Skip to content

Entry

OopsSec Store

Appears in 4 awesome lists

An intentionally vulnerable e-commerce app built with Next.js for web security training (OWASP Top 10, API security, CTF challenges). Quick start with npx create-oss-store.

Open github.comkoadt/oss-oopssec-store

Found in these lists

Awesome Resources For Learning Ethical Hacking & Pentesting

Section: Off-Line · An intentionally vulnerable e-commerce app built with Next.js for web security training (OWASP Top 10, API security, CTF challenges). Quick start with npx create-oss-store.

ActiveScore 69

Awesome Penetration Testing

Section: Intentionally Vulnerable Systems · Run npx create-oss-store, open your browser, and start hunting flags.

ActiveScore 83

Awesome Vulnerable Applications

Section: OWASP Top 10 · An intentionally vulnerable e-commerce application built with Next.js and React. A self-hosted CTF platform for web security training covering OWASP Top 10 vulnerabilities.

FreshScore 84

Awesome Web Security

Section: Application · Intentionally vulnerable e-commerce application built with Next.js - Written by @kOaDT.

FreshScore 87

Pentest-Ground

Pentest-Tools.com - Pentest-Ground is a free playground with deliberately vulnerable web applications and network services.

In 4 lists

Juice Shop

Probably the most modern and sophisticated insecure web application - Written by @bkimminich and the @owasp_juiceshop team.

In 3 lists

WebGoat

WebGoat is a deliberately insecure application by OWASP for training purpose

In 3 lists

DVWA

Damn Vulnerable Web Application (DVWA) is a PHP/MySQL web application that is damn vulnerable.

In 3 lists

DSVW

Damn Small Vulnerable Web (DSVW) is a deliberately vulnerable web application written in under 100 lines of code, created for educational purposes.

In 3 lists

Owasp VulnerableApp

A modular deliberately vulnerable application designed primarily for validating and benchmarking security scanners through reproducible test scenarios, while also supporting learning and experimentation.

In 2 lists

Xtreme Vulnerable Web Application

XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security.

In 2 lists

crAPI

completely ridiculous API: crAPI will help you to understand the ten most critical API security risks. crAPI is vulnerable by design, but you'll be able to safely run it to educate/train yourself.

In 2 lists