vulnerable-apps / awesome-vulnerable
A curated list of VULNERABLE APPS and SYSTEMS which can be used as PENETRATION TESTING PRACTICE LAB.
☆36Updated 2 years ago
Alternatives and similar repositories for awesome-vulnerable:
Users that are interested in awesome-vulnerable are comparing it to the libraries listed below
- A not-curated list of cloud hacking labs☆25Updated last year
- ☆114Updated last year
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 7 months ago
- A comprehensive knowledge base for security professionals to keep track of and build defenses against API attack techniques.☆43Updated 7 months ago
- Collection of Docker honeypot logs from 2021 - 2024☆36Updated 6 months ago
- RansomWhen is a tool to enumerate identities that can lock S3 Buckets using KMS, resulting in ransomwares, as well as detect occurances o…☆44Updated 2 months ago
- gubble is a tool designed to audit Google Workspace group settings. It analyzes settings such as who can join, view membership, post mess…☆48Updated 3 months ago
- ☆93Updated 2 years ago
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆36Updated 7 months ago
- Converting your Burp Suite projects into JSON APIs which can be viewed with Swagger editor or imported into Postman.☆64Updated 4 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- ☆35Updated last month
- Hijack a slack bot to phish your way in☆55Updated 2 weeks ago
- Burp Suite extension for testing Passkey systems.☆67Updated 3 weeks ago
- ☆62Updated 4 months ago
- ☆93Updated this week
- Nuclei plugins to audit Chrome extensions☆64Updated 9 months ago
- FrogPost: postMessage Security Testing Tool☆55Updated this week
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆125Updated last year
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.☆65Updated last year
- A tool for quickly evaluating IAM permissions in AWS.☆57Updated last year
- ☆80Updated 5 months ago
- A collection of Turbo Intruder scripts.☆58Updated 2 months ago
- CaptainCredz is a modular and discreet password-spraying tool.☆108Updated 3 weeks ago
- ☆46Updated 10 months ago
- Hacker Animation Cool Console Kryptographic Sequencer (haccks)☆13Updated 6 months ago
- Living Off Security Tools☆45Updated 6 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 3 months ago
- API fuzzer that exposes security flaws by sending malformed inputs☆16Updated 7 months ago
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Updated 8 months ago