GitHub
github.com › fportantier › vulpy
GitHub - fportantier/vulpy: Vulnerable Python Application To Learn Secure Development · GitHub
This will permit learn how to develop python code following the best security practices. git clone https://github.com/fportantier/vulpy cd vulpy pip3 install --user -r requirements.txt ... Note: The "GOOD" version (not finished yet) is supposed to don't have vulnerabilities, but I'm a human ...
Starred by 128 users
Forked by 507 users
Languages Python 46.1% | CSS 37.1% | HTML 15.9%
GitHub
github.com › anxolerd › dvpwa
GitHub - anxolerd/dvpwa: Damn Vulnerable Python Web App
DVPWA was inspired by famous dvwa project and bobby-tables xkcd comics. The purpose of this project is to implement real-world like application in Python with as many vulnerabilities as possible while having a good design and intentions.
Starred by 183 users
Forked by 712 users
Languages Python 55.2% | Jinja 44.3% | Python 55.2% | Jinja 44.3%
Videos
15:11
What's wrong with this Code? Vulnerable Python Code - Walkthrough ...
15:25
How to Scan Python Code for Security Vulnerabilities? | Episode ...
56:15
Security Checks for Python Code - YouTube
18:23
Secure Coding Guide for Python - David Mather & Bart Karas, Ericsson ...
43:27
Python Coding Mistakes, Causes of Vulnerabilities and How to Solve ...
GitHub
github.com › Contrast-Security-OSS › vulnpy
GitHub - Contrast-Security-OSS/vulnpy: Purposely-vulnerable Python functions
Purposely-vulnerable Python functions. Contribute to Contrast-Security-OSS/vulnpy development by creating an account on GitHub.
Starred by 17 users
Forked by 69 users
Languages Python 53.7% | HTML 44.3% | Makefile 1.6% | Python 53.7% | HTML 44.3% | Makefile 1.6%
GitHub
github.com › sgabe › DSVPWA
GitHub - sgabe/DSVPWA: Damn Simple Vulnerable Python Web Application
DSVPWA is a simple web application written in Python and mainly inspired by DSVW. It is deliberately vulnerable for educational purposes to demonstrate some of the OWASP TOP Ten security risks and other vulnerabilities.
Starred by 18 users
Forked by 144 users
Languages Python 57.4% | HTML 36.7% | CSS 3.4% | Python 57.4% | HTML 36.7% | CSS 3.4%
GitHub
github.com › xNaaro › vulnerable_python
GitHub - egongu90/vulnerable_python: Vulnerable Python Server to common attacks
This project aims to be educational about Python deseralization and common vulnerabilities. Will provide different rest URL paths for each of the security issues. Try to gather contents from /root/flag exploiting the input forms. Create docker container and browse http://localhost:5000 · docker run --name vuln_python_server --rm -ti -p 5000:5000 egonzalez90/vuln_python_server:latest ... Sample code exploits are located at exploits/ directory.
Starred by 2 users
Forked by 6 users
Languages Python 62.0% | HTML 36.5% | Dockerfile 1.5% | Python 62.0% | HTML 36.5% | Dockerfile 1.5%
GitHub
github.com › dehvCurtis › vulnerable-code-examples
GitHub - dehvCurtis/vulnerable-code-examples: This repo provides vulnerable code examples · GitHub
This repo provides vulnerable code examples. Contribute to dehvCurtis/vulnerable-code-examples development by creating an account on GitHub.
Starred by 16 users
Forked by 72 users
Languages Python 33.3% | PHP 11.6% | HCL 11.5% | C# 11.1% | TypeScript 10.2% | JavaScript 9.1%
GitHub
github.com › michealkeines › Vulnerable-API
GitHub - michealkeines/Vulnerable-API: The Vulnerable API Python Application is a purposely flawed Python app that uses Flask, Jinja, and SQLite3. It contains intentional security vulnerabilities like XSS, SQLi, HHI, LFI, RFI, and SSTI. The project aims to serve as an educational tool to learn about and test automated API scanners. Use responsibly in controlled environments only. · GitHub
The Vulnerable API Python Application is a purposely flawed Python app that uses Flask, Jinja, and SQLite3. It contains intentional security vulnerabilities like XSS, SQLi, HHI, LFI, RFI, and SSTI.
Starred by 8 users
Forked by 13 users
Languages Python 94.2% | HTML 5.8%
GitHub
github.com › LauraWartschinski › VulnerabilityDetection
GitHub - LauraWartschinski/VulnerabilityDetection: vulnerability detection in python source code with LSTM networks · GitHub
This is VUDENC, a project and master thesis for learning security vulnerability features from a large natural code basis using deep learning. The goal is to scrape a lot of security related commits of Python code from Github, process them and train a deep neural network on classifying code tokens and their context into 'vulnerable' and 'not vulnerable'.
Starred by 153 users
Forked by 50 users
Languages TeX 53.7% | Python 46.3%
GitHub
github.com › mpirnat › lets-be-bad-guys
GitHub - mpirnat/lets-be-bad-guys: A deliberately-vulnerable website and exercises for teaching about the OWASP Top 10
You’ll need Git to check out the code repository that we’ll be working with. You can download it from http://git-scm.com. All of our examples were developed and tested against Python 2.7 and 3.4.
Starred by 188 users
Forked by 365 users
Languages HTML 60.8% | Python 24.8% | JavaScript 13.5% | CSS 0.9% | HTML 60.8% | Python 24.8% | JavaScript 13.5% | CSS 0.9%
GitHub
github.com › ajinabraham › Vulnerable_Tornado_App
GitHub - ajinabraham/Vulnerable_Tornado_App: An intentionally vulnerable web application written in Python using Tornado
An intentionally vulnerable web application written in Python using Tornado - GitHub - ajinabraham/Vulnerable_Tornado_App: An intentionally vulnerable web application written in Python using Tornado
Starred by 6 users
Forked by 12 users
Languages CSS 53.2% | JavaScript 29.9% | HTML 14.7% | Python 2.2% | CSS 53.2% | JavaScript 29.9% | HTML 14.7% | Python 2.2%
GitHub
github.com › topics › vulnerable-application
vulnerable-application · GitHub Topics · GitHub
The Vulnerable API Python Application is a purposely flawed Python app that uses Flask, Jinja, and SQLite3. It contains intentional security vulnerabilities like XSS, SQLi, HHI, LFI, RFI, and SSTI.
GitHub
github.com › topics › security-vulnerability
security-vulnerability · GitHub Topics · GitHub
Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection. ... Safety checks Python dependencies for known security vulnerabilities and suggests the proper remediations for ...
GitHub
github.com › Vulnerable-Code-Samples › Python_Vulnerable_Code
GitHub - Vulnerable-Code-Samples/Python_Vulnerable_Code: A small collection of vulnerable code snippets
A small collection of vulnerable code snippets . Contribute to Vulnerable-Code-Samples/Python_Vulnerable_Code development by creating an account on GitHub.
Forked by 7 users
Languages PHP 31.6% | JavaScript 16.8% | C# 14.4% | C 12.5% | Python 11.0% | Java 6.2% | PHP 31.6% | JavaScript 16.8% | C# 14.4% | C 12.5% | Python 11.0% | Java 6.2%
GitHub
github.com › topics › vulnerable-web-application
vulnerable-web-application · GitHub Topics · GitHub
A simple vulnerable token machine written in python.
GitHub
github.com › stamparm › DSVW
GitHub - stamparm/DSVW: Damn Small Vulnerable Web
Damn Small Vulnerable Web (DSVW) is a deliberately vulnerable web application written in under 100 lines of code, created for educational purposes. It supports majority of (most popular) web application vulnerabilities together with appropriate ...
Starred by 857 users
Forked by 365 users
Languages Python 96.8% | Dockerfile 3.2% | Python 96.8% | Dockerfile 3.2%
GitHub
github.com › topics › vulnerability
vulnerability · GitHub Topics · GitHub
You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions. python security vulnerability vulnerabilities cve hacktoberfest cvss security-automation security-tools devsecops system-tools sbom swrepo sbom-tool
GitHub
github.com › guardrailsio › awesome-python-security
GitHub - guardrailsio/awesome-python-security: Awesome Python Security resources 🕶🐍🔐
Pyt - A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications. Detect Secrets - An enterprise friendly way of detecting and preventing secrets in code.
Starred by 957 users
Forked by 110 users
GitHub
github.com › topics › vulnerable-web-app
vulnerable-web-app · GitHub Topics · GitHub
ThreatByte is a vulnerable Python (Flask) web application designed to demonstrate some Web Application and API Security risks.
GitHub
github.com › guardrailsio › awesome-python-security › blob › master › README.md
awesome-python-security/README.md at master · guardrailsio/awesome-python-security
Pyt - A Static Analysis Tool for Detecting Security Vulnerabilities in Python Web Applications. Detect Secrets - An enterprise friendly way of detecting and preventing secrets in code.
Author guardrailsio