Vulhub
MIT⚖️ Dual Use · Dockerfile
Vulhub is a collection of pre-built vulnerable environments based on Docker Compose that allows security researchers and students to reproduce and study real-world CVEs and common vulnerability classes without complex setup. Each environment includes a Docker Compose file, exploit documentation, and step-by-step instructions for reproducing the vulnerability, covering hundreds of CVEs across web frameworks, databases, middleware, and operating system components. Penetration testers, security trainers, and CTF organizers use Vulhub to quickly spin up realistic vulnerable targets for practice, training, and tool development without risking production systems. The project's Docker-based approach ensures consistent, reproducible environments that can be deployed and torn down in seconds, making it an invaluable resource for hands-on security education and exploit development.
Tags
Details
- Category
- ⚖️ Dual Use
- Language
- Dockerfile
- Repository
- vulhub/vulhub
- License
- MIT
- Platforms
- 🐧linux🍎macos
Links
Community Reviews
No reviews yet. Be the first to review Vulhub.
More in Dual Use
ProxyChains-ng
CForce any TCP connection through SOCKS4/5 or HTTP proxies. Chain multiple proxies for anonymity.
Socat
CMultipurpose relay tool. Bidirectional data transfer between two data channels - sockets, files, pipes, devices.
ngrok
GoExpose local servers to the internet via secure tunnels. Instant public URLs for localhost services.
Rclone
Gorsync for cloud storage. Sync, copy, and mount 70+ cloud providers. Command-line Swiss army knife for cloud data.
GTFOBins
ShellCurated list of Unix binaries that can be used to bypass security restrictions. Living off the land, documented.
LOLBAS
ShellLiving Off The Land Binaries, Scripts and Libraries for Windows. Documenting every Windows binary with offensive potential.