Skip to content

Index Alphabetical

94 cheat sheets available.

Icons beside the cheat sheet name indicate in which language(s) code snippet(s) are provided.

A B C D E F G H I J K L M N O P Q R S T U V W X

A

Authentication Cheat Sheet

Attack Surface Analysis Cheat Sheet

AJAX Security Cheat Sheet Json

Access Control Cheat Sheet

Abuse Case Cheat Sheet

Authorization Testing Automation Cheat Sheet Java Xml

Authorization Cheat Sheet

B

Browser Extension Vulnerabilities Cheat Sheet

Bean Validation Cheat Sheet Java Xml

C

C-Based Toolchain Hardening Cheat Sheet C Bash

Credential Stuffing Prevention Cheat Sheet

CI CD Security Cheat Sheet

Content Security Policy Cheat Sheet Javascript Html

Clickjacking Defense Cheat Sheet Javascript Html

Cross-Site Request Forgery Prevention Cheat Sheet Html

Cryptographic Storage Cheat Sheet

Choosing and Using Security Questions Cheat Sheet

Cross Site Scripting Prevention Cheat Sheet Html

D

Django REST Framework Cheat Sheet Python

Deserialization Cheat Sheet Java Csharp Python

DotNet Security Cheat Sheet Javascript Csharp Html Xml

Docker Security Cheat Sheet Bash

DOM based XSS Prevention Cheat Sheet Javascript Html

DOM Clobbering Prevention Cheat Sheet Javascript Html

Database Security Cheat Sheet

Denial of Service Cheat Sheet

Django Security Cheat Sheet Html Python

E

Error Handling Cheat Sheet Java Csharp Xml

F

File Upload Cheat Sheet

Forgot Password Cheat Sheet

G

GraphQL Cheat Sheet Javascript Java

H

HTML5 Security Cheat Sheet Javascript Java Html Json Shell

HTTP Headers Cheat Sheet Javascript Xml Php

HTTP Strict Transport Security Cheat Sheet

I

Input Validation Cheat Sheet Java

Infrastructure as Code Security Cheat Sheet

Injection Prevention Cheat Sheet Java

Injection Prevention in Java Cheat Sheet

Insecure Direct Object Reference Prevention Cheat Sheet

J

JSON Web Token for Java Cheat Sheet Javascript Java Json Sql

JAAS Cheat Sheet Java

Java Security Cheat Sheet Java Xml

K

Kubernetes Security Cheat Sheet Json Bash

Key Management Cheat Sheet

L

LDAP Injection Prevention Cheat Sheet Java

Legacy Application Management Cheat Sheet

Logging Vocabulary Cheat Sheet

Laravel Cheat Sheet Html Php Sql Bash

Logging Cheat Sheet

M

Mobile Application Security Cheat Sheet

Multifactor Authentication Cheat Sheet

Microservices Security Cheat Sheet

Microservices based Security Arch Doc Cheat Sheet

Mass Assignment Cheat Sheet Javascript Java Html Php

N

NPM Security Cheat Sheet

NodeJS Docker Cheat Sheet

Network Segmentation Cheat Sheet

Nodejs Security Cheat Sheet Javascript Bash

O

OS Command Injection Defense Cheat Sheet Java Php Shell

OAuth2 Cheat Sheet

P

PHP Configuration Cheat Sheet

Pinning Cheat Sheet

Prototype Pollution Prevention Cheat Sheet Javascript

Password Storage Cheat Sheet

Q

Query Parameterization Cheat Sheet Java Csharp Ruby Php Sql Coldfusion Perl

R

REST Assessment Cheat Sheet

REST Security Cheat Sheet

Ruby on Rails Cheat Sheet Html Ruby Bash

S

Server Side Request Forgery Prevention Cheat Sheet Java Python Ruby Bash

Software Supply Chain Security Cheat Sheet

Session Management Cheat Sheet

Secrets Management Cheat Sheet

Symfony Cheat Sheet Php Bash

Secure Cloud Architecture Cheat Sheet

SAML Security Cheat Sheet

SQL Injection Prevention Cheat Sheet Java Csharp Vbnet

Secure Product Design Cheat Sheet

Securing Cascading Style Sheets Cheat Sheet

T

Transport Layer Security Cheat Sheet

Threat Modeling Cheat Sheet

TLS Cipher String Cheat Sheet

Transaction Authorization Cheat Sheet

Third Party Javascript Management Cheat Sheet Javascript Html

Transport Layer Protection Cheat Sheet

U

Unvalidated Redirects and Forwards Cheat Sheet Java Csharp Ruby Php

User Privacy Protection Cheat Sheet

V

Vulnerable Dependency Management Cheat Sheet Java

Virtual Patching Cheat Sheet Html

Vulnerability Disclosure Cheat Sheet

W

Web Service Security Cheat Sheet

X

XML Security Cheat Sheet Java Xml Bash

XSS Filter Evasion Cheat Sheet Html Php

XS Leaks Cheat Sheet Javascript Html

XML External Entity Prevention Cheat Sheet Java Csharp Cpp Php