OWASP Bricks is a deliberately vulnerable web application designed to help security professionals test their knowledge and skills in a legal environment. It provides a platform to practice various attack techniques and understand the impact of vulnerabilities. The tool is available for download with different versions released over time.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
CSET is a free software tool for identifying vulnerabilities in enterprise and industrial control cyber systems.
A tool that showcases the attack surface of a given Android device, highlighting potential vulnerabilities and security risks.
Automate software supply chain security by blocking malicious open source components
Fuzzapi is a Rails application with a user-friendly UI for API_Fuzzer gem and Docker setup.
A platform to learn SQL injection techniques and methods
An OSINT tool that generates username lists for companies on LinkedIn for social engineering attacks or security testing purposes.
Powerful PowerShell script for identifying missing software patches for local privilege escalation vulnerabilities.
A tool for scanning and identifying potential security risks in GitHub organizations, users, and repositories.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.