Skip to content
@juice-shop

OWASP Juice Shop

Insecure web application for security trainings, awareness demos, CTFs and as a guinea pig for security tools

Juice Shop Banner

OWASP Juice Shop is probably the most modern and sophisticated insecure web application! It can be used in security trainings, awareness demos, CTFs and as a guinea pig for security tools! Juice Shop encompasses vulnerabilities from the entire OWASP Top Ten along with many other security flaws found in real-world applications!

OWASP Flagship CII Best Practices Contributor Covenant Twitter Follow Subreddit subscribers

OWASP Juice Shop and any contributions are Copyright © by Bjoern Kimminich & the OWASP Juice Shop contributors 2014-2024.

Pinned Loading

  1. juice-shop juice-shop Public

    OWASP Juice Shop: Probably the most modern and sophisticated insecure web application

    TypeScript 9.8k 9.8k

  2. multi-juicer multi-juicer Public

    Host and manage multiple Juice Shop instances for security trainings and Capture The Flags

    JavaScript 262 117

  3. pwning-juice-shop pwning-juice-shop Public

    Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"

    Handlebars 217 128

  4. juice-shop-ctf juice-shop-ctf Public

    Tool to export Juice Shop challenges and hints in data format compatible with CTFd, RootTheBox or FBCTF

    JavaScript 399 109

  5. juice-shop-tutorials juice-shop-tutorials Public

    Official OWASP Juice Shop tutorials on UI customization and system integration

    6 4

Repositories

Showing 10 of 11 repositories
  • juicy-statistics Public

    Scripts to collect statistics about OWASP Juice Shop

    juice-shop/juicy-statistics’s past year of commit activity
    JavaScript 3 MIT 7 3 (2 issues need help) 0 Updated Jun 28, 2024
  • juice-shop Public

    OWASP Juice Shop: Probably the most modern and sophisticated insecure web application

    juice-shop/juice-shop’s past year of commit activity
    TypeScript 9,810 MIT 9,790 7 (3 issues need help) 2 Updated Jun 27, 2024
  • pwning-juice-shop Public

    Antora/Asciidoc content for Bjoern Kimminich's free eBook "Pwning OWASP Juice Shop"

    juice-shop/pwning-juice-shop’s past year of commit activity
    Handlebars 217 128 20 (1 issue needs help) 30 Updated Jun 24, 2024
  • multi-juicer Public

    Host and manage multiple Juice Shop instances for security trainings and Capture The Flags

    juice-shop/multi-juicer’s past year of commit activity
    JavaScript 262 Apache-2.0 117 16 (5 issues need help) 1 Updated Jun 18, 2024
  • juice-shop-ctf Public

    Tool to export Juice Shop challenges and hints in data format compatible with CTFd, RootTheBox or FBCTF

    juice-shop/juice-shop-ctf’s past year of commit activity
    JavaScript 399 MIT 109 0 1 Updated Jun 16, 2024
  • juicy-coupon-bot Public

    Coupon code generator and distribution bot for OWASP Juice Shop

    juice-shop/juicy-coupon-bot’s past year of commit activity
    JavaScript 6 MIT 9 0 14 Updated Jun 1, 2024
  • shake-logger Public

    This projects provides a logger and a connected harlem shake js.

    juice-shop/shake-logger’s past year of commit activity
    CSS 18 4 0 0 Updated May 17, 2024
  • .github Public
    juice-shop/.github’s past year of commit activity
    0 0 0 0 Updated Mar 20, 2024
  • juice-shop-tutorials Public

    Official OWASP Juice Shop tutorials on UI customization and system integration

    juice-shop/juice-shop-tutorials’s past year of commit activity
    6 4 0 0 Updated Nov 25, 2023
  • juicy-chat-bot Public

    Smart, friendly and helpful chat bot for OWASP Juice Shop

    juice-shop/juicy-chat-bot’s past year of commit activity
    JavaScript 9 MIT 10 0 0 Updated Jun 25, 2023