Damn Vulnerable GraphQL Application is an intentionally vulnerable implementation of Facebook's GraphQL technology, to learn and practice GraphQL Security. DVGA has numerous flaws, such as Injections, Code Executions, Bypasses, Denial of Service, and more. See the full list under the Scenarios section. A public Postman collection is also available to replay solutions to the challenges. DVGA supports Beginner and Expert level game modes, which will change the exploitation difficulty.
Features
- Resource Intensive Query Attack
- GraphQL Introspection
- GraphQL Interface Protection Bypass
- GraphQL Query Weak Password Protection
- Deep Recursion Query Attack
- DVGA supports Beginner and Expert level game modes
Categories
SecurityLicense
MIT LicenseFollow Damn Vulnerable GraphQL Application
Other Useful Business Software
Custom VMs From 1 to 96 vCPUs With 99.95% Uptime
Live migration and automatic failover keep workloads online through maintenance. One free e2-micro VM every month.
Rate This Project
Login To Rate This Project
User Reviews
Be the first to post a review of Damn Vulnerable GraphQL Application!