4 repositorios
Containerized applications and platforms for practicing security testing.
Explore 4 awesome GitHub repositories matching part of an awesome list · Vulnerability Environments. Refine with filters or upvote what's useful.
OWASP ZAP is a dynamic application security testing tool and intercepting HTTP proxy used to find vulnerabilities in web applications. It functions as a penetration testing framework that enables both automated security scanning and manual security testing of running web services. The tool provides a suite of capabilities for analyzing web applications from the outside in, including the ability to capture and modify traffic between a browser and a target application. It is designed to integrate into DevSecOps pipelines to provide consistent security checks across different environments.
Automated web application security testing proxy.
VulApps is a vulnerability lab orchestrator that provides managed container environments. It delivers a curated suite of containerized security tools and applications with known security flaws for use in penetration testing sandboxes and exploit research. The project focuses on the rapid deployment of isolated environments designed for practicing security attacks and verifying vulnerability patches. It includes a collection of Docker-based vulnerable application environments and pre-configured toolsets for security auditing. The system covers the orchestration of container deployments to sim
Provides a collection of containerized applications with known security flaws for vulnerability research.
A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.
Vulnerable CI/CD pipeline environment for security research.
The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how to effectively address them.
Vulnerable Node.js application for security training.