Skip to content

Index Alphabetical

94 cheat sheets available.

Icons beside the cheat sheet name indicate in which language(s) code snippet(s) are provided.

A B C D E F G H I J K L M N O P Q R S T U V W X

A

Attack Surface Analysis Cheat Sheet

AJAX Security Cheat Sheet Json

Authentication Cheat Sheet

Access Control Cheat Sheet

Abuse Case Cheat Sheet

Authorization Cheat Sheet

Authorization Testing Automation Cheat Sheet Java Xml

B

Bean Validation Cheat Sheet Java Xml

Browser Extension Vulnerabilities Cheat Sheet

C

Credential Stuffing Prevention Cheat Sheet

Cross Site Scripting Prevention Cheat Sheet Html

Cryptographic Storage Cheat Sheet

C-Based Toolchain Hardening Cheat Sheet C Bash

Choosing and Using Security Questions Cheat Sheet

Clickjacking Defense Cheat Sheet Javascript Html

Content Security Policy Cheat Sheet Javascript Html

CI CD Security Cheat Sheet

Cross-Site Request Forgery Prevention Cheat Sheet Html

D

Docker Security Cheat Sheet Bash

Database Security Cheat Sheet

Denial of Service Cheat Sheet

DotNet Security Cheat Sheet Javascript Csharp Html Xml

Django Security Cheat Sheet Html Python

DOM Clobbering Prevention Cheat Sheet Javascript Html

Deserialization Cheat Sheet Java Csharp Python

DOM based XSS Prevention Cheat Sheet Javascript Html

Django REST Framework Cheat Sheet Python

E

Error Handling Cheat Sheet Java Csharp Xml

F

File Upload Cheat Sheet

Forgot Password Cheat Sheet

G

GraphQL Cheat Sheet Javascript Java

H

HTML5 Security Cheat Sheet Javascript Java Html Json Shell

HTTP Headers Cheat Sheet Javascript Xml Php

HTTP Strict Transport Security Cheat Sheet

I

Insecure Direct Object Reference Prevention Cheat Sheet

Injection Prevention in Java Cheat Sheet

Injection Prevention Cheat Sheet Java

Infrastructure as Code Security Cheat Sheet

Input Validation Cheat Sheet Java

J

JSON Web Token for Java Cheat Sheet Javascript Java Json Sql

JAAS Cheat Sheet Java

Java Security Cheat Sheet Java Xml

K

Key Management Cheat Sheet

Kubernetes Security Cheat Sheet Json Bash

L

Legacy Application Management Cheat Sheet

LDAP Injection Prevention Cheat Sheet Java

Laravel Cheat Sheet Html Php Sql Bash

Logging Vocabulary Cheat Sheet

Logging Cheat Sheet

M

Mass Assignment Cheat Sheet Javascript Java Html Php

Mobile Application Security Cheat Sheet

Microservices based Security Arch Doc Cheat Sheet

Multifactor Authentication Cheat Sheet

Microservices Security Cheat Sheet

N

NodeJS Docker Cheat Sheet

Network Segmentation Cheat Sheet

Nodejs Security Cheat Sheet Javascript Bash

NPM Security Cheat Sheet

O

OAuth2 Cheat Sheet

OS Command Injection Defense Cheat Sheet Java Php Shell

P

Prototype Pollution Prevention Cheat Sheet Javascript

Password Storage Cheat Sheet

PHP Configuration Cheat Sheet

Pinning Cheat Sheet

Q

Query Parameterization Cheat Sheet Java Csharp Ruby Php Sql Coldfusion Perl

R

REST Security Cheat Sheet

REST Assessment Cheat Sheet

Ruby on Rails Cheat Sheet Html Ruby Bash

S

Session Management Cheat Sheet

Software Supply Chain Security Cheat Sheet

Secrets Management Cheat Sheet

Secure Cloud Architecture Cheat Sheet

SAML Security Cheat Sheet

Server Side Request Forgery Prevention Cheat Sheet Java Python Ruby Bash

Secure Product Design Cheat Sheet

Symfony Cheat Sheet Php Bash

Securing Cascading Style Sheets Cheat Sheet

SQL Injection Prevention Cheat Sheet Java Csharp Vbnet

T

Third Party Javascript Management Cheat Sheet Javascript Html

TLS Cipher String Cheat Sheet

Threat Modeling Cheat Sheet

Transport Layer Security Cheat Sheet

Transport Layer Protection Cheat Sheet

Transaction Authorization Cheat Sheet

U

User Privacy Protection Cheat Sheet

Unvalidated Redirects and Forwards Cheat Sheet Java Csharp Ruby Php

V

Virtual Patching Cheat Sheet Html

Vulnerability Disclosure Cheat Sheet

Vulnerable Dependency Management Cheat Sheet Java

W

Web Service Security Cheat Sheet

X

XSS Filter Evasion Cheat Sheet Html Php

XML Security Cheat Sheet Java Xml Bash

XS Leaks Cheat Sheet Javascript Html

XML External Entity Prevention Cheat Sheet Java Csharp Cpp Php