Skip to content
Change the repository type filter

All

    Repositories list

    • railsgoat

      Public
      A vulnerable version of Rails that follows the OWASP Top 10
      HTML
      MIT License
      705005Updated Feb 20, 2025Feb 20, 2025
    • NodeGoat

      Public
      The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how to effectively address them.
      HTML
      Apache License 2.0
      1.8k007Updated Feb 12, 2025Feb 12, 2025
    • pygoat

      Public
      intentionally vuln web Application Security in django
      HTML
      860002Updated Jan 1, 2025Jan 1, 2025
    • WebGoat

      Public
      WebGoat is a deliberately insecure application
      JavaScript
      Other
      6k005Updated Dec 14, 2024Dec 14, 2024
    • Legacy WebGoat 6.0 - Deliberately insecure JavaEE application
      Java
      400007Updated Dec 8, 2024Dec 8, 2024
    • dvja

      Public
      Damn Vulnerable Java (EE) Application
      CSS
      MIT License
      484005Updated Nov 21, 2024Nov 21, 2024
    • vulpy

      Public
      Vulnerable Python Application To Learn Secure Development
      Python
      MIT License
      430001Updated Nov 21, 2024Nov 21, 2024
    • OWASP iGoat (Swift) - A Damn Vulnerable Swift Application for iOS
      C
      GNU General Public License v3.0
      180003Updated Nov 17, 2024Nov 17, 2024
    • Vulnerable Java based Web Application
      Java
      GNU General Public License v2.0
      480003Updated Nov 11, 2024Nov 11, 2024
    • DVWA

      Public
      Damn Vulnerable Web Application (DVWA)
      PHP
      GNU General Public License v3.0
      3.8k000Updated Nov 4, 2024Nov 4, 2024
    • A small collection of vulnerable code snippets
      PHP
      643000Updated Sep 30, 2024Sep 30, 2024
    • Damn Vulnerable C# Application (API)
      C#
      MIT License
      249000Updated Jul 15, 2024Jul 15, 2024
    • vuln-netframework is a .net-framework 4.7 project that include worst coding practices about common vulnerabilities like Insecure Deserialization, Os Command Injection, SQL Injection, etc.
      C#
      Apache License 2.0
      25000Updated Jul 9, 2024Jul 9, 2024
    • A deliberately vulnerable web application for learning web application security.
      PHP
      Apache License 2.0
      161000Updated Feb 25, 2024Feb 25, 2024
    • OWASP WebGoat.NET
      C#
      648000Updated Dec 16, 2023Dec 16, 2023
    • Kotlin
      27000Updated Jun 13, 2023Jun 13, 2023
    • AndroGoat

      Public
      AndroGoat
      Kotlin
      79000Updated May 12, 2022May 12, 2022
    • Vulnerable ASP based Web Application
      C#
      GNU General Public License v3.0
      19000Updated Jan 25, 2019Jan 25, 2019