bWAPP (original) (raw)

Leader badge

bWAPP, or a buggy web application, is a free and open source deliberately insecure web application.

bWAPP helps security enthusiasts, developers and students to discover and to prevent web vulnerabilities. bWAPP prepares one to conduct successful penetration testing and ethical hacking projects. What makes bWAPP so unique? Well, it has over 100 web bugs! It covers all major known web vulnerabilities, including all risks from the OWASP Top 10 project. The focus is not just on one specific issue... bWAPP is covering a wide range of vulnerabilities!

bWAPP is a PHP application that uses a MySQL database. It can be hosted on Linux/Windows with Apache/IIS and MySQL. It is supported on WAMP or XAMPP. Another possibility is to download bee-box, a custom VM pre-installed with bWAPP.

This project is part of the ITSEC GAMES project. You can find more about the ITSEC GAMES and bWAPP projects on our blog.

For security-testing and educational purposes only!

Cheers

Malik Mesellem

Features

Auth for GenAI | Auth0 Icon

Auth for GenAI | Auth0

Enable AI agents to securely access tools, workflows, and data with fine-grained control and just a few lines of code.

Easily implement secure login experiences for AI Agents - from interactive chatbots to background workers with Auth0. Auth for GenAI is now available in Developer Preview

Additional Project Details

Operating Systems

Linux, FreeBSD, Mac, Windows

Intended Audience

System Administrators, Developers, Auditors, Security Professionals

User Interface

Web-based

Programming Language

PHP, JavaScript

Database Environment

MySQL

PHP Penetration Testing Tool, PHP VMware Software, PHP MiTM (Man-in-The-Middle) Attack Tool, JavaScript Penetration Testing Tool, JavaScript VMware Software, JavaScript MiTM (Man-in-The-Middle) Attack Tool

2013-01-08