juice-shop / juice-shop
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
☆10,777Updated this week
Alternatives and similar repositories for juice-shop:
Users that are interested in juice-shop are comparing it to the libraries listed below
- WebGoat is a deliberately insecure application☆7,216Updated this week
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,369Updated last year
- Fast passive subdomain enumeration tool.☆11,079Updated this week
- A Tool for Domain Flyovers☆5,710Updated 2 years ago
- The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.☆7,600Updated 2 weeks ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,003Updated this week
- Knock Subdomain Scan☆3,927Updated 2 months ago
- The ZAP by Checkmarx Core project☆13,022Updated this week
- Fast web fuzzer written in Go☆13,361Updated 7 months ago
- w3af: web application attack and audit framework, the open source web vulnerability scanner.☆4,663Updated last year
- Next generation web scanner☆5,701Updated 6 months ago
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆22,051Updated this week
- Web application fuzzer☆6,045Updated 5 months ago
- Nikto web server scanner☆8,896Updated last week
- Web Attack Cheat Sheet☆4,231Updated last week
- A list of public penetration test reports published by several consulting firms and academic security groups.☆8,651Updated 8 months ago
- OWASP based Web Application Security Testing Checklist is an Excel based checklist which helps you to track the status of completed and p…☆1,545Updated last year
- ⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting☆3,930Updated 2 weeks ago
- Most advanced XSS scanner.☆13,562Updated 6 months ago
- Automated All-in-One OS Command Injection Exploitation Tool.☆4,712Updated last week
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,146Updated 3 months ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,729Updated 3 years ago
- Attack Surface Management Platform☆8,377Updated last month
- Open-Source Phishing Toolkit☆12,124Updated 4 months ago
- A curated list of amazingly awesome Burp Extensions☆3,070Updated 2 months ago
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via E…☆7,686Updated this week
- RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data☆5,896Updated 2 months ago
- An OOB interaction gathering server and client library☆3,579Updated this week
- HTTP parameter discovery suite.☆5,411Updated last month
- 🔥 Web-application firewalls (WAFs) from security standpoint.☆6,467Updated 3 months ago