
CVE-2021-34824
reproducing an old istio bug

reproducing an old istio bug
AWSGoat : A Damn Vulnerable AWS Infrastructure

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Intentionally vulnerable Terraform infrastructure for learning cloud misconfiguration detection and DevSecOps practices across AWS, Azure, and GCP.

Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

The Open-Source AWS Cyber Range

Create your own vulnerable by design AWS penetration testing playground

Pentesting lab with a Kali Linux instance accessible via ssh & wireguard VPN and with vulnerable instances in a private subnet

Cloud pentesting framework deploying vulnerable-by-demand AWS resources with quest-based scenarios to teach practical penetration testing and…

Log4Shell Demo with AWS

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk

Vulnerable app with examples showing how to not use secrets

A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure

Kubernetes Security Training Platform - focusing on security mitigation

Intentionally vulnerable Kubernetes cluster environment for hands-on security training. Includes 22+ scenarios covering container escape, RBAC…

PowerShell-based provisioning framework for deploying complex lab environments on Hyper-V and Azure. Supports Windows, Linux, and products like AD,…

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool