Tags : Browse Projects

Select a tag to browse associated projects and drill deeper into the tag cloud.

OWASP Java HTML Sanitizer

Compare

Claimed by Open Web Application Securi... Analyzed about 21 hours ago

The OWASP HTML Sanitizer is a fast and easy to configure HTML Sanitizer written in Java which lets you include HTML authored by third-parties in your web application while protecting against XSS. The existing dependencies are on guava and JSR 305. The other jars are only needed by the test suite. ... [More] The JSR 305 dependency is a compile-only dependency, only needed for annotations. This code was written with security best practices in mind, has an extensive test suite, and has undergone adversarial security review. A great place to get started using the OWASP Java HTML Sanitizer is here: https://github.com/OWASP/java-html-sanitizer/blob/master/docs/getting_started.md [Less]

59K lines of code

4 current contributors

over 2 years since last commit

2 users on Open Hub

Inactive
5.0
 
I Use This

NextTypes

Compare

  Analyzed about 5 hours ago

NextTypes is a standards based information storage, processing and transmission system that integrates the characteristics of other systems such as databases, programming languages, communication protocols, file systems, document managers, operating systems, frameworks, file formats and hardware in ... [More] a single tightly integrated system using a common data types system. NextTypes is a relational/network/objects/files hybrid database system with high level SQL interface, JSON/JSON-LD/XML/Smile/WebDAV/CalDAV/iCalendar/RSS data access, REST interface, MVC architecture, optimistic concurrency control, HTML5/CSS3/SVG/Javascript graphical interface, UTF-8 encoding, text extraction/fulltext search, virus scan, DoS/SQL injection/CSRF/XSS protection and passwords/X.509 certificates authentication. [Less]

23.1K lines of code

0 current contributors

3 months since last commit

1 users on Open Hub

Low Activity
0.0
 
I Use This

HDIV

Compare

  Analyzed 1 day ago

Java Web Application Security Framework to solve web application vulnerabilities HDIV extends web applications’ behaviour by adding Security functionalities, maintaining the API and the framework specification. This implies that we can use HDIV in applications developed in Struts 1.x, Struts 2.x ... [More] , Spring MVC and JSTL in a transparent way to the programmer and without adding any complexity to the application development. The security functionalities added to the web applications are these: Integrity, Confidentiality and Generic Editable Data Validations. [Less]

61K lines of code

6 current contributors

over 2 years since last commit

1 users on Open Hub

Inactive
0.0
 
I Use This
Licenses: No declared licenses

Vega

Compare

  Analyzed about 9 hours ago

Vega is an open source platform to test the security of web applications. Vega can help you find and validate SQL Injections, Cross-Site Scripting (XSS), inadvertently disclosed sensitive information, and other vulnerabilities. It is written in Java, GUI based, and runs on Linux, OS X, and Windows. ... [More] Vega includes an automated scanner for quick tests and an intercepting proxy for tactical inspection. Vega can be extended using a powerful API in the language of the web: Javascript. Vega was developed by Subgraph in Montreal. [Less]

44.7K lines of code

0 current contributors

over 8 years since last commit

1 users on Open Hub

Inactive
0.0
 
I Use This
Licenses: BSD-2-Clause, eclipse

find-sec-bugs

Compare

  Analyzed about 3 hours ago

Plugin for FindBugs that aim to help security audit on Java web application.

127K lines of code

18 current contributors

about 2 months since last commit

1 users on Open Hub

Low Activity
0.0
 
I Use This
Licenses: No declared licenses

OWASP Xenotix XSS Exploit Framework

Compare

Claimed by Open Web Application Securi... Analyzed about 23 hours ago

OWASP Xenotix XSS Exploit Framework is an advanced Cross Site Scripting (XSS) vulnerability detection and exploitation framework. It provides Zero False Positive scan results with its unique Triple Browser Engine (Trident, WebKit, and Gecko) embedded scanner. It is claimed to have the world’s 2nd ... [More] largest XSS Payloads of about 1500+ distinctive XSS Payloads for effective XSS vulnerability detection and WAF Bypass. It is incorporated with a feature rich Information Gathering module for target Reconnaissance. The Exploit Framework includes highly offensive XSS exploitation modules for Penetration Testing and Proof of Concept creation. [Less]

1.22M lines of code

0 current contributors

almost 4 years since last commit

1 users on Open Hub

Inactive
0.0
 
I Use This

DevGuide

Compare

Claimed by Open Web Application Securi... Analyzed about 6 hours ago

The OWASP Guide is for architects and developers to securely engineer applications, primarily focusing on modern web apps and mobile applications. We are in the process of a massive re-write and are looking for contributors. Please come and help!

4.76K lines of code

0 current contributors

10 months since last commit

1 users on Open Hub

Very Low Activity
5.0
 
I Use This

OWASP Java Encoder Project

Compare

  Analyzed about 13 hours ago

Contextual Output Encoding is a computer programming technique necessary to stop Cross Site Scripting. This project is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. It provides numerous encoding functions to help defend against XSS in a ... [More] variety of different HTML, JavaScript, XML and CSS contexts. [Less]

5.77K lines of code

0 current contributors

10 months since last commit

1 users on Open Hub

Very Low Activity
5.0
 
I Use This
Licenses: No declared licenses

OWASP phpsec

Compare

Claimed by Open Web Application Securi... Analyzed about 16 hours ago

OWASP PHP Security Project OWASP PHP Security Project is an effort by a group of PHP developers in securing PHP web applications, using a collection of decoupled flexible secure PHP libraries, as well as a collection of PHP tools.

-3 lines of code

0 current contributors

over 8 years since last commit

1 users on Open Hub

Inactive
5.0
 
I Use This

OWASP WebGoatPHP

Compare

Claimed by Open Web Application Securi... Analyzed 1 day ago

WebGoatPHP is a deliberately insecure web application developed using PHP to teach web application security. It offers a set of challenges based on various vulnerabilities listed in OWASP. The application is a realistic teaching environment and supports four different modes. Wiki Page: https://www.owasp.org/index.php/WebGoatPHP

86.6K lines of code

0 current contributors

over 7 years since last commit

1 users on Open Hub

Inactive
5.0
 
I Use This