LazyWeb

LazyWeb

Demonstrative Web application for application vulnerabilities

125GitHub
Description

LazyWeb is a demonstrative Web application used to expose common server-side application vulnerabilities. The application provides a comprehensive learning experience for developers and security enthusiasts by classifying each vulnerability and labeling its difficulty level. ###Main characteristics - Demonstrate real-world vulnerabilities in Web applications. - Covering security flaws from basic to advanced, allowing users to test their skills at different levels. - Designed to help security professionals understand the nature of vulnerabilities and how to mitigate the impact of these vulnerabilities. ###Contains vulnerabilities The application includes the following vulnerabilities: - Operating system command injection - SQL injection - XML External Entity Injection (XXE) - Unsafe Direct Object References (IDOR) - Local File Inclusion (LFI) - Unsecure file uploads - arbitrary session allocation - Authorized sabotage - Certification breach - .git folder leaked (if cloned directly to the Web root directory)

Screenshots
Screenshot 1
Screenshot 2
Mobile Screenshots
Mobile Screenshot 1
App Information
Version
0.1.1
Package Size
2.86 MB
Image Size
185.42 MB
Updated
October 11, 2025
Source Code
RamadhanAmizudin
Platform Support
PCMobile
Keywords
safe shooting range