OWASP / OWASP-VWAD

The OWASP Vulnerable Web Applications Directory project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.
https://owasp.org/www-project-vulnerable-web-applications-directory/
Apache License 2.0
854 stars 219 forks source link

Add, Hack the Box and PentesterLab to "Online" section #43

Closed jhaddix closed 6 years ago

jhaddix commented 6 years ago

Both excellent training grounds.

jhaddix commented 6 years ago

Added via https://github.com/OWASP/OWASP-VWAD/pull/47

raulsiles commented 6 years ago

Hi @jhaddix, My main concern about adding these two is that they are more related to general pen-testing/hacking labs or environments (of whcih there are much more in the industry, and we do not include them here), and not specific vulnerable web applications, which is the focus of the OWASP VWAD.

Thoughts?

bkimminich commented 6 years ago

I would not add them here, for exactly the reason you mentioned.

raulsiles commented 6 years ago

Consensus :) Sorry @jhaddix, but we will not include them into VWAD.

jhaddix commented 6 years ago

I might say that about hackthebox, but PentesterLab has a heavy focus on web applications and is one of the most well produced boot2root resources for web app hacking learning.