A very vulnerable implementation of a GraphQL API.
☆62Nov 12, 2021Updated 4 years ago
Alternatives and similar repositories for vulnerable-graphql-api
Users that are interested in vulnerable-graphql-api are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆25May 14, 2026Updated 2 months ago
- Intentionaly very vulnerable API with bonus bad coding practices☆54Nov 15, 2025Updated 8 months ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆47Feb 2, 2023Updated 3 years ago
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆59Mar 25, 2024Updated 2 years ago
- a vulnerable GraphQL application☆20Dec 13, 2019Updated 6 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Vulnerable API☆426Mar 4, 2023Updated 3 years ago
- Damn Vulnerable Web Services is a vulnerable application with a web service and an API that can be used to learn about webservices/API re…☆512Mar 29, 2026Updated 3 months ago
- ☆10Dec 8, 2022Updated 3 years ago
- Vuldroid is a Vulnerable Android Application made with security issues in order to demonstrate how they can occur in code☆68Sep 18, 2021Updated 4 years ago
- Web Application Firewall (WAF) Detector☆35Mar 13, 2023Updated 3 years ago
- ☆12May 28, 2013Updated 13 years ago
- Simple Golang JWT Bruteforcer 2☆10May 25, 2021Updated 5 years ago
- Nuclei is a fast tool for configurable targeted vulnerability scanning based on templates offering massive extensibility and ease of use.☆16Aug 4, 2025Updated 11 months ago
- ☆18May 4, 2026Updated 2 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆140Dec 22, 2022Updated 3 years ago
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testing☆1,277Apr 7, 2026Updated 3 months ago
- An HTTP request smuggling scanner designed to work at scale☆25Oct 2, 2022Updated 3 years ago
- ☆91May 1, 2023Updated 3 years ago
- ☆15Apr 25, 2024Updated 2 years ago
- Semgrep rules to identify GWT attack surface☆12Apr 28, 2022Updated 4 years ago
- ☆32Jun 27, 2022Updated 4 years ago
- A very vulnerable implementation of a GraphQL API.☆18Mar 27, 2026Updated 3 months ago
- finds hidden parameters☆22Aug 12, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Bug Bounty tool to automate the recon process.☆12Oct 4, 2023Updated 2 years ago
- The Proxy Auto Configuration (PAC) file dynamic generator which allows you to specify the proxying rules and the PAC-file will be generat…☆10Dec 5, 2019Updated 6 years ago
- ☆37Aug 27, 2022Updated 3 years ago
- Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practis…☆1,697May 24, 2025Updated last year
- Secrets detection based on regular expressions.☆22Apr 15, 2025Updated last year
- parse ffuf & map endpoints to wordlists☆21Feb 25, 2021Updated 5 years ago
- Research on GraphQL from an AppSec point of view.☆418May 24, 2023Updated 3 years ago
- WinAppDbg helper script to catch API calls☆13Mar 26, 2013Updated 13 years ago
- ☆22Mar 1, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Damn Vulnerable ElectronJS App (DVEA)☆18Jun 29, 2026Updated 3 weeks ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆332Mar 27, 2024Updated 2 years ago
- Offsec Pentest and Bug Bounty Notes☆24May 28, 2020Updated 6 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆32Jun 22, 2023Updated 3 years ago
- Tool to get the top android apps for bug bounty purpose☆17Sep 10, 2020Updated 5 years ago
- completely ridiculous API (crAPI)☆1,549May 14, 2026Updated 2 months ago
- An insecure example application (Java)☆34Aug 19, 2025Updated 11 months ago