Commit Graph

105 Commits

Author SHA1 Message Date
Z. Cliffe Schreuders
406e65a140 ctf metadata update 2021-11-29 16:20:35 +00:00
Z. Cliffe Schreuders
76b72f0362 bludit update 2021-11-19 13:50:39 +00:00
Z. Cliffe Schreuders
e3d2e01a11 sudo module and cleanup 2021-11-18 16:16:51 +00:00
Z. Cliffe Schreuders
e13e15efd6 bludit module 2021-11-10 14:08:22 +00:00
Thalita
8fa23964ea Minor CSS edit to remove fixed-width product images so they don't display on top of each other. 2021-09-13 15:49:51 +01:00
Thalita
acfc6656ae Removed redundant flag. Fixes #208. 2021-09-13 15:42:13 +01:00
Thalita
a5b012a179 More refactoring and some small fixes. 2021-08-29 18:01:08 +01:00
Thalita
c90f5f321c Refactored blacklist generator. Removed redundant authentication file. 2021-08-29 12:49:36 +01:00
Thalita
31caa0c1da Fixed 404 error when trying to fetch dependencies from external sites. Refactored the PHP pages to remove some duplication. 2021-08-27 15:39:34 +01:00
Thalita
20d48fd252 Implemented insecure cookie vulnerability - Fixes #206. 2021-08-27 14:15:55 +01:00
Thalita
d080104ddc Implemented IDOR vulnerability and flag. 2021-08-25 19:37:20 +01:00
Thalita
e4364dfc41 Improved SQL Injection experience. Database errors are now shown to the user, and feedback is more helpful to help build queries. Fixes #205. 2021-08-24 19:08:44 +01:00
Thalita
5f10fada6f Fixed Issue #202 and removed redundant table and redundant code for user management. 2021-08-24 16:04:38 +01:00
Thalita
7326e0e6b9 Fixed footer layout to match the rest of the application. Fixed references to logout.php page. 2021-08-20 15:13:10 +01:00
Thalita
073be7ee4b Refactored nav page to reduce code duplication. 2021-08-20 11:38:55 +01:00
Thalita
fe30bd87e5 Implemented log out funcionality. 2021-08-20 10:51:32 +01:00
Thalita
9760598b4c Edited CSS for buttons 2021-08-19 20:19:04 +01:00
Thalita
112d161612 Created a new page to allow users to update their profile. 2021-08-19 17:03:59 +01:00
Z. Cliffe Schreuders
416be3a58f Update ovirt bases, add Debian Buster initial support (only on oVirt currently) 2020-08-28 01:21:41 +01:00
Z. Cliffe Schreuders
86bce6cc67 randomly vuln webapp updates
Co-Authored-By: Josh1438 <Josh1438@Josh1438>
2020-02-28 14:01:49 +00:00
Z. Cliffe Schreuders
c3dc5e0540 Merge branch 'master' of https://github.com/cliffe/SecGen 2020-02-24 23:29:32 +00:00
Z. Cliffe Schreuders
b5f39b3a43 Commando a bunch of modules for generating a randomised vulnerable web app with randomised table names, XSS, SQLi, etc.
Co-Authored-By: Josh1438 <Josh1438@Josh1438>
2020-02-24 23:28:49 +00:00
Dzul Nizam Bin Mahmud Pauzi
87e7dc8d2e Fix comparison operator typos 2020-02-12 12:36:13 +08:00
Z. Cliffe Schreuders
be78ca6cec php5 gitlist 2020-02-04 16:09:43 +00:00
Z. Cliffe Schreuders
509cbaee50 gitlist repo name 2020-02-04 16:09:27 +00:00
Z. Cliffe Schreuders
f85eda7ec1 webapps conflict with eachother since they accept any virtualhost name 2019-07-15 11:47:50 +01:00
Z. Cliffe Schreuders
240059801e gitlist work with less flags than the module was expecting 2019-07-15 10:04:13 +01:00
Z. Cliffe Schreuders
7e88fd51ec Merge branch 'ff2' of https://github.com/cliffe/SecGen into ff2 2019-07-11 17:16:15 +01:00
Z. Cliffe Schreuders
3b279a6f08 online store accept an arbitrary number of flags 2019-07-11 17:16:12 +01:00
Z. Cliffe Schreuders
0bc68c6afc file permissions for moinmoin 2019-07-11 17:09:52 +01:00
ts
c80a7a1558 vulnerabilities/unix/webapp/onlinestore: token table flag fix 2019-07-10 14:49:37 +01:00
ts
154ab95801 vulnerabilities/unix/webapp/onlinestore: token table flag fix 2019-07-10 12:35:38 +01:00
Z. Cliffe Schreuders
c10a35691e Merge major changes from Semester 2 into master 2019-06-18 14:37:47 +01:00
ts
15dc0ac734 Onlinestore update: Added more flags and a new scenario.xml 2019-04-11 16:17:50 +01:00
ts
3ebdedf8b8 Onlinestore bugfixes: removed all.tar, enforced correct alignment of user and killed_on date, replaced killed_on timestamp with datetime so that mysql does not adjust for timezones 2019-03-12 10:38:45 +00:00
ts
fb74d29838 Onlinestore bugfixes: removed all.tar, enforced correct alignment of user and killed_on date, replaced killed_on timestamp with datetime so that mysql does not adjust for timezones 2019-03-12 10:27:14 +00:00
ts
0c3d070eb1 dvwa + gitlist: added notifies to tidy default sites enabled 2019-02-19 12:13:47 +00:00
ts
1c04a81afe dvwa, hackerbot, gitlist040: tidy 000-default.conf 2019-02-19 11:26:17 +00:00
ts
e312445907 added tidy statements to ensure the 000-default.conf is removed from apache 2019-02-18 17:07:54 +00:00
ts
4cbc0613f9 wp_3x: fixing cron 2019-02-18 16:32:42 +00:00
ts
8156c8bfb2 added webapp_with_db type to select on for WNS assignment (excludes gitlist) 2019-02-18 13:52:54 +00:00
ts
930c056234 apache_stretch_compatible: now works with 2 vhosts like wheezy, enables stretch base for on basic_narrative.xml 2019-02-15 17:58:09 +00:00
ts
47217d26e4 onlinestore/secgen_tests: added check for populated db 2019-02-15 17:19:30 +00:00
ts
d655b3d226 updated tests + team project 2019-02-07 11:11:50 +00:00
ts
1c6deeff94 gitlist_040: added content test 2019-02-05 18:16:25 +00:00
ts
1a61db5b1f tests: net/http moved to superclass, updated website tests 2019-02-05 17:27:39 +00:00
ts
17ed03a327 Testing most service modules for open port [todo.. NTP and popa3d] 2019-02-02 17:22:50 +00:00
ts
4a1c784756 onlinestore: working on stretch + wheezy 2019-01-22 16:13:18 +00:00
ts
959df009e1 wp_4x: now working on stretch + wheezy 2019-01-22 15:47:47 +00:00
ts
1b532c7e64 wordpress_1x: conflicts with Stretch 2019-01-22 12:14:29 +00:00