DVL 1.5 now in planning status


DVL 1.5 has now the status "planning". Beside this we work on the concept for 2008. More information, more training and better videos (those which are 100% related to DVL). Stay tuned!
 
DVL 1.4 released!


DVL 1.4 released! First mirror is online! IF YOU CAN PROVIDE A MIRROR, PLEASE SEND A MAIL TO info (att) DamnVulnerableLinux.org.
 
Advertisement





Lost Password?
No account yet? Register

VMWare Player

Get the free VMWare Player!
Damn Vulnerable Linux is prepared to run under VMWare player!

Who's Online

Statistics

Members: 8187
News: 94
Web Links: 0
Visitors: 404395
About/Disclaimer/Imprint
Written by DVL Team   


About IITAC.org

IITAC (International Institute for Training, Assessment, and Certification) is a management consulting, technology services, and research organization with high academically background. Committed to delivering innovation, IITAC collaborates with its clients to help them become high-performance business and governments. With industry, and business process expertise, and broad knowledge resources, IITAC can mobilize the right people, skills, and technologies to help clients improve their performance. IITAC facilitates knowledge transfer to people, companies, and organizations, and helps to increase qualification significant. The IITAC trainings, assessments, and certifications are building upon experts' knowledge. For this IITAC certifications are in compliance with the ISO 17024. The ISO/IEC 17024 ("General Requirements for bodies operating certification of persons") is intended as a framework for certification bodies operating a certification program for persons and as the standard against which an accreditation body can accredit the certification body. IITAC is providing online tests, assessments, and certifications.

The certifications are designed to do for professionals what other licenses do for information systems professionals - namely, to warrant that they understand the general principles that dictate professional behaviour, and that they know how to apply a specific body of knowledge to a well-understood area of technical activity. In theory IITAC certified know how to handle matters ranging from project management to marketing, from IT-security to IT-anti-security, from quality assurance to quality management. In practice IITAC certified must master a sufficiently large body of knowledge to pass iterative-incremental exams, assessments, and evaluations that covers the most important and specific areas. The IITAC certification has the reputation of being very difficult. Obtaining a IITAC certificate is a long-time but not a lifetime achievement. The idea is to keep up one's skills and knowledge base and to continue learning new topics and technologies. Organizations staffed with IITAC certified gains a completive edge. Because IITAC are the best in their business, organizations demonstrate to customers, suppliers, and employees alike, the importance they place on professionalism. Additionally, the IITAC certified designation reflects a properly and consistently trained professional staff.


Contact

This e-mail address is being protected from spam bots, you need JavaScript enabled to view it

Editorship and responsibility according to § 6 MdStV/TDG

IITAC - International Institute

Univ.-Doz. Dr. Thorsten Schneider (Managing Director)
Lange Strasse 31
32051 Herford
Germany

E-Mail: This e-mail address is being protected from spam bots, you need JavaScript enabled to view it
Phone: +49 (0) 5221 691 324


General Terms and Conditions (Allgemeine Geschäftsbedingungen)

The General Terms and Conditions (Allgemeine Geschäftsbedingungen) are located here.

In June 2007, the German parliament passed changes to the computer crime laws, including §202c StGB, which states (unapproved translation):

Whoever prepares a crime according to §202a or §202b and who creates, obtains or provides access to, sells, yields, distributes or otherwise allows access to

  • passwords or other access codes, that allow access to data or
  • computer programs whose aim is to commit a crime
will be punished with up to one year jail or a fine.

Additionally, this new section is interwoven with other laws, including the ones covering terrorism. The current interpretation includes the acceptance of others committing a crime using material as violation of §202c.

Damn Vulnerable Linux is legal according to §202a, §202b and §202c! Damn Vulnerable Linux is a training environment for IT security experts in academia and NOT a hackers toolbox! It is NOT thought to enforce any illegal actions but thought to train the development of secure software. It is meant for educational purposes and teaching in university lectures. It is NOT meant to enforce any illegal actions. By downloading and using Damn Vulnerable Linux you agree to stay legal!

Until we have checked all law issues we have disabled the registration option for new members.


Datenschutzerklärung

Wir freuen uns über Ihr Interesse an unserer Homepage und unserem Unternehmen. Für externe Links zu fremden Inhalten können wir dabei trotz sorgfältiger inhaltlicher Kontrolle keine Haftung übernehmen.

Der Schutz Ihrer personenbezogenen Daten bei der Erhebung, Verarbeitung und Nutzung anlässlich Ihres Besuchs auf unserer Homepage ist uns ein wichtiges Anliegen. Ihre Daten werden im Rahmen der gesetzlichen Vorschriften geschützt. Nachfolgend finden Sie Informationen, welche Daten während Ihres Besuchs auf der Homepage erfasst und wie diese genutzt werden:

1. Erhebung und Verarbeitung von Daten

Jeder Zugriff auf unsere Homepage und jeder Abruf einer auf der Homepage hinterlegten Datei werden protokolliert. Die Speicherung dient internen systembezogenen und statistischen Zwecken. Protokolliert werden: Name der abgerufenen Datei, Datum und Uhrzeit des Abrufs, übertragene Datenmenge, Meldung über erfolgreichen Abruf, Webbrowser und anfragende Domain.

Zusätzlich werden die IP Adressen der anfragenden Rechner protokolliert.

Weitergehende personenbezogene Daten werden nur erfasst, wenn Sie diese Angaben freiwillig, etwa im Rahmen einer Anfrage oder Registrierung, machen.

2. Nutzung und Weitergabe personenbezogener Daten

Soweit Sie uns personenbezogene Daten zur Verfügung gestellt haben, verwenden wir diese nur zur Beantwortung Ihrer Anfragen, zur Abwicklung mit Ihnen geschlossener Verträge und für die technische Administration.

Ihre personenbezogenen Daten werden an Dritte nur weitergegeben oder sonst übermittelt, wenn dies zum Zwecke der Vertragsabwicklung – insbesondere Weitergabe von Bestelldaten an Lieferanten – erforderlich ist, dies zu Abrechnungszwecken erforderlich ist oder Sie zuvor eingewilligt haben. Sie haben das Recht, eine erteilte Einwilligung mit Wirkung für die Zukunft jederzeit zu widerrufen.

Die Löschung der gespeicherten personenbezogenen Daten erfolgt, wenn Sie Ihre Einwilligung zur Speicherung widerrufen, wenn ihre Kenntnis zur Erfüllung des mit der Speicherung verfolgten Zwecks nicht mehr erforderlich ist oder wenn ihre Speicherung aus sonstigen gesetzlichen Gründen unzulässig ist.

3. Auskunftsrecht

Auf schriftliche Anfrage werden wir Sie gern über die zu Ihrer Person gespeicherten Daten informieren.

Sicherheitshinweis:

Wir sind bemüht, Ihre personenbezogenen Daten durch Ergreifung aller technischen und organisatorischen Möglichkeiten so zu speichern, dass sie für Dritte nicht zugänglich sind. Bei der Kommunikation per E Mail kann die vollständige Datensicherheit von uns nicht gewährleistet werden, so dass wir Ihnen bei vertraulichen Informationen den Postweg empfehlen.

 


What we do

There is no mystery to how we serve our clients. We apply core principles to every client engagement. How we apply them to every client engagement: We work with our clients not for them. By collaborating with our clients throughout engagements, we build support, ensure momentum, and reach workable solutions. We also stretch and enhance our clients’ capabilities as they participate in the problem solving process. Bring the best of knowledge to each client. No single IITAC member owns a client relationship. Instead, we assemble a team best suited for each engagement. Take a top management perspective. By partnering with the CEO and senior management team, we ensure that we are working on the issues and opportunities that are important at the highest levels of the company and that our solutions are integrated across business units and functions. IITAC takes a fact-based approach to management challenges, ensuring that the weight of the evidence is behind our recommendations and that our clients have confidence in their choices. Preserve confidentiality. IITAC prefers not to discuss our clients or the work we do on their behalf. While we debate it from time to time, we believe that this policy is in the best interests of our clients and that it safeguards our independence and objectivity.


Who we are

Whether IITAC is advising clients on core strategy, developing their own skills, or contributing to their communities, IITAC consultants bring their extraordinary talent and drive to every situation. We seek individuals with outstanding character, a sharp analytical mind, and the ability to work effectively with people at all levels in an organization. IITAC provides rich experiences and work alongside managers at top companies on industry-shaping work. We are acknowledged to form an exceptional talent pool, and that IITAC enjoys broad appeal as a place for talented people to grow. As organizations develop professionally, they become more involved with IITAC. There are three dimensions that we consider especially important:

  • Client leadership. Focusing on the whole client organization and its most critical issues; providing counsel to CEOs and other executives.

  • Thought leadership. Contributing to IITAC intellectual capital through research and knowledge development.

  • People leadership. Taking responsibility for the performance of client service teams; mentoring and having impact on the careers of others

Additional IITAC is involved in university lecturing and research activities cooperating with large scaled universities.


What we believe

It should be no surprise that serving clients is at the core of our mission. But we also hope we're creating a place where talented people want to invest. The way we articulate our mission and values reflect these dual ambitions. Overall, IITAC.org is quality oriented in its core. IITAC.org believes, that combining the forces of management knowledge is not enough to bring you forward. In all our work IITAC.org adheres to the professional standards clients expect from a trusted counsellor. By imposing high standards on ourselves – for confidentiality and independence, for example – we have earned trust and confidence from our clients. We aim to help the executives of leading companies and organizations make significant improvements to their overall performance by tackling their most challenging issues. We do so by taking a top-management perspective, bringing innovations in management practice, and building our clients’ capabilities. IITAC.org seeks to attract exceptional people and provide them with opportunities for personal and professional growth that they can find nowhere else. Our aspiration is an inclusive, supportive environment that balances individual opportunity with care and respect for all colleagues. This is not a company of knowledge experts; it is a company of leaders who have quality mentality and need the freedom to do what they think is right.


Disclaimer

This disclaimer is not meant to sidestep the responsibility for the material we will share with you, but rather is designed to emphasize the purpose of this IITAC.org feature, which is to provide information for your own purposes. The subjects presented have been chosen for their educational value. The information contained herein consists of Secure Software Engineering, Software Security Engineering, Software Management, Security Analysis, Algorithms, Virus-Research, Software-Protection and Reverse Code Engineering, Cryptanalysis, Whitehat and Blackhat Content, and is derived from authors of academically institutions, commercials, organizations, as well as private persons. The information should not be considered to be completely error-free or to include all relevant information; nor should it be used as an exclusive basis for decision-making. The user understands and accepts that if IITAC.org were to accept the risk of harm to the user from use of this information, it would not be able to make the information available because the cost to cover the risk of harms to all users would be too great. Thus, use of the information is strictly voluntary and at the user's sole risk.

The information contained herein is not a license, either expressly or impliedly, to any intellectual property owned or controlled by any of the authors or developers of IITAC.org. The information contained herein is provided on an "AS IS" basis and to the maximum extent permitted by applicable law, this information is provided AS IS AND WITH ALL FAULTS, and the authors and developers of IITAC.org hereby disclaim all other warranties and conditions, either express, implied or statutory, including, but not limited to, any (if any) implied warranties, duties or conditions of merchantability, of fitness for a particular purpose, of accuracy or completeness of responses, of results, of workmanlike effort, of lack of viruses, and of lack of negligence, all with regard to the contribution.

ALSO, THERE IS NO WARRANTY OR CONDITION OF TITLE, QUIET ENJOYMENT, QUIET POSSESSION, CORRESPONDENCE TO DESCRIPTION OR NON-INFRINGEMENT WITH REGARD TO IITAC.org.

IN NO EVENT WILL ANY AUTHOR OR DEVELOPER OF IITAC.org BE LIABLE TO ANY OTHER PARTY FOR THE COST OF PROCURING SUBSTITUTE GOODS OR SERVICES, LOST PROFITS, LOSS OF USE, LOSS OF DATA, OR ANY INCIDENTAL, CONSEQUENTIAL, DIRECT, INDIRECT, OR PUNITIVE OR SPECIAL DAMAGES WHETHER UNDER CONTRACT, TORT, WARRANTY, OR OTHERWISE, ARISING IN ANY WAY OUT OF THIS OR ANY OTHER AGREEMENT RELATING TO IITAC.org, WHETHER OR NOT SUCH PARTY HAD ADVANCE NOTICE OF THE POSSIBILITY OF SUCH DAMAGE.


Conditions of Use

Thank you for visiting the IITAC.org Web site and reviewing our use policy. You should also be aware that IITAC.org has a privacy policy, also available on this Web site. IITAC.org wants you know about the collection, use, security, and access to information that may be obtained through use of IITAC.org Web portal. By visiting this Web site, you are accepting the policies and practices described in this notice.

Please note that this use policy is subject to change without notice, and that it reflects the IITAC.org currentbusiness practices. This policy is dated February 21, 2006.

Also note that each department within IITAC.org may have additional privacy and use policies specific to the mission and needs of their work. Be sure to review those policies as you access additional sites within the IITAC.org.


PERSONAL INFORMATION AND CHOICE

"Personal information" is information about a natural person that identifies or describes an individual, including but not limited to, his or her name, Social Security number, physical description, home address, home telephone number, education, financial matters, and medical or employment history, readily identifiable to that specific individual. A domain name or Internet Protocol address is not considered personal information, however, it is considered "electronically collected personal information."

According to Government Code Section 11015.5, "Electronically collected personal information" means any information that is maintained by an agency that identifies or describes an individual user, including but not limited to, his or her name, Social Security number, physical description, home address, home telephone number, education, financial matters, medical or employment history, password, electronic mail address, and information that reveals any network location or identity, but excludes any information manually submitted to a S²e - Secure Software Engineering agency by a user, whether electronically or in written form, and information on or relating to individuals who are users, serving in a business capacity, including but not limited to, business owners, officers, or principals of that business.

"Electronically collected personal information" we automatically collect includes your domain name or Internet Protocol address, and statistical information about which Web pages you visit. If you voluntarily participate in an activity that asks for specific information (for example, completing a request for assistance, sending an e-mail, or participating in a survey), more detailed data will be collected. If you choose not to participate in these activities, your choice will in no way affect your ability to use any other feature of the Web site.

If any type of personal information is requested on the Web site or volunteered by the user, it may be protected by State law, including Information Practices Act of 1977, Government Code Section 11015.5, and the federal Privacy Act of 1974.


A SPECIAL NOTE ABOUT CHILDREN

Children are not eligible to use services that require submission of personal information and we require that minors (under the age of 18) do not submit any personal information to us. This includes submitting personal information to IITAC.org as part of a user profile or personalization profile. If you are a minor, you can use these services only if used together with your parents or guardians. If you are a minor you should seek guidance from your parents.


INFORMATION WE COLLECT AND HOW WE USE IT

We do collect personal information directly from individuals who volunteer to use some of our services. Collection of this information is required to deliver the specific services, but use of these services is voluntary.

If you do nothing during your visit to the Web site but browse or download information, we automatically collect and store the following information about your visit:

  • The Internet Protocol Address and domain name used but not the e-mail address. The Internet Protocol address is a numerical identifier assigned either to your Internet service provider or directly to your computer. We use the Internet Protocol Address to direct Internet traffic to you and generate statistics used in the management of this site.

  • The type of browser and operating system you used.

  • The date and time you visited this site.

  • The Web pages or services you accessed at this site.

  • The Web site you visited prior to coming to this Web site.

  • The Web site you visit as you leave this Web site.

  • If you downloaded a form, the form that was downloaded.

The information we automatically collect or store is used to improve the content of our Web services and to help us understand how people are using our services. This information does not identify you personally and is used for gathering Web site statistics. The information we automatically collect and store in our logs about your visit helps us to analyze our Web site to continually improve the value of the materials available. Our Web site logs do not identify a visitor by personal information, and we make no attempt to link other Web sites with the individuals that browse the IITAC.org Web site.

The IITAC.org may provide or distribute certain lists and statistical reports of regulatory information as provided by law, but no personal information is sold or distributed and all relevant legal protections still apply to the IITAC.org Web sites.


WHAT HAPPENS TO INFORMATION YOU SUBMIT TO US

If you choose to submit information to us, the information will be transmitted through secure lines to our departmental database. Any private information will only be used for the purposes for which it was provided and will not be shared with another entity except as prescribed by law. Please see our privacy policy for additional information.


WHEN WE MIGHT SHARE INFORMATION YOU PROVIDE US

Any information you provide to us will only be shared with entities involved in your case as necessary. Information you provide may be included with other consumers' information to be used for statistical reporting, trending data, and/or investigative actions. For example, we may need to retain information that becomes part of an enforcement action or consumer complaint case for a period of time after the closing date of the case.


SURVEYS

If during your visit to IITAC.org Web site you participate in a survey or send an e-mail, the following additional information will be collected:

  • The e-mail address and contents of the e-mail; and

  • Information volunteered in response to the survey.

The information collected is not limited to text characters and may include audio, video, and graphic information formats you send us.

The information is retained in accordance with Government Code Section 11015.5.


IF YOU SEND US E-MAIL

You may choose to provide us with personal information, as in e-mail with a comment or question. We use the information to improve our service to you or to respond to your request. Sometimes we forward your e-mail to other IITAC.org employees who may be better able to help you, and this staff may be employed by a different agency within the IITAC.org. Except for authorized law enforcement investigations or as required by law, we do not share our e-mail with any other organizations.

We use your e-mail to respond appropriately. This may be to respond to you, to address issues you identify, to further improve our Web site, or to forward the e-mail to another agency for appropriate action.


AUTOMATIC COLLECTION OF INFORMATION/COOKIES

Cookies are simple text files stored on your computer by your Web browser. The main IITAC.org portal does not use cookies to maintain personalization, however some IITAC.org applications may.

IITAC.org makes every attempt to avoid the use of cookies. When needed to maintain the functionality of an application, unlike the common usage of cookies the IITAC.org only uses cookies during the session in which you access our interactive applications.

Cookies created on your computer by using this Web site do not contain "personal information" and do not compromise your privacy or security. We use the cookie feature only to store a randomly generated identifying temporary tag on your computer. You can refuse the cookie or delete the cookie file from your computer by using widely available utility software or features in your browser itself. However, if you turn your cookie option off you may not be able to access some of the features in our interactive applications.


SECURITY

IITAC.org, as developer and manager of this Web site, has taken several steps to safeguard the integrity of its telecommunications and computing infrastructure, including but not limited to authentication, monitoring, auditing, and encryption. Security measures have been integrated into the design, implementation and day-to-day practices of the entire IITAC.org operating environment as part of its continuing commitment to risk management. This information should not be construed in any way as giving business, legal, or other advice, or warranting as fail-proof, the security of information provided via the IITAC.org supported Web site.


LINKS TO OTHER SITES

Our Web site has links to sites we felt might be useful to you and which may provide services. When you link to another site, you are no longer on our site and are subject to the privacy policy of the new site.

This Web site and the information it contains are provided as a public service by IITAC.org. This system is monitored to ensure proper operation, to verify the functioning of applicable security features, and for comparable purposes. Anyone using this system expressly consents to such monitoring. Unauthorized attempts to modify any information stored on this system, to defeat or circumvent security features, or to utilize this system for other than its intended purposes are prohibited and may result in criminal prosecution.


LIMITATION OF LIABILITY

Please report any errors, or omissions to us by contacting the Webmaster.

IITAC.org makes no claims, promises or guarantees about the absolute accuracy, completeness, or adequacy of the contents of this Web site and expressly disclaims liability for errors and omissions in the contents. No warranty of any kind, implied, expressed or statutory, including but not limited to the warranties of non-infringement of third-party rights, title, merchantability, fitness for a particular purpose and freedom from computer virus, is given with respect to the contents of this Web site or its hyperlinks to other Internet resources. Reference in this Web site to any specific commercial products, processes, or services, or the use of any trade, firm or corporation name is for the information and convenience of the public, and does not constitute endorsement, recommendation, or favoring by IITAC.org, or their employees or agents.

This use policy is subject to change without notice.


OWNERSHIP

However, IITAC.org does make use of copyrighted data (for example, photographs) which may require additional permissions prior to your use. Furthermore, the unique branding of the site and various official seals and marks may not be used without permission of IITAC.org . In order to use any information on this Web site not owned or created by the IITAC.org you must seek permission directly from the owning (or holding) sources. IITAC.org shall have the unlimited right to use for any purpose, free of any charge, all information submitted via this site except those submissions made under separate legal contract. IITAC.org shall be free to use, for any purpose, any ideas, concepts, or techniques contained in information provided through this site.


 

DVL Project Tracker

DVL 1.5

15 %

References

  • IITAC - International Institute (Certification and Training)
  • Leibnitz University of Hannover, Germany (Secure Software Development Lecture)
  • University of Applied Sciences and Arts Hannover, Germany (Secure Software Development Lecture)
  • East Tennessee State University, U.S (Ethical Hacking Class)
  • University of the Basque Country, Spain (Computer Security Class)
  • University of Florida, U.S. (Student Infosec Team)
  • Institute Superieur Maritim, Algeria

License


License for Damn Vulnerable Linux distribution

Creative Commons License
This work is licensed under a Creative Commons Attribution-Noncommercial-Share Alike 3.0 License.


License for training material including all texts, audios and videos

Creative Commons License
This work is licensed under a Creative Commons NonCommercial Sampling Plus 1.0 License.