A deliberately vulnerable banking application designed for practicing Security Testing of Web App, APIs, AI integrated App and secure code reviews. Features common vulnerabilities found in real-world applications, making it an ideal platform for security professionals, developers, and enthusiasts to learn pentesting and secure coding practices.
☆937Sep 22, 2026Updated this week
Alternatives and similar repositories for vuln-bank
Users that are interested in vuln-bank are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities fou…☆102Nov 25, 2025Updated 10 months ago
- Zero trust. Zero security. Total exposure. A deliberately vulnerable health tech platform with AI Chatbot for learning about application …☆48Mar 27, 2026Updated 6 months ago
- Bash scripts to automate the burpsuite's certificate configuration and proxying of an Android device for penetration test.☆22May 26, 2025Updated last year
- PAYGoat is a banking application built for educational purposes, focused on exploring and understanding common business logic flaws in fi…☆199Mar 11, 2026Updated 6 months ago
- HackList: Your go-to AI-powered guide to hands-on cybersecurity learning!☆23Jul 6, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆16Sep 4, 2025Updated last year
- AI-powered bug bounty hunting toolkit that works with or without subscription.☆5,185Updated this week
- AI-Driven Breach and Attack Simulation Tool (Initial Proof of Concept for AI Pentest Copilot)☆28Jan 6, 2025Updated last year
- Very Vulnerable Management API (VVMA) is a deliberately insecure RESTful API built with Node.js for educational and testing purposes. It …☆71Jun 5, 2025Updated last year
- This script automates SQL injection testing using SQLMap with AI-powered decision making.☆449Feb 7, 2026Updated 7 months ago
- A powerful Burp Suite extension that imports Postman collections☆32Aug 1, 2025Updated last year
- Advanced JWT decoding & cracking toolkit with a user-friendly UI for security testing☆52Jul 10, 2026Updated 2 months ago
- Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | …☆2,120Sep 19, 2026Updated last week
- A New Approach to Directory Bruteforce with WaybackLister v1.0☆234Aug 25, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Find XSS payloads that actually work by filtering them based on real-world constraints instead of blind payload spraying.☆286Aug 12, 2026Updated last month
- PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.☆3,118Updated this week
- best tool for finding SQLi,CRLF,XSS,LFi,OpenRedirect☆1,619Dec 7, 2025Updated 9 months ago
- AI-powered ffuf wrapper☆808Dec 4, 2025Updated 9 months ago
- Top disclosed reports from HackerOne☆6,570Sep 12, 2026Updated 2 weeks ago
- Intentionally Vulnerable Hacking Labs☆615Aug 28, 2026Updated 3 weeks ago
- ☆26Sep 5, 2025Updated last year
- Collection of Notes and CheatSheets used for Red teaming Certs☆501Feb 13, 2023Updated 3 years ago
- Lab used for workshop and CTF☆539Aug 23, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- RedInfraCraft automates the deployment of powerful red team infrastructures! It streamlines the setup of C2s, makes it easy to create adv…☆234Mar 28, 2025Updated last year
- Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethica…☆938Jul 9, 2026Updated 2 months ago
- ☆266Dec 10, 2025Updated 9 months ago
- This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom …☆1,141Updated this week
- My Notes about Penetration Testing☆740Jun 13, 2026Updated 3 months ago
- ☆547Aug 21, 2025Updated last year
- AI Red Teaming playground labs to run AI Red Teaming trainings including infrastructure.☆2,080Feb 13, 2026Updated 7 months ago
- An MCP Server for Pwndoc (Pentesting Reporting Tool)☆43Jan 23, 2026Updated 8 months ago
- ☆15Sep 20, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆1,177Jan 28, 2026Updated 7 months ago
- See what your AI agents can access. Scan MCP configs for exposed secrets, shadow APIs, and AI models. Generate AI-BOMs for compliance.☆159Aug 18, 2026Updated last month
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆3,644Feb 10, 2024Updated 2 years ago
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆6,995Sep 19, 2026Updated last week
- ☆197Mar 16, 2026Updated 6 months ago
- 0xJS is an AI-powered JavaScript Security Tool☆67Apr 16, 2026Updated 5 months ago
- Cybersecurity AI (CAI), the framework for AI Security☆9,836Aug 22, 2026Updated last month