Security training for the apps you actually ship. Open your browser and start hacking.
-
Updated
May 1, 2026 - TypeScript
Security training for the apps you actually ship. Open your browser and start hacking.
Deliberately vulnerable REST API for OWASP Top 10 (2023) security testing and learning.
Unified penetration testing framework with interactive console. OWASP Top 10, cloud security, web app testing, JWT exploitation, and automated vulnerability scanning. 8 integrated modules for comprehensive security assessments.
Description about-TheAuthor nd Contact info
Automated web pentesting framework for detecting SQLi, XSS, CSRF, insecure cookies, and SSL misconfigurations.
In this course, you will learn about the most common web vulnerabilities and how to exploit them. You will learn about SQL Injection, File Inclusion, Cross-Site Scripting (XSS), File Upload, Command Injection, and Directory Traversal vulnerabilities. You will also learn how to exploit these vulnerabilities using various techniques and tools.
Educational web app demonstrating OWASP Top 10 vulnerabilities (SQLi, XSS, logging, crypto) using PHP & MySQL.
Hands-on lab exploring OWASP Top 10 (2025) vulnerabilities: Broken Access Control, Authentication Failures, and Logging & Monitoring Failures.
Add a description, image, and links to the owasp-top10 topic page so that developers can more easily learn about it.
To associate your repository with the owasp-top10 topic, visit your repo's landing page and select "manage topics."