Commit Graph

  • 2fdf823259 Changed BackDoors lessons to be a little bit clearer, added more hints. sherif.fathy 2006-12-31 07:35:58 +00:00
  • c469a8b0a1 Fixed HttpSplitting and CSRF per Bruce's requests sherif.fathy 2006-12-31 06:32:32 +00:00
  • ae225126ae Changed CSRF per Bruce's comments sherif.fathy 2006-12-30 17:30:30 +00:00
  • 63043b0f34 Modified Silent Transactions and XML Injection lesson per Bruce's comments sherif.fathy 2006-12-30 08:07:48 +00:00
  • ba38b57a44 Modified DOMInjection per Bruce's comments sherif.fathy 2006-12-29 16:43:59 +00:00
  • 0429f917bc git-svn-id: http://webgoat.googlecode.com/svn/trunk@53 4033779f-a91e-0410-96ef-6bf7bf53c507 sherif.fathy 2006-12-29 05:13:24 +00:00
  • f19330db4b Changed help text mayhew64 2006-12-29 05:11:40 +00:00
  • cd4e6a3b95 Minor nits mayhew64 2006-12-29 04:51:37 +00:00
  • 59c2427f0d V5 front page mayhew64 2006-12-29 03:59:37 +00:00
  • 37c56c748d modified CSRF to add an actual attack sherif.fathy 2006-12-28 16:59:02 +00:00
  • 5e061d5bad Added JSONInjection, SilentTransactions Modified The install guide sherif.fathy 2006-12-28 15:35:10 +00:00
  • af2df52e91 Added Backdoors lesson sherif.fathy 2006-12-25 17:20:01 +00:00
  • 3732cd80af Logo mayhew64 2006-12-24 13:44:57 +00:00
  • 05305c0096 replaced by lab properties mayhew64 2006-12-24 13:40:23 +00:00
  • 857799f855 Minor syntax cleanup mayhew64 2006-12-24 13:38:45 +00:00
  • a394e58093 Missing Div tag mayhew64 2006-12-24 13:34:56 +00:00
  • 159f691b4b Build Procedures mayhew64 2006-12-24 13:34:09 +00:00
  • 67497f0919 Added a hint in log spoofing instructions for the user to add a script in the log file sherif.fathy 2006-12-23 00:39:18 +00:00
  • 7acbacbe61 Added Cache Poisining lesson as a staged lesson to HTTP Splitting lesson. sherif.fathy 2006-12-23 00:24:47 +00:00
  • 9f76aeb38f More changes to the response splitting lesson plan. sherif.fathy 2006-12-22 00:49:29 +00:00
  • 1d67443b22 Removed some commented code and added more description to the HTTP Splitting lesson sherif.fathy 2006-12-22 00:20:31 +00:00
  • 575d040c24 Added XMLInjection lesson Modified DOM Injection lesson Added gratification to http splitting sherif.fathy 2006-12-21 04:39:32 +00:00
  • 60d65681ff Renamed XMLInjection to XPATHInjection Made some changes to the lesson according to Jeff's comments sherif.fathy 2006-12-16 23:38:02 +00:00
  • 296254e279 This patch contains the HTTP connector that intercepts the requests to the application and tries to communicate with OSG. It also contains the DOM Injection lesson sherif.fathy 2006-12-16 22:39:14 +00:00
  • 80a2add2d7 - This patch fixes Forced Browsing lesson by removing any custom coding for WebSession and HammerHead.java sherif.fathy 2006-12-04 04:35:04 +00:00
  • 51d40b7b22 - Contains the XMLInjection lesson. - New files added: XMLInjection.html, XMLInjection.java and XMLInjection/EmployeesData.xml sherif.fathy 2006-12-02 19:45:59 +00:00
  • c2aee8017e git-svn-id: http://webgoat.googlecode.com/svn/trunk@32 4033779f-a91e-0410-96ef-6bf7bf53c507 sherif.fathy 2006-11-11 22:42:54 +00:00
  • 99779ea2e9 Add a new lesson "How to add a new lesson" under new category "New Lessons" Modified the existing lessons to present the solution in the last hint sherif.fathy 2006-11-11 22:41:42 +00:00
  • e5b3b00b0f General cleanup of warnings, fixed a few method scope issues and incorrect use of static references to categories mayhew64 2006-11-03 23:55:08 +00:00
  • fae3c3f047 patch to fix a last minute typo and an unwanted import statement sherif.fathy 2006-11-03 02:50:12 +00:00
  • 6a59cd6e6e git-svn-id: http://webgoat.googlecode.com/svn/trunk@28 4033779f-a91e-0410-96ef-6bf7bf53c507 sherif.fathy 2006-11-03 01:14:36 +00:00
  • ca2dfa27d1 * Log spoofing lesson this includes the following file: - LogSpoofing.html - LogSpoofing.java sherif.fathy 2006-11-01 02:26:51 +00:00
  • 1a9d859507 - Updated a comment and removed some unused imports in HttpSplitting.java - Added CSRF.html and CSRF.java sherif.fathy 2006-10-23 01:15:03 +00:00
  • b6256a17f1 Fixed 'Restart Lesson' bug in SoapRequest.java. Successful completion of a lesson resets the function invocation counters. Added HttpOnly lesson with improved browser identification support. esheri3 2006-10-09 14:28:09 +00:00
  • 6916632841 - Added some documentations. - Changed some variable names for clarification sherif.fathy 2006-10-09 00:49:53 +00:00
  • 6cc8bed0c7 - Added HTTP lesson together with its lesson plan and goals. - Files added: HttpSplitting.html HttpSplitting.java redirect.jsp - Files Changed: webgoat-class.properties webgoat-lmc.properties sherif.fathy 2006-10-08 23:46:34 +00:00
  • d12bab05a4 Modified instructions to include WTP for eclipse and the tomcat-users merge. mayhew64 2006-09-30 20:17:49 +00:00
  • 39a068987e Moved remotely mayhew64 2006-09-30 13:48:47 +00:00
  • d4db50dccd Added items remotely mayhew64 2006-09-30 13:47:43 +00:00
  • 63d34606c0 Added items remotely mayhew64 2006-09-30 13:47:33 +00:00
  • f300e2f7a5 Added items remotely mayhew64 2006-09-30 13:47:23 +00:00
  • 8161ef4cf3 Added items remotely mayhew64 2006-09-30 13:47:15 +00:00
  • 53582e2b37 Added items remotely mayhew64 2006-09-30 13:47:06 +00:00
  • 98949c00d8 Moved remotely mayhew64 2006-09-30 13:41:26 +00:00
  • 0465a6d6aa git-svn-id: http://webgoat.googlecode.com/svn/trunk@14 4033779f-a91e-0410-96ef-6bf7bf53c507 mayhew64 2006-09-30 13:40:10 +00:00
  • 703e96efa0 Added items remotely mayhew64 2006-09-30 13:36:17 +00:00
  • d3ad0b6040 Moved remotely mayhew64 2006-09-30 13:34:48 +00:00
  • 275fe04bfe git-svn-id: http://webgoat.googlecode.com/svn/trunk@11 4033779f-a91e-0410-96ef-6bf7bf53c507 mayhew64 2006-09-30 13:30:52 +00:00
  • 94b5751542 Removed file/folder mayhew64 2006-09-30 13:30:07 +00:00
  • 3e581f0119 git-svn-id: http://webgoat.googlecode.com/svn/trunk@9 4033779f-a91e-0410-96ef-6bf7bf53c507 mayhew64 2006-09-30 13:29:19 +00:00
  • a8ce18c72e Moved remotely mayhew64 2006-09-30 13:25:59 +00:00
  • 58c4d16530 Removed file/folder mayhew64 2006-09-30 13:25:36 +00:00
  • 7414ec751d git-svn-id: http://webgoat.googlecode.com/svn/trunk@6 4033779f-a91e-0410-96ef-6bf7bf53c507 mayhew64 2006-09-30 13:12:13 +00:00
  • 8455a33200 git-svn-id: http://webgoat.googlecode.com/svn/trunk@5 4033779f-a91e-0410-96ef-6bf7bf53c507 mayhew64 2006-09-30 13:04:08 +00:00
  • ba1c164a7a Removed file/folder mayhew64 2006-09-30 13:01:14 +00:00
  • 9bbe01f33b Removed file/folder mayhew64 2006-09-30 13:00:28 +00:00
  • 9a1ba6a425 git-svn-id: http://webgoat.googlecode.com/svn/trunk@2 4033779f-a91e-0410-96ef-6bf7bf53c507 mayhew64 2006-09-30 12:57:26 +00:00
  • 9b0c5bf872 Initial directory structure. (no author) 2006-09-30 10:56:21 +00:00