Nanne Baars
|
1ecb43092d
|
Bumped version number
|
2017-10-18 19:58:14 +02:00 |
|
Nanne Baars
|
8250b4048f
|
Updating version number
|
2017-10-18 19:43:33 +02:00 |
|
Nanne Baars
|
3ee1a1ca16
|
Travis now builds Docker and create a Github release.
Removed ActiveMQ between WebGoat and WebWolf they now act as standalone applications
|
2017-10-18 10:54:16 +02:00 |
|
Jason White
|
d0ec84e9a6
|
Merge remote-tracking branch 'upstream/develop' into develop
|
2017-10-11 20:29:47 -06:00 |
|
Jason White
|
b156d81535
|
Initial cut on CSRF. More to come
|
2017-10-11 20:06:57 -06:00 |
|
Nanne Baars
|
5033c3661a
|
Cleaning up test case logging
|
2017-10-08 02:07:22 +02:00 |
|
Nanne Baars
|
6cb526aa43
|
Maven build generates too much output for Travis CI
|
2017-10-08 01:58:03 +02:00 |
|
Nanne Baars
|
8a982dedb5
|
Updated XXE lesson so it also uses WebWolf
|
2017-10-07 13:46:34 +02:00 |
|
Nanne Baars
|
46c536554c
|
- Added new challenges
- Added new webapplication called WebWolf to make attacks more realistic
- Added WebWolf lesson to explain the concepts behind this new application
|
2017-09-12 23:12:10 +02:00 |
|
Jason White
|
b41751a55c
|
missing function level ac working again ... after VM implosion
|
2017-08-08 17:15:20 -06:00 |
|
Jason White
|
8df1d53471
|
interim missing function ac commit, traversing dev. env.
|
2017-08-08 09:28:09 -06:00 |
|
Jason White
|
06bf690a3a
|
Merge remote-tracking branch 'upstream/develop' into develop
|
2017-08-02 19:12:29 -04:00 |
|
Nanne Baars
|
49621c637f
|
Upgraded to latest in memory MongoDB (due to download link no longer working)
|
2017-07-26 05:07:15 +02:00 |
|
Jason White
|
f1a104f0ab
|
merging missing function-level-ac lesson
|
2017-07-25 09:44:10 -04:00 |
|
Jason White
|
8186bd4766
|
css and xss updates
|
2017-07-24 18:05:57 -04:00 |
|
Jason White
|
c44186f986
|
start of missing function ac lesson
|
2017-07-24 16:26:23 -04:00 |
|
Jason White
|
ca4b0c06b5
|
lesson css file
|
2017-07-24 11:34:10 -04:00 |
|
Jason White
|
dce962bdeb
|
Updating Category ordering, closer to T10
|
2017-07-19 15:54:50 -04:00 |
|
Jason White
|
0cb4faf15f
|
refactor to support cleaner scoping && success and failure callbacks
|
2017-07-18 17:39:58 -04:00 |
|
Jason White
|
fb65534355
|
Merging from 'injection-updates' into local develop branch
|
2017-07-03 15:22:02 -04:00 |
|
Jason White
|
2e4e4ea716
|
including restart lesson fix for lesson overview
|
2017-07-03 12:37:15 -04:00 |
|
Jason White
|
daaf361dd2
|
Lesson Overview updates
|
2017-07-03 12:14:01 -04:00 |
|
Jason White
|
89e2fc109c
|
Work-around to handle special chars in action ... currently to be able to match {userId} in hint creation/assignment for IDOR
|
2017-06-27 10:24:38 -04:00 |
|
Jason White
|
dd18e68660
|
merge of upstream, conflict resolution
|
2017-06-27 08:30:58 -04:00 |
|
Jason White
|
ccb4e3813b
|
#353 - lesson template/guide
|
2017-06-23 14:46:09 -04:00 |
|
Nanne Baars
|
e808abd504
|
Added testcase for SQL lesson 6a
|
2017-06-16 00:23:40 +02:00 |
|
Nanne Baars
|
7809057208
|
Enabled the challenges again to make them visible for everybody who starts WebGoat
|
2017-06-15 23:38:04 +02:00 |
|
Nanne Baars
|
e9ad20cb30
|
Make sure we clean all the files below the .webgoat dir
|
2017-06-15 19:08:19 +02:00 |
|
Nanne Baars
|
a484467419
|
Adding extra lesson for order by clauses
|
2017-06-15 19:08:19 +02:00 |
|
Nanne Baars
|
b048988d2f
|
Changed layout of the html tampering lesson and fixed some JavaScript issues. Added a small mitigation page.
Moved the lessons concerning client side validation to client side category
|
2017-06-13 03:22:19 +02:00 |
|
Nanne Baars
|
52a48df70c
|
XXE successfully completed message was no longer shown, fixed it by using form POST together with customjs functions.
Introduced callback functionality which you can specify after the posting in order to be able to load the comments list again.
|
2017-06-12 15:08:55 +02:00 |
|
Nanne Baars
|
129e9deba9
|
Added testcase for SQL injection lesson
|
2017-05-21 16:40:52 +02:00 |
|
Nanne Baars
|
0ad1f0d147
|
Fixing Travis issues while building
|
2017-05-21 13:28:29 +02:00 |
|
Nanne Baars
|
2b2451dd9c
|
testing with Travis dirs
|
2017-05-21 13:10:52 +02:00 |
|
Nanne Baars
|
50795d9ded
|
testing with Travis dirs
|
2017-05-21 13:06:00 +02:00 |
|
Nanne Baars
|
877de6ebd4
|
Updated XXE lessons with challenge screens
|
2017-05-21 12:24:42 +02:00 |
|
Jason White
|
feead6b740
|
initial cut on XSS, need to add some tests still
|
2017-05-18 14:41:14 -04:00 |
|
Nanne Baars
|
8d3c251d04
|
Merge branch 'challenge' into develop
Conflicts:
webgoat-container/src/main/resources/static/css/main.css
|
2017-05-04 03:02:00 +02:00 |
|
Jason White
|
08e7916b39
|
polling updates, including banner for appseceu
|
2017-05-10 16:15:38 +01:00 |
|
Nanne Baars
|
cae937c83e
|
Updated menu item for challenges
|
2017-05-03 11:51:24 +02:00 |
|
Jason White
|
c7c664ad4a
|
polling for scoreboard added (appseceu)
|
2017-05-10 15:28:07 +01:00 |
|
Nanne Baars
|
a676fffc4e
|
Added Gatling performance testing
|
2017-05-03 09:40:57 +02:00 |
|
Jason White
|
328cd9bf24
|
For quick reloading/restart via intelliJ during dev
|
2017-05-10 13:08:27 +01:00 |
|
Jason White
|
118079233d
|
hints view fix. still a redundant call issue, but logging separately
|
2017-05-10 13:08:27 +01:00 |
|
Nanne Baars
|
194a327ad5
|
Fixed issue when restarting the lesson the menu was not updated (the marker stayed behind)
Also restarting the lesson was not persisted
|
2017-05-03 05:08:00 +02:00 |
|
Jason White
|
6fbd8457c1
|
update for width .. FF fix
|
2017-05-02 10:02:42 -04:00 |
|
Jason White
|
480dfe6a0a
|
scoreboard v 0.1 we'll say
|
2017-05-05 13:12:01 -04:00 |
|
Jason White
|
aeaa3cd1a2
|
removing template cruft from other lesson
|
2017-05-05 09:59:59 -04:00 |
|
Nanne Baars
|
454e8d4c14
|
Solving an assignment twice adds its again which breaks the UI because the endpoint for lessonoverview returns mulitple values for the same assignment.
|
2017-05-02 04:38:30 +02:00 |
|
Jason White
|
b840b0f3b5
|
additional support for scoreboard view
|
2017-05-02 22:24:31 -04:00 |
|