Cylab Play - Vulnerable Apps

Cylab Play is a collection of vulnerable applications that can be used to illustrate and experiment with different kinds of vulnerabilities.

SQL GET Injection

A web application that can be hacked using SQL injection attack. The app uses a MySQL database and parameters are sent using a GET request.

SQL Injection

A web application that can be hacked using SQL injection attack. The app uses a MySQL database.

SQL Nice Injection

A web application that can be hacked using SQL injection attack. The app uses nice URL's.

SQLite Injection

A web application that can be hacked using SQL injection attack. The app uses a SQLite database.

Brute Force

A web application that can be hacked using a brute force attack.

Upload

A vulnerable web application suffering from unrestricted file upload

HTTP Secret

A simple web application, that will reveal a secret code if you query using a command line tool like netcat, telnet or simpletcpclient.


Blog

SQLMap : additional techniques

Offensive Security Cylab Play

Web shells and the dangers of unrestricted file upload

Cylab Play Offensive Security

Crack a login page : the easy way

Offensive Security Cylab Play

This website uses cookies. More information about the use of cookies is available in the cookies policy.
Accept