Wubi Posted August 13, 2012 Report Posted August 13, 2012 Our first post regarding NOWASP (Codename Mutillidae) can be found here. A few hours ago an update – NOWASP (Codename Mutillidae) version 2.3.1 – was released.“NOWASP (Mutillidae) is a free, open source web application provided to allow security enthusiest to pen-test a web application. NOWASP (Mutillidae) can be installed on Linux, Windows XP, and Windows 7 using XAMMP making it easy for users who do not want to administrate a webserver. It is already installed on Samurai WTF and Rapid7 Metasploitable-2. The existing version can be updated on either. Containing dozens of vulns and hints to help the user; this is an easy-to-use web hacking environment deliberately designed for labs, security enthusiast, classrooms, CTF, and vulnerability assessment tool targets. Mutillidae has been used in graduate security courses, in corporate web sec training courses, and as an “assess the assessor” target for vulnerability assessment software.”[h=2]Official NOWASP (Mutillidae) change log:[/h] Updated vulnerabilities listingAdded an entirely new attack on a new page: view-user-privilege-level.phpAdded view-user-privilege-level.php to main menu under broken session management NOWASP 2.3.1 (Codename: Mutillidae) was released in a quick succession to NOWASP 2.3.0. It’s change log is as follows:Updated project to work with newest XAMPP and LAMP stacks. Last update to stack compatibility was in 2010 for Apache 2.2.xMutillidae now works on XAMPP 1.8: Apache 2.4.2, MySQL 5.5.25a, PHP 5.4.4Corrected error on document viewerAdded new page repeater.php with new vulnerability buffer overflowAdded new bubble hint for buffer overflowAdded new bubble hint HTMLandXSSInjectionPointAdded new vulnerability class for parameter additionAdded new hints about parameters addition and buffer overflowsSplit the A1 menu into SQL injection and non-SQL injection because the section was too large to fit on screen.Updated vulnerabilities listing[h=3]Download NOWASP (Mutillidae)[/h] Mutillidae 2.3.1 – LATEST-mutillidae-2.3.1.zipSursa: PenTestIT — Your source for Information Security Related information! Quote