https://github.com/ASTTeam
Huhhot SAST-->DAST-->IAST-->FAST!!! Application Security Testing!
ASTTeam
《深入理解CodeQL》Finding vulnerabilities with CodeQL.
《深入理解SAST静态应用安全测试》Static Application Security Testing.
《深入理解DAST动态应用程序安全测试》Dynamic Application Security Testing.
《深入理解Semgrep》Finding vulnerabilities with Semgrep.
开发和安全和运营:DevSecOps-Software development (Dev) and Security (Sec) and IT operations (Ops).