More and More Webapp Labs!


So… Since the writing of our webapp lab article a lot of people have gotten together similar projects. We like ours but we wouldn’t be objective if we didn’t report on some other options.

The big news is the OWASP Broken Web Applications Project. This Project is a nice *tidy* little VM you can spin up to train yourself in web-app pentesting ninja-ry.

The owaspbwa project includes applications from various sources (listed in no particular order).

Intentionally Vulnerable Applications:

And old Versions of Real Applications:

Web Security Dojo , the second project,  is actually very similar. It features not only targets, but tools to test against the targets. All in a VM for easy deployment.

Targets include:

Tools:

Both further the goal of raising awareness of web app flaws and breeding well trained security ninjas… we approve =)

  1. #1 by Follower - February 12th, 2010 at 04:30

    That’s cool :)

(will not be published)