BTS Pentesting Lab Icon

BTS Pentesting Lab


BTS Pentesting Lab - a deliberately vulnerable Web application

Add a Review
67 Downloads (This Week)
Last Update:
Browse All Files



BTS PenTesting Lab is an open source vulnerable web application, created by Cyber Security & Privacy Foundation ( It can be used to learn about many different types of web application vulnerabilities.

Currently, the app contains the following types of vulnerabilities:
*SQL Injection
*XSS(includes Flash Based xss)
*File Inclusion
* Code Execution
*Insecure Direct Object Reference
*Unrestricted File Upload vulnerability
*Open URL Redirection
*Server Side Includes(SSI) Injection
and more...

Java version of this application can be found here:

BTS Pentesting Lab Web Site


  • Has plenty of latest web application vulnerabilities
  • Easy to Install
  • It will help you to learn web application hacking
  • A real vulnerable web application
  • You can use any pentesting/hacking tools to test the vulnerability
  • Contains challenges that will improve your bug finding skills
  • Access the Admin panel at "/btslab/admin/". The default Admin Login Credentials: username 'admin' and password 'password'


Other Useful Business Software

The Leading Provider of Business VoIP Phone Systems Icon

Award-Winning Business VoIP Phone System

The Leading Provider of Business VoIP Phone Systems Icon
1 of 5 2 of 5 3 of 5 4 of 5 5 of 5
62 Reviews
  • Unlimited Calling, Faxing, Video Conferencing
  • 24/7 U.S Based Customer Support
  • Super Reliable, Simple to Use
Write a Review

User Reviews

Be the first to post a review of BTS Pentesting Lab!

Additional Project Details

Intended Audience

Information Technology, Education, Security Professionals, Security

User Interface


Programming Language




Thanks for helping keep SourceForge clean.

Screenshot instructions:
Red Hat Linux   Ubuntu

Click URL instructions:
Right-click on ad, choose "Copy Link", then paste here →
(This may not be possible with some types of ads)

More information about our ad policies

Briefly describe the problem (required):

Upload screenshot of ad (required):
Select a file, or drag & drop file here.

Please provide the ad click URL, if possible:

Get latest updates about Open Source Projects, Conferences and News.

No, Thank you