abigailajohn / VVMALinks
Very Vulnerable Management API (VVMA) is a deliberately insecure RESTful API built with Node.js for educational and testing purposes. It includes vulnerabilities from the OWASP Top 10 API, allowing learners, security professionals, and developers to explore and understand common API security flaws.
☆65Updated 6 months ago
Alternatives and similar repositories for VVMA
Users that are interested in VVMA are comparing it to the libraries listed below
Sorting:
- Scripts, files, cheatsheets and more used for pentesting and my OSWE / AWAE exam.☆94Updated 4 months ago
- A OWASP Based Checklist With 80+ Test Cases☆155Updated 3 years ago
- The repository contains useful GitHub dorks for finding open-source vulnerabilities.☆89Updated last year
- This repository contains cheatsheets and payloads compiled from completing the labs at PortSwigger Academy.☆114Updated 11 months ago
- Find CVEs associated to Linux and public exploits on github☆119Updated 8 months ago
- Damn Vulnerable API☆81Updated 2 months ago
- Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit☆314Updated last month
- AI for Ethical Hacking - Workshop☆238Updated 2 weeks ago
- INE Training Notes☆46Updated 8 months ago
- ☆56Updated 2 months ago
- Web Application Penetration Testing☆137Updated 7 months ago
- ☆52Updated 2 years ago
- A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud☆137Updated 3 years ago
- ☆243Updated 10 months ago
- ☆69Updated 3 years ago
- HackTheBox: Certified Bug Bounty Hunter's Writeup by Hung Thinh Tran☆15Updated 2 years ago
- Bug Bounty Web and API Payloads☆39Updated last year
- 0xbro's cheatsheets and CTFs notes☆83Updated last month
- ☆156Updated 4 years ago
- #cheat sheet for OSWP☆100Updated 4 years ago
- A collection of solutions for every PortSwigger Academy Lab (in progress)☆107Updated 3 years ago
- ☆42Updated 4 years ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆210Updated 2 months ago
- PAYGoat is a banking application built for educational purposes, focused on exploring and understanding common business logic flaws in fi…☆183Updated 4 months ago
- ☆86Updated 3 years ago
- A collection of lab reports of the Penetration Testing Student course by INE which prepares you for the eJPT.☆50Updated 4 years ago
- ☆58Updated 3 years ago
- My personal collection of resources (mostly tools and training materials) for source code security audits.☆95Updated last year
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆186Updated this week
- A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities fou…☆65Updated 2 weeks ago