Hello Guys,
Being a hacker is exciting but it is more of Responsible task.
To start learning new things, you must be aware of what's going on in background while hacking foreground.
So,To enrich your Tech-hunger and learn hacking,This is a step toward being Hacker.
Anyways Let's go to Core Part,
Today , we 're going to learn about Web Application Hacking.
As per Wikipedia.org ,
Web Application:
WebGoat is built upon Java framework,So to install it requires JRE (Java Runtime Environment)has built-in Apache Tomcat Web-Server installed.
Being a hacker is exciting but it is more of Responsible task.
To start learning new things, you must be aware of what's going on in background while hacking foreground.
So,To enrich your Tech-hunger and learn hacking,This is a step toward being Hacker.
Anyways Let's go to Core Part,
Today , we 're going to learn about Web Application Hacking.
As per Wikipedia.org ,
Web Application:
A web application is an application that is accessed over a network such as the Internet or an intranet. The term may also mean a computer software application that is coded in a browser-supported language (such as JavaScript, combined with a browser-rendered markup language like HTML) and reliant on a common web browser to render the application executable."There are several projects which helps to learn and provide sample hacking application for Techno-geek and Penetration Testers,Among them;These are several projects which can be found helpful.
- Gruyere (live) -- http://google-gruyere.appspot.com/
- FreeBank Online(live) -- http://zero.webappsecurity.com/
- Crack Me Bank (live) -- http://crackme.cenzic.com/
- Acunetix Acublog -- http://testaspnet.vulnweb.com (registration required)
- Hacme Tools -- http://www.foundstone.com/us/resources/proddesc/
These tools provide in-built Web-Server and Framework to test hacking application.
WebGoat is built upon Java framework,So to install it requires JRE (Java Runtime Environment)has built-in Apache Tomcat Web-Server installed.
It provides several attack systems like SQL Injection,XSS (cross site scripting) attack practice,Firewall Bypassing,Man in The Middle Attack etc.
It provides deep information regarding Web Application and Its Security features.These feature makes it unique,
It provides deep information regarding Web Application and Its Security features.These feature makes it unique,
- It has buit in Web Server
- It provides Solution along with Problem
- It is Open source Software.
- It provides source of framework along with application.
- It gives hints whenever some difficulty occur with one click
To install WebGoat,I would recommend using Virtual OS by VMware Or Virtual box as it makes our OS tremendously vulnerable to attack.
Download:
Download:
For Virtual Sessions :
1) Virtual Box : www.virtualbox.org
or
2) VMware : www.vmware.com
This was truly a fascinating point and I kinda concur with what you have specified here
ReplyDeletesecurity testing tools