Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"
☆242Sep 16, 2026Updated this week
Alternatives and similar repositories for pwning-juice-shop
Users that are interested in pwning-juice-shop are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tool to export Juice Shop challenges and hints in data format compatible with CTFd, RootTheBox or FBCTF☆477Apr 16, 2026Updated 5 months ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆322Updated this week
- OWASP Juice Shop: Probably the most modern and sophisticated insecure web application☆13,896Updated this week
- Smart, friendly and helpful chat bot for OWASP Juice Shop☆11Jan 26, 2026Updated 7 months ago
- Automated solving script for the OWASP Juice Shop☆26Jul 20, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Repo to hold the markdown-ified metadata on AppSec tools that are automation-friendly☆12Jun 13, 2016Updated 10 years ago
- This projects provides a logger and a connected harlem shake js.☆20Mar 24, 2026Updated 5 months ago
- University lecture on "IT Security" as Open Educational Resources material☆377Aug 18, 2023Updated 3 years ago
- PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach …☆29Jan 8, 2023Updated 3 years ago
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆885Jul 20, 2026Updated 2 months ago
- Environmental (and http) keying for scripting languages☆38Oct 5, 2018Updated 7 years ago
- Graphql introspection query analyzer.☆18Mar 28, 2023Updated 3 years ago
- Cloud-Native Microservice Security Bootcamp☆20Jun 11, 2021Updated 5 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆28May 14, 2026Updated 4 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆14Mar 31, 2018Updated 8 years ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayBackend pro…☆18May 12, 2026Updated 4 months ago
- Blind XSS service alerting over slack or email☆30Aug 6, 2019Updated 7 years ago
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆23Oct 14, 2020Updated 5 years ago
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is f…☆160Dec 9, 2021Updated 4 years ago
- Lair Framework dockerized.☆38Apr 17, 2021Updated 5 years ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆16May 15, 2020Updated 6 years ago
- online calculator for configuring and comparing bicycle gearing systems☆10Feb 19, 2024Updated 2 years ago
- This script is intended to automate your reconnaissance process in an organized fashion☆2,041Aug 19, 2021Updated 5 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆59Mar 25, 2024Updated 2 years ago
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆58Jul 26, 2020Updated 6 years ago
- This project is about creating and publishing threat model examples.☆430Nov 10, 2021Updated 4 years ago
- An example of a mis-configured Rails application release under MIT license.☆21Jan 19, 2023Updated 3 years ago
- Experiments to benchmark implementations of a concurrent counter.☆13Jun 10, 2015Updated 11 years ago
- Burp extension to passively scan for applications revealing software version numbers☆33May 30, 2024Updated 2 years ago
- ☆12Oct 12, 2013Updated 12 years ago
- CVE-2021-1994、CVE-2021-2047、CVE-2021-2064、CVE-2021-2108、CVE-2021-2075、CVE-2019-17195、CVE-2020-14756、CVE-2021-2109☆12Sep 13, 2021Updated 5 years ago
- Terraform module for the salable deployment of CTFd on AWS☆19Oct 21, 2025Updated 10 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Nessus Cheat Sheet in HTML, PDF, PNG, ADOC☆12Apr 10, 2022Updated 4 years ago
- Splunk Dashboard for CobaltStrike logs☆90Mar 16, 2021Updated 5 years ago
- -☆11Nov 21, 2020Updated 5 years ago
- A Game of Hackers (CTF Scoreboard & Game Manager)☆1,134Sep 3, 2026Updated 2 weeks ago
- In case you didn't now how to restore the user password after a password reset (get the previous hash with DCSync)☆172Jun 8, 2017Updated 9 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆282Feb 17, 2026Updated 7 months ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Feb 10, 2022Updated 4 years ago