AppSecNews

vendor

OWASP

Tools profiled
3
Categories
RASP1 SCA2

Tools from OWASP

ModSecurity

OWASP

RASP

An open source web application firewall engine that embeds in a web server or proxy and evaluates requests and responses against a rule language, most often the OWASP Core Rule Set.

Open source
Established

Long running OWASP project that identifies dependencies by collecting evidence from artifacts, maps them to CPE identifiers, and reports matching CVEs from the National Vulnerability Database.

Open source
Established

A self-hosted platform that ingests CycloneDX SBOMs and continuously re-evaluates every component against vulnerability and policy data, without rescanning the source.

Open source
Established