Finds publicly known security vulnerabilities in a website's frontend
PHP/MySQL web application
Vulnerable implementation of Facebook's GraphQL technology
Scanner detecting the use of JavaScript libraries
UFONet - Denial of Service Toolkit
WPScan WordPress security scanner
Vulnerable app with examples showing how to not use secrets
A tool that allows you to create vulnerable environments
The first messaging platform operating without user identifiers
Browser fingerprinting library
Fast, small, webkit based browser framework extensible by Lua
Network security scanner for detecting severity vulnerabilities
The firmware security analyzer
Find secrets and passwords in container images and file systems
Open source cloud native security observability platform
Tool to check for dependency confusion vulnerabilities
Kubesploit is a cross-platform post-exploitation HTTP/2 Command
Virtual training environment to learn web app ethical hacking.
Apache module to prevent cross-site request forgery.
Metasploitable is an intentionally vulnerable Linux virtual machine
Firing Range is a test bed for web application security scanners
Free Static Code Analysis Tool for PHP Applications
deliberately vulnerable operating systems