Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR. Learn more →
Top 17 Python Owasp Projects
-
CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
Just for fun, I cloned the OWASP repo https://github.com/OWASP/CheatSheetSeries.git and am waiting for the indexing process to finish. I then asked the model (on the left side) and included all files from the cloned project (on the right side). As you can see below, the right side contains more useful information
-
CodeRabbit
CodeRabbit: AI Code Reviews for Developers. Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR.
-
Nettacker
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
Project mention: Nettacker: Open-Source Automated Penetration Testing and Vulnerability Scanner | news.ycombinator.com | 2024-09-03 -
ciso-assistant-community
CISO Assistant is a one-stop-shop for GRC, covering Risk, AppSec and Compliance/Audit Management and supporting +70 frameworks worldwide with auto-mapping: NIST CSF, ISO 27001, SOC2, CIS, PCI DSS, NIS2, CMMC, PSPF, GDPR, HIPAA, Essential Eight, NYDFS-500, DORA, NIST AI RMF, 800-53, 800-171, CyFun, CJIS, AirCyber, NCSC, ECC, SCF and so much more
-
-
Project mention: Install Modsecurity + OWASP CRS for Nginx Webserver on Centos 7 | dev.to | 2024-05-27
sudo git clone https://github.com/coreruleset/coreruleset.git /etc/nginx/owasp-crs
-
owasp-masvs
The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.
-
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
-
-
betterscan
Code Scanning/SAST/Static Analysis/Linting using many tools/Scanners with One Report (Code, IaC) - Betterscan
-
OFFAT
The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving towards completion.
-
-
-
-
oshp-validator
Venom tests suite to validate an HTTP security response headers configuration against OSHP recommendation.
What's better about this vs. Mozilla Observatory.
https://developer.mozilla.org/en-US/observatory (formerly https://observatory.mozilla.org/)
Or Security Headers?
https://securityheaders.com/
Or VENOM?
https://github.com/oshp/oshp-validator
Applaud the effort, these are things that more devs should be aware of when building websites...
Hey some specific feedback on this tool... On mobile, it has a lot of "view port wobble" and the input fields aren't keyed right, it's just using a straight text input field so you don't get any ".com" buttons as you type. Small UX stuff like that annoy me more than if a page has a privacy policy setup correctly. (=
-
raider
OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions (by OWASP)
-
-
CertVerify
A scanner that files with compromised or untrusted code signing certificates written in python.
-
SaaSHub
SaaSHub - Software Alternatives and Reviews. SaaSHub helps you find the best software and product alternatives
Python Owasp discussion
Python Owasp related posts
-
Preventing CSRF and XSS Attacks with JWT and Fingerprint Cookies in Express
-
🛡️ Mastering Security HTTP Headers
-
Looking for feedback on a security-related project idea
-
Advice For Securing Backend Code
-
SAP Commerce Cloud and Broken Smart Edit
-
Access Denied
-
What are some senior level learning resources you recommend for improving as a backend engineer?
-
A note from our sponsor - CodeRabbit
coderabbit.ai | 21 Mar 2025
Index
What are some of the best open-source Owasp projects in Python? This list will help you:
# | Project | Stars |
---|---|---|
1 | CheatSheetSeries | 29,078 |
2 | Nettacker | 3,881 |
3 | ciso-assistant-community | 2,761 |
4 | Astra | 2,552 |
5 | coreruleset | 2,486 |
6 | owasp-masvs | 2,123 |
7 | Maryam | 1,081 |
8 | OpenDoor | 895 |
9 | betterscan | 852 |
10 | OFFAT | 603 |
11 | apicheck | 272 |
12 | zap-cli | 231 |
13 | www-project-secure-headers | 153 |
14 | oshp-validator | 114 |
15 | raider | 104 |
16 | malwarescanner | 90 |
17 | CertVerify | 65 |