Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"
☆242Oct 4, 2026Updated this week
Alternatives and similar repositories for pwning-juice-shop
Users that are interested in pwning-juice-shop are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tool to export Juice Shop challenges and hints in data format compatible with CTFd, RootTheBox or FBCTF☆480Apr 16, 2026Updated 5 months ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆325Sep 30, 2026Updated last week
- OWASP Juice Shop: Probably the most modern and sophisticated insecure web application☆14,056Updated this week
- Smart, friendly and helpful chat bot for OWASP Juice Shop☆12Jan 26, 2026Updated 8 months ago
- Automated solving script for the OWASP Juice Shop☆26Jul 20, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- This projects provides a logger and a connected harlem shake js.☆19Sep 23, 2026Updated 2 weeks ago
- University lecture on "IT Security" as Open Educational Resources material☆378Aug 18, 2023Updated 3 years ago
- PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach …☆30Jan 8, 2023Updated 3 years ago
- This repo is no longer in use. Please refer to https://vwad.owasp.org☆883Sep 24, 2026Updated 2 weeks ago
- Environmental (and http) keying for scripting languages☆38Oct 5, 2018Updated 8 years ago
- Graphql introspection query analyzer.☆18Mar 28, 2023Updated 3 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆28May 14, 2026Updated 4 months ago
- ☆14Mar 31, 2018Updated 8 years ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayBackend pro…☆18May 12, 2026Updated 4 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Blind XSS service alerting over slack or email☆30Aug 6, 2019Updated 7 years ago
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆23Oct 14, 2020Updated 5 years ago
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is f…☆160Dec 9, 2021Updated 4 years ago
- Lair Framework dockerized.☆38Apr 17, 2021Updated 5 years ago
- Burp/ZAP extension that integrate Retire.js repository to find vulnerable Javascript libraries.☆38Dec 14, 2021Updated 4 years ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆16May 15, 2020Updated 6 years ago
- Security Capture The Flag (CTF) competition writeups and learning notes.☆18Feb 14, 2017Updated 9 years ago
- This script is intended to automate your reconnaissance process in an organized fashion☆2,035Aug 19, 2021Updated 5 years ago
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆59Mar 25, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆57Jul 26, 2020Updated 6 years ago
- This project is about creating and publishing threat model examples.☆431Nov 10, 2021Updated 4 years ago
- An example of a mis-configured Rails application release under MIT license.☆21Jan 19, 2023Updated 3 years ago
- Burp extension to passively scan for applications revealing software version numbers☆33May 30, 2024Updated 2 years ago
- ☆12Oct 12, 2013Updated 12 years ago
- CVE-2021-1994、CVE-2021-2047、CVE-2021-2064、CVE-2021-2108、CVE-2021-2075、CVE-2019-17195、CVE-2020-14756、CVE-2021-2109☆12Sep 13, 2021Updated 5 years ago
- Terraform module for the salable deployment of CTFd on AWS☆19Oct 21, 2025Updated 11 months ago
- Bug Bounty Monitor☆15Nov 23, 2020Updated 5 years ago
- Nessus Cheat Sheet in HTML, PDF, PNG, ADOC☆12Apr 10, 2022Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Crystal library for the Shodan API.☆11Dec 20, 2021Updated 4 years ago
- -☆11Nov 21, 2020Updated 5 years ago
- A Game of Hackers (CTF Scoreboard & Game Manager)☆1,136Sep 3, 2026Updated last month
- In case you didn't now how to restore the user password after a password reset (get the previous hash with DCSync)☆172Jun 8, 2017Updated 9 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆282Feb 17, 2026Updated 7 months ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Feb 10, 2022Updated 4 years ago
- Miscellaneous for various things☆21Nov 19, 2024Updated last year