abigailajohn / VVMA
Very Vulnerable Management API (VVMA) is a deliberately insecure RESTful API built with Node.js for educational and testing purposes. It includes vulnerabilities from the OWASP Top 10 API, allowing learners, security professionals, and developers to explore and understand common API security flaws.
☆57Updated 2 months ago
Alternatives and similar repositories for VVMA
Users that are interested in VVMA are comparing it to the libraries listed below
Sorting:
- Scripts, files, cheatsheets and more used for pentesting and my OSWE / AWAE exam.☆86Updated this week
- The repository contains useful GitHub dorks for finding open-source vulnerabilities.☆77Updated last year
- INE Training Notes☆29Updated last month
- This repository contains cheatsheets and payloads compiled from completing the labs at PortSwigger Academy.☆92Updated 4 months ago
- Web Application Penetration Testing☆112Updated last week
- This repository contains my writeups for the labs in PortSwigger's Web Security Academy platform. Each lab writeup includes the lab's nam…☆91Updated last week
- eCPPTv2 Notes☆13Updated 3 years ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆118Updated last month
- A New Approach to Directory Bruteforce with WaybackLister v1.0☆85Updated last week
- A deliberately vulnerable banking application designed for practicing secure code reviews and API security testing. Features common vulne…☆194Updated 2 weeks ago
- ☆46Updated 2 months ago
- Everything from my OSEP study.☆73Updated 4 months ago
- This is my personal repo, which includes bug bounty tips, a collection of tools, one-liners, and other resources I personally prefer whil…☆49Updated 3 weeks ago
- A passive way to find backups/ sensitive information.☆79Updated 2 weeks ago
- ☆57Updated 2 weeks ago
- A OWASP Based Checklist With 80+ Test Cases☆144Updated 2 years ago
- Bug Bounty Web and API Payloads☆35Updated 6 months ago
- Hi everyone,☆59Updated last year
- ☆43Updated 3 years ago
- I used the Templater community plugin in obsidian to automatically populate IP,username,password☆41Updated last year
- Damn Vulnerable API☆56Updated 2 months ago
- A Go-based utility that processes input through multiple AI models concurrently (OpenAI, Claude, and Gemini) and provides a summarized co…☆51Updated 3 weeks ago
- ☆153Updated 3 years ago
- ☆130Updated 2 months ago
- Resources for Students in the Practical Webapp Security and Testing course☆167Updated last year
- A collection of solutions for every PortSwigger Academy Lab (in progress)☆96Updated 3 years ago
- ☆64Updated 2 years ago
- This repository contains a curated list of websites and repositories featuring pentest & red-team resources such as cheatsheets, write-up…☆62Updated last week
- All cheetsheets with main information from HTB CBBH role path in one place.☆74Updated last year
- OSCP Cheatsheet by Sai Sathvik☆69Updated last year