PHP/MySQL web application
Shows how easy it would be to gain unauthorized access to a system
The OWASP ZAP core project
Dynamic instrumentation toolkit for developers
Privilege Escalation Awesome Scripts SUITE
This is a multi-use bash script for Linux systems
Helps with conducting forensics of mobile devices
Password toolbox that supports national secret
Testing TLS/SSL encryption anywhere on any port
SQL operating system instrumentation and monitoring framework
Your web application for managing personal data
In-depth attack surface mapping and asset discovery
An open source security tool to perform AWS security assessment
Probably the most modern and sophisticated insecure web application
A lightweight and powerful iOS framework for intercepting HTTP/HTTPS
A vault for securely storing and accessing AWS credentials
Enable self-service operations, give specific users access
A collection of Python classes for working with network protocols
Language-agnostic SLSA provenance generation for Github Actions
Vulnerable app with examples showing how to not use secrets
Socialite is an OAuth2 Authentication tool
Scanner detecting the use of JavaScript libraries
Set of tools to audit SIP based VoIP Systems
Bitwarden Secrets Manager SDK
Open-source platform for IT, security, and infrastructure teams