lighthouse-labs / owasp-top-10-examplesLinks
Examples demonstrating some common web application vulnerabilities.
☆45Updated 10 years ago
Alternatives and similar repositories for owasp-top-10-examples
Users that are interested in owasp-top-10-examples are comparing it to the libraries listed below
Sorting:
- Vulnerable OS Collection is a collection of four Ubuntu based OSes containing real world vulnerable web applications.☆58Updated 8 years ago
- Repository for all the workshop content delivered at nullcon X on 1st of March 2019☆80Updated 6 years ago
- Files for appsecwiki.com☆120Updated 5 years ago
- Small snippets of code we often find useful☆56Updated 10 years ago
- Burp as a Docker Container☆59Updated 5 years ago
- Bodhi - Client-side Vulnerability Playground☆123Updated 4 years ago
- A python script that filters, checks the validity, generates clickable link(s) of subdomain(s), and reports their status☆89Updated 5 years ago
- A CLI tool to interact with hackerone.com. This was my submission for HackerOne's Summer 2018 Hack Day.☆41Updated 7 years ago
- AWS Extender CLI is a command-line script to test S3 buckets as well as Google Storage buckets and Azure Storage containers for common mi…☆83Updated 5 years ago
- VyAPI - A cloud based vulnerable hybrid Android App☆86Updated 5 years ago
- A collection of response templates for invalid bug bounty reports.☆90Updated 7 years ago
- Ruby command-line interface to Burp Suite's REST API☆58Updated 5 years ago
- Extreme Vulnerable Node Application☆95Updated 7 years ago
- Practice Web App written in python with some vulnerabilities.☆34Updated 4 years ago
- An app with really insecure crypto. To be used to see/test/exploit weak cryptographic implementations as well as to learn a little bit mo…☆84Updated 2 years ago
- Shell script for testing DNS zone transfer (AXFR query) on domains and subdomains recursively.☆49Updated 5 years ago
- A little collection of fun and creative proof of concepts to demonstrate the potential impact of a security vulnerability.☆165Updated 6 years ago
- A lab to play with authentication and authorisation problems☆98Updated 2 years ago
- A tool to evaluate Content Security Policies.☆71Updated 5 years ago
- Unofficial api for cve.mitre.org☆40Updated 4 years ago
- A collection of the solutions people wrote for the H1-212 Capture The Flag event☆97Updated 7 years ago
- Notes as I learn basic AWS penetration testing☆67Updated 6 years ago
- This is a simple CSRF Proof of Concept generator that supports multiple form encodings and methods☆34Updated 8 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆110Updated 2 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- This repository for training application security.☆26Updated 6 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆32Updated 11 years ago
- Pillage a git repo found in an accessible web root☆61Updated 14 years ago
- Detect exposed API keys on GitHub commits.☆35Updated 3 years ago
- Actarus is a custom tool for bug bounty☆77Updated 6 years ago