NOWASP (Mutillidae): Difference between revisions
(Created page with "{{Draft}} [http://sourceforge.net/projects/mutillidae/ NOWASP (Mutillidae)] is a free, open source, deliberately vulnerable web-application. It's similar to [[Damn_Vulnerable...") |
|||
Line 9: | Line 9: | ||
{{Cmd|apk add php-mysql mysql mysql-client}} | {{Cmd|apk add php-mysql mysql mysql-client}} | ||
= Installing and configuring | = Installing and configuring Mutillidae = | ||
Create the a folder named | Create the a folder named {{Path|webapps}} | ||
{{Cmd|mkdir -p /usr/share/webapps/}} | {{Cmd|mkdir -p /usr/share/webapps/}} | ||
Line 22: | Line 22: | ||
Unpack the archive and remove it | Unpack the archive and remove it | ||
{{Cmd|unzip | {{Cmd|unzip LATEST-mutillidae-2.3.14.zip | ||
rm | rm LATEST-mutillidae-2.3.14.zip}} | ||
Change the folder permissions | Change the folder permissions | ||
Line 29: | Line 29: | ||
{{Cmd|chmod -R 777 /usr/share/webapps/}} | {{Cmd|chmod -R 777 /usr/share/webapps/}} | ||
Create a symlinks to the folder | Create a symlinks to the folder {{Path|mutillidae}} | ||
{{Cmd|ln -s /usr/share/webapps/ | {{Cmd|ln -s /usr/share/webapps/mutillidae/ /var/www/localhost/htdocs/mutillidae}} | ||
<!-- | <!-- | ||
= Configuration and start MySql = | = Configuration and start MySql = | ||
Line 43: | Line 43: | ||
{{Cmd|nano -w /usr/share/webapps/dvwa/config/config.inc.php}} | {{Cmd|nano -w /usr/share/webapps/dvwa/config/config.inc.php}} | ||
To complete the setup, browse to the | To complete the setup, browse to the mutillidae directory on the webserver. | ||
http://WEBSERVER_IP_ADDRESS/ | http://WEBSERVER_IP_ADDRESS/mutillidae | ||
Follow the link to setup the database.--> | Follow the link to setup the database.--> | ||
[[Category:PHP]] [[Category:SQL]] [[Category:Security]] | [[Category:PHP]] [[Category:SQL]] [[Category:Security]] |
Revision as of 19:30, 28 January 2013
This material is work-in-progress ... Do not follow instructions here until this notice is removed. |
NOWASP (Mutillidae) is a free, open source, deliberately vulnerable web-application. It's similar to DVWA.
Install lighttpd, PHP, and MySql
Basic Installation
For installing the additional packages first activate community packages and update the package index
Install the required packages:
# apk add lighttpd php82 fcgi php82-cgi
Configure Lighttpd
Edit lighttpd.conf (/etc/lighttpd/lighttpd.conf) and uncomment the line:
Contents of /etc/lighttpd/lighttpd.conf
Edit mod_fastcgi.conf (/etc/lighttpd/mod_fastcgi.conf), find and change /usr/bin/php-cgi to /usr/bin/php-cgi82.
Contents of /etc/lighttpd/mod_fastcgi.conf
Start lighttpd
service and add it to default runlevel
# rc-service lighttpd start # rc-update add lighttpd default
Install extra packages:
apk add php-mysql mysql mysql-client
Installing and configuring Mutillidae
Create the a folder named webapps
mkdir -p /usr/share/webapps/
Download the source archive and unpack it
cd /usr/share/webapps/ wget http://sourceforge.net/projects/mutillidae/files/mutillidae-project/LATEST-mutillidae-2.3.14.zip
Unpack the archive and remove it
unzip LATEST-mutillidae-2.3.14.zip rm LATEST-mutillidae-2.3.14.zip
Change the folder permissions
chmod -R 777 /usr/share/webapps/
Create a symlinks to the folder mutillidae
ln -s /usr/share/webapps/mutillidae/ /var/www/localhost/htdocs/mutillidae