Setting Up A Juice Shop

So I have decided to make a collection blog posts covering OWASP’s Juice Shop, from setup to going through some of the sections.

So before we jump into this, maybe I should explain what a Juice Shop is, but since OWASP has already written something cover this, so I will just use there blurb:

“OWASP Juice Shop is probably the most modern and sophisticated insecure web application! It can be used in security trainings, awareness demos, CTFs and as a guinea pig for security tools! Juice Shop encompasses vulnerabilities from the entire OWASP Top Ten along with many other security flaws found in real-world applications!”
Just Make A Start

So I’ve used this domain before for a blog a while ago, deleted it, started it again. I may have even had some useful content at some point but yet again ended up deleting it for some reason. I then started to fixate on setting up the server in the best way possible way, break it, wipe it and start again. This took me from saying “I will start my own blog soon” to three months later wondering why I hadn’t started anything yet.

