Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
DVAP — An OWASP-aligned intentionally vulnerable platform for learning and testing AI, LLM, RAG, MCP, and Agentic AI security. | Kitploit
Tools/GitHubGitHub/sonuoffsec/dvap
Vulnerability AnalysisCTFPenetration TestingLearning & EducationRed TeamingAI SecurityLabs & Practice
GitHubsonuoffsec/dvap

DVAP

An OWASP-aligned intentionally vulnerable platform for learning and testing AI, LLM, RAG, MCP, and Agentic AI security.

View Repository
265163 months agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

DVAP - Damn Vulnerable AI Platform

Train. Break. Defend. AI Systems.

An open-source platform for AI security training, red/blue teaming, CTF, benchmarking, and research. Runs 100% locally. No cloud, no paid APIs, no data leaves your machine.

License Docker Labs OWASP LLM


Prerequisites

  • Docker 24+ and Docker Compose v2
  • 16 GB RAM minimum (Ollama loads models into memory; 8 GB works for small models only)
  • 20 GB free disk space for base images and at least one model
  • x86-64 CPU; Apple Silicon and ARM64 are supported but untested

GPU is optional. Ollama runs on CPU but inference will be slow without one.


Quick Start

git clone https://github.com/sonuoffsec/DVAP
cd DVAP
cp .env.example .env
docker compose up -d

Open http://localhost:8080 once all containers are healthy. First run takes 30-60 seconds.


Table of Contents

  • Prerequisites
  • Quick Start
  • What is DVAP?
  • Why DVAP?
  • How DVAP Differs
  • Key Features
  • Platform Overview
  • Demo
  • Screenshots
  • Labs
  • OWASP LLM Top 10 Coverage
  • Architecture
  • Security Architecture
  • Services
  • Environment Variables
  • Upgrading
  • Development vs Production
  • Running Tests
  • Roadmap
  • Governance
  • Contributing
  • License

What is DVAP?

DVAP is an open-source AI security research, training, benchmarking, and red teaming platform designed to help security professionals, AI engineers, researchers, students, and organizations understand how modern AI systems fail and how to defend them.

Built for the AI era, DVAP provides intentionally vulnerable AI applications, agents, RAG systems, MCP integrations, and domain-specific environments that can be attacked, analyzed, benchmarked, and secured.

Unlike cloud-based AI playgrounds, DVAP runs entirely on your machine.

No cloud. No subscriptions. No API costs. No vendor lock-in.


Why DVAP?

Modern AI applications introduce entirely new attack surfaces:

  • Prompt Injection
  • Memory Poisoning
  • RAG Poisoning
  • Tool Abuse
  • MCP Exploitation
  • Multi-Agent Attacks
  • Autonomous Agent Manipulation
  • Data Exfiltration
  • Identity and Trust Failures
  • AI Supply Chain Risks

Yet there is no single platform that allows researchers to safely learn, practice, benchmark, and validate these attacks in one place.

DVAP aims to become the definitive open-source platform for AI security education, research, and experimentation.


How DVAP Differs

DVAPDVWAHackTheBoxGandalf (Lakera)Blog Posts / Papers
AI-specific vulnerabilitiesYesNoPartialPartialYes (theory only)
Local, no cloudYesYesNoNoN/A
15 dedicated AI labsYesNoNoNoNo
LLM benchmark engineYesNoNoNoNo
CTF with flagsYesYesYesNoNo
OWASP LLM Top 10 coverageFullNoPartialPartialVaries
MITRE ATLAS mappingYesNoNoNoVaries
Report generationYesNoNoNoNo
Research workspaceYesNoNoNoNo
Agent and MCP securityYesNoNoNoNo
Free and open sourceYesYesPartialNoYes

DVAP is one of the first platforms to combine hands-on AI attack labs, local LLM benchmarking, CTF challenges, and professional reporting in a single self-hosted environment.


Key Features

AI Security Labs 15 intentionally vulnerable labs covering real-world AI attack techniques.

Research Workspace Inspect prompts, memory, tool calls, retrieved documents, agent actions, and attack chains.

Security Benchmarking Evaluate local and external models against AI security attack suites.

Capture The Flag (CTF) Learn AI security through guided challenges, flags, hints, and walkthroughs.

Reporting Engine Generate professional findings and benchmark reports mapped to OWASP LLM Top 10, MITRE ATLAS, CWE, and CVSS.

100% Local Run everything on your own machine. Your prompts, data, findings, and experiments never leave your environment.


Platform Overview

DVAP Platform Overview


🎬 Demo

DVAP Demo — Train. Break. Defend. AI Systems.

▶ Train. Break. Defend. AI Systems.  ·  Click to watch the full attack walkthrough


📸 Screenshots


🖥️ Research Command Center

DVAP Research Command Center

Research Command Center  ·  Live platform activity, model benchmark leaderboard, flag capture progress, and service health in a single operational view.


🧩 Platform Modules


AI Security Labs

⚗️ AI Security Labs
15 containerized vulnerable AI environments across every major attack class
 
CTF Challenges

🚩 CTF Challenges
Flags, hints, and walkthroughs mapped to OWASP LLM Top 10 and MITRE ATLAS
 
Benchmark Center

📊 Benchmark Center
Evaluate local LLMs against prompt injection, jailbreak, and data exfiltration suites
 
Research Workspace

🔬 Research Workspace
Full trace recording of prompts, memory, tool calls, and agent behavior
 


🛡️ Findings Dashboard

DVAP Findings Dashboard

Findings Dashboard  ·  Track, triage, and document security findings with severity ratings, OWASP LLM Top 10 mapping, MITRE ATLAS techniques, and export-ready reports.

Labs

Download Tool