Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"
☆242Aug 3, 2026Updated last week
Alternatives and similar repositories for pwning-juice-shop
Users that are interested in pwning-juice-shop are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tool to export Juice Shop challenges and hints in data format compatible with CTFd, RootTheBox or FBCTF☆474Apr 16, 2026Updated 3 months ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆322Updated this week
- OWASP Juice Shop: Probably the most modern and sophisticated insecure web application☆13,644Updated this week
- Smart, friendly and helpful chat bot for OWASP Juice Shop☆11Jan 26, 2026Updated 6 months ago
- Automated solving script for the OWASP Juice Shop☆26Jul 20, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- This projects provides a logger and a connected harlem shake js.☆20Mar 24, 2026Updated 4 months ago
- University lecture on "IT Security" as Open Educational Resources material☆376Aug 18, 2023Updated 2 years ago
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆886Jul 20, 2026Updated 3 weeks ago
- Environmental (and http) keying for scripting languages☆38Oct 5, 2018Updated 7 years ago
- Graphql introspection query analyzer.☆18Mar 28, 2023Updated 3 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆25May 14, 2026Updated 2 months ago
- ☆14Mar 31, 2018Updated 8 years ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayBackend pro…☆17May 12, 2026Updated 2 months ago
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆23Oct 14, 2020Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is f…☆159Dec 9, 2021Updated 4 years ago
- Lair Framework dockerized.☆38Apr 17, 2021Updated 5 years ago
- Burp/ZAP extension that integrate Retire.js repository to find vulnerable Javascript libraries.☆38Dec 14, 2021Updated 4 years ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆16May 15, 2020Updated 6 years ago
- This script is intended to automate your reconnaissance process in an organized fashion☆2,039Aug 19, 2021Updated 4 years ago
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆59Mar 25, 2024Updated 2 years ago
- This project is about creating and publishing threat model examples.☆430Nov 10, 2021Updated 4 years ago
- An example of a mis-configured Rails application release under MIT license.☆21Jan 19, 2023Updated 3 years ago
- Burp extension to passively scan for applications revealing software version numbers☆33May 30, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Terraform module for the salable deployment of CTFd on AWS☆19Oct 21, 2025Updated 9 months ago
- Bug Bounty Monitor☆15Nov 23, 2020Updated 5 years ago
- Crystal library for the Shodan API.☆11Dec 20, 2021Updated 4 years ago
- -☆11Nov 21, 2020Updated 5 years ago
- Terraform & Packer code to create an up-to-date Kali Linux AWS EC2 instance☆16Jul 1, 2019Updated 7 years ago
- A Game of Hackers (CTF Scoreboard & Game Manager)☆1,127Apr 24, 2026Updated 3 months ago
- In case you didn't now how to restore the user password after a password reset (get the previous hash with DCSync)☆172Jun 8, 2017Updated 9 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆282Feb 17, 2026Updated 5 months ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Feb 10, 2022Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Miscellaneous for various things☆21Nov 19, 2024Updated last year
- ☆12Aug 8, 2024Updated 2 years ago
- A standard allowing organizations to nominate security contact points and policies via DNS TXT records.☆36Jul 13, 2026Updated 3 weeks ago
- A web front-end for password cracking and analytics☆17Jan 6, 2019Updated 7 years ago
- scripts to setup pentesting system and use during pentest☆21Jun 1, 2022Updated 4 years ago
- Spray SMB with hashes, Then psexec☆32Jul 3, 2019Updated 7 years ago
- Application Security Vulnerability Periodic Table☆14Aug 25, 2014Updated 11 years ago