jzheaux / terracotta-bank
A darned-vulnerable Java web application - For educating on and practicing secure Java coding techniques
☆22Updated 6 years ago
Alternatives and similar repositories for terracotta-bank:
Users that are interested in terracotta-bank are comparing it to the libraries listed below
- Sample exploits of common vulnerabilities in Java librarires☆23Updated last year
- An intentionally-vulnerable web application, ported from https://github.com/jzheaux/terracotta-bank-spring☆38Updated 2 years ago
- POC about usage of JSON Web Tokens (JWT) in a secure way.☆30Updated 6 years ago
- POC in order to materialize CSRF prevention concepts described in the following OWASP CSRF cheatsheet☆30Updated 7 years ago
- A deliberately insecure Java web application☆36Updated last month
- Repository to showcase various configuration recipes with various technologies☆35Updated 2 years ago
- Complimenting code to Java Crypto Blog series, at https://www.veracode.com/blog/research/how-get-started-using-java-cryptography-securely☆57Updated 4 years ago
- Serial Whitelist Application Trainer☆29Updated 5 years ago
- An insecure example application (Java)☆33Updated 2 months ago
- ZAP Java API☆47Updated 2 months ago
- OWASP Security Logging library for Java☆116Updated last year
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆30Updated 10 years ago
- A proof of concept project that demonstrates oWASP.org's top 10 web vulnerabilities☆22Updated 9 years ago
- Artwork for all official ZAP swag - posters, stickers, t-shirts etc☆14Updated last year
- A botwall for Java web applications☆42Updated 2 years ago
- The aim of this project is to protect Java applications against CSRF attacks with the use of Synchronizer Tokens☆85Updated this week
- Application Intrusion Detection projects☆19Updated 8 months ago
- Vulnerable Java based Web Application☆31Updated 5 years ago
- ☆58Updated 3 years ago
- The BeerSafe application for the Web Security Fundamentals MOOC☆16Updated 7 years ago
- A roving tour of some of the various options for Spring Security authentication☆20Updated 6 years ago
- Source code for Java 9 chapter of Modern Java Recipes☆86Updated 2 weeks ago
- A Byte Buddy Java agent-based fix for CVE-2021-44228, the log4j 2.x "JNDI LDAP" vulnerability.☆70Updated 3 years ago
- The OWASP ZAP Jenkins Plugin extends the functionality of the ZAP security tool into a CI Environment.☆58Updated 6 months ago
- Spring-based Version of Terracotta Bank☆23Updated 6 years ago
- A tiny Java agent that blocks attacks against unsafe deserialization☆83Updated 7 years ago
- OWASP CSRFGuard 3.1.0☆161Updated 2 years ago
- Identify vulnerable libraries in Maven dependencies☆46Updated 2 years ago
- Java Agent which mitigates deserialisation attacks by making certain classes unserializable☆189Updated 8 years ago
- ☆14Updated 5 years ago