Showing posts with label Pen-testing Lab. Show all posts

Web Security Dojo

Feature Overview

Convenient virtual machine image
(VirtualBox v3.2 or later recommended, VMware provided)
Targets include:

    OWASP’s WebGoat
    Google’s Gruyere
    Damn Vulnerable Web App
    Hacme Casino
    OWASP InsecureWebApp
    w3af’s test website
    simple training targets by Maven Security (including REST and JSON)

Tools: (starred = new this version)

    Burp Suite (free version)
    w3af
    sqlmap
    arachni *
    metasploit
    Zed Attack Proxy *
    OWASP Skavenger
    OWASP Dirbuster
    Paros
    Webscarab
    Ratproxy
    skipfish
    websecurify
    davtest
    J-Baah
    JBroFuzz
    Watobo *
    RATS
    helpful Firefox add-ons

BTS Pen-testing Lab


BTS PenTesting Lab is a vulnerable web application that helps you in learning basic to advanced vulnerability types. The App is still in Beta version(v0.2).
Currently, the app allows you to learn the following vulnerability types:
SQL Injection
XSS
CSRF
Clickjacking
SSRF
File Inclusion
Command Execution
I am trying to bring some advanced vulnerability types and advanced techniques. Hopefully, you can see in next update :)
The app is developed by Sabari Selvan, a security researcher at Cyber Security Privacy Foundation(cysecurity.org)

How to run BTS PenTesting Lab?
1. Install XAMPP or WAMPP in your machine
2. Extract the bts_lab zip file into the htdocs folder.
3.  Open the "http://localhost/bts_lab/setup.php" url in your browser.
4. Click the Setup.
Now you can use http://localhost/bts_lab in Browser

[Download]

OWASP Bricks Dakatua [pen-testing lab]

OWASP Bricks - 2.0 Dakatua
==Installation==

Copy this folder into the www directory.

Start running the server.

Create a new database for Bricks:
Click on the PHPMyAdmin button or go to http://<your_ip>/mysql/ on browser.
Any name can be used for database. For example: bricks. Fill up the name and click on Create button.

Go to http://<your_ip>/bricks/ on browser.

Bricks will redirect automatically to http://<your_ip>/bricks/config/.

Fill in the configuration details:
Database username: root
Database password: root in uWAMP. Keep it blank in the case of XAMPP
Database name: bricks
Database host: localhost
Show executed commands: checked by default

Click on Submit button and a file, LocalSettings.php, will get downloaded. Place this file in the www directory.

Refresh http://<your_ip>/bricks/config/ page

Click on Setup/reset database

Installation finished. Bricks will be ready at http://<your_ip>/bricks/

==Upgrading==

Copy the contents of this directory on to the existing Bricks installation directory.


==Websites==
http://sechow.com/bricks/
https://www.owasp.org/index.php/OWASP_Bricks
http://packetstormsecurity.com/files/download/123800/OWASP_Bricks_-_Dakatua.zip
Copyright © 2013 Hacking Tools and Tech eBooks Collection and Blogger Templates - Anime OST.