Finds publicly known security vulnerabilities in a website's frontend
PHP/MySQL web application
Vulnerable implementation of Facebook's GraphQL technology
Scanner detecting the use of JavaScript libraries
UFONet - Denial of Service Toolkit
WPScan WordPress security scanner
Vulnerable app with examples showing how to not use secrets
A tool that allows you to create vulnerable environments
The first messaging platform operating without user identifiers
Browser fingerprinting library
Fast, small, webkit based browser framework extensible by Lua
Network security scanner for detecting severity vulnerabilities
The firmware security analyzer
Find secrets and passwords in container images and file systems
game of active directory
Open source cloud native security observability platform
Create a vulnerable active directory
Tool to check for dependency confusion vulnerabilities
Kubesploit is a cross-platform post-exploitation HTTP/2 Command
Graphical message and file encryption tool
Virtual training environment to learn web app ethical hacking.
Apache module to prevent cross-site request forgery.
Metasploitable is an intentionally vulnerable Linux virtual machine
WPS wireless protocol audit software for Windows
Firing Range is a test bed for web application security scanners