
DVWA-ZAP-PENTEST
Web application security assessment of DVWA using OWASP ZAP — vulnerability scanning, RCE (CVE-2012-1823) analysis, and remediation report.

Web application security assessment of DVWA using OWASP ZAP — vulnerability scanning, RCE (CVE-2012-1823) analysis, and remediation report.

Log4Shell (CVE-2021-44228) defense lab — nginx + Coraza WAF dynamic module + OWASP CRS v4. Educational use only.

Running OWASP cve-lite-cli against the pi monorepo: scan journey and key finding (vitest CVE-2026-47429).

Multi-VLAN enterprise network vulnerability assessment using Nessus, OWASP ZAP, and Wireshark. Confirms Stored XSS on WebGoat and EternalBlue…

Automated deployment of OWASP Juice Shop on Kubernetes using kubeadm and Terraform, with integrated Trivy vulnerability scanning for DevSecOps…

Multi-VM virtual network lab with GRE tunneling, nftables firewall, Active Directory, BIND9 DNS, and Docker services. Includes vulnerability…

Intentionally vulnerable web application for security training, CTF competitions, and testing security tools. Covers OWASP Top Ten vulnerabilities…

Hands-on lab on detecting and mitigating web app threats using OWASP ZAP, Burp Suite, and ModSecurity WAF (with OWASP CRS). Case study: Spring4Shell…

OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)

A program for testing WAF functionality

A collection of awesome resources related AI security

Next-generation dependency vulnerability scanner with reachability analysis, SBOM generation, license audit, and container image scanning for CI/CD…

GCPGoat : A Damn Vulnerable GCP Infrastructure

A Security Tool for Enumerating WebSockets

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Apache Real Time Logs Analyzer System

WordPress security scanner with AI-powered analysis, ethical compliance framework, and professional reporting.

Automated detection of vulnerable domain configurations and subdomain takeover risks across cloud environments, with continuous monitoring and…