Ross ROSS = Recommend OSS · open-source software intelligence for agents

kaiiyer/awesome-vulnerable resource

A curated list of VULNERABLE APPS and SYSTEMS which can be used as PENETRATION TESTING PRACTICE LAB. observed · 2026-08-28

github.com/kaiiyer/awesome-vulnerable · homepage · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

72/100

  • Activity 88
  • Release rhythm 35
  • Longevity 100

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2579
  • days_rel: n/a
  • days_push: 72
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1381 stars · 227 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A curated awesome-list of intentionally vulnerable applications and systems for practicing penetration testing. It catalogs vulnerable web apps, mobile apps, training labs, and skill-improvement resources for security learners and professionals.

Use cases

  • find vulnerable web apps to practice penetration testing
  • set up a local hacking practice lab
  • learn web application security by exploiting intentionally flawed apps
  • train junior pentesters on common vulnerabilities
  • find security testing practice platforms and CTF-style labs
  • practice mobile app security testing

When to choose

  • you need a curated directory of intentionally vulnerable apps for security training
  • you are building a penetration testing practice lab for yourself or a team
  • you want a starting point for learning web or mobile exploitation techniques

When to avoid

  • you need a production security tool or scanner rather than practice targets
  • you want a single deployable application instead of a list of links
  • you need guaranteed-maintained lab environments, since linked projects vary in upkeep

Facets

learning-resource · maturity active

penetration-testing security developer-tools security penetration-testing education awesome-lists cross-platform self-hosted awesome-list vulnerable-apps pentest-lab security-training hacking-practice ctf curated-list docker

2 sources

Member repositories

RepositoryRoleHealth v2
kaiiyer/awesome-vulnerablemain72

For agents

markdown · JSON · MCP: product_card(name="kaiiyer/awesome-vulnerable")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem