A laboratory for learning secure web and mobile development in a practical manner.
☆978Sep 25, 2024Updated last year
Alternatives and similar repositories for secDevLabs
Users that are interested in secDevLabs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- vulnerable single sign on☆152Aug 1, 2024Updated last year
- Repo for all the SKF Docker lab examples☆465Aug 2, 2024Updated last year
- Boxer: A fast directory bruteforce tool written in Python with concurrency.☆14Feb 26, 2021Updated 5 years ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆784Aug 21, 2023Updated 2 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆93Aug 27, 2019Updated 6 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A python script that filters, checks the validity, generates clickable link(s) of subdomain(s), and reports their status☆89Oct 29, 2020Updated 5 years ago
- LDAP Injection Vulnerability Application(Blog Sample Code)☆21Jun 9, 2026Updated last month
- Linux Local Privesc Helper and Agent☆166Dec 2, 2019Updated 6 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,509Oct 12, 2024Updated last year
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,469Jun 11, 2025Updated last year
- Fuzzing Payloads to Assist in Web Application Testing.☆166Jun 6, 2019Updated 7 years ago
- List of Awesome Asset Discovery Resources☆2,782Jan 22, 2025Updated last year
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆886Jul 20, 2026Updated last week
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,799Jun 17, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands …☆951Nov 26, 2022Updated 3 years ago
- Red Team Scripts by d0nkeys (ex SnadoTeam)☆699Jul 27, 2020Updated 6 years ago
- This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with t…☆948Jan 6, 2025Updated last year
- A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, al…☆2,194Dec 11, 2022Updated 3 years ago
- Labs built in docker to cover NSE lessons☆12Nov 24, 2023Updated 2 years ago
- Windows / Linux Local Privilege Escalation Workshop☆1,003Jan 15, 2019Updated 7 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,298Aug 14, 2024Updated last year
- My Recon Automation☆193May 28, 2021Updated 5 years ago
- Pop shells like a master.☆1,487Apr 2, 2019Updated 7 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Penetration tests guide based on OWASP including test cases, resources and examples.☆2,817Mar 23, 2022Updated 4 years ago
- a unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations…☆535Mar 27, 2022Updated 4 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆3,158Updated this week
- A curated list of amazingly awesome Burp Extensions☆3,432Feb 17, 2026Updated 5 months ago
- A simple PHP application to learn SQL Injection detection and exploitation techniques.☆131Oct 18, 2022Updated 3 years ago
- Attack and defend active directory using modern post exploitation adversary tradecraft activity☆4,845Jul 29, 2025Updated last year
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,830Apr 6, 2026Updated 3 months ago
- Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥☆7,561Mar 26, 2026Updated 4 months ago
- An intentionally designed broken web application based on REST API.☆583Jun 10, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- The Swiss Army knife for automated Web Application Testing☆2,368Jun 20, 2026Updated last month
- Sample vulnerable code and its exploit code☆190Mar 14, 2021Updated 5 years ago
- Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and l…☆543Apr 14, 2021Updated 5 years ago
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,659Jun 7, 2026Updated last month
- ☆21Nov 13, 2019Updated 6 years ago
- Benchmarking repo for secrets scanning☆248Aug 18, 2024Updated last year
- Automated Red Team Infrastructure deployement using Docker☆1,277Aug 24, 2022Updated 3 years ago