A preconfigured, stand-alone training environment for Web Application Security. Virtualbox and VMware versions for download. See "View all files" for VMware version.
Features -
Convenient virtual machine image (VirtualBox v3.2 or later recommended, VMware provided)
Convenient virtual machine image (VirtualBox v3.2 or later recommended, VMware provided)
Targets include:
- OWASP’s WebGoat
- Google’s Gruyere
- Damn Vulnerable Web App
- Hacme Casino
- OWASP InsecureWebApp
- w3af’s test website
- simple training targets by Maven Security (including REST and JSON)
Tools: (starred = new this version)
- Burp Suite (free version)
- w3af
- sqlmap
- arachni *
- metasploit
- Zed Attack Proxy *
- OWASP Skavenger
- OWASP Dirbuster
- Paros
- Webscarab
- Ratproxy
- skipfish
- websecurify
- davtest
- J-Baah
- JBroFuzz
- Watobo *
- RATS
- helpful Firefox add-ons
What?
Various web application security testing tools and vulnerable web applications were added to a clean install of Ubuntu v10.04.2, which is patched with the appropriate updates and VM additions for easy use.
Why?
The Web Security Dojo is for learning and practicing web app security testing techniques. It is ideal for self-teaching and skill assessment, as well as training classes and conferences since it does not need a network connection. The Dojo contains everything needed to get started – tools, targets, and documentation.
Where?
Download Web Security Dojo from
How?
To install Dojo you first install and run VirtualBox 3.2 or later, then “Import Appliance” using the Dojo’s OVF file. We have PDF or YouTube for instructions for Virtualbox.
As of version 1.0 a VMware version is also provided, as well as video install instructions
As of version 1.0 a VMware version is also provided, as well as video install instructions
Visit website -
http://www.mavensecurity.com/web_security_dojo/
For More information -
http://www.youtube.com/watch?v=XMvsv4LWIjA
http://www.securitytube.net/video/902
http://securitytube-tools.net/index.php?title=Web_Security_Dojo
http://www.mavensecurity.com/documents/VirtualBoxInstall4Dojo.pdf
For More information -
http://www.youtube.com/watch?v=XMvsv4LWIjA
http://www.securitytube.net/video/902
http://securitytube-tools.net/index.php?title=Web_Security_Dojo
http://www.mavensecurity.com/documents/VirtualBoxInstall4Dojo.pdf
good job
ReplyDeleteThanks for sharing, I will bookmark and be back again
ReplyDeleteTesting Training with Live Project