Learn From The Webgoat

If web security is at all of interest to you then get yourself over to the webgoat project at the Open Web Applications Security Project. Installers are available for Linux, OSX and windows.

WebGoat is a full J2EE web application designed to teach web application security lessons. In each lesson, users must demonstrate their understanding by exploiting a real vulnerability on the local system. The system is even clever enough to provide hints and show the user cookies, parameters and the underlying Java code if they choose. Examples of lessons include SQL injection to a fake credit card database, where the user creates the attack and steals the credit card numbers.

