awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目关于排名机制媒体报道MCP 服务器
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to koadt/oss-oopssec-store

Open-source alternatives to Oss Oopssec Store

30 open-source projects similar to koadt/oss-oopssec-store, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Oss Oopssec Store alternative.

  • rhinosecuritylabs/cloudgoatRhinoSecurityLabs 的头像

    RhinoSecurityLabs/cloudgoat

    3,639在 GitHub 上查看↗

    CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

    Python
    在 GitHub 上查看↗3,639
  • audi-1/sqli-labsAudi-1 的头像

    Audi-1/sqli-labs

    5,791在 GitHub 上查看↗

    sqli-labs is a collection of intentionally vulnerable web applications and sandbox environments designed for practicing the identification and exploitation of SQL injection vulnerabilities. It serves as a cybersecurity education lab where users can experiment with database exploits in a controlled setting. The environment provides specialized modules for testing a wide range of attack vectors, including error-based, boolean-blind, and time-based injections. It specifically covers advanced techniques such as second-order injections, stacked queries, and attacks targeting HTTP headers. The pro

    PHP
    在 GitHub 上查看↗5,791
  • hackademic/hackademicHackademic 的头像

    Hackademic/hackademic

    325在 GitHub 上查看↗

    the main hackademic code repository

    PHP
    在 GitHub 上查看↗325
  • snoopysecurity/dvwssnoopysecurity 的头像

    snoopysecurity/dvws

    460在 GitHub 上查看↗

    Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn real world web service vulnerabilities. NOTE: This project is out of date, please use https://github.com/snoopysecurity/dvws-node

    PHP
    在 GitHub 上查看↗460
  • jerryhoff/webgoat.netjerryhoff 的头像

    jerryhoff/WebGoat.NET

    252在 GitHub 上查看↗

    OWASP WebGoat.NET

    C#
    在 GitHub 上查看↗252

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Find more with AI search
  • juice-shop/juice-shopjuice-shop 的头像

    juice-shop/juice-shop

    12,530在 GitHub 上查看↗

    Juice Shop is a self-contained web application designed as a platform for cybersecurity education and security training. It functions as a controlled environment containing intentional security flaws, allowing users to practice offensive security techniques and defensive coding practices while tracking their progress through a live scoreboard. The platform serves as an industry-standard benchmark for evaluating the effectiveness and detection accuracy of automated security scanning tools. By hosting a standardized set of known vulnerabilities and common attack patterns, it provides a reliable

    TypeScript24pullrequestsapplication-securityappsec
    在 GitHub 上查看↗12,530
  • m6a-uds/dvcam6a-UdS 的头像

    m6a-UdS/dvca

    211在 GitHub 上查看↗

    Damn Vulnerable Cloud Application

    CSS
    在 GitHub 上查看↗211
  • rapid7/hackazonrapid7 的头像

    rapid7/hackazon

    1,035在 GitHub 上查看↗

    A modern vulnerable web app

    HTML
    在 GitHub 上查看↗1,035
  • tegal1337/0l4bstegal1337 的头像

    tegal1337/0l4bs

    341在 GitHub 上查看↗

    Cross-site scripting labs for web application security enthusiasts

    PHP
    在 GitHub 上查看↗341
  • adamdoupe/wackopickoadamdoupe 的头像

    adamdoupe/WackoPicko

    350在 GitHub 上查看↗

    WackoPicko is a vulnerable web application used to test web application vulnerability scanners.

    PHP
    在 GitHub 上查看↗350
  • momenbasel/htb-writeupsmomenbasel 的头像

    momenbasel/htb-writeups

    123在 GitHub 上查看↗

    The most comprehensive Hack The Box writeup collection - 500+ machines, 400+ challenges, interactive knowledge graph, skill trees, attack path diagrams, ProLabs, Sherlocks, OSCP/CPTS/CRTO prep. Browse: momenbasel.github.io/htb-writeups

    HTML
    在 GitHub 上查看↗123
  • webgoat/webgoatWebGoat 的头像

    WebGoat/WebGoat

    9,160在 GitHub 上查看↗

    WebGoat is a deliberately insecure web application designed as an interactive security lab for learning how to identify and exploit common web vulnerabilities. It serves as a containerized sandbox that allows for the simulation and experimentation of web-based attacks and penetration testing techniques without risking production systems. The project functions as a learning lab that maps specific insecure coding patterns to structured lessons. It implements simulated server-side flaws to provide a hands-on environment for studying common security vulnerabilities and defensive coding practices.

    JavaScript
    在 GitHub 上查看↗9,160
  • s4n7h0/xvwas4n7h0 的头像

    s4n7h0/xvwa

    1,754在 GitHub 上查看↗

    XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security.

    PHP
    在 GitHub 上查看↗1,754
  • madhuakula/kubernetes-goatmadhuakula 的头像

    madhuakula/kubernetes-goat

    5,686在 GitHub 上查看↗

    Kubernetes Goat is a security training environment designed for practicing the identification and exploitation of common vulnerabilities within an intentionally insecure cluster. It provides a controlled setting to simulate system exploitations, including container escapes, role misconfigurations, and server-side requests. The project utilizes scenario-based vulnerability deployment to create specific security flaws. It includes utilities for environment management that allow the cluster to be restored to a clean baseline by removing vulnerable scenarios, service accounts, and role bindings.

    HTML
    在 GitHub 上查看↗5,686
  • antonio-morales/fuzzing101antonio-morales 的头像

    antonio-morales/Fuzzing101

    3,796在 GitHub 上查看↗

    Fuzzing101 is an educational resource providing a structured curriculum and containerized security labs for learning software fuzzing and vulnerability research. It functions as a training course that guides users through the process of identifying security flaws using systematic input manipulation and memory corruption analysis. The project distinguishes itself by providing isolated environments that ensure consistent build dependencies for practicing software instrumentation and crash triaging. It includes a practical tutorial on using evolutionary fuzzing engines and instrumentation tools

    在 GitHub 上查看↗3,796
  • facebook/fbctffacebook 的头像

    facebook/fbctf

    6,553在 GitHub 上查看↗

    fbctf is a Capture The Flag platform designed for hosting cybersecurity competitions. It provides a scoring engine to track participant progress and an orchestration tool to manage the transition from event configuration to an active state. The system utilizes a containerized deployment framework to launch the infrastructure and environments required for live events. It includes an identity integration that authenticates participants via external directory servers to provide organization-wide access control. The platform covers the administration of competition content and security goals, te

    Hack
    在 GitHub 上查看↗6,553
  • grepstrength/swiss-cheese-softwareG

    grepStrength/swiss-cheese-software

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0
  • himadriganguly/sqlilabshimadriganguly 的头像

    himadriganguly/sqlilabs

    101在 GitHub 上查看↗

    Lab set-up for learning SQL Injection Techniques

    JavaScript
    在 GitHub 上查看↗101
  • ine-labs/awsgoatine-labs 的头像

    ine-labs/AWSGoat

    2,025在 GitHub 上查看↗

    AWSGoat : A Damn Vulnerable AWS Infrastructure

    PHP
    在 GitHub 上查看↗2,025
  • mpirnat/lets-be-bad-guysmpirnat 的头像

    mpirnat/lets-be-bad-guys

    190在 GitHub 上查看↗

    The Internet is a dangerous place, filled with evildoers out to attack your code for fun or profit, so it's not enough to just ship your awesome new web app--you have to take the security of your application, your users, and your data seriously. You'll get into the mindset of the bad guys as we…

    HTML
    在 GitHub 上查看↗190
  • nccgroup/sadcloudnccgroup 的头像

    nccgroup/sadcloud

    778在 GitHub 上查看↗

    A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure

    HCL
    在 GitHub 上查看↗778
  • nvisium/django.nvnVisium 的头像

    nVisium/django.nV

    208在 GitHub 上查看↗

    django.nV

    JavaScript
    在 GitHub 上查看↗208
  • owasp/serverless-goatOWASP 的头像

    OWASP/Serverless-Goat

    329在 GitHub 上查看↗

    OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws

    Python
    在 GitHub 上查看↗329
  • paralax/lfi-labsparalax 的头像

    paralax/lfi-labs

    335在 GitHub 上查看↗

    small set of PHP scripts to practice exploiting LFI, RFI and CMD injection vulns

    PHP
    在 GitHub 上查看↗335
  • qmemcpy/bettermotherfuckingctfQ

    qmemcpy/bettermotherfuckingctf

    0在 GitHub 上查看↗

    A single image is worth more than a thousand ~~bytes~~ words:

    在 GitHub 上查看↗0
  • sagishahar/lpeworkshopsagishahar 的头像

    sagishahar/lpeworkshop

    2,091在 GitHub 上查看↗

    Windows / Linux Local Privilege Escalation Workshop

    Batchfile
    在 GitHub 上查看↗2,091
  • samsar4/ethical-hacking-labsSamsar4 的头像

    Samsar4/Ethical-Hacking-Labs

    3,397在 GitHub 上查看↗

    Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning penetration testing, network analysis, and offensive security techniques. It provides a structured environment for practicing the full attack lifecycle, from initial reconnaissance and scanning to exploitation and post-compromise analysis. The project provides instructional materials and guided exercises that cover specific technical domains, including open source intelligence research and network security courseware. It includes a practical workbook for identifying system vulnerabili

    ethical-hacking-labshackinglinux
    在 GitHub 上查看↗3,397
  • secureskytechnology/badlibrarySecureSkyTechnology 的头像

    SecureSkyTechnology/BadLibrary

    59在 GitHub 上查看↗

    vulnerable web application for training

    JavaScript
    在 GitHub 上查看↗59
  • sonofagl1tch/awsdetonationlabsonofagl1tch 的头像

    sonofagl1tch/AWSDetonationLab

    73在 GitHub 上查看↗

    This script is used to generate some basic detections of the aws security services

    Shell
    在 GitHub 上查看↗73
  • sonuoffsec/dvapS

    sonuoffsec/DVAP

    0在 GitHub 上查看↗
    在 GitHub 上查看↗0