Cyclone Transfers is a fictional money transfer service, part of an OWASP project called Broken Web Applications (BWA), that consists of multiple common Ruby on Rails vulnerabilities. These vulnerabilities demonstrate common web security problems such as the mass assignment vulnerability, cross site scripting, sql injections, file upload weaknesses and session management issues.

