62 skills found · Page 1 of 3
cider-security-research / Cicd GoatA deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.
Semperis / EntraGoatA deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.
OWASP / IoTGoatIoTGoat is a deliberately insecure firmware created to educate software developers and security professionals with testing commonly found vulnerabilities in IoT devices.
prateek147 / DVIADamn Vulnerable iOS App (DVIA) is an iOS application that is damn vulnerable. Its main goal is to provide a platform to mobile security enthusiasts/professionals or students to test their iOS penetration testing skills in a legal environment. This application covers all the common vulnerabilities found in iOS applications (following OWASP top 10 mobile risks) and contains several challenges that the user can try. This application also contains a section where a user can read various articles on iOS application security. This project is developed and maintained by @prateekg147. The vulnerabilities and solutions covered in this app are tested upto iOS 8.1 .
dhammon / AI GoatLearn AI security through a series of vulnerable LLM CTF challenges. No sign ups, no cloud fees, run everything locally on your system.
GeoSn0w / MyriamA vulnerable iOS App with Security Challenges for the Security Researcher inside you.
orcasecurity-research / AIGoatAIGoat: A deliberately Vulnerable AI Infrastructure. Learn AI security through solving our challenges.
moeinfatehi / Xss Vulnerability Challengesthis repository is a docker containing some "XSS vulnerability" challenges and bypass examples.
Warxim / VucsaVulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is written in Java (with JavaFX graphical user interface) and contains multiple challenges including SQL injection, RCE, XML vulnerabilities and more.
Eshe0922 / ReposVul[ICSE'24 Industry Challenge Track] "ReposVul: A Repository-Level High-Quality Vulnerability Dataset".
R3dShad0w7 / PromptMePromptMe is an educational project that showcases security vulnerabilities in large language models (LLMs) and their web integrations. It includes 10 hands-on challenges inspired by the OWASP LLM Top 10, demonstrating how these vulnerabilities can be discovered and exploited in real-world scenarios.
g0tmi1k / Boot2root ScriptsHomemade scripts to-do various vulnerable challenges
JacobMisirian / DblTekGoIPPwnTool to check if an IP of a DblTek GoIP is vulnerable to a challenge-response login system, send SMS messages from the system, execute remote commands botnet style, and generate responses to challenges.
ZeroDayTea / CTF ChecklistA composite list of various vulnerabilities and tools to look for and use while exploiting common CTF challenges
KaoRz / Exploits ChallengesChallenges and vulnerabilities exploitation.
moeinfatehi / File Upload Vulnerability ScenariosThis repository is a dockerized PHP application containing some file upload vulnerability challenges (scenarios).
0xJuancito / Damn Vulnerable Defi SolutionsSolutions to the Damn Vulnerable DeFi challenges ⛳️
c0brabaghdad1 / DVPADamn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges
bzpassersby / Damn Vulnerable Defi V3 SolutionsThis repo contains my solution walk-through and codes for each Damn Vulnerable Defi V3 challenges.
marjon-call / SmartSecRiddlesSeries of CTF challenges based off real world smart contract vulnerabilities.