vuln-bank vs Damn-Vulnerable-RESTaurant-API-Game

Vulnerable security training apps compared

vuln-bank and Damn-Vulnerable-RESTaurant-API-Game are intentionally insecure projects for practicing security testing in controlled environments. vuln-bank centers on banking workflows across web, API, GraphQL, and AI features, while Damn-Vulnerable-RESTaurant-API-Game focuses on API security exercises with interactive game and hacking modes.

vuln-bankDamn-Vulnerable-RESTaurant-API-Game
LanguageHTMLPython
LicenseMITGPL-3.0
Stars960939
Forks348192
Last analyzedOct 3, 2026Oct 3, 2026

Key differences

  • vuln-bank covers web, API, GraphQL, and AI scenarios; Damn-Vulnerable-RESTaurant-API-Game is focused on API security.
  • vuln-bank includes banking workflows such as transfers, loans, and bill payments; Damn-Vulnerable-RESTaurant-API-Game offers a developer game and an ethical hacking challenge.
  • vuln-bank is listed with HTML as its language; Damn-Vulnerable-RESTaurant-API-Game uses Python with FastAPI and PostgreSQL.
  • vuln-bank uses the MIT license; Damn-Vulnerable-RESTaurant-API-Game uses GPL-3.0.
  • vuln-bank documents Docker Compose and a local Python/PostgreSQL installation path; Damn-Vulnerable-RESTaurant-API-Game requires Docker and Docker Compose V2, and also offers Codespaces.
  • vuln-bank includes an AI support agent with a real LLM option or mock mode; Damn-Vulnerable-RESTaurant-API-Game describes API documentation through Swagger and Redoc.

Choose vuln-bank if you…

  • want to practice security testing across banking workflows, web, API, GraphQL, and AI scenarios.
  • need a lab that includes file uploads, transaction logic, payment-related flaws, or AI security exercises.
  • prefer a project with an MIT license and a documented local Python/PostgreSQL installation path.
Read the vuln-bank analysis →

Choose Damn-Vulnerable-RESTaurant-API-Game if you…

  • want an API-focused challenge with both interactive vulnerability remediation and privilege-escalation exercises.
  • need a Python FastAPI and PostgreSQL project with Swagger and Redoc documentation.
  • prefer Docker-based setup with an option to run through Codespaces.
Read the Damn-Vulnerable-RESTaurant-API-Game analysis →

This comparison is generated with AI from the OSRepos analyses of both projects. Always check each project's repository and documentation before choosing.

OS
OSRepos

Analysis and discovery of open source repositories. Find interesting projects and follow their updates.

Monitor your website with YourWebsiteScore

OSRepos shares public repositories for knowledge and discovery only. Any installation, execution, configuration, or use of third-party repository code is at your own risk. Always review source code, dependencies, licenses, and security implications before running anything.

© 2025 OSRepos. Built with Nuxt 3 and lots of ❤️