LFX Platform

Know more about LFX Platform

LFX Insights

Security Training Platforms

Deliberately vulnerable applications used to facilitate security training, capture‐the‐flag competitions, and penetration testing exercises.

5 projects

3,641 contributors

$11M

OWASP Juice Shop

OWASP Juice Shop is an intentionally vulnerable web application designed for security training, with comprehensive hacking challenges covering the OWASP Top Ten and other security flaws. It provides a modern e-commerce platform that serves as a learning environment for web application security testing and penetration testing practice.

Contributors

1,368

Organizations

188

Software value

$4.1M

CTFd

CTFs as you need them

Contributors

1,085

Organizations

292

Software value

$3M

WebGoat

WebGoat is a deliberately insecure web application designed to teach web application security lessons. It creates a safe environment where developers can learn about application security by attempting real-world attack scenarios and understanding common vulnerabilities.

Contributors

1,066

Organizations

124

Software value

$3M

OWASP WrongSecrets

OWASP WrongSecrets is an educational project that provides a deliberately vulnerable application containing various types of wrongly configured secrets. It serves as a training tool to help developers and security professionals learn about secure secrets management by demonstrating common mistakes and best practices in handling sensitive information.

Contributors

122

Organizations

19

Software value

$930K

OWASP Mobile Application Security Testing Guide

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).

This project hasn't been onboarded to LFX Insights.
Looking for a project that’s not listed?