DVWA setup
For the attacks documented in this blog, the authors are using the Damn Vulnerable Web Application (DVWA).
The authors of this blog, Wiktoria Blomgren Strandberg and Emma Engström, are using slightly different setups but are achieving the same result. They are both using two virtual machines (VMs) on Oracle VirtualBox, one representing an attacker device and one representing the vulnerable client where DVWA is installed. Wiktoria is using two VMs with Kali GNU/Linux Rolling and Emma is using a VM with Kali GNU/Linux Rolling as the attacker device and a VM with Ubuntu Server 24.04 LTS as the vulnerable client. Since multiple DVWA installation and setup videos and instructions already exist elsewhere, the authors have decided not to publish their own guide for this. Below you will find some useful links for getting started.
Good luck!
Links
The DVWA project can be found on GitHub using the following link: https://github.com/digininja/DVWA
Installation guide for DVWA in Kali: https://youtu.be/WkyDxNJkgQ4?si=i1b-PTkLkgpeAOvJ
Intro to DVWA and setup video: https://youtu.be/GmWQ1VIjd2U?si=glQvyvEY5bxcs-JL
Oracle VirtualBox can be downloaded here: https://www.virtualbox.org/wiki/Downloads
Kali can be downloaded here: https://www.kali.org/get-kali/#kali-platforms
Ubuntu can be downloaded here: https://ubuntu.com/download

