|  | 50c88738c2 | Added a quiz for cia-triad lessons | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | baff6b06f3 | Moved questions JSON to seperate file | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 41998a0143 | Deleted old assignments (introduction) and added tests for the new ones | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 46e71a8bcd | Renamed hints | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 3b0c09add7 | Highlighted important parts of text and expanded the CIA explanations. | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 002ce6e8a6 | Polished and fixed assignment 10 (A) of sql injections | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 1bcddaf710 | Reworked and polished assignment 8 and 9 (C and I) | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | cd3f7ea924 | Inserted quiz into sql injection advanced | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 14f4b42ba5 | Fixed some errors. | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 26e3803de0 | Added more hints | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 6fe7582dfb | Added an assignment for compromising availability to the sql injections (introduction). WIP | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 4e6c721545 | Added an assignment for compromising integrity by query chaining to the sql injections (introduction) | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 75b1895122 | Added a new lessons for sql injections on "Compromising confidentiality with String SQL Injection" | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 083eb1b567 | improved the description of the new sql injection mitigation assignments | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | d2a2716a9a | Added a lesson for the CIA-Triad in the general category explaining the three elements of the triad. | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 0529289f6d | Added (introduction) extra to the sidebar menu on the left. Slightly modified SQL Injections explanation/example. | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | adc8891160 | Reworked SQl-Injections Introdruction Lesson plan | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 2fdde982eb | Restructured SQL Injection introduction lesson and created new required lesson-pages. | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 2334b3c02d | lessons: sql_injection added another assignment | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 8667a85865 | Draft_Version for SQL Injection | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 78ff54b910 | Modified and improved explanations for SQL Injections (basics) | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | bca50e8ca5 | lesson: sql-injection-mitigation added new assignment for jdbc code completion | 2019-03-26 08:43:38 +01:00 |  | 
			
				
					|  | 4050e899ff | changed unit test to dynamic port to prevent port conflict and build failure | 2019-03-26 08:37:47 +01:00 |  | 
			
				
					|  | 24bbb636f8 | Update HttpBasics_ProxyIntro1.adoc Fixed along to alone | 2019-03-26 08:35:55 +01:00 |  | 
			
				
					|  | 7291651967 | Update IntroductionWebWolf.adoc Fixed typos and language to make it clearer | 2019-03-26 08:35:55 +01:00 |  | 
			
				
					|  | 528c05a859 | Update Landing_page.adoc Updated the language to make it easier to understand | 2019-03-26 08:35:55 +01:00 |  | 
			
				
					|  | e625d4008b | Update Receiving_mail.adoc Clarify text to make it easier to understand | 2019-03-26 08:35:55 +01:00 |  | 
			
				
					|  | 53050d7198 | Make language more understandable Changed wording, to make it more intuitive | 2019-03-26 08:35:55 +01:00 |  | 
			
				
					|  | a49dd6c348 | Updated version in pom.xml | 2019-02-09 20:51:14 +01:00 |  | 
			
				
					|  | c0dd773b90 | Merge branch 'develop' into alexanderfry-feature/ssrf | 2019-02-09 18:20:43 +01:00 |  | 
			
				
					|  | bd86dc6ee0 | SNAPSHOT version | 2019-02-09 18:20:08 +01:00 |  | 
			
				
					|  | d6dae9ef75 | Merge branch 'feature/ssrf' of git://github.com/alexanderfry/WebGoat into alexanderfry-feature/ssrf | 2019-02-09 16:42:08 +01:00 |  | 
			
				
					|  | 941ca5e9a1 | SQL injection add hints #470 | 2019-02-09 16:41:46 +01:00 |  | 
			
				
					|  | 6c86929aa6 | New release, updating pom.xml | 2019-02-08 14:20:23 +01:00 |  | 
			
				
					|  | 98f75e34d5 | Initial Commit of SSRF Lesson | 2019-01-21 18:09:31 -04:00 |  | 
			
				
					|  | 631fedb752 | New release, updating pom.xml | 2019-01-18 08:45:44 +01:00 |  | 
			
				
					|  | 7b8e3cdb52 | Merge branch 'release/v8.0.0.M22' | 2019-01-18 08:38:10 +01:00 |  | 
			
				
					|  | 9be4361afc | New release, updating pom.xml | 2019-01-18 08:37:26 +01:00 |  | 
			
				
					|  | b0e3a06b50 | Password reset lesson 5 not working #512 Added comment to not use OWASP ZAP | 2019-01-17 16:35:04 +01:00 |  | 
			
				
					|  | 9170dcb87f | Fix a grammatical error | 2019-01-17 14:50:07 +01:00 |  | 
			
				
					|  | ed490a5ecf | Fix for #545 Introduced new macro to make a clear distinction between /WebWolf with
context root and without. | 2019-01-16 11:07:30 +01:00 |  | 
			
				
					|  | ec225558b9 | Move to latest Spring Boot version and move to Java 11 | 2018-12-15 13:59:54 +01:00 |  | 
			
				
					|  | bf45a0a8e5 | Fix for XXE docs | 2018-12-14 12:43:19 +01:00 |  | 
			
				
					|  | 6699456ee1 | Bug fix in sample code | 2018-11-19 08:15:41 +01:00 |  | 
			
				
					|  | 1520c7571f | HTML Tampering Mitigation Description Typo | 2018-11-19 08:13:17 +01:00 |  | 
			
				
					|  | 5921a06747 | Fix SQL injection mitigation answer (fixes #505) You need to submit the IP of the webgoat-prd server, not just any of the IPs. | 2018-11-19 08:12:17 +01:00 |  | 
			
				
					|  | a2f28460c0 | Update password_reset.html Without this attribute it is impossible to pass the lesson "password-reset" `Email functionality with WebWolf`. | 2018-11-19 08:08:41 +01:00 |  | 
			
				
					|  | f9a4061604 | Fix typo | 2018-09-12 09:54:44 +02:00 |  | 
			
				
					|  | 580e50f558 | Same form post is used and with autocomplete this does not work because all fields will be posted. The endpoint could no long distinguish between the different actions (sending e-mail and checking password) | 2018-08-10 13:15:40 +02:00 |  | 
			
				
					|  | 1252e3dc21 | Update instructions to use docker-compose only | 2018-07-17 20:17:35 +02:00 |  |