60bd04b9aa
Move to snapshot version
2021-07-29 11:13:16 +03:00
69a370f438
New release, updating pom.xml
2021-05-23 20:11:23 +02:00
b3f7a5338e
Update to latest versions
2021-04-03 10:58:22 +02:00
cda852f4e8
Run unit tests again for all lessons and rewrite all to JUnit 5
...
Due to the migration to Spring Boot 2.4 the Vintage dependency was no longer included by default, resulting in skipping all unit tests.
2021-03-31 19:31:13 +02:00
ae6d448aa0
Replace ${revision} with real version as Maven
...
The CI pipeline should take care of this.
2021-03-31 19:31:13 +02:00
b8bdb8f432
Updating to the new development version
2021-03-30 14:05:26 +00:00
574039902d
changed version to snapshot version and introduced revision parameter
...
for it
2020-11-27 12:15:19 +01:00
dfa3242aeb
Delete unused PasswordReset_password_reset_link.adoc
...
Not referenced in webgoat-lessons/password-reset/src/main/resources/html/PasswordReset.html, looks like a placeholder/dead code.
2020-05-24 09:39:18 +02:00
23762885fa
PasswordReset_host_header.adoc: Typo fixes
2020-05-24 09:39:18 +02:00
60087e441d
PasswordReset_SecurityQuestions.adoc: Typo fix.
2020-05-24 09:39:18 +02:00
2e8d0dd9b5
PasswordReset_plan.adoc: Spelling fixes
2020-05-24 09:38:25 +02:00
39740e069e
New release
2020-05-22 14:10:31 +02:00
9063b4137f
fix 404 links
2020-04-27 10:44:39 +02:00
58bc94d1f6
fix green buttons
2020-04-22 16:37:00 +02:00
6c25cf8e43
Add path traversal lesson
2020-03-10 08:03:48 +01:00
f79ad452d2
password reset support for using www.webwolf.local
2019-12-23 17:08:33 +01:00
5dd6b31905
Adjust lesson template ( #704 )
...
* Remove method `getId()` from all lessons as it defaults to the class name
* remove clean up endpoint
* remove unused class `RequestParameter`
* remove unused class `PluginLoadingFailure`
* Move `CourseConfiguration` to lesson package
* Add more content around the lesson template lesson and make it visible as a lesson in WebGoat
* Remove explicit invocation `trackProgress()` inside WebGoat framework so assignments only need to return an `AttackResult`
* Put original solution back as well for SQL string injection
* review comments
* Add
2019-11-17 13:39:56 +01:00
f40b6ffd31
Moving back to snapshot
2019-11-13 12:27:26 +01:00
fe2ac1b8d4
New release, updating pom.xml
2019-11-12 09:22:45 +01:00
1a83e2825e
Code style ( #696 )
...
* Remove Guava dependency from WebGoat
* Add Checkstyle to the project with very basic standards so we have a
style across lessons. It does not interfere with basic Intellij formatting
2019-11-03 18:11:09 +01:00
e0ac4a1083
lessons in correct order and scoreboard visible again ( #680 )
2019-10-10 09:45:43 +02:00
f140875156
fixed views for password reset ( #679 )
2019-10-10 07:50:47 +02:00
e8d086ac9b
All successful
2019-09-20 07:59:04 +02:00
82ad0a7cc7
Finally working
2019-09-18 17:53:43 +02:00
5e6f825e64
WIP
2019-09-13 16:42:13 +02:00
ff530e926e
Use separate project for integration tests so we can start WebGoat and WebWolf
2019-08-25 17:43:14 +02:00
e01c2a35ce
Add test case for security question assignment and the tracking is now
...
done with a session scoped bean
2019-08-06 19:04:07 +02:00
00deb66ad9
Small update for password reset lesson
2019-05-09 09:17:11 +02:00
98537426f2
SNAPSHOT version
2019-05-03 11:15:11 +02:00
9b0c4e62c2
New release, updating pom.xml
2019-05-03 09:50:01 +02:00
80b8326766
link corrected to avoid 404
2019-04-21 14:11:45 +02:00
5df6e987eb
Fim simple email assignment typo
2019-03-26 13:56:31 +01:00
7daaac9a3f
Fixed Typos
2019-03-26 08:43:38 +01:00
0588daff9d
Added Assignment for Security Questions.
2019-03-26 08:43:38 +01:00
aa22bfb528
Fixed wrong hint
2019-03-26 08:43:38 +01:00
bbb0b607b2
Added Assignment for Security Questions.
2019-03-26 08:43:38 +01:00
3d7974aa45
Added more hints to password reset 5 lesson. Recommended Burp as a proxy
2019-03-26 08:43:38 +01:00
44a9a776bf
added pw reset mitigation explanation
2019-03-26 08:43:38 +01:00
bd86dc6ee0
SNAPSHOT version
2019-02-09 18:20:08 +01:00
6c86929aa6
New release, updating pom.xml
2019-02-08 14:20:23 +01:00
631fedb752
New release, updating pom.xml
2019-01-18 08:45:44 +01:00
9be4361afc
New release, updating pom.xml
2019-01-18 08:37:26 +01:00
b0e3a06b50
Password reset lesson 5 not working #512
...
Added comment to not use OWASP ZAP
2019-01-17 16:35:04 +01:00
ec225558b9
Move to latest Spring Boot version and move to Java 11
2018-12-15 13:59:54 +01:00
a2f28460c0
Update password_reset.html
...
Without this attribute it is impossible to pass the lesson "password-reset" `Email functionality with WebWolf`.
2018-11-19 08:08:41 +01:00
580e50f558
Same form post is used and with autocomplete this does not work because all fields will be posted. The endpoint could no long distinguish between the different actions (sending e-mail and checking password)
2018-08-10 13:15:40 +02:00
1252e3dc21
Update instructions to use docker-compose only
2018-07-17 20:17:35 +02:00
cb18295f9f
Update hint
2018-06-21 07:53:21 +02:00
ac12a009e4
New release v8.0.0.M20
2018-06-20 18:05:59 +02:00
9dd93d88d9
New release v8.0.0.M19
2018-06-20 16:40:28 +02:00