jzheaux / terracotta-bank
A darned-vulnerable Java web application - For educating on and practicing secure Java coding techniques
☆22Updated 6 years ago
Alternatives and similar repositories for terracotta-bank:
Users that are interested in terracotta-bank are comparing it to the libraries listed below
- POC about usage of JSON Web Tokens (JWT) in a secure way.☆29Updated 5 years ago
- Sample exploits of common vulnerabilities in Java librarires☆23Updated last year
- An intentionally-vulnerable web application, ported from https://github.com/jzheaux/terracotta-bank-spring☆38Updated last year
- POC in order to materialize CSRF prevention concepts described in the following OWASP CSRF cheatsheet☆30Updated 7 years ago
- OWASP Security Logging library for Java☆115Updated last year
- Java Agent which mitigates deserialisation attacks by making certain classes unserializable☆188Updated 8 years ago
- A botwall for Java web applications☆42Updated 2 years ago
- ☆45Updated 3 years ago
- Vulnerable Java based Web Application☆31Updated 5 years ago
- Repository to showcase various configuration recipes with various technologies☆35Updated 2 years ago
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆31Updated 10 years ago
- Artwork for all official ZAP swag - posters, stickers, t-shirts etc☆14Updated 10 months ago
- A tiny Java agent that blocks attacks against unsafe deserialization☆83Updated 7 years ago
- A deliberately insecure Java web application☆36Updated 3 months ago
- Serial Whitelist Application Trainer☆29Updated 5 years ago
- A proof of concept project that demonstrates oWASP.org's top 10 web vulnerabilities☆22Updated 9 years ago
- Spring-based Version of Terracotta Bank☆23Updated 6 years ago
- An insecure example application (Java)☆32Updated last month
- Provide some tips to handle Injection into application code (OWASP TOP 10 - A1).☆9Updated 4 years ago
- ZAP Java API☆47Updated 2 weeks ago
- Sampling of simple cipher systems to aid in understanding☆13Updated 6 years ago
- Demo app that subscribes to Twitter and publishes it via websockets☆152Updated last year
- Automated solving script for the OWASP Juice Shop☆26Updated last year
- Burp extension to perform Java Deserialization Attacks☆209Updated 11 months ago
- This library was co-developed with a leading financial institution in order to build a single solution for Cross-Site Request Forgery (CS…☆20Updated 7 years ago
- Demonstrations of Java-based command-line parsing libraries.☆31Updated 9 months ago
- OWASP SonarQube Project☆110Updated 5 years ago
- ZAP test code☆14Updated 9 years ago
- OWASP CSRFGuard 3.1.0☆161Updated 2 years ago
- ☆20Updated 8 years ago