chuckfw / owaspbwa

OWASP Broken Web Applications Project
294 stars 103 forks source link

Google Gruyere, OWASP insecure web app project #22

Closed GoogleCodeExporter closed 8 years ago

GoogleCodeExporter commented 8 years ago
Do we want to include these?  I can put them in, just didn't know if we wanted 
these additional items as 'training' environments.

http://google-gruyere.appspot.com/part1
https://www.owasp.org/index.php/Category:OWASP_Insecure_Web_App_Project#tab=Main

I see the OWASP-IWAP is orphaned.  Maybe that gets sucked into this project?  
I'm no programmer, but if we can at least get it running I think it would help 
everyone out.

Original issue reported on code.google.com by MichaelTCyr@gmail.com on 21 Apr 2011 at 3:04

GoogleCodeExporter commented 8 years ago
Google Gruyere has an odd license.  If I recall, it only runs on localhost as 
distributed and the license prevents distribution of modified versions.  What 
we can probably do now that mod_proxy is working is run Gruyere in its "normal" 
way and then use mod_proxy to allow access from other systems.

Original comment by chuck.f....@gmail.com on 21 Apr 2011 at 6:27

GoogleCodeExporter commented 8 years ago
Sounds fun, I'll leave that one up to you!

Original comment by MichaelTCyr@gmail.com on 21 Apr 2011 at 6:31

GoogleCodeExporter commented 8 years ago
It would be nice to include the OWASP Insecure Web App Project if it is 
working. I don't remember if I tried it before and failed or if I just skipped 
it since it was kind of old.

Original comment by chuck.f....@gmail.com on 22 Apr 2011 at 9:17

GoogleCodeExporter commented 8 years ago
Gruyere is working on Chuck's VM now.  Will be included in 0.94alpha2 and 
beyond.  Probably won't add code to SVN due to licensing restrictions (we are 
not allowed to distribute modify it, though end users are allowed to).

Original comment by chuck.f....@gmail.com on 3 May 2011 at 2:51

GoogleCodeExporter commented 8 years ago
Need to add Gruyere to index.html file as well (at /gruyere/).  May want to 
create a landing page to explain why the app does some weird redirects.

Original comment by chuck.f....@gmail.com on 3 May 2011 at 2:52

GoogleCodeExporter commented 8 years ago
Added to the index page, although it doesn't work for me:

Service Temporarily Unavailable

The server is temporarily unable to service your request due to maintenance 
downtime or capacity problems. Please try again later.

Original comment by MichaelTCyr@gmail.com on 14 May 2011 at 5:46

GoogleCodeExporter commented 8 years ago

Original comment by MichaelTCyr@gmail.com on 14 May 2011 at 5:46

GoogleCodeExporter commented 8 years ago
Working in 0.94rc1.

Original comment by chuck.f....@gmail.com on 12 Jul 2011 at 3:18