
Krawl
Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

Kubernetes Security Training Platform - focusing on security mitigation


React2Shell (CVE-2025-55182) – An intentionally vulnerable Next.js application created for educational and research purposes.

PoC dockerfile image for CVE-2025-48384


JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH,…

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

Unified application gateway providing reverse proxy, WAF, CC defense, OAuth2 authentication, ACME certificate automation, and GSLB for secure,…

⎈❏ Terminal and Web console for Kubernetes

Proper sandboxing for agentic coding and web browsing

End to End testing of Web, API, Cloud, Events and Security

Exploit for CVE-2019-11881 (Rancher 2.1.4 Web Parameter Tampering)

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!

VULCONHUB provides access to files to build your own hands-on vulnerable container image to learn and practice security
