awesome-repositories.com
المدونة
MCP
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعخادم MCPحولكيفية ترتيب النتائجالصحافة
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

21 مستودعات

Awesome GitHub RepositoriesVulnerable Web Applications

Deliberately insecure web applications designed for testing and training.

Explore 21 awesome GitHub repositories matching part of an awesome list · Vulnerable Web Applications. Refine with filters or upvote what's useful.

Awesome Vulnerable Web Applications GitHub Repositories

اعثر على أفضل المستودعات باستخدام الذكاء الاصطناعي.سنبحث عن أفضل المستودعات المطابقة باستخدام الذكاء الاصطناعي.
  • digininja/dvwaالصورة الرمزية لـ digininja

    digininja/DVWA

    13,229عرض على GitHub↗

    DVWA is a vulnerable web application lab and penetration testing sandbox designed to simulate common security flaws. It serves as a training platform for the OWASP Top 10 security risks and functions as a PHP and MySQL security lab for practicing the identification and exploitation of web vulnerabilities. The project provides a graduated learning experience through configurable security levels that adjust the difficulty of the vulnerabilities. It also supports switching between different database engines to research how various storage systems respond to injection attacks. The application is

    Classic PHP/MySQL application for practicing web security.

    PHPdvwahackinginfosec
    عرض على GitHub↗13,229
  • audi-1/sqli-labsالصورة الرمزية لـ Audi-1

    Audi-1/sqli-labs

    5,791عرض على GitHub↗

    sqli-labs هي مجموعة من تطبيقات الويب الضعيفة عمداً وبيئات الاختبار المصممة لممارسة تحديد واستغلال ثغرات حقن SQL. تعمل كمختبر تعليمي للأمن السيبراني حيث يمكن للمستخدمين تجربة استغلال قواعد البيانات في بيئة خاضعة للرقابة. توفر البيئة وحدات متخصصة لاختبار مجموعة واسعة من ناقلات الهجوم، بما في ذلك الحقن القائم على الخطأ، والحقن الأعمى القائم على المنطق البولي، والحقن القائم على الوقت. تغطي بشكل خاص تقنيات متقدمة مثل حقن الدرجة الثانية، والاستعلامات المكدسة، والهجمات التي تستهدف رؤوس HTTP. يتضمن المشروع أيضاً تمارين تركز على تجاوز مرشحات الأمان وتجاوز جدران حماية تطبيقات الويب من خلال تقنيات مثل تجريد التعليقات وعدم تطابق المعاوقة. تسمح هذه السيناريوهات بمحاكاة اختبار الاختراق الواقعي وتدقيق أمن قواعد البيانات.

    Lab environment for testing various SQL injection techniques.

    PHP
    عرض على GitHub↗5,791
  • s4n7h0/xvwaالصورة الرمزية لـ s4n7h0

    s4n7h0/xvwa

    1,754عرض على GitHub↗

    XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security.

    Badly coded PHP/MySQL application for learning application security.

    PHP
    عرض على GitHub↗1,754
  • rapid7/hackazonالصورة الرمزية لـ rapid7

    rapid7/hackazon

    1,035عرض على GitHub↗

    A modern vulnerable web app

    Modern vulnerable web application for security testing.

    HTML
    عرض على GitHub↗1,035
  • stamparm/dsvwالصورة الرمزية لـ stamparm

    stamparm/DSVW

    869عرض على GitHub↗

    Damn Small Vulnerable Web

    Minimalist vulnerable web application for educational purposes.

    Python
    عرض على GitHub↗869
  • cr0hn/vulnerable-nodeالصورة الرمزية لـ cr0hn

    cr0hn/vulnerable-node

    487عرض على GitHub↗

    A very vulnerable web site written in NodeJS with the purpose of have a project with identified vulnerabilities to test the quality of security analyzers tools tools

    Vulnerable NodeJS application for exploring web vulnerabilities.

    JavaScript
    عرض على GitHub↗487
  • snoopysecurity/dvwsالصورة الرمزية لـ snoopysecurity

    snoopysecurity/dvws

    460عرض على GitHub↗

    Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn real world web service vulnerabilities. NOTE: This project is out of date, please use https://github.com/snoopysecurity/dvws-node

    Vulnerable web services for learning API security.

    PHP
    عرض على GitHub↗460
  • spiderlabs/mcirالصورة الرمزية لـ SpiderLabs

    SpiderLabs/MCIR

    447عرض على GitHub↗

    The Magical Code Injection Rainbow! MCIR is a framework for building configurable vulnerability testbeds. MCIR is also a collection of configurable vulnerability testbeds.

    Framework for building configurable vulnerability testbeds.

    PHP
    عرض على GitHub↗447
  • interference-security/dvwsالصورة الرمزية لـ interference-security

    interference-security/DVWS

    361عرض على GitHub↗

    OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication.

    Vulnerable web application for testing web socket security.

    PHP
    عرض على GitHub↗361
  • adamdoupe/wackopickoالصورة الرمزية لـ adamdoupe

    adamdoupe/WackoPicko

    350عرض على GitHub↗

    WackoPicko is a vulnerable web application used to test web application vulnerability scanners.

    Vulnerable application for testing web vulnerability scanners.

    PHP
    عرض على GitHub↗350
  • hackademic/hackademicالصورة الرمزية لـ Hackademic

    Hackademic/hackademic

    325عرض على GitHub↗

    the main hackademic code repository

    Realistic scenarios for practicing OWASP Top Ten attacks.

    PHP
    عرض على GitHub↗325
  • psiinon/bodgeitالصورة الرمزية لـ psiinon

    psiinon/bodgeit

    287عرض على GitHub↗

    The BodgeIt Store is a vulnerable web application which is currently aimed at people who are new to pen testing.

    Vulnerable web store for beginners in penetration testing.

    Java
    عرض على GitHub↗287
  • cspf-founder/javavulnerablelabالصورة الرمزية لـ CSPF-Founder

    CSPF-Founder/JavaVulnerableLab

    276عرض على GitHub↗

    Vulnerable Java based Web Application

    Vulnerable Java-based web application for security training.

    Java
    عرض على GitHub↗276
  • spiderlabs/cryptomgالصورة الرمزية لـ SpiderLabs

    SpiderLabs/CryptOMG

    194عرض على GitHub↗

    CryptOMG is a configurable CTF style test bed that highlights common flaws in cryptographic implementations.

    CTF-style testbed for identifying cryptographic implementation flaws.

    PHP
    عرض على GitHub↗194
  • commixproject/commix-testbedالصورة الرمزية لـ commixproject

    commixproject/commix-testbed

    180عرض على GitHub↗

    A collection of web pages, vulnerable to command injection flaws

    Testbed for practicing command injection vulnerabilities.

    PHP
    عرض على GitHub↗180
  • himadriganguly/sqlilabsالصورة الرمزية لـ himadriganguly

    himadriganguly/sqlilabs

    101عرض على GitHub↗

    Lab set-up for learning SQL Injection Techniques

    Dedicated lab for learning SQL injection.

    JavaScript
    عرض على GitHub↗101
  • skepticfx/damnvulnerable.meالصورة الرمزية لـ skepticfx

    skepticfx/damnvulnerable.me

    34عرض على GitHub↗

    A deliberately vulnerable modern day app with lots of DOM related bugs

    Modern web application containing DOM-based vulnerabilities.

    HTML
    عرض على GitHub↗34
  • too4words/securibench-microالصورة الرمزية لـ too4words

    too4words/securibench-micro

    27عرض على GitHub↗

    Securibench Micro is a benchmark for static analysis tools for security.

    Test cases for exercising static security analysis tools.

    Java
    عرض على GitHub↗27
  • dobin/sentineltestbedالصورة الرمزية لـ dobin

    dobin/SentinelTestbed

    11عرض على GitHub↗

    Vulnerable web site. Used to test sentinel features.

    Vulnerable website for testing security scanner features.

    PHP
    عرض على GitHub↗11
  • silentsignal/damn-vulnerable-stateful-web-appالصورة الرمزية لـ silentsignal

    silentsignal/damn-vulnerable-stateful-web-app

    14عرض على GitHub↗

    Short and simple vulnerable PHP web application that naïve scanners found to be perfectly safe

    Simple PHP application for testing security scanners.

    PHP
    عرض على GitHub↗14
السابق12التالي
  1. Home
  2. Part of an Awesome List
  3. Developer Tools
  4. Vulnerable Web Applications