
dynast-bench
A DAST benchmark of intentionally-vulnerable apps with ground-truth answer keys for scoring scanners

A DAST benchmark of intentionally-vulnerable apps with ground-truth answer keys for scoring scanners

Research on GraphQL from an AppSec point of view.

Curated collection of cybersecurity resources, labs, and training materials covering ethical hacking, penetration testing, exploit development,…

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

🐶 A curated list of Web Security materials and resources.

A collection of links related to Linux kernel security and exploitation

A list of resources for those interested in getting started in bug bounties

Collection of methodology and test case for various web vulnerabilities.

A list of interesting payloads, tips and tricks for bug bounty hunters.

A Curated list of Security Resources for all connected things

Metasploitable3 is a VM that is built from the ground up with a large amount of security vulnerabilities.

An authoritative list of awesome devsecops tools with the help from community experiments and contributions.

Automate the creation of a lab environment complete with security tooling and logging best practices

Curated list of threat detection and hunting resources: detection rules, SIEM and log analysis tools, endpoint/network monitoring, datasets,…

😎 🔗 Awesome list about all kinds of resources for learning Ethical Hacking and Penetration Testing.

This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.

A curated list of awesome OSCP resources