OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication.
☆362Jul 24, 2026Updated last month
Alternatives and similar repositories for DVWS
Users that are interested in DVWS are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn rea…☆461Dec 6, 2021Updated 4 years ago
- Neet - Network Enumeration and Exploitation Tool☆169Nov 30, 2016Updated 9 years ago
- Nameserver DNS poisoning attacks made easy☆527Feb 26, 2017Updated 9 years ago
- A Ruby framework designed to aid in the penetration testing of WordPress systems.☆1,046Nov 24, 2019Updated 6 years ago
- Next Generation Firewall Audit and Bypass Tool☆267Apr 24, 2017Updated 9 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A collection of post-exploitation tools for network red teaming.☆139Dec 7, 2018Updated 7 years ago
- Damn Vulnerable Hybrid Mobile App (DVHMA) is an hybrid mobile app (for Android) that intentionally contains vulnerabilities.☆274Aug 22, 2018Updated 8 years ago
- Damn Vulnerable Thick Client App☆157Jun 21, 2026Updated 2 months ago
- Parse HTTP Security Headers☆40Sep 12, 2024Updated last year
- Short and simple vulnerable PHP web application that naïve scanners found to be perfectly safe☆14Dec 4, 2015Updated 10 years ago
- This script generate backdoor code which log username password of an user who have passed HTTP basic auth using LDAP credentials.☆58Apr 3, 2017Updated 9 years ago
- Public repository for improvements to the EXTRABACON exploit☆163Nov 2, 2016Updated 9 years ago
- The Damn Vulnerable Router Firmware Project☆722Apr 7, 2021Updated 5 years ago
- ☆617Oct 4, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- powerful auto-backdooring utility☆747Dec 20, 2017Updated 8 years ago
- An intentionally designed broken web application based on REST API.☆584Jun 10, 2021Updated 5 years ago
- Python and Powershell internal penetration testing framework☆721Feb 22, 2016Updated 10 years ago
- Tools for auditing WAFS☆465Nov 24, 2020Updated 5 years ago
- Extreme Vulnerable Node Application☆95Nov 12, 2018Updated 7 years ago
- An exploitation shell focusing on exploiting command injection vulnerabilities, eg., LFI, RFI, SSTI, etc.☆172Aug 3, 2026Updated 3 weeks ago
- ☆137Jul 13, 2017Updated 9 years ago
- Stealing CSRF tokens with CSS injection (without iFrames)☆321Feb 7, 2018Updated 8 years ago
- A collection of curated Java Deserialization Exploits☆592May 16, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Vulnerable web site. Used to test sentinel features.☆11Nov 18, 2016Updated 9 years ago
- A collection of web pages, vulnerable to command injection flaws☆182Mar 5, 2023Updated 3 years ago
- Image size issues plugin for Burp Suite☆95Jun 27, 2018Updated 8 years ago
- SHELLING - a comprehensive OS command injection payload generator☆442Mar 16, 2020Updated 6 years ago
- An example of obtaining RCE via Redis and CSRF☆75Sep 11, 2016Updated 9 years ago
- bash script to facilitate some aspects of an Android application assessment☆160Sep 9, 2021Updated 4 years ago
- Vulnerable Linux socket game for educational purposes☆22Apr 22, 2017Updated 9 years ago
- NetRipper - Smart traffic sniffing for penetration testers☆1,390Jun 17, 2022Updated 4 years ago
- Advanced HTTP fingerprinting PoC☆45Mar 27, 2017Updated 9 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PwnableWeb is a suite of web applications for use in information security training.☆87Jun 7, 2014Updated 12 years ago
- An automated script that download potential exploit for linux kernel from exploitdb, and compile them automatically☆496Sep 21, 2021Updated 4 years ago
- This tool can be used to brute discover GET and POST parameters☆1,396Aug 24, 2019Updated 7 years ago
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is f…☆159Dec 9, 2021Updated 4 years ago
- RedSnarf is a pen-testing / red-teaming tool for Windows environments☆1,216Sep 14, 2020Updated 5 years ago
- Next-gen BurpSuite penetration testing tool☆459Jan 27, 2016Updated 10 years ago
- Post-exploitation framework (and an interactive shell) developed in Bash shell scripting☆309Oct 22, 2016Updated 9 years ago