Vulnerable Docker containers designed to simulate vulnerable services for enthusiasts looking to sharpen their skills in identifying, exploiting, and enumerating vulnerabilities in a controlled environment.
☆28Mar 30, 2026Updated 3 months ago
Alternatives and similar repositories for Offensive-Pentesting-Lab
Users that are interested in Offensive-Pentesting-Lab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆15Sep 20, 2025Updated 10 months ago
- A comprehensive collection of resources designed to help you enhance the security of your APIs. In this repository, you'll find a wide ra…☆33Nov 6, 2024Updated last year
- Modular OSINT and attack surface analysis platform for authorized security research, with risk scoring, attack paths, and report generati…☆24Jun 4, 2026Updated last month
- Compromise a web application and delve deeper into the network to access hosts that you cannot directly reach from your attack host using…☆25May 6, 2024Updated 2 years ago
- AWS SSO Device-Code Phishing Toolkit for Red / Purple Teams☆23Mar 10, 2026Updated 4 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A simple OAuth App designed to capture OAuth tokens when users authenticate through GitHub OAuth flow.☆25Apr 20, 2026Updated 3 months ago
- SelfHosted - Bug Bounty Programs | Discover new and fresh bug bounty programs across platforms. Updated frequently to always display the …☆16Nov 24, 2025Updated 7 months ago
- Blast credentials across all 10 NetExec protocols in parallel — live hits, auto-skip timeouts, clean summaries. Built for fast iterative …☆16Mar 10, 2026Updated 4 months ago
- Simple web app to track OWASP WSTG security testing progress☆29Sep 12, 2025Updated 10 months ago
- The list of write-ups, articles, and PoC of various interesting in context of OSINT☆31Mar 13, 2025Updated last year
- ☆19Jun 15, 2026Updated last month
- ☆34Jan 18, 2026Updated 6 months ago
- This repo is a curated list of places I consider for weekends in Athens with my kid.☆11Dec 19, 2021Updated 4 years ago
- A universal MCP client with proxying feature to interact with MCP Servers which support STDIO transport.☆22Apr 17, 2026Updated 3 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Automated Cloud Misconfiguration Testing☆26Jun 20, 2025Updated last year
- DevSecOps for the AI-era CI/CD pipeline. Catches the bugs your AI coding assistant introduces — before they reach production.☆20Jul 14, 2026Updated last week
- A Node.js module that helps users create, find, and join "events" such as a multiplayer game. You may think of this as a matchmaking lob…☆15Jul 28, 2025Updated 11 months ago
- A Burp Suite extension that integrates Dalfox XSS scanner directly into your workflow.☆23Feb 6, 2026Updated 5 months ago
- AATMF | An Open Source - Adversarial AI Threat Modeling Framework☆25Jun 1, 2026Updated last month
- Imperial Security Reconnaissance System☆25Feb 10, 2026Updated 5 months ago
- HTTP testing platform for security researchers☆41Jul 10, 2026Updated last week
- Sample code for "Reflections on trusting trust" by Ken Thompson☆15May 19, 2018Updated 8 years ago
- A Sigma based detection pipeline☆12Dec 15, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- SpecOps is a Burp Suite extension that ingests an OpenAPI or Swagger spec and instantly builds a workbench to test every documented endpo…☆32Jul 10, 2026Updated last week
- A collaborative web exploitation framework.☆29Updated this week
- Another tool for exploiting CVE-2017-9248, a cryptographic weakness in Telerik UI for ASP.NET AJAX dialog handler.☆60Apr 1, 2026Updated 3 months ago
- ☆27Apr 12, 2026Updated 3 months ago
- Birthplace of go pledge(2) support (deprecated, read-only mirror)☆20Sep 2, 2018Updated 7 years ago
- Windows / Linux Local Privilege Escalation Workshop☆11Jan 15, 2019Updated 7 years ago
- Compiling a list of free learning resources in different areas of tech☆13Jul 19, 2023Updated 3 years ago
- Monitoring tool to detect patterns or IOCs (strings, regex, VirusTotal) and alert you and your team via console, Telegram or SMS written …☆17Feb 17, 2026Updated 5 months ago
- MCP security testing framework for evaluating Model Context Protocol server vulnerabilities☆34Feb 17, 2026Updated 5 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A list of vulnerabilities and exploits that I found across various Discord apps and bots.☆16Updated this week
- ☆18Feb 14, 2022Updated 4 years ago
- ☆20Apr 7, 2026Updated 3 months ago
- This script was developped to assist in SpearPhishing campaign during Red Team operations. It can be used to generate random name based o…☆13Feb 6, 2023Updated 3 years ago
- OpenEMR 5.0.1 allows an authenticated attacker to upload and execute malicious php codes.☆14Jan 20, 2021Updated 5 years ago
- Penetration Testing Methodology - short notes☆11May 30, 2015Updated 11 years ago
- TP-Link Archer C50 V3 devices before Build 200318 Rel. 62209 allows remote attackers to cause a denial of service via a crafted HTTP Head…☆20Mar 29, 2020Updated 6 years ago