Practice web security skills with this intentionally vulnerable PHP/MySQL app, designed for ethical hacking, learning, and teaching in a safe environment.
Safely practice and learn web application security
Damn Vulnerable Web Application (DVWA) is a purposefully insecure PHP/MySQL web app designed to help you practice and improve your web security skills. Whether you’re a security professional, developer, or student, you can use DVWA to safely test common vulnerabilities and experiment with security tools in a legal, controlled environment.
The site is especially useful for those looking to learn about web application security from the ground up. Teachers and students can use DVWA in classroom settings to demonstrate real-world security issues, while developers can gain hands-on experience with securing web apps. DVWA provides an accessible way for anyone interested in cybersecurity to learn, practice, and grow their skills.
Discover websites similar to Dvwa.co.uk based on shared categories, topics, and features.
Browse personal web pages for staff, students, and associates of the School of Informatics at the University of Edinburgh. Content varies by publisher.
Browse and access a variety of mobile apps created by the University of Liverpool IT team, designed to support students and staff in their studies and work.
Official website of Cardiff University with information on courses, research, and campus life for students, staff, and visitors in the UK.
Explore the history of mathematics with biographies, timelines, and key topics from ancient to modern times on this educational online encyclopedia.
Explore blogs from Cardiff University staff and students, sharing campus news, experiences, and academic insights from a leading UK institution.
Explore Birkbeck University’s Department of Psychological Sciences for information on courses, research, and academic resources in psychology.
Plain English Campaign helps people and organizations use clear, simple language by offering resources, training, and advocacy against jargon.
Get practical advice, guides, and resources for UK small business owners and sole traders to help you start, run, and grow your business with confidence.
Trinity House is a charity supporting mariners, providing navigation safety, maritime education, and information on lighthouses and seafaring welfare in the UK.
Get careers advice, explore job profiles, assess your skills, and find courses with the National Careers Service to support your next career move in the UK.
Read a variety of blogs from Bodleian Libraries staff at Oxford, covering diverse topics and insights from the world of libraries and academia.
Learn about psychoanalysis, find qualified analysts, and access resources or services for mental health support through the UK Institute of Psychoanalysis.
Find and access conferences hosted by the School of Informatics at the University of Edinburgh, with details and resources for each event.
Explore the history of WWII codebreaking, including Enigma and Colossus, with interactive simulators and educational resources on cryptography.
Explore NHS health and care careers, discover job roles, training paths, and apprenticeships, and get guidance for starting or advancing your NHS journey.
Get the latest news and insights on further education, skills, and apprenticeships in the UK with FE Week’s trusted coverage and expert opinions.
Access internal resources, news, and support for staff and students at the University of Edinburgh's School of Informatics through this secure intranet.
Explore polar science, research, and careers with the British Antarctic Survey, dedicated to understanding Earth's polar regions and supporting sustainability.
REF 2029 shares updates, resources, and guidance on the UK’s Research Excellence Framework for higher education institutions and research assessment.
Explore graphene research, innovation, and collaboration opportunities at The University of Manchester, home of the revolutionary 2D material's discovery.
Suhosin adds advanced security features to PHP servers, helping protect websites and applications from vulnerabilities in PHP code and core.
Grsecurity offers a secure Linux kernel replacement with advanced exploit prevention, helping you protect systems from both known and unknown threats.
ModSecurity is a free, open source web application firewall that helps protect websites from online threats with customizable rules and real-time monitoring.
Snyk helps developers find and fix security risks in code, open source dependencies, containers, and AI-generated apps, all in one easy platform.
Veracode helps you find and fix security vulnerabilities in your software, including AI-generated code, with unified tools for safer app development and deployment.
Oligo Security helps you detect and stop security threats in your applications at runtime, so you can focus on building features with peace of mind.
Runtime Verification helps secure blockchain and Web3 projects by using formal methods to verify smart contracts and system logic for safer computing.
Open Policy Agent lets you define and enforce policies across cloud-native systems. Explore docs, try Rego, and join the active community.
Mend.io helps development and security teams manage application risks with tools for proactive security, code scanning, and automated risk insights.
Cerbos is an open-source platform that lets you add scalable, fine-grained access control and authorization to your apps, keeping security simple and flexible.
MalCare protects WordPress sites with automatic malware scans, one-click malware removal, and a real-time firewall—without slowing your website down.
Astra Security offers a continuous pentesting platform with automated vulnerability scanning, helping you secure web, API, cloud, and mobile apps easily.
Anchore helps you secure your software supply chain with SBOM-powered analysis, automating compliance and managing open source risks for your projects.
Hacken offers blockchain security audits, AI-powered compliance, and penetration testing to help crypto and Web3 projects stay secure and resilient.
mgm security partners offers comprehensive application security services, including automated testing, secure coding, and penetration testing for businesses.
Tidelift helps you reduce security risks in open source software and ensures the packages you depend on stay secure and well-maintained over time.
Checkmarx offers AI-powered tools for application security testing, helping developers find and fix code vulnerabilities easily within their workflow.
Halborn offers blockchain and Web3 security services like smart contract audits, penetration testing, and code reviews for financial and decentralized projects.
Learn about reproducible builds—software development practices that ensure source code and binaries can be independently verified for security and trust.
OSTIF.org is a nonprofit helping secure open source apps by organizing security audits and reviews, making software safer for everyone.