Find Security Bugs: Demo projects
The project presented in this repository can be used to see configuration recipes with various build technologies (Maven, Gradle, SBT). The projects can also be used to test FindBugs with FSB.
Other Vulnerable Java Applications
Here is a list of projects that have been built with the intention of being vulnerable. These can be used for training or demo purpose.
⚠️ Make sure you are deploying them safely. Running any of the following applications could expose your machine to command execution. It is suggested running those in a container or a virtual machine.
Java Applications
- WebGoat 7
- WebGoat 6
- SecuriBench Micro
- WAVSEP
- Security Shepherd
- WebBank
- OWASP Benchmark
- Grails NVisium
- MoneyX
- Java Vulnerable Lab
- Vulnerable Spring
- PuzzleMall
- HackMe Books
- BodgeIt