How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
Security training for the apps you actually ship. Open your browser and start hacking.
sqli-labs is a collection of intentionally vulnerable web applications and sandbox environments designed for practicing the identification and exploitation of SQL injection vulnerabilities. It serves as a cybersecurity education lab where users can experiment with database exploits in a controlled setting. The environment provides specialized modules for testing a wide range of attack vectors, including error-based, boolean-blind, and time-based injections. It specifically covers advanced techniques such as second-order injections, stacked queries, and attacks targeting HTTP headers. The pro
Kubernetes Goat is a security training environment designed for practicing the identification and exploitation of common vulnerabilities within an intentionally insecure cluster. It provides a controlled setting to simulate system exploitations, including container escapes, role misconfigurations, and server-side requests. The project utilizes scenario-based vulnerability deployment to create specific security flaws. It includes utilities for environment management that allow the cluster to be restored to a clean baseline by removing vulnerable scenarios, service accounts, and role bindings.
Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands on training!
CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
The main features of rhinosecuritylabs/cloudgoat are: Vulnerable Environments, Cloud Security Training and Labs, Security Training Labs, Vulnerable Labs and Practice, Cloud Security, Vulnerable Web Applications.
Open-source alternatives to rhinosecuritylabs/cloudgoat include: koadt/oss-oopssec-store — Security training for the apps you actually ship. Open your browser and start hacking. audi-1/sqli-labs — sqli-labs is a collection of intentionally vulnerable web applications and sandbox environments designed for… madhuakula/kubernetes-goat — Kubernetes Goat is a security training environment designed for practicing the identification and exploitation of… bishopfox/iam-vulnerable — Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground. appsecco/breaking-and-pwning-apps-and-servers-aws-azure-training — Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on… adamdoupe/wackopicko — WackoPicko is a vulnerable web application used to test web application vulnerability scanners.