Todas las etiquetas
Etiqueta del catálogo

#owasp

Todos los repositorios del registro público que llevan esta etiqueta, procedente de sus topics de GitHub o de las palabras clave que publican sus registros de paquetes. La salud se mide con la misma metodología versionada que el resto del registro.

48 registros
Con la etiqueta «owasp»Ordenado por índice de salud
Go
75Buenoíndice de salud
RAJANAGORI/Nightingale
Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes preconfigured with all essential tools and utilities required for efficient Vulnerability Assessment and Penetration Testing (VAPT), streamlining the setup process for security professionals.
Dockerfile · Shell · Python★ 3134 ago 2026
GPL-3.04 ago 2026 · métricas 2.10.0
PyPI
75Buenoíndice de salud
msaleme/red-team-blue-team-agent-fabric
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert, NIST AI 800-2 aligned, MCP tool-poisoning reproduction. v4.9.1
Python★ 20↓ 667/mes20 jul 2026
Apache-2.020 jul 2026 · métricas 2.10.0
PyPI · npm
71Buenoíndice de salud
vaquarkhan/MCP-Bastion
MCP-Bastion: The Zero-Infrastructure Runtime Middleware ,Enterprise-Grade Security Middleware for the Model Context Protocol (MCP)
Python★ 4↓ 3959/mes16 ago 2026
Licencia propia16 ago 2026 · métricas 2.10.0
npm
69Buenoíndice de salud
KryptSec/oasis
Open-source AI security benchmarking CLI. Measure how AI models perform offensive security tasks with MITRE ATT&CK analysis and KSM scoring.
TypeScript★ 29↓ 39/mes28 ago 2026
MIT28 ago 2026 · métricas 2.10.0
PyPI
69Buenoíndice de salud
crucible-security/crucible
pytest for AI agents - Autonomous red-teaming, behavioral monitoring & security testing for LLM agents
Python★ 45↓ 1793/mes17 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
npm
69Buenoíndice de salud
goklab/guardvibe
Security infrastructure your AI can't be — deterministic, daily CVE intel past your model's training cutoff, whole-repo-aware, author-independent, and shift-left: secure_prompt secures the prompt before code generation. The security MCP for vibe coding: 450 rules, 39 tools, CLI + doctor for Next.js, Supabase, Clerk, Stripe, Prisma, Hono & MCP.
TypeScript★ 4↓ 6125/mes17 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
PyPI
67Buenoíndice de salud
raccioly/websec-validator
Local-first security recon that briefs your AI coding agent: facts + tailored probes, code-in / artifacts-out. No LLM, no server, no running app.
Python★ 231 jul 2026
MIT31 jul 2026 · métricas 2.10.0
Go · npm
62Moderadoíndice de salud
scagogogo/cwe-skills
AI-native CWE (Common Weakness Enumeration) integration layer — Skills, Go SDK, CLI & MCP. Ship CVE/CWE tooling to SAST/DAST, vuln-management & AI agents.
Go★ 319 jul 2026
MIT19 jul 2026 · métricas 2.10.0
RubyGems
59Moderadoíndice de salud
dradis/dradis-zap
ZAP plugin for the Dradis Framework
Ruby★ 520 jul 2026
GPL-2.020 jul 2026 · métricas 2.10.0
PyPI · crates.io · Maven +2
57Moderadoíndice de salud
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 1217 jul 2026
Licencia propia17 jul 2026 · métricas 2.10.0
RubyGems
54Moderadoíndice de salud
urbanadventurer/WhatWeb
Next generation web scanner
Ruby★ 680128 ago 2026
GPL-2.028 ago 2026 · métricas 2.10.0
npm
51Moderadoíndice de salud
3516634930/Payloader
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript
TypeScript · JavaScript★ 46319 jul 2026
AGPL-3.019 jul 2026 · métricas 2.10.0
NuGet
50Moderadoíndice de salud
pumasecurity/puma-scan
Puma Scan is a software security Visual Studio extension that provides real time, continuous source code analysis as development teams write code. Vulnerabilities are immediately displayed in the development environment as spell check and compiler warnings, preventing security bugs from entering your applications.
C#★ 4477 ago 2026
MPL-2.07 ago 2026 · métricas 2.10.0
RubyGems
47Débilíndice de salud
OWASP/www-project-eks-goat
OWASP EKS Goat is a deliberately vulnerable EKS cluster environment to explore AWS cloud-native security through hands-on attack and defense labs with walkthrough.
Shell · Python★ 464 ago 2026
GPL-3.04 ago 2026 · métricas 2.10.0
npm
45Débilíndice de salud
ArisRoman/cyberaudit-skill
Universal security audit skill for AI agents. 52 pure Markdown files encoding 15 years of pentest expertise — web & mobile security, OWASP-aligned, CVSS scoring, compliance checks, zero dependencies.
TypeScript · JavaScript★ 0↓ 2331/mes25 jul 2026
Sin licencia25 jul 2026 · métricas 2.10.0
Go
34En riesgoíndice de salud
microcosm-cc/bluemonday
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS
Go★ 370430 jul 2026
BSD-3-Clause30 jul 2026 · métricas 2.10.0
PyPI · npm
29En riesgoíndice de salud
Stiimy/briar
🥀 Autonomous AI Pentester — find vulns before hackers do. Free, open source, Ollama-powered.
Python★ 1↓ 78/mes17 jul 2026
Licencia propia17 jul 2026 · métricas 2.10.0