All Projects → security-prince → Resources-for-Application-Security

security-prince / Resources-for-Application-Security

Licence: other
Some good resources for getting started with application security

Projects that are alternatives of or similar to Resources-for-Application-Security

tutorials
Additional Resources For Securing The Stack Tutorials
Stars: ✭ 36 (-62.89%)
Mutual labels:  owasp, infosec, appsec, websec, appsec-tutorials
Whatweb
Next generation web scanner
Stars: ✭ 3,503 (+3511.34%)
Mutual labels:  owasp, application-security, appsec, web-hacking
Application Security Engineer Interview Questions
Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exhaustive list but i felt these questions were important to be asked and some were challenging to answer
Stars: ✭ 267 (+175.26%)
Mutual labels:  infosec, application-security, appsec, websecurity
juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
Stars: ✭ 7,533 (+7665.98%)
Mutual labels:  owasp, application-security, ctf, appsec
Juice Shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
Stars: ✭ 6,270 (+6363.92%)
Mutual labels:  owasp, application-security, ctf, appsec
Securityrat
OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development
Stars: ✭ 115 (+18.56%)
Mutual labels:  owasp, application-security, appsec
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (+92.78%)
Mutual labels:  owasp, infosec, appsec
vapi
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
Stars: ✭ 674 (+594.85%)
Mutual labels:  owasp, appsec, appsec-tutorials
Rfi Lfi Payload List
🎯 RFI/LFI Payload List
Stars: ✭ 202 (+108.25%)
Mutual labels:  application-security, appsec, websecurity
Juice Shop Ctf
Capture-the-Flag (CTF) environment setup tools for OWASP Juice Shop
Stars: ✭ 238 (+145.36%)
Mutual labels:  owasp, application-security, ctf
netizenship
a commandline #OSINT tool to find the online presence of a username in popular social media websites like Facebook, Instagram, Twitter, etc.
Stars: ✭ 33 (-65.98%)
Mutual labels:  infosec, websecurity, websec
juice-shop-ctf
Capture-the-Flag (CTF) environment setup tools for OWASP Juice Shop supporting CTFd, FBCTF and RootTheBox
Stars: ✭ 287 (+195.88%)
Mutual labels:  owasp, application-security, ctf
Cheatsheetseries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
Stars: ✭ 19,302 (+19798.97%)
Mutual labels:  owasp, application-security, appsec
Awesome Hacking Resources
A collection of hacking / penetration testing resources to make you better!
Stars: ✭ 11,466 (+11720.62%)
Mutual labels:  owasp, ctf
Python Honeypot
OWASP Honeypot, Automated Deception Framework.
Stars: ✭ 160 (+64.95%)
Mutual labels:  owasp, infosec
Awesome Nodejs Security
Awesome Node.js Security resources
Stars: ✭ 1,294 (+1234.02%)
Mutual labels:  owasp, infosec
Zap Hud
The OWASP ZAP Heads Up Display (HUD)
Stars: ✭ 201 (+107.22%)
Mutual labels:  owasp, appsec
Wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Stars: ✭ 3,873 (+3892.78%)
Mutual labels:  owasp, application-security
Zaproxy
The OWASP ZAP core project
Stars: ✭ 9,078 (+9258.76%)
Mutual labels:  owasp, appsec
MyJWT
A cli for cracking, testing vulnerabilities on Json Web Token(JWT)
Stars: ✭ 92 (-5.15%)
Mutual labels:  ctf, websec

Updated post at https://ishaqmohammed.me/posts/resources-for-application-security/

Resources for Application Security

Some good resources for getting started with application security

Note: The resources which i have put are those which i will be using in my application security learnings, feel free to use it for your learning purpose only and if you have any suggestions dm me on Twitter

1. Learn About Web Application Technologies and Development
2. Application Security Books and online resources
3. Hands on CTF
4. Perform SAST and DAST

Once done reading these 2 books above, try implementing the techniques you learnt from them on this CTF challenges and the application you developed in task 1

5. Securing Applications

Once we learn how to perform SAST and DAST for the application, we also need to know how to secure it, for which the below books and resource are great

6. Further reaading
Bonus

Application-Security-Engineer-Interview-Questions

Inspired by: Road to Web Application Security by Amol Naik

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].