The OWASP Vulnerable Web Applications Directory Project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.
☆94Jul 27, 2026Updated 2 months ago
Alternatives and similar repositories for www-project-vulnerable-web-applications-directory
Users that are interested in www-project-vulnerable-web-applications-directory are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This repo is no longer in use. Please refer to https://vwad.owasp.org☆883Sep 24, 2026Updated 2 weeks ago
- Fork of Google Gruyere for security testing and education. ⚠️ This is a vulnerable app by design.☆17Jul 2, 2023Updated 3 years ago
- SensePost's modified hostapd for wifi attacks.☆14Oct 11, 2020Updated 5 years ago
- OWASP Foundation Web Respository for VulnerableApp project. Project's codebase Repository: https://github.com/SasanLabs/VulnerableApp☆15Sep 10, 2026Updated 3 weeks ago
- A collection of scripts used to support an OffSecOps pipeline.☆15Jan 31, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Vulnerable Web application made with PHP/SQL designed to help new web testers gain some experience and test DAST tools for identifying we…☆19Dec 15, 2023Updated 2 years ago
- BadStore.net presents a 3-tier web app with security mistakes for training, evaluation, and testing.☆29Aug 8, 2026Updated 2 months ago
- Ansible playbook for configuring Kali Linux to personal preferences☆10Oct 5, 2022Updated 4 years ago
- ☆16Jun 28, 2025Updated last year
- Copy as FFUF Command for Burp Suite☆11Jun 12, 2024Updated 2 years ago
- Awesome Bug bounty tools☆13Jun 28, 2024Updated 2 years ago
- ☆14Jan 4, 2021Updated 5 years ago
- Strengthen your defense against web attacks with Kali Linux and Metasploit☆13Jan 30, 2023Updated 3 years ago
- Risk Management for Cyber Security Managers, by Packt Publishing☆16May 11, 2026Updated 4 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Materials used in preperation for the BSCP certification from PortSwigger☆20Jan 28, 2022Updated 4 years ago
- List of Bchecks & Bambdas that i personaly use☆10Mar 22, 2026Updated 6 months ago
- Burp Suite Unfiltered - Go from a Beginner to Advanced, by Packt Publishing☆18Jan 18, 2023Updated 3 years ago
- An all-in-one repository for setting up a new VM with tools for bug bounty hunting, Android app testing, browser configuration, logging, …☆25Jun 25, 2025Updated last year
- The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.☆9,977Updated this week
- This repository is a curated resource for aspiring bug hunters, offering hands-on labs, tools, and structured guidance to support your le…☆84Jun 17, 2025Updated last year
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 4 years ago
- A suite of cybersecurity applications used in Brazilian Army Cyber Security course to accelerate and automate processes. Some tools have …☆24Feb 23, 2025Updated last year
- Azure Deployment Templates for Mandiant Managed Huning☆12Jun 1, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Here are some common interview questions for an application security position you can review for your own interview, along with example a…☆34Apr 17, 2022Updated 4 years ago
- FireLemon is an advanced dos exploiting framework☆11Apr 24, 2024Updated 2 years ago
- Shock the shell! Exploit many injection method for shellshock☆18Sep 3, 2018Updated 8 years ago
- An python script that use apkleaks to scan the android application over web☆11Jun 2, 2022Updated 4 years ago
- ☆12Sep 30, 2026Updated last week
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Nov 22, 2022Updated 3 years ago
- GBounty Profiles are customizable security test definitions used by the GBounty web scanner to identify vulnerabilities in web applicatio…☆25Mar 11, 2025Updated last year
- My OSCP and eCPPTv3 Exam Notes☆43Aug 20, 2025Updated last year
- ***MERGED: SEE README:*** The XCCDF to InSpec parser scans and extracts the controls defined in the DISA XCCDF STIG XML documents and con…☆13Nov 23, 2018Updated 7 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A curated list of vulnerable web applications.☆349Dec 30, 2023Updated 2 years ago
- Status images for your dockerhub automated build (like those for travis)☆16Nov 9, 2018Updated 7 years ago
- ☆11Jun 29, 2021Updated 5 years ago
- A small script for my recon during bug hunting. Needs some modifications☆18Mar 5, 2020Updated 6 years ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆325Sep 30, 2026Updated last week
- Data exfiltration using DNS☆25Dec 28, 2019Updated 6 years ago
- Host Discovery Tool☆11Jan 17, 2022Updated 4 years ago