1.
1.
DAMN VULNERABLE WEB APPLICATION
Linux-
-
-
DVWA [1-3],
ASP.NET, Java).
,
[1-6].
1.1 Kali L
6
1.
[4].
OWASP [5] (Open Web Application Security Project).
Web-
OWASP TOP-
Web-
OWASP Testing Guide [6] (v. 4.0).
Kali Linux,
Web-
1.2 -
-
7
1.
+PHP).
:
sudo apt-get update
sudo apt-get install apache2
-
http://localhost/.
1.1.
.1.1. - Apache2
-
sudo apt-get install mysql-server
8
1.
mysql_secure_installation
sudo apt-get install php5 php-pear php5-mysql
sudo nano /etc/php5/apache2/php.ini
2
allow_url_include On
sudo service apache2 restart
-
Damn Vulnerable Web Application.
-
/var/www
cd /var/www/html
wget
https://github.com/ethicalhack3r/DVWA/archive/master.
zip
unzip master.zip
2
nano
Ctrl+X Y
9
1.
sudo
DVWA-master
dvwa
rm master.zip
mv DVWA-master dvwa
3
-
sudo nano dvwa/config/config.inc.php
chmod -R 777 /var/www/html/dvwa
mysql -u root -p
create database dvwa;
exit
10
1.
sudo nano /etc/apache2/apache2.conf
ServerName localhost
http://127.0.0.1/dvwa/setup.php
Create / Reset Database
1.2.
1.2.
11
1.
admin
password.
1.
LAMP.
2.
1.
2.
3.
4.
ls -lah /var/www/html/dvwa
php v
DVWA.
-
12
1.
1.
2.
3. Linux.
4.
5.
6.
7.
8.
13