ScaleSec / vulnadoLinks
Purposely vulnerable Java application to help lead secure coding workshops
☆191Updated last year
Alternatives and similar repositories for vulnado
Users that are interested in vulnado are comparing it to the libraries listed below
Sorting:
- Damn Vulnerable Java (EE) Application☆144Updated last year
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆134Updated 5 years ago
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆81Updated 3 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆134Updated 3 years ago
- Damn Vulnerable Cloud Application☆201Updated 7 years ago
- oauth security guidelines☆228Updated 6 years ago
- ☆215Updated last week
- Some good resources for getting started with application security☆142Updated 4 years ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆324Updated last year
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆106Updated 10 months ago
- A tool geared towards pentesting APIs using OpenAPI definitions.☆182Updated 3 years ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆44Updated last year
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆109Updated 2 years ago
- Damn Vulnerable Python Web App☆183Updated last year
- A starter secure code review checklist☆184Updated 7 years ago
- ☆83Updated 3 years ago
- This repository is in progress, it will keep updating as I come across to new learning materials. Feel free to contribute.☆222Updated 3 years ago
- OWASP Code Review Guide Web Repository☆145Updated 3 years ago
- A step by step workshop to exploit various vulnerabilities in Node.js and Java applications☆157Updated last year
- Workshop given at Hack in Paris 2019☆125Updated 2 years ago
- The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources☆136Updated 5 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 5 years ago
- OWASP Foundation Web Respository☆37Updated 2 months ago
- A lab to play with authentication and authorisation problems☆98Updated 2 years ago
- Awesome information for WebSockets security research☆297Updated 3 years ago
- materials we hand out☆147Updated 5 months ago
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆188Updated 4 years ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆82Updated 2 years ago
- Burp Automator - A Burp Suite Automation Tool. It provides a high level CLI and Python interfaces to Burp Suite scanner and can be used t…☆291Updated 3 months ago
- Repo for all the SKF Docker lab examples☆461Updated last year