A simple Node.js Express REST app with some OWASP vulnerabilities.
☆28May 14, 2026Updated 4 months ago
Alternatives and similar repositories for node-api-goat
Users that are interested in node-api-goat are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Intentionaly very vulnerable API with bonus bad coding practices☆55Nov 15, 2025Updated 10 months ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆48Feb 2, 2023Updated 3 years ago
- Vulnerable API☆428Mar 4, 2023Updated 3 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆141Dec 22, 2022Updated 3 years ago
- An intentionally designed broken web application based on REST API☆13May 25, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Damn Vulnerable Web Services is a vulnerable application with a web service and an API that can be used to learn about webservices/API re…☆519Sep 7, 2026Updated last week
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆59Mar 25, 2024Updated 2 years ago
- Enumerate wordpress users in 1 second.☆15Jan 23, 2018Updated 8 years ago
- Penetration Testing Lab☆31Jul 17, 2014Updated 12 years ago
- This lab is created to demonstrate pass-the-hash, blind sql and SSTI vulnerabilities☆95Jun 11, 2023Updated 3 years ago
- Collection of over 9000 xss payloads | heavy xss collection☆12Dec 6, 2022Updated 3 years ago
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testing☆1,327Apr 7, 2026Updated 5 months ago
- bugBounty Scripts☆11Feb 3, 2023Updated 3 years ago
- Slide deck for DEF CON 30 - Read Team Village - Offensive Wireless Security presentation☆14Aug 16, 2022Updated 4 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆21Oct 25, 2023Updated 2 years ago
- This tool is used to find the admin login page of a website.☆16Jan 15, 2021Updated 5 years ago
- Local penetration testing lab using docker-compose.☆221Jun 17, 2025Updated last year
- CI Pipeline with Pixi, the WAF OWASP Core Rule Set and TestCafe tests.☆15Jun 9, 2021Updated 5 years ago
- completely ridiculous API (crAPI)☆1,585Sep 9, 2026Updated last week
- Modules designed to be used with the Conquest framework.☆22Sep 3, 2026Updated 2 weeks ago
- Mass IP Grabbbing From Bing | Mr.MaGnoM☆13Jun 6, 2018Updated 8 years ago
- Musings from the brainpan.☆10Jan 8, 2019Updated 7 years ago
- Study notes for CompTIA Linux+ Certificate☆36Dec 22, 2023Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Pentesting tool to automate common op tasks and organize discovered data.☆14Updated this week
- Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practis…☆1,712May 24, 2025Updated last year
- ☆33Aug 21, 2024Updated 2 years ago
- DEF CON 31 AI Village - LLMs: Loose Lips Multipliers☆10Aug 16, 2023Updated 3 years ago
- BiomDI - Software Tools supporting Standard Biometric Data Interchange Formats (Mirrored from http://www.nist.gov/itl/iad/ig/biomdi.cfm)☆11Jul 24, 2014Updated 12 years ago
- Okadminfinder rewrite by Xnuvers007☆16Apr 13, 2021Updated 5 years ago
- PhantomsGate: Advanced Shellcode Injection Technique☆28Jul 15, 2024Updated 2 years ago
- ☆10Jun 16, 2021Updated 5 years ago
- ☆11Dec 22, 2022Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Android Penetration Testing Tool — Auto Root Detection & SSL Pinning Bypass with Frida Script Generation☆36May 13, 2026Updated 4 months ago
- vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.☆1,350Jan 10, 2025Updated last year
- Sentinel Recon Tools Workbook☆14Aug 24, 2022Updated 4 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆32Jun 22, 2023Updated 3 years ago
- Offensive Security Tools☆21Jun 29, 2026Updated 2 months ago
- A collection of tools for the Janus exploit [CVE-2017-13156].☆11Oct 22, 2019Updated 6 years ago
- Mishky's AD Range & The Escalation Path from Hell, Version 1.1☆13May 7, 2025Updated last year