全部标签
目录标签

#owasp

公开记录中带有此标签的全部仓库——标签来自其 GitHub 主题或软件包注册表发布的关键词。健康度量遵循与记录其余部分相同的版本化方法论。

48 条记录
标签为“owasp”按健康指数排序
Go
75良好健康指数
RAJANAGORI/Nightingale
Nightingale Docker for Pentesters is a comprehensive Dockerized environment tailored for penetration testing and vulnerability assessment. It comes preconfigured with all essential tools and utilities required for efficient Vulnerability Assessment and Penetration Testing (VAPT), streamlining the setup process for security professionals.
Dockerfile · Shell · Python★ 3132026年8月4日
GPL-3.02026年8月4日 · 指标 2.10.0
PyPI
75良好健康指数
msaleme/red-team-blue-team-agent-fabric
540 security tests for AI agent systems — MCP, A2A, x402/L402, decision governance, benchmark integrity, skill supply chain. AIUC-1 pre-cert, NIST AI 800-2 aligned, MCP tool-poisoning reproduction. v4.9.1
Python★ 20↓ 667/月2026年7月20日
Apache-2.02026年7月20日 · 指标 2.10.0
PyPI · npm
71良好健康指数
vaquarkhan/MCP-Bastion
MCP-Bastion: The Zero-Infrastructure Runtime Middleware ,Enterprise-Grade Security Middleware for the Model Context Protocol (MCP)
Python★ 4↓ 3,959/月2026年8月16日
自定义许可证2026年8月16日 · 指标 2.10.0
npm
69良好健康指数
KryptSec/oasis
Open-source AI security benchmarking CLI. Measure how AI models perform offensive security tasks with MITRE ATT&CK analysis and KSM scoring.
TypeScript★ 29↓ 39/月2026年8月28日
MIT2026年8月28日 · 指标 2.10.0
PyPI
69良好健康指数
crucible-security/crucible
pytest for AI agents - Autonomous red-teaming, behavioral monitoring & security testing for LLM agents
Python★ 45↓ 1,793/月2026年7月17日
Apache-2.02026年7月17日 · 指标 2.10.0
npm
69良好健康指数
goklab/guardvibe
Security infrastructure your AI can't be — deterministic, daily CVE intel past your model's training cutoff, whole-repo-aware, author-independent, and shift-left: secure_prompt secures the prompt before code generation. The security MCP for vibe coding: 450 rules, 39 tools, CLI + doctor for Next.js, Supabase, Clerk, Stripe, Prisma, Hono & MCP.
TypeScript★ 4↓ 6,125/月2026年7月17日
Apache-2.02026年7月17日 · 指标 2.10.0
PyPI
67良好健康指数
raccioly/websec-validator
Local-first security recon that briefs your AI coding agent: facts + tailored probes, code-in / artifacts-out. No LLM, no server, no running app.
Python★ 22026年7月31日
MIT2026年7月31日 · 指标 2.10.0
Go · npm
62中等健康指数
scagogogo/cwe-skills
AI-native CWE (Common Weakness Enumeration) integration layer — Skills, Go SDK, CLI & MCP. Ship CVE/CWE tooling to SAST/DAST, vuln-management & AI agents.
Go★ 32026年7月19日
MIT2026年7月19日 · 指标 2.10.0
RubyGems
59中等健康指数
dradis/dradis-zap
ZAP plugin for the Dradis Framework
Ruby★ 52026年7月20日
GPL-2.02026年7月20日 · 指标 2.10.0
PyPI · crates.io · Maven +2
57中等健康指数
mattybellx/ansede
Find authorization bugs before attackers do. Free SAST — IDOR detection, 100% CVE recall, 0% false positives. 5 languages. Fully offline.
Python · HTML★ 122026年7月17日
自定义许可证2026年7月17日 · 指标 2.10.0
RubyGems
54中等健康指数
urbanadventurer/WhatWeb
Next generation web scanner
Ruby★ 6,8012026年8月28日
GPL-2.02026年8月28日 · 指标 2.10.0
npm
51中等健康指数
3516634930/Payloader
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript
TypeScript · JavaScript★ 4632026年7月19日
AGPL-3.02026年7月19日 · 指标 2.10.0
NuGet
50中等健康指数
pumasecurity/puma-scan
Puma Scan is a software security Visual Studio extension that provides real time, continuous source code analysis as development teams write code. Vulnerabilities are immediately displayed in the development environment as spell check and compiler warnings, preventing security bugs from entering your applications.
C#★ 4472026年8月7日
MPL-2.02026年8月7日 · 指标 2.10.0
RubyGems
47薄弱健康指数
OWASP/www-project-eks-goat
OWASP EKS Goat is a deliberately vulnerable EKS cluster environment to explore AWS cloud-native security through hands-on attack and defense labs with walkthrough.
Shell · Python★ 462026年8月4日
GPL-3.02026年8月4日 · 指标 2.10.0
npm
45薄弱健康指数
ArisRoman/cyberaudit-skill
Universal security audit skill for AI agents. 52 pure Markdown files encoding 15 years of pentest expertise — web & mobile security, OWASP-aligned, CVSS scoring, compliance checks, zero dependencies.
TypeScript · JavaScript★ 0↓ 2,331/月2026年7月25日
无许可证2026年7月25日 · 指标 2.10.0
Go
34存在风险健康指数
microcosm-cc/bluemonday
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS
Go★ 3,7042026年7月30日
BSD-3-Clause2026年7月30日 · 指标 2.10.0
PyPI · npm
29存在风险健康指数
Stiimy/briar
🥀 Autonomous AI Pentester — find vulns before hackers do. Free, open source, Ollama-powered.
Python★ 1↓ 78/月2026年7月17日
自定义许可证2026年7月17日 · 指标 2.10.0