OWASP Foundation

OWASP, The Open Web Application Security Project.

Technologies
python, javascript, java, php
Topics
security, secure development, appsec, application security, sdlc
OWASP, The Open Web Application Security Project.

OWASP is the Open Web Application Security Project. It is an open community dedicated to enabling organizations to develop, purchase, and maintain applications that can be trusted. All of the OWASP tools, documents, forums, and chapters are free and open to anyone interested in improving application security. We advocate approaching application security as a “people, process, and technology” problem, because the most effective approaches to application security include improvements in all of these areas.

2019 Program

Successful Projects

Contributor
Albertor
Mentor
Riccardo ten Cate
Organization
OWASP Foundation
Improving and building Lab challenges and write-ups:
This project I will work on during the GSOC consists on building many new Lab challenges for web app pentesting and clear and easy-to-follow...
Contributor
Azhar Ahamed
Mentor
AZZEDDINE Ramrami, Ade Yoseman Putra
Organization
OWASP Foundation
OWASP Risk Assessment Framework
Building an API to stage the results of Static Application Security Testing (SAST) tools.
Contributor
Mohit Sharma
Mentor
Viyat Bhalodia, Andres Morales, Abe, Singhal
Organization
OWASP Foundation
OWASP OWTF-Web Interface Enhancements
The current web interface of OWTF is non-functional and some of its pages are not yet implemented. This project is about implementing a full...
Contributor
Tulja Vamshi Kiran
Mentor
Adrian Winckles
Organization
OWASP Foundation
Building a Web-based Honeypot & Reporting Threat Intelligence
The objective is to build a web-based Honeypot project by identifying the emerging attacks against web applications and report them to the community,...
Contributor
Junfan Huang
Mentor
Nikola Milosevic
Organization
OWASP Foundation
OWASP Seraphimdroid
OWASP Seraphimdroid has previously applied a system, based on permissions, which is able to distinguish malicious apps from non-malicious. But it...
Contributor
Arpit Agrawal
Mentor
Shoeb Patel "Capt.Freak", Jannik Hollenbach, Bjoern Kimminich
Organization
OWASP Foundation
OWASP Juice Shop: Feature Pack 2019
This project aims at enhancing the Juice Shop application by drawing inspiration from modern e-commerce companies and incorporating sublime features...
Contributor
propersam
Mentor
Matt Tesauro, Aaron Weaver
Organization
OWASP Foundation
Writing Functional and Unit Tests For Defect-Dojo Tools and Modules
OWASP DefectDojo is an open source vulnerability management tool and it's used as the backbone for security programs. It helps you keep proper record...
Contributor
Manos Kirtas
Mentor
Rick M, Ricardo Pereira, Simon Bennetts
Organization
OWASP Foundation
WebSocket Scanning
ZAP has good support for websockets, and allows them to be intercepted, changed and fuzzed. However, it doesn't currently support scanning, either...
Contributor
HemantJ
Mentor
Priyanka Jain, Glenn ten Cate
Organization
OWASP Foundation
OWASP SKF – Enhancing user experience on chatbots
Security Knowledge Framework (SKF) is intended to be a tool that is used as a guide for building and verifying secure software. It can also be used...
Contributor
Saurabh kumar
Mentor
Aaron Weaver
Organization
OWASP Foundation
Scan2.0 and Writing Unittests for OWASP-Defectdojo
DefectDojo is a security tool that automates application security vulnerability management. DefectDojo streamlines the application security testing...
Contributor
DHIREN DEVINDER SERAI
Mentor
Ali Razmjoo Qalaei
Organization
OWASP Foundation
OWASP Honeypot GSOC 2019
OWASP Honeypot : The idea is to: -Test all the modules in the code (currently 4)and if there are bugs found to fix them. -After testing the...
Contributor
Abhishek Sharma
Mentor
Rejah Rehim
Organization
OWASP Foundation
Laying down base architecture
Laying down a strong foundation & base architecture for Intrusion detection & prevention system (IDS/IPS), intelligent log monitoring, antivirus that...