ravage

Included Local Labs

Ravage includes deliberately vulnerable applications for repeatable local testing. Do not expose them to the public internet, a shared network, customer systems, or production infrastructure.

Lab Default URL Flags Focus
ravage-acme-box http://127.0.0.1:8088 4 Support portal, authorization, injection, JWT, and SSRF
ravage-forgeops-box http://127.0.0.1:8090 6 Release operations, authorization, traversal, injection, and internal services
ravage-node-market-box http://127.0.0.1:8092 5 Market operations, API authorization, JWT, JSON state, and internal pivoting
ravage-perimeter-box http://127.0.0.1:8094 5 Multi-port recon, authentication, injection, and traversal
ravage-session-boundary-box http://127.0.0.1:8096 3 Session, CSRF, CORS, framing, WebSocket, and browser-storage boundaries

List and inspect labs through the CLI:

ravage lab list --labs-dir examples/labs
ravage lab show ravage-acme-box --labs-dir examples/labs

Start and stop one lab at a time:

ravage lab up ravage-acme-box --labs-dir examples/labs
ravage lab down ravage-acme-box --labs-dir examples/labs

Each lab directory contains:

Flags and credentials are synthetic and local to these fixtures. A reported finding still requires live target evidence; source files and expected flag locations are not proof.