The BodgeIt Store is a vulnerable web application aimed at beginners in penetration testing, now available as a Docker image, easy to install and modify, self-contained, cross-platform, open source, and uses an 'in memory' database.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A free and open-source deliberately insecure web application for security enthusiasts, developers, and students to discover and prevent web vulnerabilities.
Open source web application security scanner with 200+ vulnerability identification capabilities.
The Node.js Bug Bounty Program is a program aimed at identifying and fixing security vulnerabilities in the Node.js ecosystem.
An AI-powered Google Dorking tool that helps create effective search queries to uncover sensitive information on the internet.
An extensible, heuristic-based vulnerability scanning tool for installed npm packages.
A presentation about the OWASP Top 10, a list of the most critical security risks to web applications.
XGuardian XARA Security Scanner for OSX with URL scheme, Bundle ID, and keychain hijack checks.
A tool that assesses AWS accounts for subdomain hijacking vulnerabilities in Route53 and CloudFront configurations.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.