Skip to content

Latest commit

 

History

History
25 lines (20 loc) · 1.16 KB

File metadata and controls

25 lines (20 loc) · 1.16 KB

Resources – Developing Secure Software

Official Training

Secure Development Frameworks

Guidelines & References

Tools

  • SAST: SonarQube, Semgrep, CodeQL.
  • DAST: OWASP ZAP, Burp Suite.
  • SCA: Dependency-Check, Trivy, Snyk.
  • Secrets Management: HashiCorp Vault, GitHub Secrets, AWS Secrets Manager.

Books

  • Writing Secure Code – Michael Howard & David LeBlanc
  • The Tangled Web: A Guide to Securing Modern Web Applications – Michal Zalewski
  • Building Secure and Reliable Systems – Google SRE team