Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"
☆240Jul 9, 2026Updated last week
Alternatives and similar repositories for pwning-juice-shop
Users that are interested in pwning-juice-shop are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tool to export Juice Shop challenges and hints in data format compatible with CTFd, RootTheBox or FBCTF☆474Apr 16, 2026Updated 3 months ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆322Updated this week
- OWASP Juice Shop: Probably the most modern and sophisticated insecure web application☆13,525Updated this week
- ☆11Sep 3, 2023Updated 2 years ago
- Automated solving script for the OWASP Juice Shop☆26Jul 20, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Repo to hold the markdown-ified metadata on AppSec tools that are automation-friendly☆12Jun 13, 2016Updated 10 years ago
- This projects provides a logger and a connected harlem shake js.☆20Mar 24, 2026Updated 3 months ago
- University lecture on "IT Security" as Open Educational Resources material☆376Aug 18, 2023Updated 2 years ago
- PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach …☆29Jan 8, 2023Updated 3 years ago
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆884Updated this week
- Environmental (and http) keying for scripting languages☆39Oct 5, 2018Updated 7 years ago
- Graphql introspection query analyzer.☆18Mar 28, 2023Updated 3 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆25May 14, 2026Updated 2 months ago
- ☆14Mar 31, 2018Updated 8 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayBackend pro…☆17May 12, 2026Updated 2 months ago
- Blind XSS service alerting over slack or email☆29Aug 6, 2019Updated 6 years ago
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆23Oct 14, 2020Updated 5 years ago
- This code is vulnerable to SQL Injection and having SQLite database. For SQLite database, SQL Injection payloads are different so it is f…☆159Dec 9, 2021Updated 4 years ago
- Lair Framework dockerized.☆38Apr 17, 2021Updated 5 years ago
- Burp/ZAP extension that integrate Retire.js repository to find vulnerable Javascript libraries.☆38Dec 14, 2021Updated 4 years ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆16May 15, 2020Updated 6 years ago
- This script is intended to automate your reconnaissance process in an organized fashion☆2,036Aug 19, 2021Updated 4 years ago
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆59Mar 25, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆58Jul 26, 2020Updated 5 years ago
- This project is about creating and publishing threat model examples.☆430Nov 10, 2021Updated 4 years ago
- An example of a mis-configured Rails application release under MIT license.☆21Jan 19, 2023Updated 3 years ago
- OWASP juice shop solutions☆45Oct 26, 2022Updated 3 years ago
- Burp extension to passively scan for applications revealing software version numbers☆33May 30, 2024Updated 2 years ago
- ☆12Oct 12, 2013Updated 12 years ago
- CVE-2021-1994、CVE-2021-2047、CVE-2021-2064、CVE-2021-2108、CVE-2021-2075、CVE-2019-17195、CVE-2020-14756、CVE-2021-2109☆12Sep 13, 2021Updated 4 years ago
- Terraform module for the salable deployment of CTFd on AWS☆19Oct 21, 2025Updated 9 months ago
- Bug Bounty Monitor☆15Nov 23, 2020Updated 5 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Nessus Cheat Sheet in HTML, PDF, PNG, ADOC☆12Apr 10, 2022Updated 4 years ago
- Splunk Dashboard for CobaltStrike logs☆90Mar 16, 2021Updated 5 years ago
- -☆11Nov 21, 2020Updated 5 years ago
- Mishky's AD Range & The Escalation Path from Hell☆19Jan 16, 2025Updated last year
- A Game of Hackers (CTF Scoreboard & Game Manager)☆1,123Apr 24, 2026Updated 2 months ago
- In case you didn't now how to restore the user password after a password reset (get the previous hash with DCSync)☆171Jun 8, 2017Updated 9 years ago
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestrat…☆282Feb 17, 2026Updated 5 months ago