A curated list of resources for learning about application security
-
Updated
Feb 22, 2025 - PHP
A curated list of resources for learning about application security
OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an easy-to-use web hacking environment designed for labs, security enthusiasts, classrooms, CTF, and vulnerability assessment tool targets.
Twitter vulnerable snippets
The Secure Coding Dojo is a platform for delivering secure coding knowledge.
OWSAP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication.
CSRF Protector library: standalone library for CSRF mitigation
this repository is a docker containing some "XSS vulnerability" challenges and bypass examples.
Application with SQL Injection vulnerability and possible privilege escalation. Free vulnerable app for ethical hacking / penetration testing training.
Create CycloneDX Software Bill of Materials (SBOM) from PHP Composer projects
bWAPP latest modified for PHP7 bundled with Docker container
This repository is a dockerized PHP application containing some file upload vulnerability challenges (scenarios).
Common security threats and standard best practice for php application development
This repository is a Dockerized php application containing a LFI (Local File Inclusion) vulnerability which can lead to RCE (Remote Code Execution).
😎 Succeeding with application security
PHP Implementation of OWASP CycloneDX Bill of Materials (BOM)
Http Security Headers Checker Tool written in PHP Cli + Useful Tips to set Http Security Headers
automated security scanner for sql-injection and Cross site scripting made in python 3.7 using the python selenium-python automation module and beautiful soup web scrapper module
Structured Query Language
Web application created to introduce beginners to cybersecurity and the OWASP Top 10
Add a description, image, and links to the owasp topic page so that developers can more easily learn about it.
To associate your repository with the owasp topic, visit your repo's landing page and select "manage topics."