I’m looking for vulnerable website packages which allow me to test my security practices and help me get a better understanding of attacks I’m unaware of.
I’d like to find packages written in PHP. I’ve found Gruyere from Google which looks good, but it’s in Python; Are there any others I’m missing? I had a difficult time getting any results from Google.
Damn Vulnerable Web App is a PHP/MySQL web application that is damn vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, help web developers better understand the processes of securing web applications and aid teachers/students to teach/learn web application security in a class room environment.