A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in real-world applications, making it an ideal platform for security professionals, developers, and enthusiasts to learn mobile penetration testing..
☆102Nov 25, 2025Updated 10 months ago
Alternatives and similar repositories for vuln-bank-mobile
Users that are interested in vuln-bank-mobile are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A deliberately vulnerable banking application designed for practicing Security Testing of Web App, APIs, AI integrated App and secure cod…☆937Updated this week
- Zero trust. Zero security. Total exposure. A deliberately vulnerable health tech platform with AI Chatbot for learning about application …☆48Mar 27, 2026Updated 6 months ago
- Very Vulnerable Management API (VVMA) is a deliberately insecure RESTful API built with Node.js for educational and testing purposes. It …☆71Jun 5, 2025Updated last year
- Advanced JWT decoding & cracking toolkit with a user-friendly UI for security testing☆52Jul 10, 2026Updated 2 months ago
- HackList: Your go-to AI-powered guide to hands-on cybersecurity learning!☆23Jul 6, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An advanced Out-of-Band and In-Band SSRF fuzzing scanner with dynamic request tracking.☆40Jun 18, 2026Updated 3 months ago
- A powerful Burp Suite extension that imports Postman collections☆32Aug 1, 2025Updated last year
- Collection of all the resources published by Payatu.☆11May 14, 2026Updated 4 months ago
- Blast credentials across all 10 NetExec protocols in parallel — live hits, auto-skip timeouts, clean summaries. Built for fast iterative …☆17Mar 10, 2026Updated 6 months ago
- Find credentials and secret with 170+ rules covering across source code, Web URL, and CI/CD, verifies them against vendor APIs, and gene…☆118Sep 16, 2026Updated last week
- pereprava is a minimal http/https redirector and reverse proxy for red team ops.☆16Oct 16, 2025Updated 11 months ago
- A simple web app to get the latest EPSS data for a CVE ID☆14Dec 14, 2025Updated 9 months ago
- ☆23Mar 7, 2024Updated 2 years ago
- Damn Vulnerable API☆95Sep 22, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Since the SecOps Group has offered free certification to Certified Appsec Practitioner I will be creating notes here. I will be working o…☆80May 31, 2023Updated 3 years ago
- A bash tool used to install famous bug bounty tools. Mainly used when setting up a fresh environment.☆16Mar 20, 2023Updated 3 years ago
- Jenkins pre-auth RCE exploit. More info at https://jenkins.io/security/advisory/2019-01-08/#SECURITY-1266 https://blog.orange.tw/2019/02/…☆10Mar 15, 2019Updated 7 years ago
- ☆79May 5, 2025Updated last year
- This repo offers comprehensive information, necessary tools, and instructional videos for beginners in Android penetration testing, provi…☆25Jun 12, 2023Updated 3 years ago
- AprilTag is a visual fiducial system popular for robotics research.☆12Jun 23, 2024Updated 2 years ago
- Threat modeling playbook for cloud-native, AI (RAG, agents), and A2A systems with STRIDE, risk models, controls, and test plans.☆18Jul 3, 2026Updated 2 months ago
- ☆16Sep 4, 2025Updated last year
- A deliberately vulnerable java app for educational purposes☆19Mar 4, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Android interception tool for component communication and attack-surface mapping☆132Sep 20, 2026Updated last week
- 🔍 erroreyes – Lightweight Subdomain Enumeration Tool A Python-based tool that queries crt.sh certificate logs to discover subdomains ass…☆17May 8, 2025Updated last year
- ☆31Aug 7, 2024Updated 2 years ago
- Damn Vulneable macOS Application☆16Feb 19, 2025Updated last year
- GraphSpecter is a tool to audit GraphQL API☆22Oct 6, 2025Updated 11 months ago
- Collection of Notes and CheatSheets used for Red teaming Certs☆501Feb 13, 2023Updated 3 years ago
- iOS traffic interception framework which route all device HTTP/HTTPS traffic through Burp Suite via a system-wide VPN tunnel☆49Feb 15, 2026Updated 7 months ago
- Windows 7 Professional 7601 Service Pack 1 is vulnerable to eternalblue exploit and while exploiting this myself i ran into a number of i…☆11Jun 27, 2021Updated 5 years ago
- Some security by obscurity using port-jumping.☆14Jul 3, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- CVE-2024-43451 is a Windows NTLM vulnerability that allows an attacker to force authentication and capture NTLM hashes by using malicious…☆15Jan 21, 2025Updated last year
- CTFd plugin allowing for individual Docker containers per user or team☆12Oct 14, 2024Updated last year
- zwatcher is a lightweight bash script for monitoring sub/domains or a list of sub/domains and javascript files. It compares HTTP status c…☆21Nov 23, 2025Updated 10 months ago
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆19Mar 26, 2019Updated 7 years ago
- damn-exploitable-android-app-apk☆39Jun 9, 2023Updated 3 years ago
- Collection of powershell scripts I used to complete my CARTP and CARTE courses.☆49Feb 27, 2026Updated 7 months ago
- Android pentesting lab running natively on FreeBSD - tools, scripts, and setup guide☆17Apr 21, 2026Updated 5 months ago