CheatSheetSeries VS big-list-of-naughty-strings

Compare CheatSheetSeries vs big-list-of-naughty-strings and see what are their differences.

CheatSheetSeries

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics. (by OWASP)

big-list-of-naughty-strings

The Big List of Naughty Strings is a list of strings which have a high probability of causing issues when used as user-input data. (by minimaxir)
Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
CheatSheetSeries big-list-of-naughty-strings
49 41
26,480 45,851
1.9% -
9.1 0.0
9 days ago 9 days ago
Python Python
Creative Commons Attribution Share Alike 4.0 MIT License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

CheatSheetSeries

Posts with mentions or reviews of CheatSheetSeries. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2024-03-07.

big-list-of-naughty-strings

Posts with mentions or reviews of big-list-of-naughty-strings. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2024-01-20.

What are some alternatives?

When comparing CheatSheetSeries and big-list-of-naughty-strings you can also consider the following projects:

WhatWeb - Next generation web scanner

SecLists - SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

dirsearch - Web path scanner

ms-teams-rce

webpack - A bundler for javascript and friends. Packs many modules into a few bundled assets. Code Splitting allows for loading parts of the application on demand. Through "loaders", modules can be CommonJs, AMD, ES6 modules, CSS, Images, JSON, Coffeescript, LESS, ... and your custom stuff.

eslint-plugin-no-unsanitized - Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike

docker-socket-proxy - Proxy over your Docker socket to restrict which requests it accepts

javascript-questions - A long list of (advanced) JavaScript questions, and their explanations :sparkles:

django-mfa2 - A Django app that handles MFA, it supports TOTP, U2F, FIDO2 U2F (Webauthn), Email Token and Trusted Devices

content - The content behind MDN Web Docs

kics - Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

33-js-concepts - 📜 33 JavaScript concepts every developer should know.