A laboratory for learning secure web and mobile development in a practical manner.
☆979Sep 25, 2024Updated last year
Alternatives and similar repositories for secDevLabs
Users that are interested in secDevLabs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- vulnerable single sign on☆152Aug 1, 2024Updated 2 years ago
- Repo for all the SKF Docker lab examples☆465Aug 2, 2024Updated 2 years ago
- Boxer: A fast directory bruteforce tool written in Python with concurrency.☆14Feb 26, 2021Updated 5 years ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆791Aug 21, 2023Updated 2 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆93Aug 27, 2019Updated 6 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A python script that filters, checks the validity, generates clickable link(s) of subdomain(s), and reports their status☆87Oct 29, 2020Updated 5 years ago
- LDAP Injection Vulnerability Application(Blog Sample Code)☆21Jun 9, 2026Updated 2 months ago
- Linux Local Privesc Helper and Agent☆165Dec 2, 2019Updated 6 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,505Oct 12, 2024Updated last year
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,470Jun 11, 2025Updated last year
- Fuzzing Payloads to Assist in Web Application Testing.☆163Jun 6, 2019Updated 7 years ago
- List of Awesome Asset Discovery Resources☆2,815Jan 22, 2025Updated last year
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆886Jul 20, 2026Updated 3 weeks ago
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,798Jun 17, 2026Updated 2 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands …☆951Nov 26, 2022Updated 3 years ago
- Red Team Scripts by d0nkeys (ex SnadoTeam)☆699Jul 27, 2020Updated 6 years ago
- This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with t…☆951Jan 6, 2025Updated last year
- Labs built in docker to cover NSE lessons☆12Nov 24, 2023Updated 2 years ago
- A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, al…☆2,195Dec 11, 2022Updated 3 years ago
- Windows / Linux Local Privilege Escalation Workshop☆1,001Jan 15, 2019Updated 7 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,315Aug 7, 2026Updated last week
- My Recon Automation☆193May 28, 2021Updated 5 years ago
- Pop shells like a master.☆1,485Apr 2, 2019Updated 7 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Penetration tests guide based on OWASP including test cases, resources and examples.☆2,825Mar 23, 2022Updated 4 years ago
- a unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations…☆534Mar 27, 2022Updated 4 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆3,163Aug 3, 2026Updated 2 weeks ago
- A simple PHP application to learn SQL Injection detection and exploitation techniques.☆131Oct 18, 2022Updated 3 years ago
- A curated list of amazingly awesome Burp Extensions☆3,435Updated this week
- Attack and defend active directory using modern post exploitation adversary tradecraft activity☆4,857Jul 29, 2025Updated last year
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,835Apr 6, 2026Updated 4 months ago
- Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥☆7,583Mar 26, 2026Updated 4 months ago
- An intentionally designed broken web application based on REST API.☆583Jun 10, 2021Updated 5 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- The Swiss Army knife for automated Web Application Testing☆2,366Jun 20, 2026Updated last month
- Sample vulnerable code and its exploit code☆189Mar 14, 2021Updated 5 years ago
- Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and l…☆542Apr 14, 2021Updated 5 years ago
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,684Jun 7, 2026Updated 2 months ago
- ☆21Nov 13, 2019Updated 6 years ago
- Benchmarking repo for secrets scanning☆249Aug 18, 2024Updated last year
- Automated Red Team Infrastructure deployement using Docker☆1,276Aug 24, 2022Updated 3 years ago