awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to hackademic/hackademic

Open-source alternatives to Hackademic

30 open-source projects similar to hackademic/hackademic, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Hackademic alternative.

  • snoopysecurity/dvwssnoopysecurity avatar

    snoopysecurity/dvws

    460View on GitHub↗

    Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn real world web service vulnerabilities. NOTE: This project is out of date, please use https://github.com/snoopysecurity/dvws-node

    PHP
    View on GitHub↗460
  • s4n7h0/xvwas4n7h0 avatar

    s4n7h0/xvwa

    1,754View on GitHub↗

    XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security.

    PHP
    View on GitHub↗1,754
  • stamparm/dsvwstamparm avatar

    stamparm/DSVW

    869View on GitHub↗

    Damn Small Vulnerable Web

    Python
    View on GitHub↗869
  • webgoat/webgoatWebGoat avatar

    WebGoat/WebGoat

    9,160View on GitHub↗

    WebGoat is a deliberately insecure web application designed as an interactive security lab for learning how to identify and exploit common web vulnerabilities. It serves as a containerized sandbox that allows for the simulation and experimentation of web-based attacks and penetration testing techniques without risking production systems. The project functions as a learning lab that maps specific insecure coding patterns to structured lessons. It implements simulated server-side flaws to provide a hands-on environment for studying common security vulnerabilities and defensive coding practices.

    JavaScript
    View on GitHub↗9,160
  • audi-1/sqli-labsAudi-1 avatar

    Audi-1/sqli-labs

    5,791View on GitHub↗

    sqli-labs is a collection of intentionally vulnerable web applications and sandbox environments designed for practicing the identification and exploitation of SQL injection vulnerabilities. It serves as a cybersecurity education lab where users can experiment with database exploits in a controlled setting. The environment provides specialized modules for testing a wide range of attack vectors, including error-based, boolean-blind, and time-based injections. It specifically covers advanced techniques such as second-order injections, stacked queries, and attacks targeting HTTP headers. The pro

    PHP
    View on GitHub↗5,791

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • koadt/oss-oopssec-storekOaDT avatar

    kOaDT/oss-oopssec-store

    22View on GitHub↗

    Security training for the apps you actually ship. Open your browser and start hacking.

    TypeScript
    View on GitHub↗22
  • adamdoupe/wackopickoadamdoupe avatar

    adamdoupe/WackoPicko

    350View on GitHub↗

    WackoPicko is a vulnerable web application used to test web application vulnerability scanners.

    PHP
    View on GitHub↗350
  • dobin/sentineltestbeddobin avatar

    dobin/SentinelTestbed

    11View on GitHub↗

    Vulnerable web site. Used to test sentinel features.

    PHP
    View on GitHub↗11
  • bkimminich/juice-shopB

    bkimminich/juice-shop

    0View on GitHub↗
    View on GitHub↗0
  • himadriganguly/sqlilabshimadriganguly avatar

    himadriganguly/sqlilabs

    101View on GitHub↗

    Lab set-up for learning SQL Injection Techniques

    JavaScript
    View on GitHub↗101
  • spiderlabs/cryptomgSpiderLabs avatar

    SpiderLabs/CryptOMG

    194View on GitHub↗

    CryptOMG is a configurable CTF style test bed that highlights common flaws in cryptographic implementations.

    PHP
    View on GitHub↗194
  • rapid7/hackazonrapid7 avatar

    rapid7/hackazon

    1,035View on GitHub↗

    A modern vulnerable web app

    HTML
    View on GitHub↗1,035
  • spiderlabs/mcirSpiderLabs avatar

    SpiderLabs/MCIR

    447View on GitHub↗

    The Magical Code Injection Rainbow! MCIR is a framework for building configurable vulnerability testbeds. MCIR is also a collection of configurable vulnerability testbeds.

    PHP
    View on GitHub↗447
  • juice-shop/juice-shopjuice-shop avatar

    juice-shop/juice-shop

    12,530View on GitHub↗

    Juice Shop is a self-contained web application designed as a platform for cybersecurity education and security training. It functions as a controlled environment containing intentional security flaws, allowing users to practice offensive security techniques and defensive coding practices while tracking their progress through a live scoreboard. The platform serves as an industry-standard benchmark for evaluating the effectiveness and detection accuracy of automated security scanning tools. By hosting a standardized set of known vulnerabilities and common attack patterns, it provides a reliable

    TypeScript24pullrequestsapplication-securityappsec
    View on GitHub↗12,530
  • cspf-founder/javavulnerablelabCSPF-Founder avatar

    CSPF-Founder/JavaVulnerableLab

    276View on GitHub↗

    Vulnerable Java based Web Application

    Java
    View on GitHub↗276
  • cr0hn/vulnerable-nodecr0hn avatar

    cr0hn/vulnerable-node

    487View on GitHub↗

    A very vulnerable web site written in NodeJS with the purpose of have a project with identified vulnerabilities to test the quality of security analyzers tools tools

    JavaScript
    View on GitHub↗487
  • bridgecrewio/cfngoatbridgecrewio avatar

    bridgecrewio/cfngoat

    97View on GitHub↗

    Cfngoat is Bridgecrew's "Vulnerable by Design" Cloudformation repository. Cfngoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.

    View on GitHub↗97
  • commjoen/wrongsecretsC

    commjoen/wrongsecrets

    0View on GitHub↗
    View on GitHub↗0
  • grepstrength/swiss-cheese-softwareG

    grepStrength/swiss-cheese-software

    0View on GitHub↗
    View on GitHub↗0
  • commixproject/commix-testbedcommixproject avatar

    commixproject/commix-testbed

    180View on GitHub↗

    A collection of web pages, vulnerable to command injection flaws

    PHP
    View on GitHub↗180
  • appsecco/dvnaA

    appsecco/dvna

    0View on GitHub↗
    View on GitHub↗0
  • fuzzstati0n/fuzzgoatfuzzstati0n avatar

    fuzzstati0n/fuzzgoat

    207View on GitHub↗

    A vulnerable C program for testing fuzzers.

    C
    View on GitHub↗207
  • ethicalhack3r/dvwaethicalhack3r avatar

    ethicalhack3r/DVWA

    13,236View on GitHub↗

    DVWA is a vulnerable web application sandbox and PHP security training environment. It serves as a deployable penetration testing target and an OWASP Top 10 lab designed for practicing exploits and simulating common web security vulnerabilities. The application allows users to adjust security difficulty levels to match their skill level and toggle between different SQL database engines to test how various systems handle injection attacks. It includes a mechanism to disable authentication, enabling automated security tools to interact directly with the environment. The project provides capabi

    PHP
    View on GitHub↗13,236
  • cider-security-research/cicd-goatcider-security-research avatar

    cider-security-research/cicd-goat

    2,274View on GitHub↗

    A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.

    Python
    View on GitHub↗2,274
  • interference-security/dvwsinterference-security avatar

    interference-security/DVWS

    361View on GitHub↗

    OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication.

    PHP
    View on GitHub↗361
  • jackmannino/owasp-goatdroid-projectjackMannino avatar

    jackMannino/OWASP-GoatDroid-Project

    254View on GitHub↗

    This project is no longer maintained OWASP GoatDroid is a fully functional and self-contained training environment for educating developers and testers on Android security. GoatDroid requires minimal dependencies and is ideal for both Android beginners as well as more advanced users. The project currently includes two applications: FourGoats, a location-based social network, and Herd Financial, a mobile banking application. There are also several feature that greatly simplify usage within a training environment or for absolute beginners who want a good introduction to working with the Androi

    Java
    View on GitHub↗254
  • jaiswalakshansh/vuldroidjaiswalakshansh avatar

    jaiswalakshansh/Vuldroid

    68View on GitHub↗

    Vuldroid is a Vulnerable Android Application made with security issues in order to demonstrate how they can occur in code

    Java
    View on GitHub↗68
  • jerryhoff/webgoat.netjerryhoff avatar

    jerryhoff/WebGoat.NET

    252View on GitHub↗

    OWASP WebGoat.NET

    C#
    View on GitHub↗252
  • dynatrace-oss/unguardD

    dynatrace-oss/unguard

    0View on GitHub↗
    View on GitHub↗0
  • chuckfw/owaspbwachuckfw avatar

    chuckfw/owaspbwa

    310View on GitHub↗

    OWASP Broken Web Applications Project

    PHP
    View on GitHub↗310