Damn Small Vulnerable Web Logo

Damn Small Vulnerable Web

0
Free
Visit Website

Damn Small Vulnerable Web (DSVW) is a deliberately vulnerable web application written in under 100 lines of code, created for educational purposes. It supports majority of (most popular) web application vulnerabilities together with appropriate attacks. Quick start: Run the following command: $ python3 dsvw.py Damn Small Vulnerable Web (DSVW) < 100 LoC (Lines of Code) #v0.2a by: Miroslav Stampar (@stamparm) [i] running HTTP server at 'http://127.0.0.1:65412'... and navigate your browser to http://127.0.0.1:65412/: Requirements: Python (3.x) is required for running this program. Items XML External Entity (local), XML External Entity (remote) and Blind XPath Injection (boolean) require installation of python-lxml (e.g. apt-get install python-lxml). Otherwise, those will be disabled. To install lxml via pip, run the following command: pip install -r requirements.txt

FEATURES

ALTERNATIVES

A vulnerable by design infrastructure on Azure featuring the latest released OWASP Top 10 web application security risks (2021) and other misconfigurations.

Technique used to forward one URL to another.

Embeddable Yara library for Java with support for loading rules and scanning data.

A CSP plugin for hapi with per-route configuration options.

ffufai is an AI-enhanced wrapper for ffuf that automatically suggests file extensions for web fuzzing based on the target URL and headers.

A web application firewall and API security platform that combines API discovery, runtime protection, vulnerability testing, and security posture management.

Argus-SAF is a static analysis framework for security vetting Android applications.

Real-time, eBPF-based Security Observability and Runtime Enforcement component

PINNED