Skip to content

yogikortisa/awesome-damn-vulnerable-applications

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

4 Commits
 
 

Repository files navigation

Awesome Damn Vulnerable Applications (ADVA)

A curated list of Awesome Damn Vulnerable Applications (ADVA). To contribute, just edit this file.

Include Mitigation/Fix

  1. Juice Shop
  1. Damn Vulnerable NodeJS Application (DVNA)
  1. Damn-Vulnerable-RESTaurant-API-Game
  1. VAmPI
  • URL: https://github.com/erev0s/VAmPI
  • Stacks: Flask API
  • Pros: focus on REST API with owasp top 10 vulns, OpenAPI3 specs and Postman Collection included, OpenAPI3 specs and Postman Collection included
  1. secDevLabs
  • URL: https://github.com/globocom/secDevLabs
  • Stacks: Web & Android: Golang, Python, PHP, Node.js, Angular/Spring, React/Go, React, Dart/Flutter
  • Pros: multitple different apps per different vulns, simple n efficent, inlclude all owasp top 10 old and new.
  1. nodejs-goof
  1. NodeGoat
  1. WebGoat
  1. WebGoatPHP
  1. Damn Vulnerable OAuth 2.0 Applications
  1. Damn Vulnerable Python Web Application (DVPWA)
  1. NoSQL Injection Vulnerable App (NIVA)
  1. Vulnerable Java based Web Application (JSP)

Not Include Mitigation/Fix

[LATEST]. Vulnerable Node.js Express.js Web Application and API

  1. Damn Vulnerable Web Services (Nodejs)
  1. PyGOAT
  1. Broken Crystals
  1. Damn Small Vulnerable Web (DSVW)
  1. Damn Vulnerable File Upload (DVFU)
  1. Damn Vulnerable GraphQL Application (DVGA)
  1. Generic-University Vulnerable API
  1. Vulnerable Node
  1. Vulnerable Banking Suite (UnSAFE Bank)
  1. Varnish HTTP/2 Request Smuggling
  1. VulnLab
  1. thegarden

Notable Mention

About

A curated list of awesome Damn Vulnerable Applications (DVA). Inspired by https://github.com/OWASP/www-project-vulnerable-web-applications-directory

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published