This is a demonstration site for the Acunetix Web Vulnerability Scanner, featuring intentionally vulnerable PHP code to test web application security. It includes common vulnerabilities such as SQL Injection, Cross-site Scripting (XSS), and Cross-site Request Forgery (CSRF), allowing users to test their skills and tools. This site is not a real shop and is intended for educational purposes only.
FEATURES
SIMILAR TOOLS
OCaml bindings to the YARA scanning engine for integrating YARA scanning capabilities into OCaml projects
A fully customizable, offensive security reporting solution for pentesters, red teamers, and other security professionals.
XGuardian XARA Security Scanner for OSX with URL scheme, Bundle ID, and keychain hijack checks.
A vulnerability management platform that centralizes security assessment workflows, integrates multiple security tools, and provides collaboration features for security teams.
Audits JavaScript projects for known vulnerabilities and outdated package versions using OSS Index v3 REST API.
A virtual host scanner with the ability to detect catch-all scenarios, aliases, and dynamic default pages, presented at SecTalks BNE in September 2017.
Python-based extension for integrating a Yara scanner into Burp Suite for on-demand website scans based on custom rules.
A vulnerability scanner that helps you identify and fix vulnerabilities in your code
A non-profit organization focused on improving the security of software through resources and training.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.