Logo
Damn Vulnerable Web Application (DVWA)

Damn Vulnerable Web Application (DVWA)

#Application Protection#Application Security

ffufai is an AI-enhanced wrapper for ffuf that automatically suggests file extensions for web fuzzing based on the target URL and headers.

Visit Website

Damn Vulnerable Web Application (DVWA) - A Vulnerability Testing Tool

Damn Vulnerable Web Application (DVWA) is a web application built using PHP and MySQL that is intentionally designed to be highly vulnerable.

Its main goal is to provide valuable resources for security professionals and educators

Its main goal is to assist security professionals in testing their skills and tools within a legal environment. It also aims to help web developers gain a better understanding of the processes involved in securing web applications. Additionally, it supports both students and teachers in learning about web application security in a controlled classroom environment.

This is intentional

You are encouraged to explore and identify as many issues as possible. WARNING! The Damn Vulnerable Web Application is indeed very vulnerable! Please do not upload it to your hosting provider's public HTML folder or any servers that are accessible from the Internet, as they will be compromised.

It is recommended to use a virtual machine

It is recommended to use a virtual machine (such as VirtualBox or VMware) configured with NAT networking mode. Within the guest machine, you can download and install XAMPP to set up your web server and database. Disclaimer: We do not take responsibility for any issues that may arise.