OWASP Juice Shop is probably the most modern and sophisticated insecure web application! It can be used in security trainings, awareness demos, CTFs and as a guinea pig for security tools! Juice Shop encompasses vulnerabilities from the entire OWASP Top Ten along with many other security flaws found in real-world applications!

Juice Shop is written in Node.js, Express and Angular. It was the first application written entirely in JavaScript listed in the OWASP VWA Directory.

The application contains a vast number of hacking challenges of varying difficulty where the user is supposed to exploit the underlying vulnerabilities. The hacking progress is tracked on a score board. Finding this score board is actually one of the (easy) challenges!

Apart from the hacker and awareness training use case, pentesting proxies or security scanners can use Juice Shop as a "guinea pig"-application to check how well their tools cope with JavaScript-heavy application frontends and REST APIs.

Features

  • web application security
  • application security
  • javascript
  • angular
  • node
  • pentesting
  • hacking
  • security awareness
  • security vulnerabilities

Project Samples

Project Activity

See All Activity >

License

MIT License

Follow OWASP Juice Shop

OWASP Juice Shop Web Site

You Might Also Like
Powerful small business accounting software Icon
Powerful small business accounting software

For small businesses looking for desktop accounting software

With AccountEdge, business owners can organize, process, and report on their financial information so they can focus on their business. Features include: accounting, integrated payroll, sales and purchases, contact management, inventory tracking, time billing, and more.
Rate This Project
Login To Rate This Project

User Ratings

★★★★★
★★★★
★★★
★★
0
1
0
0
0
ease 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
features 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
design 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5
support 1 of 5 2 of 5 3 of 5 4 of 5 5 of 5 0 / 5

User Reviews

Be the first to post a review of OWASP Juice Shop!

Additional Project Details

Operating Systems

Linux, BSD, Windows

Languages

English

Intended Audience

Developers, Quality Engineers, Architects, Testers, Security Professionals, Security

User Interface

Web-based

Programming Language

JavaScript

Related Categories

JavaScript Security Software, JavaScript Software Development Software, JavaScript Education Software

Registered

2014-10-27