Pygoat

PyGoat is an intentionally vulnerable web Application Security in Django. Our roadmap builds an intentionally vulnerable web Application in Django. Each vulnerability can be based on the OWASP Top Ten.

About Pygoat

Features

The Vulnerabilities can based on OWASP top ten, Mitre CVE & SANS 25 Top Errors, thank you team

Project Resources

Project Leaders

Ade Yoseman

Project Leader

Email

Project Information

Incubator Project
Classification
Incubator
OWASP Logo
OWASP is a nonprofit foundation improving software security through open-source projects, global communities, and education. All resources are free and open to everyone.
OWASP, the OWASP logo, and Global AppSec are registered trademarks and AppSec Days, AppSec California, AppSec Cali, SnowFROC, OWASP Boston Application Security Conference, and LASCON are trademarks of the OWASP Foundation, Inc.
© 2026, OWASP Foundation Inc. All rights reserved.
Pygoat