HackerFeeds

CyberSecurity News

Show HN: WattzGOAT – an intentionally vulnerable web app for security training

Hacker News
· September 30, 2026

AI summary

A web application called WattzGOAT has been created for security training purposes, featuring a fictional electricity utility's customer portal. The application contains 48 intentionally planted vulnerabilities, including most of the OWASP Top 10, which can be found and exploited in a capture-the-flag style. A simulated AI assistant is also included, with its own vulnerabilities, such as prompt-injection style flaws. The application was built with the assistance of AI technology. It is intended to serve as a hands-on lab for teaching web application security.

Read the full article at Hacker Newsgithub.com/wattzgoat/wattzgoat-web

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to Hacker News.