Testr
TESTR - A Vulnerable Python Web-App to practice XSS and Command Injection
Install / Use
/learn @bmdyy/TestrREADME
Testr
Metadata
- Author: William Moody
- Started: 22.03.2021
Description
Testr is an invite-only web-based IDE for Python, created with the purpose of practicing web-app vulnerabilities. Specifically XSS and Code injecetion / Filter bypassing.
There is a cronjob which emualates admin actions every minute in the docker container.
Set Up
- Clone the repo locally
git clone https://github.com/bmdyy/testr - Enter the folder
cd testr - Build the docker container:
docker build -t testr . - Run the container:
docker run -t testr
Solutions
Solutions and explanations may be found in ./exploit
Related Skills
node-connect
341.6kDiagnose OpenClaw node connection and pairing failures for Android, iOS, and macOS companion apps
frontend-design
84.6kCreate distinctive, production-grade frontend interfaces with high design quality. Use this skill when the user asks to build web components, pages, or applications. Generates creative, polished code that avoids generic AI aesthetics.
openai-whisper-api
341.6kTranscribe audio via OpenAI Audio Transcriptions API (Whisper).
commit-push-pr
84.6kCommit, push, and open a PR
