owaspbwa

Vulnerable apps

A collection of vulnerable web applications demonstrating common web application security issues.

OWASP Broken Web Applications Project

GitHub

294 stars
16 watching
103 forks
Language: PHP
last commit: 8 months ago

Related projects:

Repository Description Stars
owasp/owasp-vwad A registry of known vulnerable web applications 873
owasp/railsgoat A vulnerable Ruby on Rails application designed to educate developers about common web security vulnerabilities. 869
0c34/govwa A vulnerable web application designed to simulate common web vulnerabilities for educational purposes. 175
interference-security/dvws An OWASP vulnerable web application demonstrating various security vulnerabilities using WebSockets 342
stamparm/dsvw A deliberately vulnerable web application designed to demonstrate various common web vulnerabilities 785
lancechentw/vulnapp An Android app demonstrating common vulnerabilities 5
owasp/dvsa An intentionally vulnerable serverless application for testing security skills and understanding secure development practices. 534
cspf-founder/javavulnerablelab A vulnerable Java-based web application used to demonstrate security vulnerabilities and provide training for secure coding practices 255
ramadhanamizudin/lazyweb A web application demonstrating common server-side application flaws and vulnerabilities. 116
owasp/owaspwebgoatphp An interactive web application designed to teach web application security through challenges and lessons. 122
t0thkr1s/allsafe An intentionally vulnerable Android application with various exploitable security vulnerabilities. 213
anxolerd/dvpwa This Damn Vulnerable Python Web Application is designed to demonstrate real-world vulnerabilities in web development using a well-designed application 162
snoopysecurity/dvws-node An insecure web service application used to simulate various web vulnerabilities and demonstrate their mitigation strategies. 455
owasp/igoat-swift A vulnerable Swift application used to teach iOS security and exploitation techniques 410
avishayil/caponeme A proof-of-concept vulnerable web application demonstrating the Capital One breach on an AWS account. 241