Serverless-Goat

Flaw example

A proof-of-concept demonstration of common serverless security flaws and weaknesses

OWASP ServerlessGoat: a serverless application demonstrating common serverless security flaws

GitHub

320 stars
20 watching
95 forks
Language: Python
last commit: 6 months ago
Linked from 2 awesome lists


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
owasp/railsgoat A vulnerable Ruby on Rails application designed to educate developers about common web security vulnerabilities. 872
codeshield-security/serverless-goat-java A deliberately vulnerable Java application demonstrating common serverless security flaws 12
owasp/dvsa An intentionally vulnerable serverless application for testing security skills and understanding secure development practices. 534
owasp/owaspwebgoatphp An interactive web application designed to teach web application security through challenges and lessons. 121
owasp/webgoat.net A penetration testing tool designed to simulate real-world web application vulnerabilities. 69
owasp/raider A framework for simulating and testing complex web authentication processes 104
owasp/iotgoat A deliberately insecure firmware designed to test common vulnerabilities in IoT devices 717
owasp/igoat-swift A Damn Vulnerable iOS Application for Learning Exploitation and Defense 414
owasp/python-honeypot Automated deception framework to detect and respond to cyber threats 443
owasp/nodegoat An environment to learn about OWASP Top 10 security risks in Node.js web applications 1,895
owasp/owasp-vwad A registry of known vulnerable web applications 872
0xradi/owasp-web-checklist A comprehensive checklist for web application security testing and vulnerability assessment 1,763
owasp/wrongsecrets An interactive platform to educate developers on secure secrets management through real-world examples and challenges. 1,246
owasp/joomscan Automated vulnerability scanner for Joomla CMS deployments to identify potential security issues. 1,088
owasp/glue A framework for automating security analysis pipelines of various tools 524