WackoPicko Vulnerable Website Logo

WackoPicko Vulnerable Website

0
Free
Visit Website

WackoPicko is a website that contains known vulnerabilities. It was first used for the paper Why Johnny Can't Pentest: An Analysis of Black-box Web Vulnerability Scanners. WackoPicko is now included as an application in the OWASP Broken Web Applications Project which is a Virtual Machine with numerous intentionally vulnerable applications. For easy access, a Docker image has been created for WackoPicko, allowing users to run it with a simple command.

FEATURES

ALTERNATIVES

An integrated application security platform that combines multiple security scanning tools with developer-focused workflows for automated code and infrastructure security testing.

An automated API security testing platform that provides continuous vulnerability assessment, validation, and educational resources for API endpoint security.

ConDroid performs concolic execution of Android apps to observe 'interesting' behavior in dynamic analysis.

Dynamic application security testing tool for identifying and fixing web application vulnerabilities.

A lightweight web application firewall that protects modern applications and APIs across distributed architectures with integrated DoS protection, bot defense, and DevOps-friendly deployment options.

A DevSecOps platform that combines SAST, DAST, SCA, and secret scanning with AI/ML-based analysis for continuous application security testing and vulnerability management.

Cutting-edge technology for developing security applications within the Linux kernel.

An Application Security Posture Management platform that provides visibility, security controls, and automated workflows across the software development lifecycle from code to cloud.