VAmPI: Open-Source Vulnerable API for Security Testing

tom_doerr · x · 2026-08-14

VAmPI is a vulnerable REST API built with Flask, designed specifically for security testing and educational purposes. It features built-in OWASP API Top 10 vulnerabilities and includes a global toggle to easily switch the vulnerable environment on or off, helping to evaluate false positives and negatives in security tools. The project also provides OpenAPI 3 specs and a Postman collection for quick setup and integration.

Original post →

More from coding & agent

coding & agent channel →