OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
-
Updated
Sep 18, 2026 - TypeScript
OWASP Juice Shop: Probably the most modern and sophisticated insecure web application
Vulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is written in Java (with JavaFX graphical user interface) and contains multiple challenges including SQL injection, RCE, XML vulnerabilities and more.
oauth-labs: an intentionally vulnerable set of OAuth 2.0 labs for security training and learning
Next-gen, Swagger-driven, polyglot labs for modern AppSec training & research
A Vulnerable-by-Design Cybersecurity Training Platform
Just another working Docker variant of https://github.com/juice-shop/juice-shop
Simple Buffer Overflow Walkthrough on the VulnApp.exe application on a Windows 7 Machine.
OWASP Juice Shop Laboratory
This is a simple nodeJS vulnerable application. This is made for training purpose
VulnLab is a self-hosted, Docker-based web security training platform covering all major OWASP Top 10 vulnerability classes. Designed for teams to practice penetration testing in a safe, controlled, isolated environment.
🛍️ Build a modern e-commerce platform easily with Spring Boot 3 and Vue 3, offering a seamless shopping experience for users.
To associate your repository with the vulnapp topic, visit your repo's landing page and select "manage topics."