-Threat-Modeling", "title": "OWASP SAP Threat Modeling Builder", "level": 2, "type": "code", "region": "Unknown", "pitch": "A comprehensive tool for visualizing and analyzing inter-SAP connections to identify potential security risks", "meetup-group": "", "country": ""}, {"name": "Sapkiln", "url": "https://owasp.org/www-project-sapkiln/", "created": "2024-01-10", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP SAPKiln", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Sasori", "url": "https://owasp.org/www-project-sasori/", "created": "2024-11-21", "updated": "2024-11-21", "build": "built", "codeurl": "https://github.com/karthikuj/sasori|https:", "title": "OWASP Sasori", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Sbom Forum", "url": "https://owasp.org/www-project-sbom-forum/", "created": "2023-09-26", "updated": "2024-12-09", "build": "built", "codeurl": "https://github.com/OWASP/www-project-sbom-forum", "title": "OWASP SBOM Forum", "level": "2", "type": "", "region": "Unknown", "pitch": "The SBOM Forum identifies and tries to find solutions to problems that are preventing widespread distribution and use of software bills of materials (SBOMs) by organizations whose primary business is not software development.", "meetup-group": "", "country": ""}, {"name": "Scan It", "url": "https://owasp.org/www-project-scan-it/", "created": "2020-09-30", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP Scan IT", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Scrappy", "url": "https://owasp.org/www-project-scrappy/", "created": "2023-02-12", "updated": "2023-09-04", "build": "built", "codeurl": "https://github.com/RoseSecurity/ScrapPY", "title": "OWASP ScrapPy", "level": "2", "type": "code", "region": "Unknown", "pitch": "ScrapPY is a Python utility for scraping manuals, documents, and other sensitive PDFs to generate targeted wordlists that can be utilized by offensive security tools to perform brute force, forced browsing, and dictionary attacks.", "meetup-group": "", "country": ""}, {"name": "Seclists", "url": "https://owasp.org/www-project-seclists/", "created": "2019-09-12", "updated": "2025-08-03", "build": "no pages", "codeurl": "", "title": "OWASP Seclists", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Sectudo", "url": "https://owasp.org/www-project-sectudo/", "created": "2020-08-27", "updated": "2023-10-06", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-sectudo\thttps://github.com/OWASP/www-project-sectudo", "title": "OWASP Sectudo", "level": "2", "type": "", "region": "Unknown", "pitch": "Sectudo is a Mobile app that aims at imparting simplified Mobile Application Security Learning.", "meetup-group": "", "country": ""}, {"name": "Secure Api Gateway Blueprint", "url": "https://owasp.org/www-project-secure-api-gateway-blueprint/", "created": "2025-04-27", "updated": "2025-04-27", "build": "built", "codeurl": "", "title": "OWASP Secure API Gateway Blueprint", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Secure By Design Framework", "url": "https://owasp.org/www-project-secure-by-design-framework/", "created": "2025-06-09", "updated": "2025-09-17", "build": "built", "codeurl": "https://github.com/OWASP/www-project-secure-by-design-framework\thttps://github.com/OWASP/www-project-secure-by-design-framework", "title": "OWASP Secure by Design Framework", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The OWASP Secure-by-Design Framework provides practical guidance to embed security into software architecture from the start\u2014long before code is written.", "meetup-group": "", "country": ""}, {"name": "Secure Coding Dojo", "url": "https://owasp.org/www-project-secure-coding-dojo/", "created": "2019-09-12", "updated": "2025-06-02", "build": "built", "codeurl": "https://github.com/owasp/SecureCodingDojo", "title": "OWASP Secure Coding Dojo", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Coding Practices Quick Reference Guide", "url": "https://owasp.org/www-project-secure-coding-practices-quick-reference-guide/", "created": "2019-09-12", "updated": "2025-06-29", "build": "built", "codeurl": "", "title": "OWASP Secure Coding Practices-Quick Reference Guide", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Headers", "url": "https://owasp.org/www-project-secure-headers/", "created": "2019-09-12", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/OWASP/www-project-secure-headers", "title": "OWASP Secure Headers Project", "level": "3.5", "type": "documentation", "region": "Unknown", "pitch": "Provides technical information about HTTP security headers.", "meetup-group": "", "country": ""}, {"name": "Secure Logging Benchmark", "url": "https://owasp.org/www-project-secure-logging-benchmark/", "created": "2020-11-25", "updated": "2024-09-02", "build": "built", "codeurl": "", "title": "OWASP Secure Logging Benchmark", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Medical Device Deployment Standard", "url": "https://owasp.org/www-project-secure-medical-device-deployment-standard/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Secure Medical Device Deployment Standard", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Pipeline Verification Standard Spvs", "url": "https://owasp.org/www-project-secure-pipeline-verification-standard--spvs-/", "created": "2024-01-12", "updated": "2025-02-10", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-secure-pipeline-verification-standard--spvs-", "title": "SPVS", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "The SPVS guide offers robust controls for companies to secure their software development pipelines, enhancing security maturity and managing risks from inception to delivery.", "meetup-group": "", "country": ""}, {"name": "Securebank", "url": "https://owasp.org/www-project-securebank/", "created": "2020-08-27", "updated": "2023-12-18", "build": "built", "codeurl": "https://github.com/ssrdio/SecureBank\thttps://github.com/ssrdio/SecureBank", "title": "OWASP SecureBank", "level": "2", "type": "code", "region": "Unknown", "pitch": "SecureBank the most secure fintech banking system", "meetup-group": "", "country": ""}, {"name": "Securecodebox", "url": "https://owasp.org/www-project-securecodebox/", "created": "2019-09-12", "updated": "2025-02-15", "build": "built", "codeurl": "https://github.com/secureCodeBox/secureCodeBox\thttps://github.com/secureCodeBox/secureCodeBox", "title": "OWASP secureCodeBox", "level": "3", "type": "code", "region": "Unknown", "pitch": "Automate all your security and vulnerability scanners.", "meetup-group": "", "country": ""}, {"name": "Secureflag Open Platform", "url": "https://owasp.org/www-project-secureflag-open-platform/", "created": "2020-05-06", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP SecureFlag Open Platform", "level": "2", "type": "code", "region": "Unknown", "pitch": "Training platform for developers to learn and practice modern secure coding techniques through hands-on exercises.", "meetup-group": "", "country": ""}, {"name": "Securetea", "url": "https://owasp.org/www-project-securetea/", "created": "2019-10-18", "updated": "2024-09-01", "build": "built", "codeurl": "https://github.com/OWASP/SecureTea-Project\thttps://github.com/OWASP/SecureTea-Project", "title": "OWASP SecureTea Project", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security Bridge", "url": "https://owasp.org/www-project-security-bridge/", "created": "2023-06-28", "updated": "2023-08-20", "build": "built", "codeurl": "https://github.com/OWASP/security-bridge", "title": "OWASP Security Bridge", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Security Bridge is aiming to build bridges in our community to not only talk and learn about application security but also the daily challenges we are facing that are non-technical.", "meetup-group": "", "country": ""}, {"name": "Security Busters", "url": "https://owasp.org/www-project-security-busters/", "created": "2019-09-12", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Security Busters", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security C4po", "url": "https://owasp.org/www-project-security-c4po/", "created": "2023-11-09", "updated": "2023-11-09", "build": "built", "codeurl": "https://github.com/Marcel-Haag/security-c4po\thttps://github.com/marcel-haag/security-c4po#docker-hub-setup", "title": "OWASP Security-C4PO", "level": 2, "type": "code", "region": "Unknown", "pitch": "Simplify Pentest Planning, Reporting, and Findings Delivery with C4PO", "meetup-group": "", "country": ""}, {"name": "Security Champions Guidebook", "url": "https://owasp.org/www-project-security-champions-guidebook/", "created": "2022-05-19", "updated": "2025-09-25", "build": "built", "codeurl": "", "title": "OWASP Security Champions Guide", "level": "2", "type": "Documentation", "region": "Unknown", "pitch": "Our goal is to create an open-source, vendor-neutral guidebook for AppSec professionals to help them build and improve their own successful Security Champion programs.", "meetup-group": "", "country": ""}, {"name": "Security Culture", "url": "https://owasp.org/www-project-security-culture/", "created": "2021-05-20", "updated": "2025-06-22", "build": "built", "codeurl": "https://github.com/OWASP/security-culture\thttps://github.com/OWASP/security-culture", "title": "OWASP Security Culture", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "A guide for establishing a security culture when building an application security program", "meetup-group": "", "country": ""}, {"name": "Security Integration System", "url": "https://owasp.org/www-project-security-integration-system/", "created": "2019-09-12", "updated": "2025-09-25", "build": "no pages", "codeurl": "", "title": "OWASP Security Integration System", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "SCAT functions as a process integrity tool to overlay the SDLC and implement these esential security components.", "meetup-group": "", "country": ""}, {"name": "Security Knowledge Framework", "url": "https://owasp.org/www-project-security-knowledge-framework/", "created": "2019-09-12", "updated": "2025-01-24", "build": "no pages", "codeurl": "", "title": "Security Knowledge Framework", "level": "-1", "type": "code", "region": "Unknown", "pitch": "The Security Knowledge Framework is an open source web application that explains secure coding principles in multiple programming languages. The goal of SKF is to help you learn and integrate security by design in your software development and build applications that are secure by design.", "meetup-group": "", "country": ""}, {"name": "Security Logging", "url": "https://owasp.org/www-project-security-logging/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Security Logging", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security Pins", "url": "https://owasp.org/www-project-security-pins/", "created": "2019-09-12", "updated": "2021-07-07", "build": "built", "codeurl": "https://github.com/wurstbrot/security-pins\thttps://github.com/wurstbrot/security-pins\">Github", "title": "OWASP Security Pins", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security Qualitative Metrics", "url": "https://owasp.org/www-project-security-qualitative-metrics/", "created": "2020-07-20", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-security-qualitative-metrics\thttps://github.com/OWASP/www-project-security-qualitative-metrics", "title": "OWASP Security Qualitative Metrics", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The OWASP Security Qualitative Metrics is the most detailed list of metrics which evaluate security level of web projects. It shows the level of coverage of OWASP ASVS.", "meetup-group": "", "country": ""}, {"name": "Security Resource Framework", "url": "https://owasp.org/www-project-security-resource-framework/", "created": "2020-06-11", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Security Resource Framework", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Security Shepherd", "url": "https://owasp.org/www-project-security-shepherd/", "created": "2019-09-12", "updated": "2024-06-24", "build": "built", "codeurl": "https://github.com/OWASP/SecurityShepherd", "title": "OWASP Security Shepherd", "level": "4", "type": "code", "region": "Unknown", "pitch": "OWASP Security Shepherd is a web and mobile application security training platform. Security Shepherd has been designed to foster and improve security awareness among a varied skill-set demographic. The aim of this project is to take AppSec novices or experienced engineers and sharpen their penetration testing skillset to security expert status.", "meetup-group": "", "country": ""}, {"name": "Securityrat", "url": "https://owasp.org/www-project-securityrat/", "created": "2019-10-09", "updated": "2024-08-11", "build": "built", "codeurl": "https://github.com/SecurityRAT/SecurityRAT\thttps://github.com/SecurityRAT/SecurityRAT", "title": "OWASP SecurityRAT", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP SecurityRAT is a tool used by development teams, helping them master security requirements during development.", "meetup-group": "", "country": ""}, {"name": "Sedated", "url": "https://owasp.org/www-project-sedated/", "created": "2019-09-12", "updated": "2025-04-15", "build": "built", "codeurl": "https://github.com/OWASP/SEDATED", "title": "OWASP SEDATED\u00ae", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "The SEDATED\u00ae Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure) focuses on preventing sensitive data such as user credentials and tokens from being pushed to Git.", "meetup-group": "", "country": ""}, {"name": "Seeker", "url": "https://owasp.org/www-project-seeker/", "created": "2019-11-08", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Seeker", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "The Seeker is a unique ML-based tool for hardcoded credentials discovery in source code. It can help to prevent information leakage and other malicious consequences.", "meetup-group": "", "country": ""}, {"name": "Seraphimdroid", "url": "https://owasp.org/www-project-seraphimdroid/", "created": "2019-09-12", "updated": "2025-04-11", "build": "built", "codeurl": "https://github.com/nikolamilosevic86/owasp-seraphimdroid", "title": "OWASP Seraphimdroid", "level": "0", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Serverless Goat", "url": "https://owasp.org/www-project-serverless-goat/", "created": "2019-09-12", "updated": "2023-01-28", "build": "no pages", "codeurl": "", "title": "OWASP Serverless Goat", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Serverless Top 10", "url": "https://owasp.org/www-project-serverless-top-10/", "created": "2019-09-12", "updated": "2025-04-30", "build": "built", "codeurl": "https://github.com/OWASP/Serverless-Top-10-Project", "title": "OWASP Serverless Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Sidekek", "url": "https://owasp.org/www-project-sidekek/", "created": "2019-11-21", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/SideKEK\thttps://github.com/OWASP/SideKEK", "title": "OWASP SideKEK", "level": "2", "type": "code", "region": "Unknown", "pitch": "Simple tool to protect cryptographic master keys (key encryption keys, KEKs) in a way that is resistant to some of the most common remote file exfiltration attacks.", "meetup-group": "", "country": ""}, {"name": "Skyshield", "url": "https://owasp.org/www-project-skyshield/", "created": "2024-02-27", "updated": "2025-08-03", "build": "no pages", "codeurl": "", "title": "OWASP SkyShield", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Smart Contract Security Testing Guide", "url": "https://owasp.org/www-project-smart-contract-security-testing-guide/", "created": "2024-11-27", "updated": "2025-08-20", "build": "built", "codeurl": "https://github.com/OWASP/owasp-scstg\thttps://github.com/OWASP/www-project-smart-contract-security-testing-guide", "title": "OWASP SCSTG", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "The testing guide provides a basis for testing, suditing and securing robust Smart Contracts", "meetup-group": "", "country": ""}, {"name": "Smart Contract Security Verification Standard", "url": "https://owasp.org/www-project-smart-contract-security-verification-standard/", "created": "2024-09-18", "updated": "2025-08-30", "build": "built", "codeurl": "https://github.com/OWASP/www-project-smart-contract-security-verification-standard\thttps://github.com/OWASP/owasp-scsvs", "title": "OWASP Smart Contract Security Verification Standard", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "The standard provides a basis for designing, building, and testing robust Smart Contracts", "meetup-group": "", "country": ""}, {"name": "Smart Contract Top 10", "url": "https://owasp.org/www-project-smart-contract-top-10/", "created": "2023-02-12", "updated": "2025-09-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-smart-contract-top-10\thttps://github.com/OWASP/www-project-smart-contract-top-10", "title": "OWASP Smart Contract Top 10", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "Welcome to the OWASP Top Ten for Smart Contracts", "meetup-group": "", "country": ""}, {"name": "Snakes And Ladders", "url": "https://owasp.org/www-project-snakes-and-ladders/", "created": "2019-09-12", "updated": "2024-12-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-snakes-and-ladders", "title": "OWASP Snakes And Ladders", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Snow", "url": "https://owasp.org/www-project-snow/", "created": "2020-10-27", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/akhimb/Snow", "title": "OWASP Snow", "level": "2", "type": "code, tool", "region": "Unknown", "pitch": "Improve privacy of applications by defending shoulder surfing", "meetup-group": "", "country": ""}, {"name": "Social Osintlm", "url": "https://owasp.org/www-project-social-osintlm/", "created": "2025-06-09", "updated": "2025-07-04", "build": "built", "codeurl": "https://github.com/bm-github/owasp-social-osintlm\thttps://github.com/bm-github/owasp-social-osintlm", "title": "OWASP SocialOSINTLM", "level": 2, "type": "code", "region": "Unknown", "pitch": "An OSINT tool that uses LLMs and vision models to analyze a target's social media footprint across multiple platforms, revealing insights through natural language queries.", "meetup-group": "", "country": ""}, {"name": "Software Component Verification Standard", "url": "https://owasp.org/www-project-software-component-verification-standard/", "created": "2019-09-12", "updated": "2022-10-31", "build": "built", "codeurl": "https://github.com/OWASP/Software-Component-Verification-Standard\thttps://github.com/OWASP/Software-Component-Verification-Standard", "title": "OWASP Software Component Verification Standard", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "SCVS is a framework for identifying activities, controls, and best practices, which can help in identifying and reducing risk in a software supply chain.", "meetup-group": "", "country": ""}, {"name": "Software Composition Security", "url": "https://owasp.org/www-project-software-composition-security/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Software Composition Security", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Software Pre Execution Security Review", "url": "https://owasp.org/www-project-software-pre-execution-security-review/", "created": "2022-11-14", "updated": "2022-11-14", "build": "built", "codeurl": "", "title": "OWASP Software Pre-Execution Security Review", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Software Security 5d Framework", "url": "https://owasp.org/www-project-software-security-5d-framework/", "created": "2019-09-12", "updated": "2025-07-12", "build": "built", "codeurl": "https://github.com/OWASP/www-project-software-security-5d-framework", "title": "OWASP Software Security 5D Framework", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Solana Programs Top 10", "url": "https://owasp.org/www-project-solana-programs-top-10/", "created": "2024-01-12", "updated": "2024-02-13", "build": "built", "codeurl": "https://github.com/OWASP/www-project-solana-programs-top-10", "title": "OWASP Solana Top 10", "level": "-1", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Spotlight Series", "url": "https://owasp.org/www-project-spotlight-series/", "created": "2021-03-14", "updated": "2025-01-27", "build": "built", "codeurl": "https://github.com/OWASP/www-project-spotlight-series", "title": "OWASP Project Spotlight Series", "level": "2", "type": "other", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Spvs", "url": "https://owasp.org/www-project-spvs/", "created": "2024-08-03", "updated": "2025-04-17", "build": "built", "codeurl": "https://github.com/OWASP/www-project-spvs\thttps://github.com/OWASP/www-project-spvs", "title": "Secure Pipeline Verification Standard (SPVS)", "level": 2, "type": "standards", "region": "Unknown", "pitch": "The Secure Pipeline Verification Standard (SPVS) Project goal is to develop a comprehensive standard that guides organizations in creating and maintaining secure software pipelines, encompassing the entire development and deployment lifecycle.", "meetup-group": "", "country": ""}, {"name": "Sso", "url": "https://owasp.org/www-project-sso/", "created": "2020-02-10", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/SSO_Project\thttps://github.com/OWASP/SSO_Project", "title": "OWASP Single Sign-On", "level": "2", "type": "code", "region": "Unknown", "pitch": "Centralize your decentral logins with the safest and most privacy-oriented Single Sign-On experience. Keep the data where it belongs - in your hands!", "meetup-group": "", "country": ""}, {"name": "State Of Appsec Survey", "url": "https://owasp.org/www-project-state-of-appsec-survey/", "created": "2022-07-18", "updated": "2022-07-18", "build": "built", "codeurl": "https://github.com/OWASP/www-project-state-of-appsec-survey", "title": "OWASP State of AppSec Survey", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Project providing resources and templates for OWASP Chapters and other organizations to conduct their own surveys", "meetup-group": "", "country": ""}, {"name": "Supplychaingoat", "url": "https://owasp.org/www-project-supplychaingoat/", "created": "2022-03-31", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP SupplyChainGoat", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Template", "url": "https://owasp.org/www-project-template/", "created": "2025-09-09", "updated": "2025-09-09", "build": "no pages", "codeurl": "", "title": "OWASP Threat Modelling Guide", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Testability Patterns For Web Applications", "url": "https://owasp.org/www-project-testability-patterns-for-web-applications/", "created": "2022-08-25", "updated": "2025-06-17", "build": "built", "codeurl": "https://github.com/testable-eu/sast-testability-patterns\thttps://github.com/testable-eu/sast-tp-framework", "title": "OWASP Testability Patterns for Web Applications", "level": "2", "type": "", "region": "Unknown", "pitch": "TestabiliTy Pattern-driven Web Application Security and Privacy Testing", "meetup-group": "", "country": ""}, {"name": "Thick Client Application Security Verification Standard", "url": "https://owasp.org/www-project-thick-client-application-security-verification-standard/", "created": "2024-01-10", "updated": "2025-04-04", "build": "built", "codeurl": "https://github.com/OWASP/ASVS", "title": "OWASP Thick Client Application Security Verification Standard", "level": "-1", "type": "Documentation", "region": "Unknown", "pitch": "This project aims to fill the gap between the web ASVS and the mobile ASVS (MASVS), whilst the MASVS can be used for thick client testing it's not a perfect fit and so we hope to produce something more appropriate.", "meetup-group": "", "country": ""}, {"name": "Thick Client Security Testing Guide", "url": "https://owasp.org/www-project-thick-client-security-testing-guide/", "created": "2021-10-04", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Thick Client Security Testing Guide", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Thick Client Top 10", "url": "https://owasp.org/www-project-thick-client-top-10/", "created": "2020-03-05", "updated": "2022-07-26", "build": "built", "codeurl": "", "title": "OWASP Thick Client Top 10 Project", "level": "2", "type": "code/tool/documentation or other", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Threat And Safeguard Matrix", "url": "https://owasp.org/www-project-threat-and-safeguard-matrix/", "created": "2020-10-12", "updated": "2025-07-18", "build": "built", "codeurl": "https://github.com/OWASP/www-project-threat-and-safeguard-matrix", "title": "OWASP Threat and Safeguard Matrix (TaSM)", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Threat Dragon", "url": "https://owasp.org/www-project-threat-dragon/", "created": "2019-09-12", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/OWASP/threat-dragon", "title": "OWASP Threat Dragon", "level": "3", "type": "code", "region": "Unknown", "pitch": "OWASP Threat Dragon is a threat modeling tool for both developers and defenders alike. Run it as a local application or as a web application.", "meetup-group": "", "country": ""}, {"name": "Threat Model", "url": "https://owasp.org/www-project-threat-model/", "created": "2020-02-25", "updated": "2025-08-22", "build": "built", "codeurl": "https://github.com/OWASP/www-project-threat-model", "title": "OWASP Threat Modeling Project", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Central repository of threat modeling information, techniques, and methodologies", "meetup-group": "", "country": ""}, {"name": "Threat Model Cookbook", "url": "https://owasp.org/www-project-threat-model-cookbook/", "created": "2019-09-12", "updated": "2025-06-25", "build": "no pages", "codeurl": "https://github.com/OWASP/threat-model-cookbook\thttps://github.com/OWASP/threat-model-cookbook", "title": "OWASP Threat Model Cookbook", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Threat Model Library", "url": "https://owasp.org/www-project-threat-model-library/", "created": "2025-02-05", "updated": "2025-09-21", "build": "built", "codeurl": "https://github.com/OWASP/threat-model-cookbook\thttps://github.com/OWASP/www-project-threat-model-library", "title": "OWASP Threat Model Library", "level": 2, "type": "code", "region": "Unknown", "pitch": "Welcome to the first, open-sourced, structured, peer-reviewed threat modeling dataset", "meetup-group": "", "country": ""}, {"name": "Threat Model Vault", "url": "https://owasp.org/www-project-threat-model-vault/", "created": "2025-01-23", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Threat Model Vault", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Threat Modeling Playbook", "url": "https://owasp.org/www-project-threat-modeling-playbook/", "created": "2020-09-28", "updated": "2025-01-16", "build": "built", "codeurl": "https://github.com/OWASP/threat-modeling-playbook", "title": "OWASP Threat Modeling Playbook (OTMP)", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Improve your product and software security with the OWASP Threat Modeling Playbook (OTMP)", "meetup-group": "", "country": ""}, {"name": "Threat Modelling Guide", "url": "https://owasp.org/www-project-threat-modelling-guide/", "created": "2025-09-09", "updated": "2025-09-09", "build": "built", "codeurl": "", "title": "OWASP Threat Modelling Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Threatspec", "url": "https://owasp.org/www-project-threatspec/", "created": "2019-09-12", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Threatspec", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Timegap Theory", "url": "https://owasp.org/www-project-timegap-theory/", "created": "2019-11-21", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/TimeGap-Theory", "title": "OWASP TimeGap Theory", "level": "2", "type": "code", "region": "Unknown", "pitch": "An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilities", "meetup-group": "", "country": ""}, {"name": "Toctourex", "url": "https://owasp.org/www-project-toctourex/", "created": "2022-03-31", "updated": "2025-08-03", "build": "no pages", "codeurl": "", "title": "OWASP TOCTOURex", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 Card Game", "url": "https://owasp.org/www-project-top-10-card-game/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Top 10 Card Game", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Top 10 Ci Cd Security Risks", "url": "https://owasp.org/www-project-top-10-ci-cd-security-risks/", "created": "2022-07-20", "updated": "2025-08-29", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-ci-cd-security-risks", "title": "OWASP Top 10 CI/CD Security Risks", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "OWASP Top 10 CI/CD Security Risks project helps defenders identify focus areas for securing their CI/CD ecosystem.", "meetup-group": "", "country": ""}, {"name": "Top 10 Client Side Security Risks", "url": "https://owasp.org/www-project-top-10-client-side-security-risks/", "created": "2021-03-23", "updated": "2025-09-21", "build": "built", "codeurl": "", "title": "OWASP Top 10 Client-Side Security Risks", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The client-side of browser based web applications has different security challenges than [the server-side](https://owasp.org/www-project-top-ten/).", "meetup-group": "", "country": ""}, {"name": "Top 10 Drone Security Risks", "url": "https://owasp.org/www-project-top-10-drone-security-risks/", "created": "2024-06-19", "updated": "2024-07-06", "build": "built", "codeurl": "", "title": "OWASP Top 10 Drone Security Risks", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 For Business Logic Abuse", "url": "https://owasp.org/www-project-top-10-for-business-logic-abuse/", "created": "2025-02-07", "updated": "2025-08-27", "build": "built", "codeurl": "", "title": "OWASP Top 10 for Business Logic Abuse", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 For Large Language Model Applications", "url": "https://owasp.org/www-project-top-10-for-large-language-model-applications/", "created": "2023-05-16", "updated": "2025-09-25", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-for-large-language-model-applications\thttps://github.com/OWASP/www-project-top-10-for-large-language-model-applications", "title": "OWASP Top 10 for Large Language Model Applications", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "Aims to educate developers, designers, architects, managers, and organizations about the potential security risks when deploying and managing Large Language Models (LLMs)", "meetup-group": "", "country": ""}, {"name": "Top 10 For Maritime Security", "url": "https://owasp.org/www-project-top-10-for-maritime-security/", "created": "2024-06-06", "updated": "2025-08-20", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-for-maritime-security", "title": "OWASP Top 10 for Maritime Security", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 Fuer Entwickler", "url": "https://owasp.org/www-project-top-10-fuer-entwickler/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Top 10 Fuer Entwickler", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Top 10 In Xr", "url": "https://owasp.org/www-project-top-10-in-xr/", "created": "2023-11-09", "updated": "2025-09-25", "build": "built", "codeurl": "", "title": "OWASP Top 10 in XR", "level": 2, "type": "documentation", "region": "Needs Website Update", "pitch": "Top 10 security risks for XR", "meetup-group": "", "country": ""}, {"name": "Top 10 Infrastructure Security Risks", "url": "https://owasp.org/www-project-top-10-infrastructure-security-risks/", "created": "2023-09-11", "updated": "2025-09-19", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-infrastructure-security-risks", "title": "OWASP Top 10 Infrastructure Security Risks", "level": "-1", "type": "", "region": "Unknown", "pitch": "Most common and critical Infrastructure Security Risks", "meetup-group": "", "country": ""}, {"name": "Top 10 Low Code No Code Security Risks", "url": "https://owasp.org/www-project-top-10-low-code-no-code-security-risks/", "created": "2021-08-23", "updated": "2025-09-12", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-low-code-no-code-security-risks\thttps://github.com/OWASP/www-project-top-10-low-code-no-code-security-risks", "title": "OWASP Low-Code/No-Code Top 10", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "The primary goal of the \"OWASP Top 10 Low-Code/No-Code Security Risks\" document is to provide assistance and education for organizations looking to adopt and develop Low-Code/No-Code applications. The guide provides information about what are the most prominent security risks for such applications, the challenges involved, and how to overcome them.", "meetup-group": "", "country": ""}, {"name": "Top 10 Privacy Risks", "url": "https://owasp.org/www-project-top-10-privacy-risks/", "created": "2019-09-12", "updated": "2025-05-28", "build": "built", "codeurl": "", "title": "OWASP Top 10 Privacy Risks", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Top 10 The Game", "url": "https://owasp.org/www-project-top-10-the-game/", "created": "2025-09-16", "updated": "2025-09-25", "build": "built", "codeurl": "", "title": "OWASP Top 10 The Game", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 25 Parameters", "url": "https://owasp.org/www-project-top-25-parameters/", "created": "2023-02-12", "updated": "2025-02-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-25-parameters\">MSTG\thttps://github.com/OWASP/MSTG-Hacking-Playground", "title": "OWASP mobile security", "level": "3", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Mobile Top 10", "url": "https://owasp.org/www-project-mobile-top-10/", "created": "2019-10-18", "updated": "2025-10-08", "build": "built", "codeurl": "https://github.com/OWASP/www-project-mobile-top-10", "title": "OWASP Mobile Top 10", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Modsecurity", "url": "https://owasp.org/www-project-modsecurity/", "created": "2024-01-22", "updated": "2025-08-06", "build": "built", "codeurl": "https://github.com/owasp-modsecurity/modsecurity", "title": "OWASP ModSecurity", "level": 3.5, "type": "code", "region": "Unknown", "pitch": "ModSecurity is the standard open-source web application firewall (WAF) engine.", "meetup-group": "", "country": ""}, {"name": "Modsecurity Core Rule Set", "url": "https://owasp.org/www-project-modsecurity-core-rule-set/", "created": "2019-09-12", "updated": "2025-09-04", "build": "built", "codeurl": "https://github.com/coreruleset/coreruleset\thttps://github.com/coreruleset/coreruleset", "title": "OWASP CRS", "level": "4", "type": "code", "region": "Unknown", "pitch": "The OWASP CRS is a set of generic attack detection rules for use with ModSecurity or compatible web application firewalls. The CRS aims to protect web applications from a wide range of attacks, including the OWASP Top Ten, with a minimum of false alerts.", "meetup-group": "", "country": ""}, {"name": "Mqtt Guide", "url": "https://owasp.org/www-project-mqtt-guide/", "created": "2025-06-28", "updated": "2025-06-28", "build": "built", "codeurl": "", "title": "OWASP MQTT Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Mth3l3m3nt Framework", "url": "https://owasp.org/www-project-mth3l3m3nt-framework/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Mth3L3M3Nt Framework", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Mutillidae Ii", "url": "https://owasp.org/www-project-mutillidae-ii/", "created": "2021-11-11", "updated": "2025-04-14", "build": "built", "codeurl": "https://github.com/webpwnized/mutillidae", "title": "OWASP Mutillidae II", "level": "3", "type": "code", "region": "Unknown", "pitch": "A free, open-source, deliberately vulnerable web application providing a target for web security training", "meetup-group": "", "country": ""}, {"name": "Naivesystems Analyze", "url": "https://owasp.org/www-project-naivesystems-analyze/", "created": "2024-01-10", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP NaiveSystems Analyze", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Nasi Lemak", "url": "https://owasp.org/www-project-nasi-lemak/", "created": "2021-11-17", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Nasi Lemak", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Nest", "url": "https://owasp.org/www-project-nest/", "created": "2024-08-03", "updated": "2025-10-07", "build": "built", "codeurl": "https://github.com/OWASP/Nest\thttps://github.com/owasp/nest", "title": "OWASP Nest", "level": 2, "type": "code", "region": "Unknown", "pitch": "Your gateway to OWASP. Discover, engage, and help shape the future!", "meetup-group": "", "country": ""}, {"name": "Netryx", "url": "https://owasp.org/www-project-netryx/", "created": "2024-03-14", "updated": "2025-10-06", "build": "built", "codeurl": "", "title": "OWASP Netryx", "level": 2, "type": "code", "region": "Unknown", "pitch": "Advanced Java Security Framework", "meetup-group": "", "country": ""}, {"name": "Nettacker", "url": "https://owasp.org/www-project-nettacker/", "created": "2019-09-12", "updated": "2025-10-07", "build": "built", "codeurl": "https://github.com/OWASP/Nettacker\thttps://github.com/OWASP/Nettacker", "title": "OWASP Nettacker", "level": "3", "type": "code", "region": "Unknown", "pitch": "OWASP Nettacker is an open source software in Python language which helps you to perform automated penetration testing and automated Information Gathering.", "meetup-group": "", "country": ""}, {"name": "Nightingale", "url": "https://owasp.org/www-project-nightingale/", "created": "2021-11-12", "updated": "2025-10-01", "build": "built", "codeurl": "https://github.com/RAJANAGORI/Nightingale", "title": "OWASP Nightingale", "level": "2", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Node.js Goat", "url": "https://owasp.org/www-project-node.js-goat/", "created": "2019-09-12", "updated": "2023-05-03", "build": "built", "codeurl": "https://github.com/OWASP/NodeGoat", "title": "OWASP Node.js Goat", "level": "2", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Noir", "url": "https://owasp.org/www-project-noir/", "created": "2024-06-13", "updated": "2025-10-08", "build": "built", "codeurl": "https://github.com/owasp-noir/noir", "title": "OWASP Noir", "level": 2, "type": "code", "region": "Unknown", "pitch": "An open-source project that identifies attack surfaces to enhance whitebox security testing and security pipelines.", "meetup-group": "", "country": ""}, {"name": "Non Human Identities Top 10", "url": "https://owasp.org/www-project-non-human-identities-top-10/", "created": "2024-09-05", "updated": "2025-09-16", "build": "built", "codeurl": "", "title": "OWASP Non-Human Identities Top 10", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The primary goal of the \"OWASP Non-Human Identities Top 10\" document is to provide assistance and education for organizations looking to secure the non-human identities in their organization's environment. The guide provides information about what the most prominent security risks are for such identities, the challenges involved, and how to overcome them.", "meetup-group": "", "country": ""}, {"name": "O Saft", "url": "https://owasp.org/www-project-o-saft/", "created": "2019-09-12", "updated": "2025-10-08", "build": "built", "codeurl": "https://github.com/OWASP/O-Saft\thttps://github.com/OWASP/O-Saft", "title": "OWASP O-Saft", "level": "2", "type": "code", "region": "Unknown", "pitch": "O-Saft is an easy to use tool to show informations about SSL certificate and tests the SSL connection according given list of ciphers and various SSL configurations.", "meetup-group": "", "country": ""}, {"name": "O2 Platform", "url": "https://owasp.org/www-project-o2-platform/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP O2 Platform", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Off The Record 4 Java", "url": "https://owasp.org/www-project-off-the-record-4-java/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Off The Record 4 Java", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Online Academy", "url": "https://owasp.org/www-project-online-academy/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Online Academy", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Ontology Driven Threat Modeling Framework", "url": "https://owasp.org/www-project-ontology-driven-threat-modeling-framework/", "created": "2020-08-28", "updated": "2024-09-11", "build": "built", "codeurl": "https://github.com/nets4geeks/DockerComposeDataset\thttps://github.com/OWASP/OdTM", "title": "OWASP Ontology Driven Threat Modeling Framework", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP Ontology-driven Threat Modelling (OdTM) framework is a set of means for implementation of an ontological approach into automatic threat modelling of computer systems.", "meetup-group": "", "country": ""}, {"name": "Open Appsec Tooling Api", "url": "https://owasp.org/www-project-open-appsec-tooling-api/", "created": "2021-03-14", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Open AppSec Tooling API", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Open Sammy", "url": "https://owasp.org/www-project-open-sammy/", "created": "2024-11-21", "updated": "2025-02-20", "build": "built", "codeurl": "https://github.com/OWASP/Open-SAMMY\thttps://github.com/OWASP/open-sammy", "title": "OWASP Open SAMMY", "level": 2, "type": "code", "region": "Unknown", "pitch": "Open SAMMY is an open source OWASP SAMM management and implementation tool", "meetup-group": "", "country": ""}, {"name": "Open Security Information Base", "url": "https://owasp.org/www-project-open-security-information-base/", "created": "2023-06-06", "updated": "2023-06-15", "build": "built", "codeurl": "https://github.com/OWASP/OSIB\thttps://github.com/OWASP/OSIB", "title": "OWASP Open Security Information Base", "level": "2", "type": "code, documentation", "region": "Needs Website Update", "pitch": "The project delivers MkDocs macros that provide a central management of links in MkDocs documents. This includes the versioning of links inside a project, standard or a group of documents and to external sources.", "meetup-group": "", "country": ""}, {"name": "Open Source Security Application Platform", "url": "https://owasp.org/www-project-open-source-security-application-platform/", "created": "2021-08-25", "updated": "2024-09-06", "build": "built", "codeurl": "", "title": "OWASP Open Source Security Applications Platform", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Open Source Software Top 10", "url": "https://owasp.org/www-project-open-source-software-top-10/", "created": "2023-10-24", "updated": "2025-09-23", "build": "built", "codeurl": "https://github.com/OWASP/www-project-open-source-software-top-10", "title": "OWASP Top 10 Risks for Open Source Software", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "Top-10 security and operational risks related to using OSS.", "meetup-group": "", "country": ""}, {"name": "Operational Technology Top 10", "url": "https://owasp.org/www-project-operational-technology-top-10/", "created": "2024-07-23", "updated": "2025-10-08", "build": "built", "codeurl": "", "title": "OWASP Operational Technology Top 10", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "Top 10 Vulnerabilities Targeting Your OT Environment", "meetup-group": "", "country": ""}, {"name": "Ot Top Ten", "url": "https://owasp.org/www-project-ot-top-ten/", "created": "2024-11-24", "updated": "2025-09-21", "build": "no pages", "codeurl": "", "title": "OWASP OT Top Ten", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Owtf", "url": "https://owasp.org/www-project-owtf/", "created": "2019-09-12", "updated": "2025-09-05", "build": "built", "codeurl": "https://github.com/owtf/owtf", "title": "OWASP OWTF", "level": "4", "type": "code", "region": "Unknown", "pitch": "Offensive Web Testing Framework (OWTF), is an OWASP+PTES focused try to unite great tools and make pen testing more efficient, written mostly in Python.", "meetup-group": "", "country": ""}, {"name": "Passfault", "url": "https://owasp.org/www-project-passfault/", "created": "2019-09-12", "updated": "2023-04-06", "build": "no pages", "codeurl": "", "title": "OWASP Passfault", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Patton", "url": "https://owasp.org/www-project-patton/", "created": "2019-09-12", "updated": "2024-08-12", "build": "no pages", "codeurl": "https://github.com/BBVA/patton\thttps://github.com/BBVA/patton", "title": "OWASP Patton", "level": "2", "type": "code", "region": "Unknown", "pitch": "The vulnerability knowledge database", "meetup-group": "", "country": ""}, {"name": "Pci Dss Toolkit", "url": "https://owasp.org/www-project-pci-dss-toolkit/", "created": "2025-03-02", "updated": "2025-04-08", "build": "built", "codeurl": "", "title": "OWASP PCI DSS Toolkit", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Penetration Test Reporting Standard", "url": "https://owasp.org/www-project-penetration-test-reporting-standard/", "created": "2024-06-20", "updated": "2025-08-30", "build": "built", "codeurl": "https://github.com/OWASP/www-project-penetration-test-reporting-standard", "title": "OWASP Penetration Test Reporting Standard (OPTRS)", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A unified, machine-readable standard for penetration test reporting to drive consistency, automation, and interoperability.", "meetup-group": "", "country": ""}, {"name": "Penetration Testing Kit", "url": "https://owasp.org/www-project-penetration-testing-kit/", "created": "2021-05-20", "updated": "2025-09-28", "build": "built", "codeurl": "https://github.com/DenisPodgurskii/pentestkit", "title": "OWASP Penetration Testing Kit", "level": "2", "type": "code", "region": "Unknown", "pitch": "PTK is a cross-browser extension that helps application security practitioners to get an insight into the app and do runtime scanning for SQL, XSS, OS Command injections, and more.", "meetup-group": "", "country": ""}, {"name": "Pentest Best Practices", "url": "https://owasp.org/www-project-pentest-best-practices/", "created": "2024-03-27", "updated": "2025-10-08", "build": "built", "codeurl": "", "title": "OWASP Pentest Best Practices", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Pentext", "url": "https://owasp.org/www-project-pentext/", "created": "2022-03-09", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP PenText", "level": "2", "type": "code", "region": "Unknown", "pitch": "A full-featured framework to automatically generate PDF quotes, documents and pentest reports. Can be used in CI/CD pipelines to automatically generate PDF reports from pentests.", "meetup-group": "", "country": ""}, {"name": "Php", "url": "https://owasp.org/www-project-php/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Php", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Php Security Training", "url": "https://owasp.org/www-project-php-security-training/", "created": "2019-09-12", "updated": "2025-07-16", "build": "no pages", "codeurl": "", "title": "OWASP Php Security Training", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Podcast", "url": "https://owasp.org/www-project-podcast/", "created": "2019-09-12", "updated": "2022-01-07", "build": "built", "codeurl": "", "title": "OWASP Podcast", "level": "3", "type": "other", "region": "Unknown", "pitch": "The official OWASP podcast for audio interviews focusing on OWASP projects, chapters and leaders, as well as industry cybersecurity experts and DevOps/DevSecOps champions.", "meetup-group": "", "country": ""}, {"name": "Port And Service Information", "url": "https://owasp.org/www-project-port-and-service-information/", "created": "2021-06-25", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-port-and-service-information", "title": "OWASP Port and Service Information", "level": "2", "type": "", "region": "Unknown", "pitch": "Nmap Script to extend the functionality of scanning by providing more information about ports,services,exploits and fuzzing.", "meetup-group": "", "country": ""}, {"name": "Privacy Toolkit", "url": "https://owasp.org/www-project-privacy-toolkit/", "created": "2024-03-07", "updated": "2024-06-28", "build": "built", "codeurl": "https://github.com/OWASP/www-project-privacy-toolkit", "title": "OWASP Privacy Toolkit", "level": 2, "type": "", "region": "Unknown", "pitch": "A browser plugin for users' Privacy", "meetup-group": "", "country": ""}, {"name": "Prodsecman", "url": "https://owasp.org/www-project-prodsecman/", "created": "2025-02-05", "updated": "2025-02-05", "build": "built", "codeurl": "", "title": "OWASP ProdSecMan", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Product Security Capability Framework", "url": "https://owasp.org/www-project-product-security-capability-framework/", "created": "2023-11-09", "updated": "2025-09-27", "build": "built", "codeurl": "https://github.com/OWASP/PSCF\thttps://github.com/OWASP/PSCF", "title": "OWASP Product Security Capability Framework", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The capabilities required for product teams to build secure products in a secure manner.", "meetup-group": "", "country": ""}, {"name": "Product Security Guide", "url": "https://owasp.org/www-project-product-security-guide/", "created": "2024-01-29", "updated": "2024-11-27", "build": "built", "codeurl": "https://github.com/OWASP/www-project-ai-security-and-privacy-guide\thttps://github.com/OWASP/www-project-product-security-guide", "title": "OWASP Product Security Guide", "level": "-1", "type": "Documentation", "region": "Unknown", "pitch": "The OWASP Product Security Guide project educates developers and organizations on security considerations for various products, offering a curated list of vulnerabilities and promoting awareness and solutions within the development community.", "meetup-group": "", "country": ""}, {"name": "Promptme", "url": "https://owasp.org/www-project-promptme/", "created": "2025-07-25", "updated": "2025-09-26", "build": "built", "codeurl": "https://github.com/OWASP/www-project-promptme\thttps://github.com/OWASP/www-project-promptme", "title": "OWASP PromptMe", "level": 2, "type": "code", "region": "Unknown", "pitch": "A vulnerable application designed to demonstrate the OWASP Top 10 for Large Language Model (LLM) Applications.", "meetup-group": "", "country": ""}, {"name": "Pryingdeep", "url": "https://owasp.org/www-project-pryingdeep/", "created": "2024-01-12", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP Pryingdeep", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Psirt", "url": "https://owasp.org/www-project-psirt/", "created": "2025-01-23", "updated": "2025-05-06", "build": "built", "codeurl": "", "title": "OWASP PSIRT", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Purpleteam", "url": "https://owasp.org/www-project-purpleteam/", "created": "2021-01-30", "updated": "2025-04-21", "build": "built", "codeurl": "", "title": "OWASP PurpleTeam", "level": "-1", "type": "code", "region": "Unknown", "pitch": "Web Security Regression Testing CLI & SaaS for your build pipeline", "meetup-group": "", "country": ""}, {"name": "Pygoat", "url": "https://owasp.org/www-project-pygoat/", "created": "2020-05-06", "updated": "2025-09-04", "build": "built", "codeurl": "https://github.com/adeyosemanputra/pygoat", "title": "Pygoat", "level": "2", "type": "", "region": "Unknown", "pitch": "\"Pygoat gives both developers and testers a platform for learning how to test applications and how to code securely.\"", "meetup-group": "", "country": ""}, {"name": "Python Honeypot", "url": "https://owasp.org/www-project-python-honeypot/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Python Honeypot", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Python Security", "url": "https://owasp.org/www-project-python-security/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Python Security", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Pytm", "url": "https://owasp.org/www-project-pytm/", "created": "2019-09-12", "updated": "2025-10-08", "build": "built", "codeurl": "https://github.com/izar/pytm", "title": "OWASP pytm", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Pyttacker", "url": "https://owasp.org/www-project-pyttacker/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Pyttacker", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Qraclib", "url": "https://owasp.org/www-project-qraclib/", "created": "2024-01-10", "updated": "2024-01-10", "build": "built", "codeurl": "https://github.com/OWASP/www-project-qraclib", "title": "OWASP Qraclib", "level": "-1", "type": "Code", "region": "Unknown", "pitch": "A library of Quantum Oracles for cryptographic algorithms", "meetup-group": "", "country": ""}, {"name": "Qrljacker", "url": "https://owasp.org/www-project-qrljacker/", "created": "2019-09-12", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP Qrljacker", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Raider", "url": "https://owasp.org/www-project-raider/", "created": "2021-09-08", "updated": "2022-12-10", "build": "built", "codeurl": "https://github.com/OWASP/raider", "title": "OWASP Raider", "level": "2", "type": "code", "region": "Unknown", "pitch": "A novel framework for manipulating the HTTP processes of persistent sessions", "meetup-group": "", "country": ""}, {"name": "Rat", "url": "https://owasp.org/www-project-rat/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP rat", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Rbtm", "url": "https://owasp.org/www-project-rbtm/", "created": "2024-08-20", "updated": "2025-02-18", "build": "built", "codeurl": "", "title": "OWASP RBTM", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Redteam Toolkit", "url": "https://owasp.org/www-project-redteam-toolkit/", "created": "2020-05-06", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP Redteam Toolkit", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Revelo", "url": "https://owasp.org/www-project-revelo/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Revelo", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Reverse Engineering And Code Modification Prevention", "url": "https://owasp.org/www-project-reverse-engineering-and-code-modification-prevention/", "created": "2019-09-12", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP Reverse Engineering And Code Modification Prevention", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Rfp Criteria", "url": "https://owasp.org/www-project-rfp-criteria/", "created": "2019-09-12", "updated": "2025-04-11", "build": "no pages", "codeurl": "", "title": "OWASP Rfp-Criteria", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Risk Assessment Framework", "url": "https://owasp.org/www-project-risk-assessment-framework/", "created": "2019-09-12", "updated": "2025-06-04", "build": "built", "codeurl": "", "title": "OWASP Risk Assessment Framework", "level": "2", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Safetypes", "url": "https://owasp.org/www-project-safetypes/", "created": "2022-06-22", "updated": "2022-08-03", "build": "built", "codeurl": "https://github.com/OWASP/safetypes", "title": "OWASP safetypes", "level": "2", "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Samm", "url": "https://owasp.org/www-project-samm/", "created": "2019-09-12", "updated": "2025-08-24", "build": "built", "codeurl": "https://github.com/OWASP/SAMM\thttps://github.com/owaspsamm/core", "title": "OWASP SAMM", "level": "4", "type": "documentation", "region": "Unknown", "pitch": "A Software Assurance Maturity Model (SAMM) that provides an effective and measurable way for all types of organizations to analyse and improve their software security posture.", "meetup-group": "owasp-samm", "country": ""}, {"name": "Sammwise", "url": "https://owasp.org/www-project-sammwise/", "created": "2024-03-25", "updated": "2024-11-05", "build": "built", "codeurl": "", "title": "OWASP SAMMwise", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Samuraiwtf", "url": "https://owasp.org/www-project-samuraiwtf/", "created": "2019-09-12", "updated": "2024-09-06", "build": "built", "codeurl": "https://github.com/SamuraiWTF/samuraiwtf", "title": "OWASP SamuraiWTF", "level": "3.5", "type": "code", "region": "Unknown", "pitch": "SamuraiWTF (Web Training Framework) is a collection of tools and training bundled into a platform to provide a lab environment and training on web application testing.", "meetup-group": "", "country": ""}, {"name": "Sap Threat Modeling Builder", "url": "https://owasp.org/www-project-sap-threat-modeling-builder/", "created": "2024-07-31", "updated": "2024-08-05", "build": "built", "codeurl": "https://github.com/redrays-io/SAP-Threat-Modeling", "title": "OWASP SAP Threat Modeling Builder", "level": 2, "type": "code", "region": "Unknown", "pitch": "A comprehensive tool for visualizing and analyzing inter-SAP connections to identify potential security risks", "meetup-group": "", "country": ""}, {"name": "Sapkiln", "url": "https://owasp.org/www-project-sapkiln/", "created": "2024-01-10", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP SAPKiln", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Sasori", "url": "https://owasp.org/www-project-sasori/", "created": "2024-11-21", "updated": "2024-11-21", "build": "built", "codeurl": "https://github.com/karthikuj/sasori|https:", "title": "OWASP Sasori", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Sbom Forum", "url": "https://owasp.org/www-project-sbom-forum/", "created": "2023-09-26", "updated": "2024-12-09", "build": "built", "codeurl": "https://github.com/OWASP/www-project-sbom-forum", "title": "OWASP SBOM Forum", "level": "2", "type": "", "region": "Unknown", "pitch": "The SBOM Forum identifies and tries to find solutions to problems that are preventing widespread distribution and use of software bills of materials (SBOMs) by organizations whose primary business is not software development.", "meetup-group": "", "country": ""}, {"name": "Scan It", "url": "https://owasp.org/www-project-scan-it/", "created": "2020-09-30", "updated": "2025-04-11", "build": "built", "codeurl": "", "title": "OWASP Scan IT", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Scrappy", "url": "https://owasp.org/www-project-scrappy/", "created": "2023-02-12", "updated": "2023-09-04", "build": "built", "codeurl": "https://github.com/RoseSecurity/ScrapPY", "title": "OWASP ScrapPy", "level": "2", "type": "code", "region": "Unknown", "pitch": "ScrapPY is a Python utility for scraping manuals, documents, and other sensitive PDFs to generate targeted wordlists that can be utilized by offensive security tools to perform brute force, forced browsing, and dictionary attacks.", "meetup-group": "", "country": ""}, {"name": "Seclists", "url": "https://owasp.org/www-project-seclists/", "created": "2019-09-12", "updated": "2025-08-03", "build": "no pages", "codeurl": "", "title": "OWASP Seclists", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Sectudo", "url": "https://owasp.org/www-project-sectudo/", "created": "2020-08-27", "updated": "2023-10-06", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-sectudo\thttps://github.com/OWASP/www-project-sectudo", "title": "OWASP Sectudo", "level": "2", "type": "", "region": "Unknown", "pitch": "Sectudo is a Mobile app that aims at imparting simplified Mobile Application Security Learning.", "meetup-group": "", "country": ""}, {"name": "Secure Api Gateway Blueprint", "url": "https://owasp.org/www-project-secure-api-gateway-blueprint/", "created": "2025-04-27", "updated": "2025-04-27", "build": "built", "codeurl": "", "title": "OWASP Secure API Gateway Blueprint", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Secure By Design Framework", "url": "https://owasp.org/www-project-secure-by-design-framework/", "created": "2025-06-09", "updated": "2025-09-17", "build": "built", "codeurl": "https://github.com/OWASP/www-project-secure-by-design-framework\thttps://github.com/OWASP/www-project-secure-by-design-framework", "title": "OWASP Secure by Design Framework", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "The OWASP Secure-by-Design Framework provides practical guidance to embed security into software architecture from the start\u2014long before code is written.", "meetup-group": "", "country": ""}, {"name": "Secure Coding Dojo", "url": "https://owasp.org/www-project-secure-coding-dojo/", "created": "2019-09-12", "updated": "2025-06-02", "build": "built", "codeurl": "https://github.com/owasp/SecureCodingDojo", "title": "OWASP Secure Coding Dojo", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Coding Practices Quick Reference Guide", "url": "https://owasp.org/www-project-secure-coding-practices-quick-reference-guide/", "created": "2019-09-12", "updated": "2025-06-29", "build": "built", "codeurl": "", "title": "OWASP Secure Coding Practices-Quick Reference Guide", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Headers", "url": "https://owasp.org/www-project-secure-headers/", "created": "2019-09-12", "updated": "2025-10-05", "build": "built", "codeurl": "https://github.com/OWASP/www-project-secure-headers", "title": "OWASP Secure Headers Project", "level": "3.5", "type": "documentation", "region": "Unknown", "pitch": "Provides technical information about HTTP security headers.", "meetup-group": "", "country": ""}, {"name": "Secure Logging Benchmark", "url": "https://owasp.org/www-project-secure-logging-benchmark/", "created": "2020-11-25", "updated": "2024-09-02", "build": "built", "codeurl": "", "title": "OWASP Secure Logging Benchmark", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Medical Device Deployment Standard", "url": "https://owasp.org/www-project-secure-medical-device-deployment-standard/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Secure Medical Device Deployment Standard", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Secure Pipeline Verification Standard Spvs", "url": "https://owasp.org/www-project-secure-pipeline-verification-standard--spvs-/", "created": "2024-01-12", "updated": "2025-02-10", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-secure-pipeline-verification-standard--spvs-", "title": "SPVS", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "The SPVS guide offers robust controls for companies to secure their software development pipelines, enhancing security maturity and managing risks from inception to delivery.", "meetup-group": "", "country": ""}, {"name": "Securebank", "url": "https://owasp.org/www-project-securebank/", "created": "2020-08-27", "updated": "2023-12-18", "build": "built", "codeurl": "https://github.com/ssrdio/SecureBank\thttps://github.com/ssrdio/SecureBank", "title": "OWASP SecureBank", "level": "2", "type": "code", "region": "Unknown", "pitch": "SecureBank the most secure fintech banking system", "meetup-group": "", "country": ""}, {"name": "Securecodebox", "url": "https://owasp.org/www-project-securecodebox/", "created": "2019-09-12", "updated": "2025-02-15", "build": "built", "codeurl": "https://github.com/secureCodeBox/secureCodeBox\thttps://github.com/secureCodeBox/secureCodeBox", "title": "OWASP secureCodeBox", "level": "3", "type": "code", "region": "Unknown", "pitch": "Automate all your security and vulnerability scanners.", "meetup-group": "", "country": ""}, {"name": "Secureflag Open Platform", "url": "https://owasp.org/www-project-secureflag-open-platform/", "created": "2020-05-06", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP SecureFlag Open Platform", "level": "2", "type": "code", "region": "Unknown", "pitch": "Training platform for developers to learn and practice modern secure coding techniques through hands-on exercises.", "meetup-group": "", "country": ""}, {"name": "Securetea", "url": "https://owasp.org/www-project-securetea/", "created": "2019-10-18", "updated": "2024-09-01", "build": "built", "codeurl": "https://github.com/OWASP/SecureTea-Project\thttps://github.com/OWASP/SecureTea-Project", "title": "OWASP SecureTea Project", "level": "3", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security Bridge", "url": "https://owasp.org/www-project-security-bridge/", "created": "2023-06-28", "updated": "2023-08-20", "build": "built", "codeurl": "https://github.com/OWASP/security-bridge", "title": "OWASP Security Bridge", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Security Bridge is aiming to build bridges in our community to not only talk and learn about application security but also the daily challenges we are facing that are non-technical.", "meetup-group": "", "country": ""}, {"name": "Security Busters", "url": "https://owasp.org/www-project-security-busters/", "created": "2019-09-12", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Security Busters", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security C4po", "url": "https://owasp.org/www-project-security-c4po/", "created": "2023-11-09", "updated": "2023-11-09", "build": "built", "codeurl": "https://github.com/Marcel-Haag/security-c4po\thttps://github.com/marcel-haag/security-c4po#docker-hub-setup", "title": "OWASP Security-C4PO", "level": 2, "type": "code", "region": "Unknown", "pitch": "Simplify Pentest Planning, Reporting, and Findings Delivery with C4PO", "meetup-group": "", "country": ""}, {"name": "Security Champions Guidebook", "url": "https://owasp.org/www-project-security-champions-guidebook/", "created": "2022-05-19", "updated": "2025-09-25", "build": "built", "codeurl": "", "title": "OWASP Security Champions Guide", "level": "2", "type": "Documentation", "region": "Unknown", "pitch": "Our goal is to create an open-source, vendor-neutral guidebook for AppSec professionals to help them build and improve their own successful Security Champion programs.", "meetup-group": "", "country": ""}, {"name": "Security Culture", "url": "https://owasp.org/www-project-security-culture/", "created": "2021-05-20", "updated": "2025-06-22", "build": "built", "codeurl": "https://github.com/OWASP/security-culture\thttps://github.com/OWASP/security-culture", "title": "OWASP Security Culture", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "A guide for establishing a security culture when building an application security program", "meetup-group": "", "country": ""}, {"name": "Security Integration System", "url": "https://owasp.org/www-project-security-integration-system/", "created": "2019-09-12", "updated": "2025-09-25", "build": "no pages", "codeurl": "", "title": "OWASP Security Integration System", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "SCAT functions as a process integrity tool to overlay the SDLC and implement these esential security components.", "meetup-group": "", "country": ""}, {"name": "Security Knowledge Framework", "url": "https://owasp.org/www-project-security-knowledge-framework/", "created": "2019-09-12", "updated": "2025-01-24", "build": "no pages", "codeurl": "", "title": "Security Knowledge Framework", "level": "-1", "type": "code", "region": "Unknown", "pitch": "The Security Knowledge Framework is an open source web application that explains secure coding principles in multiple programming languages. The goal of SKF is to help you learn and integrate security by design in your software development and build applications that are secure by design.", "meetup-group": "", "country": ""}, {"name": "Security Logging", "url": "https://owasp.org/www-project-security-logging/", "created": "2019-09-12", "updated": "2023-05-03", "build": "no pages", "codeurl": "", "title": "OWASP Security Logging", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security Pins", "url": "https://owasp.org/www-project-security-pins/", "created": "2019-09-12", "updated": "2021-07-07", "build": "built", "codeurl": "https://github.com/wurstbrot/security-pins\thttps://github.com/wurstbrot/security-pins\">Github", "title": "OWASP Security Pins", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Security Qualitative Metrics", "url": "https://owasp.org/www-project-security-qualitative-metrics/", "created": "2020-07-20", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/www-project-security-qualitative-metrics\thttps://github.com/OWASP/www-project-security-qualitative-metrics", "title": "OWASP Security Qualitative Metrics", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The OWASP Security Qualitative Metrics is the most detailed list of metrics which evaluate security level of web projects. It shows the level of coverage of OWASP ASVS.", "meetup-group": "", "country": ""}, {"name": "Security Resource Framework", "url": "https://owasp.org/www-project-security-resource-framework/", "created": "2020-06-11", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Security Resource Framework", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Security Shepherd", "url": "https://owasp.org/www-project-security-shepherd/", "created": "2019-09-12", "updated": "2024-06-24", "build": "built", "codeurl": "https://github.com/OWASP/SecurityShepherd", "title": "OWASP Security Shepherd", "level": "4", "type": "code", "region": "Unknown", "pitch": "OWASP Security Shepherd is a web and mobile application security training platform. Security Shepherd has been designed to foster and improve security awareness among a varied skill-set demographic. The aim of this project is to take AppSec novices or experienced engineers and sharpen their penetration testing skillset to security expert status.", "meetup-group": "", "country": ""}, {"name": "Securityrat", "url": "https://owasp.org/www-project-securityrat/", "created": "2019-10-09", "updated": "2024-08-11", "build": "built", "codeurl": "https://github.com/SecurityRAT/SecurityRAT\thttps://github.com/SecurityRAT/SecurityRAT", "title": "OWASP SecurityRAT", "level": "2", "type": "code", "region": "Unknown", "pitch": "OWASP SecurityRAT is a tool used by development teams, helping them master security requirements during development.", "meetup-group": "", "country": ""}, {"name": "Sedated", "url": "https://owasp.org/www-project-sedated/", "created": "2019-09-12", "updated": "2025-04-15", "build": "built", "codeurl": "https://github.com/OWASP/SEDATED", "title": "OWASP SEDATED\u00ae", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "The SEDATED\u00ae Project (Sensitive Enterprise Data Analyzer To Eliminate Disclosure) focuses on preventing sensitive data such as user credentials and tokens from being pushed to Git.", "meetup-group": "", "country": ""}, {"name": "Seeker", "url": "https://owasp.org/www-project-seeker/", "created": "2019-11-08", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Seeker", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "The Seeker is a unique ML-based tool for hardcoded credentials discovery in source code. It can help to prevent information leakage and other malicious consequences.", "meetup-group": "", "country": ""}, {"name": "Seraphimdroid", "url": "https://owasp.org/www-project-seraphimdroid/", "created": "2019-09-12", "updated": "2025-04-11", "build": "built", "codeurl": "https://github.com/nikolamilosevic86/owasp-seraphimdroid", "title": "OWASP Seraphimdroid", "level": "0", "type": "code", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Serverless Goat", "url": "https://owasp.org/www-project-serverless-goat/", "created": "2019-09-12", "updated": "2023-01-28", "build": "no pages", "codeurl": "", "title": "OWASP Serverless Goat", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Serverless Top 10", "url": "https://owasp.org/www-project-serverless-top-10/", "created": "2019-09-12", "updated": "2025-04-30", "build": "built", "codeurl": "https://github.com/OWASP/Serverless-Top-10-Project", "title": "OWASP Serverless Top 10", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Sidekek", "url": "https://owasp.org/www-project-sidekek/", "created": "2019-11-21", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/SideKEK\thttps://github.com/OWASP/SideKEK", "title": "OWASP SideKEK", "level": "2", "type": "code", "region": "Unknown", "pitch": "Simple tool to protect cryptographic master keys (key encryption keys, KEKs) in a way that is resistant to some of the most common remote file exfiltration attacks.", "meetup-group": "", "country": ""}, {"name": "Skyshield", "url": "https://owasp.org/www-project-skyshield/", "created": "2024-02-27", "updated": "2025-08-03", "build": "no pages", "codeurl": "", "title": "OWASP SkyShield", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Smart Contract Security Testing Guide", "url": "https://owasp.org/www-project-smart-contract-security-testing-guide/", "created": "2024-11-27", "updated": "2025-08-20", "build": "built", "codeurl": "https://github.com/OWASP/owasp-scstg\thttps://github.com/OWASP/www-project-smart-contract-security-testing-guide", "title": "OWASP SCSTG", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "The testing guide provides a basis for testing, suditing and securing robust Smart Contracts", "meetup-group": "", "country": ""}, {"name": "Smart Contract Security Verification Standard", "url": "https://owasp.org/www-project-smart-contract-security-verification-standard/", "created": "2024-09-18", "updated": "2025-10-06", "build": "built", "codeurl": "https://github.com/OWASP/www-project-smart-contract-security-verification-standard\thttps://github.com/OWASP/owasp-scsvs", "title": "OWASP Smart Contract Security Verification Standard", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "The standard provides a basis for designing, building, and testing robust Smart Contracts", "meetup-group": "", "country": ""}, {"name": "Smart Contract Top 10", "url": "https://owasp.org/www-project-smart-contract-top-10/", "created": "2023-02-12", "updated": "2025-09-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-smart-contract-top-10\thttps://github.com/OWASP/www-project-smart-contract-top-10", "title": "OWASP Smart Contract Top 10", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "Welcome to the OWASP Top Ten for Smart Contracts", "meetup-group": "", "country": ""}, {"name": "Snakes And Ladders", "url": "https://owasp.org/www-project-snakes-and-ladders/", "created": "2019-09-12", "updated": "2024-12-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-snakes-and-ladders", "title": "OWASP Snakes And Ladders", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Snow", "url": "https://owasp.org/www-project-snow/", "created": "2020-10-27", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/akhimb/Snow", "title": "OWASP Snow", "level": "2", "type": "code, tool", "region": "Unknown", "pitch": "Improve privacy of applications by defending shoulder surfing", "meetup-group": "", "country": ""}, {"name": "Social Osintlm", "url": "https://owasp.org/www-project-social-osintlm/", "created": "2025-06-09", "updated": "2025-07-04", "build": "built", "codeurl": "https://github.com/bm-github/owasp-social-osintlm\thttps://github.com/bm-github/owasp-social-osintlm", "title": "OWASP SocialOSINTLM", "level": 2, "type": "code", "region": "Unknown", "pitch": "An OSINT tool that uses LLMs and vision models to analyze a target's social media footprint across multiple platforms, revealing insights through natural language queries.", "meetup-group": "", "country": ""}, {"name": "Software Component Verification Standard", "url": "https://owasp.org/www-project-software-component-verification-standard/", "created": "2019-09-12", "updated": "2022-10-31", "build": "built", "codeurl": "https://github.com/OWASP/Software-Component-Verification-Standard\thttps://github.com/OWASP/Software-Component-Verification-Standard", "title": "OWASP Software Component Verification Standard", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "SCVS is a framework for identifying activities, controls, and best practices, which can help in identifying and reducing risk in a software supply chain.", "meetup-group": "", "country": ""}, {"name": "Software Composition Security", "url": "https://owasp.org/www-project-software-composition-security/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Software Composition Security", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Software Pre Execution Security Review", "url": "https://owasp.org/www-project-software-pre-execution-security-review/", "created": "2022-11-14", "updated": "2022-11-14", "build": "built", "codeurl": "", "title": "OWASP Software Pre-Execution Security Review", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Software Security 5d Framework", "url": "https://owasp.org/www-project-software-security-5d-framework/", "created": "2019-09-12", "updated": "2025-09-30", "build": "built", "codeurl": "https://github.com/OWASP/www-project-software-security-5d-framework", "title": "OWASP Software Security 5D Framework", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Solana Programs Top 10", "url": "https://owasp.org/www-project-solana-programs-top-10/", "created": "2024-01-12", "updated": "2024-02-13", "build": "built", "codeurl": "https://github.com/OWASP/www-project-solana-programs-top-10", "title": "OWASP Solana Top 10", "level": "-1", "type": "", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Spotlight Series", "url": "https://owasp.org/www-project-spotlight-series/", "created": "2021-03-14", "updated": "2025-01-27", "build": "built", "codeurl": "https://github.com/OWASP/www-project-spotlight-series", "title": "OWASP Project Spotlight Series", "level": "2", "type": "other", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Spvs", "url": "https://owasp.org/www-project-spvs/", "created": "2024-08-03", "updated": "2025-04-17", "build": "built", "codeurl": "https://github.com/OWASP/www-project-spvs\thttps://github.com/OWASP/www-project-spvs", "title": "Secure Pipeline Verification Standard (SPVS)", "level": 2, "type": "standards", "region": "Unknown", "pitch": "The Secure Pipeline Verification Standard (SPVS) Project goal is to develop a comprehensive standard that guides organizations in creating and maintaining secure software pipelines, encompassing the entire development and deployment lifecycle.", "meetup-group": "", "country": ""}, {"name": "Sso", "url": "https://owasp.org/www-project-sso/", "created": "2020-02-10", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/SSO_Project\thttps://github.com/OWASP/SSO_Project", "title": "OWASP Single Sign-On", "level": "2", "type": "code", "region": "Unknown", "pitch": "Centralize your decentral logins with the safest and most privacy-oriented Single Sign-On experience. Keep the data where it belongs - in your hands!", "meetup-group": "", "country": ""}, {"name": "State Of Appsec Survey", "url": "https://owasp.org/www-project-state-of-appsec-survey/", "created": "2022-07-18", "updated": "2022-07-18", "build": "built", "codeurl": "https://github.com/OWASP/www-project-state-of-appsec-survey", "title": "OWASP State of AppSec Survey", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Project providing resources and templates for OWASP Chapters and other organizations to conduct their own surveys", "meetup-group": "", "country": ""}, {"name": "Supplychaingoat", "url": "https://owasp.org/www-project-supplychaingoat/", "created": "2022-03-31", "updated": "2025-07-31", "build": "no pages", "codeurl": "", "title": "OWASP SupplyChainGoat", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Template", "url": "https://owasp.org/www-project-template/", "created": "2025-09-09", "updated": "2025-09-09", "build": "no pages", "codeurl": "", "title": "OWASP Threat Modelling Guide", "level": "-1", "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Testability Patterns For Web Applications", "url": "https://owasp.org/www-project-testability-patterns-for-web-applications/", "created": "2022-08-25", "updated": "2025-06-17", "build": "built", "codeurl": "https://github.com/testable-eu/sast-testability-patterns\thttps://github.com/testable-eu/sast-tp-framework", "title": "OWASP Testability Patterns for Web Applications", "level": "2", "type": "", "region": "Unknown", "pitch": "TestabiliTy Pattern-driven Web Application Security and Privacy Testing", "meetup-group": "", "country": ""}, {"name": "Thick Client Application Security Verification Standard", "url": "https://owasp.org/www-project-thick-client-application-security-verification-standard/", "created": "2024-01-10", "updated": "2025-04-04", "build": "built", "codeurl": "https://github.com/OWASP/ASVS", "title": "OWASP Thick Client Application Security Verification Standard", "level": "-1", "type": "Documentation", "region": "Unknown", "pitch": "This project aims to fill the gap between the web ASVS and the mobile ASVS (MASVS), whilst the MASVS can be used for thick client testing it's not a perfect fit and so we hope to produce something more appropriate.", "meetup-group": "", "country": ""}, {"name": "Thick Client Security Testing Guide", "url": "https://owasp.org/www-project-thick-client-security-testing-guide/", "created": "2021-10-04", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Thick Client Security Testing Guide", "level": "2", "type": "", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Thick Client Top 10", "url": "https://owasp.org/www-project-thick-client-top-10/", "created": "2020-03-05", "updated": "2022-07-26", "build": "built", "codeurl": "", "title": "OWASP Thick Client Top 10 Project", "level": "2", "type": "code/tool/documentation or other", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Threat And Safeguard Matrix", "url": "https://owasp.org/www-project-threat-and-safeguard-matrix/", "created": "2020-10-12", "updated": "2025-07-18", "build": "built", "codeurl": "https://github.com/OWASP/www-project-threat-and-safeguard-matrix", "title": "OWASP Threat and Safeguard Matrix (TaSM)", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Threat Dragon", "url": "https://owasp.org/www-project-threat-dragon/", "created": "2019-09-12", "updated": "2025-10-03", "build": "built", "codeurl": "https://github.com/OWASP/threat-dragon", "title": "OWASP Threat Dragon", "level": "3", "type": "code", "region": "Unknown", "pitch": "OWASP Threat Dragon is a threat modeling tool for both developers and defenders alike. Run it as a local application or as a web application.", "meetup-group": "", "country": ""}, {"name": "Threat Model", "url": "https://owasp.org/www-project-threat-model/", "created": "2020-02-25", "updated": "2025-08-22", "build": "built", "codeurl": "https://github.com/OWASP/www-project-threat-model", "title": "OWASP Threat Modeling Project", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Central repository of threat modeling information, techniques, and methodologies", "meetup-group": "", "country": ""}, {"name": "Threat Model Cookbook", "url": "https://owasp.org/www-project-threat-model-cookbook/", "created": "2019-09-12", "updated": "2025-06-25", "build": "no pages", "codeurl": "https://github.com/OWASP/threat-model-cookbook\thttps://github.com/OWASP/threat-model-cookbook", "title": "OWASP Threat Model Cookbook", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Threat Model Library", "url": "https://owasp.org/www-project-threat-model-library/", "created": "2025-02-05", "updated": "2025-09-21", "build": "built", "codeurl": "https://github.com/OWASP/threat-model-cookbook\thttps://github.com/OWASP/www-project-threat-model-library", "title": "OWASP Threat Model Library", "level": 2, "type": "code", "region": "Unknown", "pitch": "Welcome to the first, open-sourced, structured, peer-reviewed threat modeling dataset", "meetup-group": "", "country": ""}, {"name": "Threat Model Vault", "url": "https://owasp.org/www-project-threat-model-vault/", "created": "2025-01-23", "updated": "2025-06-08", "build": "no pages", "codeurl": "", "title": "OWASP Threat Model Vault", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Threat Modeling Playbook", "url": "https://owasp.org/www-project-threat-modeling-playbook/", "created": "2020-09-28", "updated": "2025-01-16", "build": "built", "codeurl": "https://github.com/OWASP/threat-modeling-playbook", "title": "OWASP Threat Modeling Playbook (OTMP)", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "Improve your product and software security with the OWASP Threat Modeling Playbook (OTMP)", "meetup-group": "", "country": ""}, {"name": "Threat Modelling Guide", "url": "https://owasp.org/www-project-threat-modelling-guide/", "created": "2025-09-09", "updated": "2025-10-06", "build": "built", "codeurl": "", "title": "OWASP Threat Modelling Guide", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Threatspec", "url": "https://owasp.org/www-project-threatspec/", "created": "2019-09-12", "updated": "2023-05-17", "build": "no pages", "codeurl": "", "title": "OWASP Threatspec", "level": "-1", "type": "code", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Timegap Theory", "url": "https://owasp.org/www-project-timegap-theory/", "created": "2019-11-21", "updated": "2025-06-08", "build": "no pages", "codeurl": "https://github.com/OWASP/TimeGap-Theory", "title": "OWASP TimeGap Theory", "level": "2", "type": "code", "region": "Unknown", "pitch": "An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilities", "meetup-group": "", "country": ""}, {"name": "Toctourex", "url": "https://owasp.org/www-project-toctourex/", "created": "2022-03-31", "updated": "2025-08-03", "build": "no pages", "codeurl": "", "title": "OWASP TOCTOURex", "level": "-1", "type": "", "region": "Needs Website Update", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 Card Game", "url": "https://owasp.org/www-project-top-10-card-game/", "created": "2019-09-12", "updated": "2023-05-10", "build": "no pages", "codeurl": "", "title": "OWASP Top 10 Card Game", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Top 10 Ci Cd Security Risks", "url": "https://owasp.org/www-project-top-10-ci-cd-security-risks/", "created": "2022-07-20", "updated": "2025-08-29", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-ci-cd-security-risks", "title": "OWASP Top 10 CI/CD Security Risks", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "OWASP Top 10 CI/CD Security Risks project helps defenders identify focus areas for securing their CI/CD ecosystem.", "meetup-group": "", "country": ""}, {"name": "Top 10 Client Side Security Risks", "url": "https://owasp.org/www-project-top-10-client-side-security-risks/", "created": "2021-03-23", "updated": "2025-09-21", "build": "built", "codeurl": "", "title": "OWASP Top 10 Client-Side Security Risks", "level": "2", "type": "documentation", "region": "Unknown", "pitch": "The client-side of browser based web applications has different security challenges than [the server-side](https://owasp.org/www-project-top-ten/).", "meetup-group": "", "country": ""}, {"name": "Top 10 Drone Security Risks", "url": "https://owasp.org/www-project-top-10-drone-security-risks/", "created": "2024-06-19", "updated": "2024-07-06", "build": "built", "codeurl": "", "title": "OWASP Top 10 Drone Security Risks", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 For Business Logic Abuse", "url": "https://owasp.org/www-project-top-10-for-business-logic-abuse/", "created": "2025-02-07", "updated": "2025-08-27", "build": "built", "codeurl": "", "title": "OWASP Top 10 for Business Logic Abuse", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 For Large Language Model Applications", "url": "https://owasp.org/www-project-top-10-for-large-language-model-applications/", "created": "2023-05-16", "updated": "2025-10-08", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-for-large-language-model-applications\thttps://github.com/OWASP/www-project-top-10-for-large-language-model-applications", "title": "OWASP Top 10 for Large Language Model Applications", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "Aims to educate developers, designers, architects, managers, and organizations about the potential security risks when deploying and managing Large Language Models (LLMs)", "meetup-group": "", "country": ""}, {"name": "Top 10 For Maritime Security", "url": "https://owasp.org/www-project-top-10-for-maritime-security/", "created": "2024-06-06", "updated": "2025-08-20", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-for-maritime-security", "title": "OWASP Top 10 for Maritime Security", "level": 2, "type": "documentation", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 10 Fuer Entwickler", "url": "https://owasp.org/www-project-top-10-fuer-entwickler/", "created": "2019-09-12", "updated": "2023-05-08", "build": "no pages", "codeurl": "", "title": "OWASP Top 10 Fuer Entwickler", "level": "-1", "type": "documentation", "region": "Needs Website Update", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Top 10 In Xr", "url": "https://owasp.org/www-project-top-10-in-xr/", "created": "2023-11-09", "updated": "2025-09-30", "build": "built", "codeurl": "", "title": "OWASP Top 10 in XR", "level": 2, "type": "documentation", "region": "Needs Website Update", "pitch": "Top 10 security risks for XR", "meetup-group": "", "country": ""}, {"name": "Top 10 Infrastructure Security Risks", "url": "https://owasp.org/www-project-top-10-infrastructure-security-risks/", "created": "2023-09-11", "updated": "2025-09-19", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-infrastructure-security-risks", "title": "OWASP Top 10 Infrastructure Security Risks", "level": "-1", "type": "", "region": "Unknown", "pitch": "Most common and critical Infrastructure Security Risks", "meetup-group": "", "country": ""}, {"name": "Top 10 Low Code No Code Security Risks", "url": "https://owasp.org/www-project-top-10-low-code-no-code-security-risks/", "created": "2021-08-23", "updated": "2025-09-28", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-10-low-code-no-code-security-risks\thttps://github.com/OWASP/www-project-top-10-low-code-no-code-security-risks", "title": "OWASP Low-Code/No-Code Top 10", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "The primary goal of the \"OWASP Top 10 Low-Code/No-Code Security Risks\" document is to provide assistance and education for organizations looking to adopt and develop Low-Code/No-Code applications. The guide provides information about what are the most prominent security risks for such applications, the challenges involved, and how to overcome them.", "meetup-group": "", "country": ""}, {"name": "Top 10 Privacy Risks", "url": "https://owasp.org/www-project-top-10-privacy-risks/", "created": "2019-09-12", "updated": "2025-05-28", "build": "built", "codeurl": "", "title": "OWASP Top 10 Privacy Risks", "level": "3", "type": "documentation", "region": "Unknown", "pitch": "More info soon...", "meetup-group": "", "country": ""}, {"name": "Top 10 The Game", "url": "https://owasp.org/www-project-top-10-the-game/", "created": "2025-09-16", "updated": "2025-09-29", "build": "built", "codeurl": "https://github.com/AgentsWorkingTogether/OWASPTop10TheGame", "title": "OWASP Top 10 The Game", "level": 2, "type": "code", "region": "Unknown", "pitch": "A very brief, one-line description of your project", "meetup-group": "", "country": ""}, {"name": "Top 25 Parameters", "url": "https://owasp.org/www-project-top-25-parameters/", "created": "2023-02-12", "updated": "2025-02-16", "build": "built", "codeurl": "https://github.com/OWASP/www-project-top-25-parameters\"> Slack invite feature is currently not working. Please use the following link below to join. Other options include requesting to be invited through Slack's native "Invite People" feature, or sending an email to support@owasp.com -Slack Invite Link +
+

 Please join our Slack:  +Slack Invite Link

- -
-
- - +
+
diff --git a/_posts/2025-09-26-Top10Survey.md b/_posts/2025-09-26-Top10Survey.md new file mode 100644 index 000000000..93623b6eb --- /dev/null +++ b/_posts/2025-09-26-Top10Survey.md @@ -0,0 +1,41 @@ +--- + +date: 2025-09-26 00:00:00-0700 +categories: blog +author: Starr Brown +author_image: /assets/images/people/staff-starr-brown.jpeg +layout: blogpost +title: OWASP Top 10 Community Survey +excerpt_separator: + +--- +![Top 10 Community Survey](/assets/images/content/Top10-Survey760x428px.png) + +## Help Shape the Future of Web Application Security: OWASP Top 10 - 2025 Community Survey Now Open! + + + +The digital threat landscape is constantly evolving and so are the ways we defend against it. At the heart of that defense is the **OWASP Top 10**, a globally recognized standard for web application security. It's more than just a list; it's a reflection of what the security community sees, experiences, and prioritizes in real-time. + +And now, as we look ahead to **OWASP Top 10 - 2025**, we're calling on the global AppSec and development community to lend their voices, expertise, and perspectives to this critical update. + +### Why Your Voice Matters + +The OWASP Top 10 isn't decided behind closed doors-it's a collaborative effort driven by real-world data and informed by practitioners on the front lines. Your feedback ensures this list remains not only technically accurate, but also relevant, inclusive, and actionable for organizations and teams of all sizes and structures. + +Whether you're a seasoned security leader, a developer who's learned through hard-won experience, or someone just getting started in the field - **you have something valuable to contribute.** + +### What We're Asking + +We're gathering input through a brief, focused survey designed to capture what you're seeing today and where you think the future of web security is headed. From emerging threats to shifting priorities, this is your opportunity to help guide what will become a foundational resource for developers, educators, auditors, and companies around the world. + +**The deadline to submit feedback is October 3, 2025.** +**Take the survey now**: [https://forms.gle/jL3r5Xgg1Hj2bv2B9](https://forms.gle/jL3r5Xgg1Hj2bv2B9) + +### Let's Build This Together + +Security is a shared responsibility. So is progress. The OWASP community has always been grounded in openness, transparency, and collective wisdom and this next iteration of the Top 10 is no different. + +Make your voice heard. Share the link. Encourage your peers and teams to participate. The more perspectives we gather, the stronger and more representative the final OWASP Top 10 - 2025 will be. + +Let's move the industry forward, together. diff --git a/_posts/2025-10-01-GSoCRecap.md b/_posts/2025-10-01-GSoCRecap.md new file mode 100644 index 000000000..53528a6ed --- /dev/null +++ b/_posts/2025-10-01-GSoCRecap.md @@ -0,0 +1,130 @@ +--- + +date: 2025-10-01 00:00:00-0700 +categories: blog +author: Fabio Cerullo & Starr Brown +author_image: /assets/images/people/staff-starr-brown.jpeg +layout: blogpost +title: GSoC 2025 Recap +excerpt_separator: + +--- + +# OWASP at Google Summer of Code 2025 + +**Celebrating real impact, strong mentorship, and a growing community** + +The Google Summer of Code (GSoC) 2025 program has wrapped, and OWASP's participation once again delivered meaningful improvements across the open-source security ecosystem. This year, 15 contributors worked across multiple OWASP projects, supported by 26 mentors. Of the 15 projects evaluated, 10 reached successful completion, three are still working on the final deliveries with extended deadlines, and two unfortunately not making the finish line. + +Beyond code merged and features shipped, GSoC 2025 strengthened the pipeline of new contributors, future maintainers, and next-year mentors. Here's a closer look at what we achieved together. + + + +## Program Snapshot + +- **Contributors:** 15 +- **Mentors:** 26 across the OWASP community +- **Project outcomes:** 10 completed; 3 in progress, 2 not completed +- **Focus:** Enhancing established tools, modernizing codebases, and exploring new AppSec directions + +## Project Highlights + +### OWASP Nest: API & Schema Development + +Migrated the API toward Django Ninja, optimizing REST endpoints and paving the way for clearer schemas, better performance, and more maintainable service boundaries. + +### PyGoat v3: Architecture & Learning Experience Redefined + +A major upgrade to OWASP PyGoat, the educational vulnerable app, focusing on modular architecture, clearer lab flows, and better secure-coding learning outcomes. + +### Nettacker: Recon Scan Improvements & Task Handling + +Enhanced OWASP Nettacker with better reconnaissance scanning features and optimized task handling to reduce noise, improve reliability, and streamline operator feedback loops. + +### OWTF: MiTM Proxy Modernization + +Modernized the Man-in-the-Middle proxy inside OWASP OWTF to improve stability and compatibility with evolving browser/proxy ecosystems. + +### OWASP OpenCRE: Gap Analysis Performance Optimization + +Optimized gap analysis with improved Neo4j performance, AI-driven mappings between CREs and controls, and enhanced visualizations. Frontend upgrades for greater usability, responsiveness, and clarity. + +### OWASP BLT + +Several impactful projects were developed to enhance open-source security, education, and contributor engagement: + +- **Sahil Dhillon** built an AI-powered GitHub assistant that helps maintainers review code, detect security vulnerabilities, and prioritize tasks using LLMs and rule-based scanning—all integrated into a GitHub bot and task management dashboard. + +- **Krrish Sehgal** extended OWASP BLT with a blockchain-backed, AI-scored gamification system to incentivize contributions like bug triaging and fixes. + +- **Lucky Negi** developed browser-based, interactive security labs for hands-on vulnerability triage and secure coding practice through gamified exercises. + +- **Rinkita Dhana** redesigned the OWASP BLT organization dashboard with real-time analytics, advanced filtering, and role-based collaboration tools to streamline team workflows and vulnerability management. + +Together, these projects significantly advanced the usability, security, and educational value of the OWASP BLT ecosystem. + +## What Made These Projects Succeed + +### 1. Focused Scoping & Iteration + +Successful projects started with achievable milestones, then iterated toward stretch goals. Weekly demos, small PRs, and fast feedback helped contributors maintain momentum. + +### 2. Communication Cadence + +Mentors and contributors kept a regular rhythm: weekly 1:1s, short written updates, and community calls, so risks surfaced early and success was visible to the wider community. + +### 3. Visibility & Recognition + +Lightning talks, end-of-program showcases, and social posts gave contributors credit and confidence, while helping other projects discover reusable ideas. + +### 4. Progressive Responsibility + +As contributors matured, they took on triage, code reviews, or small leadership tasks. + +## Mentor & Org Admin Practices That Worked (and We'll Repeat) + +- **Set expectations early.** Share onboarding docs, a "first-10-days" checklist, and communication norms before coding starts. + +- **Require "commit early, commit often."** Small pull requests are easier to review and teach maintainers' expectations quickly. + +- **Pair mentorship.** At least two mentors per project mitigates availability risks and reduces burnout. + +- **Assess with real tasks.** Simple environment-bring-up and "good first issue" tasks during selection predict success better than proposals alone. + +- **Document a clear escalation path.** If communication stalls, contributors know exactly how and when to reach Org Admins. + +## Making the Most of Community Bonding + +The Community Bonding period is where retention begins. This year we emphasized: + +- **Welcome fast.** Mentors greeted accepted contributors within 24 hours, then invited them to weekly community calls. + +- **Context first.** We explained why a project matters, where it's used, and how it helps the broader AppSec community. + +- **Lightweight structure.** A shared roster (handles, proposals, repos, blog links), a weekly meeting schedule, and a short public update cadence. + +- **Clear expectations.** "Communicate early, communicate often", and yes, check your email for program notices and logistics. + +## Get Involved + +- **Contribute:** Pick an OWASP project that aligns with your skills or interests and say hello in the project's channels. + +- **Mentor:** If you're a maintainer or experienced contributor, consider mentoring next year. + +- **Propose Ideas:** Help shape our next GSoC by proposing scoped, contributor-friendly project ideas with clear milestones. + +- **Contributor Fair:** Join the Contributor Fair at OWASP Global AppSec US 2025 in Washington, DC this November. Details are available [here](https://owasp.org/www-community/initiatives/gsoc/). + +If you're interested in contributing or mentoring in GSoC 2026, keep an eye on OWASP community channels for timelines, idea lists, and onboarding sessions. Let's build on the momentum of 2025 together! + +## Thank You + +Heartfelt thanks to our contributors & mentors and the wider OWASP community. Whether you shipped a feature, reviewed code, wrote docs, or helped someone get unblock—you moved AppSec forward. + +**Fabio Cerullo and Starr Brown** +*OWASP Org Admins* + +--- + +*Published: October 2025* +``` diff --git a/assets/images/content/Top10-Survey760x428px.png b/assets/images/content/Top10-Survey760x428px.png new file mode 100644 index 000000000..5b6bddf0a Binary files /dev/null and b/assets/images/content/Top10-Survey760x428px.png differ diff --git a/assets/images/content/Top10-Survey939x494px.jpg b/assets/images/content/Top10-Survey939x494px.jpg new file mode 100644 index 000000000..c0b71376f Binary files /dev/null and b/assets/images/content/Top10-Survey939x494px.jpg differ diff --git a/pages/projects/projects.md b/pages/projects/projects.md index 715e51354..2fa2d8420 100644 --- a/pages/projects/projects.md +++ b/pages/projects/projects.md @@ -36,7 +36,8 @@ Projects gives members an opportunity to freely test theories and ideas with the You can find more information about project levels, promotion criteria, and best practices at the [Project Committee](/www-committee-project/) pages. ## OWASP Projects, the SDLC, and the Security Wayfinder Thanks to the OWASP Integration Standards Project for mapping OWASP projects in a diagram of the Software Development LifeCycle. This resource should help you determine which projects fit into your SDLC. -
+ +
## OWASP Project Inventory ({{ site.data.projects.size }})