Commit Graph

89 Commits

Author SHA1 Message Date
Àngel Ollé Blázquez
256c1dd3aa Renamed to vulnerablecomponents 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
b93c935d6c Renamed to sqlinjection 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
827a9d3467 Renamed to securepasswords 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
91470b93ea Renamed to pathtraversal 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
37d684fdd3 Renamed to passwordreset 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
4f911c64a1 Renamed to missingac 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
e0a0a80ad9 Renamed to lessontemplate 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
26c289d7d4 Renamed to insecurelogin 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
1eff81718b Renamed to httpproxies 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
08ce1add01 Renamed to httpbasics 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
25948306bd Renamed to htmltampering 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
1c86f465dc Renamed to clientsidefiltering 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
3b330fb328 Renamed to chromedevtools 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
8a35316985 Rename to bypassrestrictions 2022-07-31 22:39:21 +02:00
Àngel Ollé Blázquez
c63345e4ee Rename authbypass 2022-07-31 22:39:21 +02:00
Nanne Baars
06b7244de7 Move XXE lesson to category A3: Injection 2022-07-23 09:39:52 +02:00
René Zubcevic
16af4272a5 joda time refactored some dep fix (#1292) 2022-07-14 09:11:06 +02:00
René Zubcevic
f8b7ca5c85 Pom update (#1290)
* asciidoctorj update

* pom and suppression updates
2022-07-11 13:28:44 +02:00
René Zubcevic
e4eb5d783a Some updates and code improvements (#1288)
* try with resources

* StringBuilder

* removed ant and updated spring boot
2022-07-10 17:13:26 +02:00
René Zubcevic
b32240f96b owasp top10-2021 (#1235) 2022-04-11 21:12:41 +02:00
Nanne Baars
711649924b Refactoring (#1201)
* Some initial refactoring

* Make it one application

* Got it working

* Fix problem on Windows

* Move WebWolf

* Move first lesson

* Moved all lessons

* Fix pom.xml

* Fix tests

* Add option to initialize a lesson

This way we can create content for each user inside a lesson. The initialize method will be called when a new user is created or when a lesson reset happens

* Clean up pom.xml files

* Remove fetching labels based on language.

We only support English at the moment, all the lesson explanations are written in English which makes it very difficult to translate. If we only had labels it would make sense to support multiple languages

* Fix SonarLint issues

* And move it all to the main project

* Fix for documentation paths

* Fix pom warnings

* Remove PMD as it does not work

* Update release notes about refactoring

Update release notes about refactoring

Update release notes about refactoring

* Fix lesson template

* Update release notes

* Keep it in the same repo in Dockerhub

* Update documentation to show how the connection is obtained.

Resolves: #1180

* Rename all integration tests

* Remove command from Dockerfile

* Simplify GitHub actions

Currently, we use a separate actions for pull-requests and branch build.
This is now consolidated in one action.
The PR action triggers always, it now only trigger when the PR is
opened and not in draft.
Running all platforms on a branch build is a bit too much, it is better
 to only run all platforms when someone opens a PR.

* Remove duplicate entry from release notes

* Add explicit registry for base image

* Lesson scanner not working when fat jar

When running the fat jar we have to take into account we
are reading from the jar file and not the filesystem. In
this case you cannot use `getFile` for example.

* added info in README and fixed release docker

* changed base image and added ignore file

Co-authored-by: Zubcevic.com <rene@zubcevic.com>
2022-04-09 14:56:12 +02:00
Nanne Baars
42f373d66a Moved Maven multiproject setup 2015-08-11 21:57:12 +02:00
misfir3
858380e95b Merge pull request #9 from misfir3/master
Initial cut-over of backbone port
2015-07-13 08:55:20 -04:00
Jason White
bcfc1be59c Merge remote-tracking branch 'upstream/master' 2015-06-28 18:08:06 -04:00
Nanne Baars
3382ec8f8b include choice between relative path and reference with context root included 2015-06-26 15:49:17 +02:00
Nanne Baars
21d450f320 Added a method so we can fetch the absolute path of a lesson 2015-06-26 11:00:18 +02:00
Nanne Baars
08beac23b5 Added methods for retrieving the correct directory in which resources resided (like js, jsp etc) 2015-06-22 13:13:48 +02:00
Jason White
8aa4b8109f incremental progress on new UI code, mod to AbstractLesson for menu 2015-05-12 22:32:56 -04:00
Jason White
53c4ffc1cf update for client side routing menu links 2015-05-12 19:04:53 -04:00
mayhew64
6e8d8562d6 WEB-203 deprecated getCredits - credits moved to the about page 2015-05-03 16:31:52 -04:00
nbaars
b439c6100e Added error logging for missing lesson solution 2015-04-06 18:45:13 +02:00
nbaars
32b6ef9c53 Fixed WEB-198 Text of the lesson plan not above the assignment 2015-02-23 12:43:26 +01:00
nbaars
744630ca4c Lesson source file, lesson plan and lesson solution are loaded from the plugin. 2015-01-07 13:45:27 +01:00
Bruce Mayhew
4f6ba2711f Changed the pom to build the container artifact and deleted the plugin 2015-01-02 14:29:08 -05:00
Bruce Mayhew
1a5358458c Removed all lesson specific source and resources 2015-01-02 13:40:15 -05:00
mayhew64
06237b8cef Merge pull request #28 from juliadotter/WEB-169
Fixed bug WEB-169
2014-12-19 07:16:14 -05:00
mayhew64
3311cef85c Merge pull request #22 from jaqqbek/ZipBomb
New Lesson ZipBomb
2014-12-19 07:12:50 -05:00
Nina Alex Juliadotter
1fd2fd7b42 Fixed bug WEB-169 2014-12-15 19:52:53 +11:00
Nina Alex Juliadotter
e0da681402 Resolve HttpOnly Test bug WEB-161 2014-12-09 20:52:35 +11:00
mayhew64
e77dda3f22 Merge pull request #21 from merwan/patch-1
Fix typo
2014-11-25 16:34:59 -05:00
jaqqbek
f3b0ad0a3f New Lesson ZipBomb 2014-11-01 16:53:38 +01:00
Merouane Atig
17d15ebbae Fix typo 2014-10-31 09:13:09 +01:00
David Touzet
05c0c0342e Internationalization refactoring pass 2 : removing dependencies to
previous implentation
2014-10-17 15:20:53 +02:00
Rick Lawson
92b317b2c9 Clean up javascript in main_new (move ajax functions to goatUtil)
Make ajaxify links safe to call multiple times
2014-09-26 08:12:44 -04:00
Rick Lawson
019a148c9d Make attack links ajaxy
Fix hints on StoredXSS
2014-09-25 21:05:07 -04:00
mayhew64
e8a273efb2 Merge pull request #14 from nbaars/WEB-150
Removed the ! in the title, with the ! the solution will not load
2014-09-20 09:43:31 -06:00
mayhew64
3814b35aa8 Merge pull request #13 from TomConner/next
Fix WEB-151 - tolerate missing user cookie attribute in challenge stage2
2014-09-20 09:40:22 -06:00
Rick Lawson
b53094b587 more showHints and showSource changes 2014-09-20 11:18:05 -04:00
nbaars
14ea2c1fbe Removed the ! in the title, with the ! the solution will not load 2014-09-20 09:56:27 +02:00
unknown
ac410be6d9 Fix WEB-151 - tolerate missing user cookie attribute in challenge stage2 2014-09-20 01:37:51 -04:00