In-depth attack surface mapping and asset discovery
-
Updated
Apr 17, 2026 - Go
In-depth attack surface mapping and asset discovery
OWASP Coraza WAF is a golang modsecurity compatible web application firewall library
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses
vacuum is the worlds fastest and most versatile OpenAPI linter and toolkit. It tears through API specs at light speed. 100% compatible with Spectral rulesets.
secureCodeBox (SCB) - continuous secure delivery out of the box
APKHunt is a comprehensive static code analysis tool for Android apps that is based on the OWASP MASVS framework. Although APKHunt is intended primarily for mobile app developers and security testers, it can be used by anyone to identify and address potential security vulnerabilities in their code.
Caddy WAF (Regex Rules, IP and DNS filtering, Rate Limiting, GeoIP, Tor, Anomaly Detection)
OWASP Coraza middleware for Caddy. It provides Web Application Firewall capabilities
Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to implement software inside your DevOps pipeline. Support the following technologies: Java (Maven and Android), Kotlin (Android), Swift (iOS), .NET Ful…
Production-ready Go REST APIs without the enterprise bloat
tool designed for identifying vulnerabilities in open source codebases at scale. It can gather and filter on key repository metrics such as popularity and project size
Sqreen's Application Security Management for the Go language
Creates CycloneDX Software Bill of Materials (SBOM) from Go modules
Traefik plugin to proxy requests to owasp/modsecurity-crs:apache container
Utility that provides an API platform for validating, querying and managing BOM data
DevGuard Backend - Secure your Software Supply Chain - Attestation-based compliance as Code, manage your CVEs seamlessly, Integrate your Vulnerability Scanners, Security Framework Documentation made easy - OWASP Incubating Project
Add a description, image, and links to the owasp topic page so that developers can more easily learn about it.
To associate your repository with the owasp topic, visit your repo's landing page and select "manage topics."