DVWA

sumber : http://computersecuritystudent.com/

INI SECURITY MODE EASY!!!

Install DVWA Ubuntu Server

sudo apt update

Install web server (apache)

sudo apt install apache2

Install database (mysql)

sudo apt install mysql-server
mysql_secure_installation
    VALIDATE PASSWD LUGIN... (N)
    passwd :
    passwd :
    Remove anonymous users... (Y)
    Disallow root login... (N)
    Remove test database... (N)
    Reload privilege ... (Y)

cek mysql :

mysql -uroot -p

Install PHP

sudo apt install php libapache2-mod-php php-mysql
echo "<?php phpinfo();?>" > /var/www/html/phpinfo.php

Install phpmyadmin (*opsional, jika pengguna phpmyadmin)

sudo apt install phpmyadmin
	apache2 (spasi)
	configure database (Y)
	passwd :
	passwd :

Create user database :

mysql -uroot -p
CREATE USER 'admin'@'localhost' IDENTIFIED BY 'admin123';
GRANT ALL PRIVILEGES ON *.* TO 'admin'@'localhost';
FLUSH PRIVILEGES;

buka browser
edit user admin phpmyadmin
create database dvwa

install DVWA

# Download DVWA dulu
sudo apt install unzip
unzip DVWA-master.zip
mv DVWA-master dvwa
mv dvwa /var/www/html/
cp /var/www/html/dvwa/config/config.inc.php.dist /var/www/html/dvwa/config/config.inc.php
vim /var/www/html/dvwa/config/config.inc.php

cek :

database
user
pass
recaptcha
vim /etc/php/<versi>/apache2/php.ini
	allow_url_include : on
/etc/init.d/apache2 restart
chmod ugo+rw /var/www/html/dvwa/hackable/uploads/
chmod ugo+rw /var/www/html/dvwa/external/phpids/0.6/lib/IDS/tmp/phpids_log.txt
chmod ugo+rw /var/www/html/dvwa/config

cek website

http://localhost/dvwa/setup.php

reset/create database