DVWA
sumber : http://computersecuritystudent.com/
INI SECURITY MODE EASY!!!
Install DVWA Ubuntu Server
sudo apt update
Install web server (apache)
sudo apt install apache2
Install database (mysql)
sudo apt install mysql-server
mysql_secure_installation
VALIDATE PASSWD LUGIN... (N)
passwd :
passwd :
Remove anonymous users... (Y)
Disallow root login... (N)
Remove test database... (N)
Reload privilege ... (Y)
cek mysql :
mysql -uroot -p
Install PHP
sudo apt install php libapache2-mod-php php-mysql
echo "<?php phpinfo();?>" > /var/www/html/phpinfo.php
Install phpmyadmin (*opsional, jika pengguna phpmyadmin)
sudo apt install phpmyadmin
apache2 (spasi)
configure database (Y)
passwd :
passwd :
Create user database :
mysql -uroot -p
CREATE USER 'admin'@'localhost' IDENTIFIED BY 'admin123';
GRANT ALL PRIVILEGES ON *.* TO 'admin'@'localhost';
FLUSH PRIVILEGES;
buka browser
edit user admin phpmyadmin
create database dvwa
install DVWA
# Download DVWA dulu
sudo apt install unzip
unzip DVWA-master.zip
mv DVWA-master dvwa
mv dvwa /var/www/html/
cp /var/www/html/dvwa/config/config.inc.php.dist /var/www/html/dvwa/config/config.inc.php
vim /var/www/html/dvwa/config/config.inc.php
cek :
database
user
pass
recaptcha
vim /etc/php/<versi>/apache2/php.ini
allow_url_include : on
/etc/init.d/apache2 restart
chmod ugo+rw /var/www/html/dvwa/hackable/uploads/
chmod ugo+rw /var/www/html/dvwa/external/phpids/0.6/lib/IDS/tmp/phpids_log.txt
chmod ugo+rw /var/www/html/dvwa/config
cek website
http://localhost/dvwa/setup.php
reset/create database