Skip to content
View HikaruEgashira's full-sized avatar
:octocat:
:octocat:

Sponsoring

Organizations

@C-FO @twin-te

Block or report HikaruEgashira

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

deliberately-vulnerable app

22 repositories

A Broken Application - Very Vulnerable!

TypeScript 148 230 Updated Mar 13, 2025

Intentionally Vulnerable Serverless Functions to understand the specifics of Serverless Security Vulnerabilities

Python 135 32 Updated Dec 8, 2022

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.

JavaScript 1,545 315 Updated Jan 14, 2024

An example of a mis-configured Rails application release under MIT license.

Ruby 20 16 Updated Jan 19, 2023

Proof of concept code for Datadog Security Labs referenced exploits.

C 425 58 Updated Oct 13, 2023

Web attack vectors collection

22 5 Updated Nov 1, 2020

Ruby on Rails application like RailsGoat

Ruby 2 6 Updated Nov 22, 2023

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how to effectively address them.

HTML 1,923 1,763 Updated Jun 15, 2024

A vulnerable version of Rails that follows the OWASP Top 10

HTML 879 710 Updated Aug 20, 2024
Java 1 Updated Aug 22, 2023

A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.

Python 2,227 248 Updated Mar 13, 2025

a Damn Vulnerable Serverless Application

JavaScript 536 195 Updated Sep 12, 2023

GitHub Actions Goat: Deliberately Vulnerable GitHub Actions CI/CD Environment

JavaScript 457 268 Updated Mar 3, 2025

A vulnerable server to practice pen testing.

TypeScript 96 3 Updated Jul 16, 2024

This is the LLM integration app that contains the vulnerability; please use it to verify the vulnerability of the LLM integration app.

Python 45 4 Updated Jan 28, 2025

A Game of Hackers (CTF Scoreboard & Game Manager)

Python 979 307 Updated Feb 6, 2025

Vulnerable Terraform Projects - Fork of https://github.com/bridgecrewio/terragoat

HCL 13 25 Updated Apr 23, 2024
Go 1 Updated Aug 9, 2018
Ruby 1 Updated Aug 9, 2018

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Python 3,122 652 Updated Mar 13, 2025
TypeScript 4 Updated Mar 3, 2025

TerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into product…

HCL 1,185 5,370 Updated Sep 13, 2024