
URL_CHECKER
Hybrid ML and heuristic-based URL phishing detector with real-time analysis, explainable confidence scores, and REST API for programmatic security…

Hybrid ML and heuristic-based URL phishing detector with real-time analysis, explainable confidence scores, and REST API for programmatic security…

OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an…

BoB Web Application Security Project

Autonomous AI red team agent for penetration testing with 13+ specialized agents, 120+ OWASP test cases, and MITRE ATT&CK integration. Supports 15+…

A deliberately vulnerable web application for learning web application security.

OWASP guide for security champions, providing curated resources and learning paths to foster security culture and practices within development teams.

Remote detection tool for OWASP Core Rule Set version and paranoia level on ModSecurity WAFs, aiding security posture assessment.

A Security Tool for Enumerating WebSockets

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Deliberately vulnerable web application with interactive lessons and challenges for learning web application security and penetration testing…

Hands-on AI security learning platform with intentionally vulnerable LLM applications. Explore OWASP Top 10 for LLMs through interactive pizza shop…

Automated API security testing tool that scans REST and SOAP APIs for vulnerabilities using OpenAPI/Swagger specs and WSDL files. Deploys a full …

Structured curriculum for learning application security, covering secure coding, threat modeling, and DevSecOps practices. Designed for self-paced…

Automated security testing tool for Salesforce Experience Cloud that discovers misconfigured Aura applications, accessible records, and unauthorized…

A lightweight Python-based security assessment tool for detecting dangerous Cross-Origin Resource Sharing (CORS) misconfigurations - CVE-2025-34291.

CyberArk Security Audit

A curated list of resources for learning about application security

OWASP top 10 security risks for audio and video communications, documenting common vulnerabilities and threats in modern real-time communication…