Very Vulnerable Management API (VVMA) is a deliberately insecure RESTful API built with Node.js for educational and testing purposes. It includes vulnerabilities from the OWASP Top 10 API, allowing learners, security professionals, and developers to explore and understand common API security flaws.
☆72Jun 5, 2025Updated last year
Alternatives and similar repositories for VVMA
Users that are interested in VVMA are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Linux Space Booster is an advanced, secure disk space cleanup utility specifically designed for Linux virtual machines. It intelligently …☆15Jun 15, 2025Updated last year
- HuntersEye is designed for Bug Bounty Hunters, and Security Researchers to monitor new subdomains and certificates for specified domains.…☆21Dec 29, 2023Updated 2 years ago
- HackList: Your go-to AI-powered guide to hands-on cybersecurity learning!☆23Jul 6, 2025Updated last year
- A powerful Burp Suite extension that imports Postman collections☆32Aug 1, 2025Updated 11 months ago
- Zero trust. Zero security. Total exposure. A deliberately vulnerable health tech platform with AI Chatbot for learning about application …☆47Mar 27, 2026Updated 4 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Find credentials and secret with 170+ rules covering across source code, Web URL, and CI/CD, verifies them against vendor APIs, and gene…☆116Jul 3, 2026Updated 3 weeks ago
- A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities fou…☆98Nov 25, 2025Updated 8 months ago
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆15Apr 2, 2026Updated 3 months ago
- A cross-platform desktop application for HTTP/HTTPS traffic interception and analysis, built with Go. Features modern UI, traffic manipul…☆225Apr 28, 2025Updated last year
- This is my personal repo, which includes bug bounty tips, a collection of tools, one-liners, and other resources I personally prefer whil…☆70Apr 25, 2025Updated last year
- CyberPreacher cloud project collection☆16Dec 21, 2025Updated 7 months ago
- Proxll is a tool designed to simplify the generation of proxy DLLs while addressing common conflicts related to windows.h☆41Oct 8, 2024Updated last year
- ☆102Apr 4, 2025Updated last year
- Penstaller: A Python tool to automate the installation of essential bug bounty and pentesting tools. With one command, it sets up tools f…☆18Mar 14, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Azure AD (Entra ID) enumeration tool. Find related domains and tenant information in a simple way.☆36Oct 4, 2024Updated last year
- CTF Helper is a powerful, modular Command Line Interface (CLI) tool designed for Capture The Flag (CTF) competitions and cybersecurity ta…☆35May 15, 2026Updated 2 months ago
- A modern tool written in python for hunting open redirection☆32Aug 8, 2023Updated 2 years ago
- A deliberately vulnerable banking application designed for practicing Security Testing of Web App, APIs, AI integrated App and secure cod…☆797Updated this week
- Beginner Road map that paves the way for your journey into the captivating world of cyber security based on job roles.☆24Jan 27, 2024Updated 2 years ago
- You can gather useful information accounts by username across all types networks ( which also include social media)☆31Oct 19, 2023Updated 2 years ago
- ☆81Apr 28, 2025Updated last year
- My notes while studying for the PNPT from TCM Security.☆84Mar 30, 2024Updated 2 years ago
- Performs a global AMSI bypass by patching amsi.dll in memory.☆19Oct 14, 2025Updated 9 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- An Android app to easily manage Frida server on your device or emulator☆133Jan 3, 2026Updated 6 months ago
- AprilTag is a visual fiducial system popular for robotics research.☆12Jun 23, 2024Updated 2 years ago
- Comprehensive AWS cloud reconnaissance and privilege escalation toolkit written in Python. Features IAM, EC2, S3, Lambda, ECS, Secrets Ma…☆50Jul 8, 2025Updated last year
- ☆11Sep 15, 2024Updated last year
- Modules designed to be used with the Conquest framework.☆22Updated this week
- 🔍 erroreyes – Lightweight Subdomain Enumeration Tool A Python-based tool that queries crt.sh certificate logs to discover subdomains ass…☆17May 8, 2025Updated last year
- crack and generate jwt with ease☆24Mar 23, 2025Updated last year
- Research into Undocumented Behavior of Azure AD Refresh Tokens☆13Oct 27, 2023Updated 2 years ago
- These are installation notes based on Mayfly's installation notes. They are more streamlined for Vagrant as I did not take the Docker rou…☆27Jun 19, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Collection of Notes and CheatSheets used for Red teaming Certs☆502Feb 13, 2023Updated 3 years ago
- MongoDB CVE-2025-14847 Heap Memory Leak Scanner | OP_COMPRESSED zlib Vulnerability | Bug Bounty & Red Team Tool☆35Dec 28, 2025Updated 7 months ago
- Expand / Unshorten an exhaustive list of Shortened URL's☆21Feb 1, 2026Updated 5 months ago
- Patchless AMSI + ETW bypass via PAGE_GUARD exceptions and Vectored Exception Handler (VEH)☆16Mar 24, 2026Updated 4 months ago
- ☆12Dec 6, 2024Updated last year
- Web Crawler for Identifying Entry Points☆12Mar 26, 2024Updated 2 years ago
- A simple (scraper) tool for remove background on image☆12Mar 8, 2022Updated 4 years ago