3 Repos
Deliberately insecure applications and labs for practicing security skills.
Explore 3 awesome GitHub repositories matching part of an awesome list · Vulnerable Training Environments. Refine with filters or upvote what's useful.
Hacker101 is a cybersecurity education platform and web security training portal. It serves as a structured collection of lessons and resources designed to teach students about vulnerability research and penetration testing through guided modules. The platform operates as a static site generator and markdown-based content manager. It uses plain text files with structured metadata to define the hierarchy and properties of educational lessons, transforming this content into pre-rendered HTML files for delivery. The curriculum covers a broad domain of security education, including specialized c
Offers a guided training environment for students to practice vulnerability research and penetration testing.
GOAD is an Ansible-based automation tool and infrastructure orchestrator used to deploy pre-configured networks of vulnerable Windows virtual machines. It serves as a security training environment for practicing Active Directory penetration testing, privilege escalation, and lateral movement across various cloud platforms and local virtualization hypervisors. The project distinguishes itself through a multi-provider infrastructure model and a system of infrastructure recipes that simulate intentional security misconfigurations. It supports the deployment of varied attack scenarios, including
Provisions targeted networks with intentional vulnerabilities to practice privilege escalation and lateral movement.
Dieses Projekt ist eine Capture-the-Flag-Plattform und eine Cybersecurity-Trainingsumgebung. Es bietet ein Framework für das Deployment von Sicherheitsherausforderungen und die Verfolgung des Teilnehmerfortschritts über eine Echtzeit-Punktetabelle. Die Plattform dient als Scoreboard für Sicherheitswettbewerbe und als Managementsystem, das absichtlich verwundbare Infrastrukturen für das Üben von Reverse Engineering und Software-Exploitation-Techniken hostet. Sie verwaltet die Entdeckung geheimer Strings innerhalb dieser Rätsel, um die Team-Ranglisten zu bestimmen. Das System deckt das Management von Cybersecurity-Wettbewerben, das Deployment von Sicherheitsherausforderungen und das Training in Schwachstellenforschung ab. Es nutzt ein Tracking-System, um die Gesamtpunktzahl basierend auf der Anzahl der gelösten Sicherheitsherausforderungen zu überwachen.
Provides deliberately insecure applications and labs for practicing reverse engineering and exploitation techniques.