vulnerable-apps / awesome-vulnerableLinks
A curated list of VULNERABLE APPS and SYSTEMS which can be used as PENETRATION TESTING PRACTICE LAB.
☆49Updated 2 years ago
Alternatives and similar repositories for awesome-vulnerable
Users that are interested in awesome-vulnerable are comparing it to the libraries listed below
Sorting:
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year
- ☆116Updated 2 years ago
- Nuclei plugins to audit Chrome extensions☆65Updated last year
- Hijack a slack bot to phish your way in☆57Updated 6 months ago
- ☆94Updated last month
- A GitHub Actions Supply Chain CTF / Goat☆27Updated 3 weeks ago
- gubble is a tool designed to audit Google Workspace group settings. It analyzes settings such as who can join, view membership, post mess…☆80Updated 8 months ago
- ☆50Updated last year
- ☆55Updated 2 years ago
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆73Updated 2 years ago
- A Caldera plugin for the emulation of complete, realistic cyberattack chains.☆60Updated 2 months ago
- Some of my rough notes for Docker threat detection☆49Updated 2 years ago
- Create honeypots for cloud environments☆109Updated 3 months ago
- Examine Chrome extensions for security issues☆93Updated 2 months ago
- ☆42Updated 2 months ago
- ☆60Updated 2 years ago
- A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakes☆43Updated 2 months ago
- A PoC to Simulate Ransomware Attack on AWS Environment☆32Updated last year
- Collection of Docker honeypot logs from 2021 - 2024☆36Updated last year
- This tool analyzes a given Gitlab repository and searches for dangling or force-pushed commits containing potential secret or interesting…☆47Updated last year
- Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based …☆105Updated 6 months ago
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆37Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆42Updated 2 years ago
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.☆67Updated 2 years ago
- My very personal and opinionatedly organized infosec/cybersec sources in one OPML file☆59Updated 3 years ago
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- A vulnerable environment for exploring common GCP misconfigurations and vulnerabilities☆32Updated 2 months ago
- ☆94Updated 3 years ago
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated 2 years ago
- Collection of all previous 1337UP CTF challenges.☆79Updated last year