SasanLabs / VulnerableApp-facadeLinks
VulnerableApp-facade is probably most modern lightweight distributed farm of Vulnerable Applications built for handling wide range of vulnerabilities across tech stacks.
☆49Updated 2 years ago
Alternatives and similar repositories for VulnerableApp-facade
Users that are interested in VulnerableApp-facade are comparing it to the libraries listed below
Sorting:
- Penetration Testing Checklist☆37Updated 5 years ago
- Go script to guess an API key / OAuth token found during pentest. CLI version of https://github.com/daffainfo/apiguesser-web/☆45Updated 3 years ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆44Updated last year
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆57Updated last year
- A burpsuite extension that helps security researchers find public security reports published on h1 based on the selected host☆42Updated 5 years ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆52Updated 3 years ago
- ☆84Updated 2 years ago
- This lab is created to demonstrate pass-the-hash, blind sql and SSTI vulnerabilities☆92Updated 2 years ago
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆59Updated 3 years ago
- Notes from OSCP, CTF, security adventures, etc...☆64Updated last year
- ☆38Updated 4 years ago
- A very vulnerable implementation of a GraphQL API.☆61Updated 4 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆45Updated 2 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆33Updated 3 years ago
- Find alive host from dumped subdomains, huge domain list , alive subdomains☆26Updated 4 years ago
- Fetch the details of assets hosted on AWS.☆88Updated 2 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆61Updated 4 years ago
- Reconmap's web client written in React. Manage all your pentest projects from a single place.☆51Updated last week
- ☆41Updated last month
- Execute Trickest workflows right from your terminal☆95Updated last month
- A Simple Tool to Pull Paid Bounty Scopes for Wide Recon Actvities☆106Updated 4 years ago
- A Python based scanner to find potential SSRF parameters in a web application.☆70Updated 4 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Updated 2 years ago
- ☆23Updated 4 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆82Updated 3 years ago
- GraphQL security workshop labs☆117Updated last month
- Target practice for ffuf☆69Updated 4 years ago
- HTTP parameter discovery suite.☆63Updated 5 years ago
- Vulnerable SAML infrastructure training applicaiton☆54Updated 2 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆132Updated 3 years ago