OWASP Damn Vulnerable Web Sockets (DVWS) Logo

OWASP Damn Vulnerable Web Sockets (DVWS)

0
Free
Updated 11 March 2025
Visit Website

OWASP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application which works on web sockets for client-server communication. The flow of the application is similar to DVWA. You will find more vulnerabilities than the ones listed in the application. Requirements: In the hosts file of your attacker machine create an entry for dvws.local to point at the IP address hosting the DVWS application. The application requires Apache + PHP + MySQL, PHP with MySQLi support, Ratchet, and ReactPHP-MySQL. Install 'Ratchet' and 'ReactPHP-MySQL' using composer. Set the MySQL hostname, username, password, and an existing database name in the includes/connect-db.php file then go to Setup to finish setting up DVWS. Running DVWS: On the host running this application, run the following command from DVWS directory: php ws-socket.php --heartbeat-interval <sec>

FEATURES

SIMILAR TOOLS

An application security testing platform that combines automated scanning, AI assistance, and manual expert testing to provide continuous security assessment throughout the software development lifecycle.

A DAST solution that performs automated security testing of APIs and web applications within development workflows and CI/CD pipelines.

A CSP plugin for hapi with per-route configuration options.

A popular free security tool for automatically finding security vulnerabilities in web applications

A web-based tool for instrumenting and analyzing Android applications using Flask, Jinja, and Redis.

A web application security testing platform that helps you test your knowledge on web application security through realistic scenarios with known vulnerabilities.

App-Ray offers comprehensive security analysis and compliance solutions for mobile applications.

A set of 48 practical programming exercises in cryptography and application security

Tool to inform about potential risks in project dependencies list.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Operated by:

Mandos Cyber • KVK: 97994448

Netherlands • contact@mandos.io

VAT: NL005301434B12

Copyright © 2025 - All rights reserved