


A List Of Labs For People (Students) Who Want Learn OR Practice IT Security / Hacking / Penetration Testing In Ethical Way.

<h3><b> &rArr; Web Application Security / Hacking / Penetration Testing Labs </b></h3> <dl style="list-style-type:disc"> <dt><b>OWASP WebGoat - JAVA Based</b></dt> <dd><p>JAVA Based Vulnerable Web Application. Cover all major Web Application Based Attacks. <a href="https://github.com/WebGoat/WebGoat">Click Here To Download</a></p></dd> <dt><b>OWASP WebGoatPHP</b></dt> <dd><p>PHP&MySQL Based Vulnerable Web Application. Cover all major Web Application Based Attacks. <a href="https://github.com/shivamdixit/WebGoatPHP">Click Here To Download</a></p></dd> <dt><b>OWASP Mutillidae II</b></dt> <dd><p>Vulnerable Web Application. Cover all major Web Application Based Attacks. <a href="https://github.com/webpwnized/mutillidae">Click Here To Download</a></p></dd> <dt><b>Audi SQLi Labs</b></dt> <dd><p>Specially developed for SQL Injection Attacks. Cover all types of SQL Injection Attacks including 65 lessons. <a href="https://github.com/Audi-1/sqli-labs">Click Here To Download</a></p></dd> <dt><b>0l4bs XSS Labs</b></dt> <dd><p>Specially developed for XSS Attacks. <a href="https://github.com/tegal1337/0l4bs">Click Here To Download</a></p></dd> <dt><b>Hackazon: A Modern Vulnerable Web App</b></dt> <dd><p>A Live Shoping Cart With Android Application Feel Like RealWorld WebApp. This application includes RESTful interfaces that power AJAX functionality and mobile clients (JSON, XML, GwT, and AMF). <a href="https://github.com/rapid7/hackazon">Click Here To Download</a></p></dd> <dt><b>XVWA - Xtreme Vulnerable Web Application</b></dt> <dd><p>XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security. <a href="https://github.com/s4n7h0/xvwa">Click Here To Download</a></p></dd> <dt><b>DVWA - Damn Vulnerable Web Application</b></dt> <dd><p>DVWA is a badly coded web application written in PHP/MySQL that is damn vulnerable. <a href="https://github.com/digininja/DVWA">Click Here To Download</a></p></dd> <dt><b>Web for Pentester I & Web for Pentester II</b></dt> <dd><p>Set of the most common web vulnerabilities. Part-I is developed in PHP&MySQL and Part-II is developed in Ruby/Rack. Click Here to Download <a href="https://pentesterlab.com/exercises/web_for_pentester">Part-I</a> <a href="https://www.pentesterlab.com/exercises/web_for_pentester_II">Part-II</a></p></dd> </dl> <h3><b> &rArr; CTF's </b></h3> <dl style="list-style-type:disc"> <dt><b>Vulnhub - Vulnerable By Design.</b></dt> <dd><p>CTF's Designed and Developed for Self Learner's By Community. <a href="https://www.vulnhub.com/">Click Here To Go</a></p></dd> <dt><b>HTB - HackTheBox.</b></dt> <dd><p>CTF's Designed and Developed for Self Learner's By Community. <a href="https://www.hackthebox.eu/">Click Here To Go</a></p></dd> </dl> <h2>List Provided By : Harshil Patel</h2> <h5>Note : <pre>You think that I missed something. Don't be late, inform me, I'll add it into this list.</pre></h5>