#1Training labs, hands-on environments, and reproducible challenges for authorized, safe cybersecurity practice.
Kitploit recommended

Awesome list of step by step techniques to achieve Remote Code Execution on various apps!

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool

Linux kernel CVE exploit analysis report and relative debug environment. You don't need to compile Linux kernel and configure your environment…

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an…

Malware samples, analysis exercises and other interesting resources.

Vulnerability Labs for security analysis

AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK…

A workshop about Malware Development

⚠️ This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory

Deliberately vulnerable microservices API designed for hands-on training in the OWASP API Security Top 10 risks, with built-in challenges and a…

Athena OS is a Arch/Nix-based distro focused on Cybersecurity. Learn, practice and enjoy with any hacking tool!

RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact

📦 Get a clean, ready-to-go Linux box in seconds.

Virtual Machine for Adversary Emulation and Threat Hunting

Metarget is a framework providing automatic constructions of vulnerable infrastructures.

A Virtual Machine For Assessing Android applications, Reverse Engineering and Malware Analysis


Damn Vulnerable MCP Server