OWASP Juice Shop is probably the most modern and sophisticated insecure web application! It can be used in security trainings, awareness demos, CTFs and as a guinea pig for security tools! Juice Shop encompasses vulnerabilities from the entire OWASP Top Ten along with many other security flaws found in real-world applications!

Juice Shop is written in Node.js, Express and Angular. It was the first application written entirely in JavaScript listed in the OWASP VWA Directory.

The application contains a vast number of hacking challenges of varying difficulty where the user is supposed to exploit the underlying vulnerabilities. The hacking progress is tracked on a score board. Finding this score board is actually one of the (easy) challenges!

Apart from the hacker and awareness training use case, pentesting proxies or security scanners can use Juice Shop as a "guinea pig"-application to check how well their tools cope with JavaScript-heavy application frontends and REST APIs.

Features

  • web application security
  • application security
  • javascript
  • angular
  • node
  • pentesting
  • hacking
  • security awareness
  • security vulnerabilities

Project Samples

Project Activity

See All Activity >

License

MIT License

Follow OWASP Juice Shop

OWASP Juice Shop Web Site

Other Useful Business Software
Auth0 for AI Agents now in GA Icon
Auth0 for AI Agents now in GA

Ready to implement AI with confidence (without sacrificing security)?

Connect your AI agents to apps and data more securely, give users control over the actions AI agents can perform and the data they can access, and enable human confirmation for critical agent actions.
Start building today
Rate This Project
Login To Rate This Project

User Ratings

★★★★★
★★★★
★★★
★★
0
1
0
0
0
ease 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
features 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
design 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
support 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5

User Reviews

  • why i am facing issue C:\Users\welcome\Downloads\juice-shop_17.0.0>npm start > juice-shop@17.0.0 start > node build/app node: internal/modules/cjs/loader: 1145 throw err; A Error: Cannot find module 'C:\Users\welcome\Downloads\juice-shop_17.0.0\build\app' at Module._resolveFilename (node:internal/modules/cjs/loader:1142:15) at Module._load (node:internal/modules/cjs/loader:983:27) at Function.executeUserEntryPoint [as runMain] (node: internal/modules/run_main:142:12) at node:internal/main/run_main_module:28:49 { code: 'MODULE_NOT_FOUND", requireStack: [] } Node.js v21.7.3
Read more reviews >

Additional Project Details

Operating Systems

BSD, Linux, Windows

Languages

English

Intended Audience

Architects, Developers, Quality Engineers, Security, Security Professionals, Testers

User Interface

Web-based

Programming Language

JavaScript

Related Categories

JavaScript Security Software, JavaScript Software Development Software, JavaScript Education Software

Registered

2014-10-27