From 760c3f299044e365f8c196edb9d9b01a89e58025 Mon Sep 17 00:00:00 2001 From: Tobias_Melzer Date: Tue, 27 Nov 2018 12:05:10 +0100 Subject: [PATCH] Added Hints for second Assignment in Chrome DevTools --- .../owasp/webgoat/plugin/NetworkLesson.java | 2 + .../main/resources/html/ChromeDevTools.html | 39 ------------------- .../resources/i18n/WebGoatLabels.properties | 5 ++- 3 files changed, 6 insertions(+), 40 deletions(-) diff --git a/webgoat-lessons/chrome-dev-tools/src/main/java/org/owasp/webgoat/plugin/NetworkLesson.java b/webgoat-lessons/chrome-dev-tools/src/main/java/org/owasp/webgoat/plugin/NetworkLesson.java index 3743122fd..13b526ca1 100644 --- a/webgoat-lessons/chrome-dev-tools/src/main/java/org/owasp/webgoat/plugin/NetworkLesson.java +++ b/webgoat-lessons/chrome-dev-tools/src/main/java/org/owasp/webgoat/plugin/NetworkLesson.java @@ -1,6 +1,7 @@ package org.owasp.webgoat.plugin; import org.owasp.webgoat.assignments.AssignmentEndpoint; +import org.owasp.webgoat.assignments.AssignmentHints; import org.owasp.webgoat.assignments.AssignmentPath; import org.owasp.webgoat.assignments.AttackResult; import org.springframework.web.bind.annotation.RequestMapping; @@ -11,6 +12,7 @@ import org.springframework.web.bind.annotation.ResponseBody; import java.io.IOException; @AssignmentPath("/ChromeDevTools/network") +@AssignmentHints({"networkHint1", "networkHint2"}) public class NetworkLesson extends AssignmentEndpoint { @RequestMapping(method = RequestMethod.POST) diff --git a/webgoat-lessons/chrome-dev-tools/src/main/resources/html/ChromeDevTools.html b/webgoat-lessons/chrome-dev-tools/src/main/resources/html/ChromeDevTools.html index b322a96f9..c22098ca8 100644 --- a/webgoat-lessons/chrome-dev-tools/src/main/resources/html/ChromeDevTools.html +++ b/webgoat-lessons/chrome-dev-tools/src/main/resources/html/ChromeDevTools.html @@ -35,16 +35,9 @@
- -
- - - -
- - \ No newline at end of file diff --git a/webgoat-lessons/chrome-dev-tools/src/main/resources/i18n/WebGoatLabels.properties b/webgoat-lessons/chrome-dev-tools/src/main/resources/i18n/WebGoatLabels.properties index a228c30b4..ebe2341dc 100644 --- a/webgoat-lessons/chrome-dev-tools/src/main/resources/i18n/WebGoatLabels.properties +++ b/webgoat-lessons/chrome-dev-tools/src/main/resources/i18n/WebGoatLabels.properties @@ -5,4 +5,7 @@ xss-dom-message-failure=Incorrect. network.request=You made a HTTP Request. network.success=Correct, Well Done. -network.failed=That is not correct, try again. \ No newline at end of file +network.failed=That is not correct, try again. + +networkHint1=Clear all Requests from the network button, then make the request. The you should be able to figure out, which request holds the data. +networkHint2=The name of the request is "dummy" \ No newline at end of file