β91May 1, 2023Updated 3 years ago
Alternatives and similar repositories for rest-api-goat
Users that are interested in rest-api-goat are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- π Websheep is an app based on a willingly vulnerable ReSTful APIs.β59Mar 25, 2024Updated 2 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!β140Dec 22, 2022Updated 3 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.β25May 14, 2026Updated 2 months ago
- Intentionaly very vulnerable API with bonus bad coding practicesβ54Nov 15, 2025Updated 8 months ago
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testingβ1,277Apr 7, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer β’ AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- completely ridiculous API (crAPI)β1,549May 14, 2026Updated 2 months ago
- vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.β1,345Jan 10, 2025Updated last year
- (aka Kotlin Goat) - an intentionally vulnerable Kotlin applicationβ39Apr 17, 2024Updated 2 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)β47Feb 2, 2023Updated 3 years ago
- Vulnerable APIβ426Mar 4, 2023Updated 3 years ago
- Snyk Node Runtime Agentβ16Apr 12, 2022Updated 4 years ago
- β433Aug 13, 2022Updated 3 years ago
- β14Jul 21, 2024Updated 2 years ago
- This lab is created to demonstrate pass-the-hash, blind sql and SSTI vulnerabilitiesβ95Jun 11, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer β’ AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Six Degrees of Domain Adminβ15Oct 23, 2017Updated 8 years ago
- Exactly what it sounds like, which is something radβ22Oct 12, 2022Updated 3 years ago
- Penetration Testing Labβ31Jul 17, 2014Updated 12 years ago
- Awesome Data Sanitizationβ12Jun 6, 2021Updated 5 years ago
- GCP GOAT is the vulnerable application for learn the GCP Securityβ71May 20, 2026Updated 2 months ago
- visually see issues with supported cipher suitesβ19May 28, 2026Updated last month
- Damn Vulnerable Python Web Appβ191May 21, 2024Updated 2 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.β60Mar 2, 2022Updated 4 years ago
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypassβ17Apr 23, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways β’ AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Scanner for public s3 bucketsβ12Oct 23, 2017Updated 8 years ago
- Create subdomains and files wordlists from your browser historyβ13Jan 10, 2023Updated 3 years ago
- Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn reaβ¦β460Dec 6, 2021Updated 4 years ago
- Bypassing AV, EDR, Application Whitelisting and ASR Rulesβ13Apr 18, 2023Updated 3 years ago
- A small script for my recon during bug hunting. Needs some modificationsβ17Mar 5, 2020Updated 6 years ago
- Salesforce Policy Deviation Checkerβ30Sep 30, 2020Updated 5 years ago
- Material e instructivo para el Workshop de nerdearla 101 v2β13Jul 27, 2022Updated 3 years ago
- Bug Bounty Recon Scriptβ18Aug 14, 2020Updated 5 years ago
- An intentionally designed broken web application based on REST API.β583Jun 10, 2021Updated 5 years ago
- Virtual machines for every use case on DigitalOcean β’ AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Serving files with conditions, serverside keying and more.β18May 26, 2022Updated 4 years ago
- This repository is for mobile app penetration testing checklistβ18Dec 7, 2021Updated 4 years ago
- Local penetration testing lab using docker-compose.β217Jun 17, 2025Updated last year
- Extract parameters/paths from urlsβ17Aug 2, 2020Updated 5 years ago
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in β¦β16Jan 8, 2019Updated 7 years ago
- This repository provides a comprehensive collection of Pulumi scenarios utilized by cnappgoatβ22Jan 28, 2025Updated last year
- Simple tools to handle string and generate subdomain permutationsβ15Jun 8, 2022Updated 4 years ago