vulnerable-apps / awesome-vulnerableLinks
A curated list of VULNERABLE APPS and SYSTEMS which can be used as PENETRATION TESTING PRACTICE LAB.
☆47Updated 2 years ago
Alternatives and similar repositories for awesome-vulnerable
Users that are interested in awesome-vulnerable are comparing it to the libraries listed below
Sorting:
- ☆116Updated 2 years ago
- Hijack a slack bot to phish your way in☆57Updated 4 months ago
- ☆92Updated last month
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year
- gubble is a tool designed to audit Google Workspace group settings. It analyzes settings such as who can join, view membership, post mess…☆79Updated 6 months ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated 2 years ago
- Burp Suite extension for testing Passkey systems.☆75Updated 8 months ago
- Nuclei plugins to audit Chrome extensions☆65Updated last year
- Additional active scan checks for BURP☆28Updated last year
- FrogPost: postMessage Security Testing Tool☆102Updated last week
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.☆68Updated last year
- External Playbooks for Public Access☆40Updated 10 months ago
- RansomWhen is a tool to enumerate identities that can lock S3 Buckets using KMS, resulting in ransomwares, as well as detect occurances o…☆58Updated 9 months ago
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆125Updated last year
- A Burp Suite extension for analyzing Next.js Server Actions - server-side functions identified by hash IDs and `Next-Action` headers.☆36Updated 3 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated last week
- ☆39Updated 3 weeks ago
- Collection of Docker honeypot logs from 2021 - 2024☆36Updated last year
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- Provides an overview of the inner file structure of a PDF☆25Updated 3 years ago
- A list of awesome penetration testing tools and resources.☆82Updated 2 years ago
- A GitHub Actions Supply Chain CTF / Goat☆26Updated 3 weeks ago
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- Collection of Tools & Techniques for analyzing URLs☆32Updated 2 years ago
- A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakes☆43Updated this week
- Collection of all previous 1337UP CTF challenges.☆77Updated 10 months ago
- Jumpstart multiple WebSocket servers quickly☆32Updated 4 years ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆42Updated last year
- Blogpost series showcasing interesting cloud - web app security bugs☆50Updated 2 years ago
- Converting your Burp Suite projects into JSON APIs which can be viewed with Swagger editor or imported into Postman.☆70Updated last year