
CyberRange
The Open-Source AWS Cyber Range

The Open-Source AWS Cyber Range

Deliberately insecure OpenWrt-based firmware for hands-on IoT security training. Features vulnerability challenges mapped to the OWASP IoT Top 10 for…

GCPGoat : A Damn Vulnerable GCP Infrastructure

Deliberately vulnerable web application lab for practicing exploitation of SQLi, XSS, CSRF, SSTI, IDOR, XXE, and 15+ other common web security flaws…

:wrench: Deploy customizable Active Directory labs in Azure - automatically.

A container-based framework to enable the integration of mobile components in security training platforms

Blue Team detection lab created with Terraform and Ansible in Azure.

IoTGoat is a deliberately insecure firmware based on OpenWrt.

Dockerized labs For Web Expert (OSWE) certification. Preparation for coming AWAE Training ...

Proof-of-concept security demo illustrating how PowerShell can create trusted-looking Windows toast notifications chained together with…

A complete Blue Team Cybersecurity Lab featuring pfSense, Suricata, and ELK Stack for network monitoring and threat detection.

CVE-2026-25089 - Fortinet FortiSandbox

End-to-end exploitation lab for CVE-2025-5548 (FreeFloat FTP Server stack buffer overflow). Includes static analysis with IDA/Ghidra, binary fuzzing,…

End-to-end simulation of a Python dependency confusion attack, sudo privilege escalation (CVE-2025-32463), and rootkit-based persistence - with full…

Proof-of-concept exploit for CVE-2026-33718 demonstrating command injection in OpenHands' Git Diff Handler. Educational resource for vulnerability…