Commit Graph

1146 Commits

Author SHA1 Message Date
Z. Cliffe Schreuders
e2160095a1 ovirt base updates 2021-09-15 17:24:06 +01:00
Cliffe
8174fc663b Merge pull request #209 from tvergilio/commando_redundant_flag
Commando redundant flag
2021-09-13 21:42:59 +01:00
Thalita
8fa23964ea Minor CSS edit to remove fixed-width product images so they don't display on top of each other. 2021-09-13 15:49:51 +01:00
Thalita
acfc6656ae Removed redundant flag. Fixes #208. 2021-09-13 15:42:13 +01:00
Z. Cliffe Schreuders
3bd31396f7 Merge branch 'master' of https://github.com/cliffe/SecGen 2021-09-02 14:06:40 +01:00
Z. Cliffe Schreuders
0a742b2608 oVirt base updates 2021-09-02 13:45:13 +01:00
Thalita
1e2ba7e225 Major refactor of SQLi generator to try to separate PHP from Ruby code. 2021-08-30 19:22:45 +01:00
Thalita
b5393515a5 Minor refactoring: mainly spaces. 2021-08-30 19:20:56 +01:00
Thalita
a5b012a179 More refactoring and some small fixes. 2021-08-29 18:01:08 +01:00
Thalita
c90f5f321c Refactored blacklist generator. Removed redundant authentication file. 2021-08-29 12:49:36 +01:00
Thalita
45930008c9 Refactored search code for clarity. Removed some duplication. 2021-08-28 19:26:43 +01:00
Thalita
31caa0c1da Fixed 404 error when trying to fetch dependencies from external sites. Refactored the PHP pages to remove some duplication. 2021-08-27 15:39:34 +01:00
Thalita
20d48fd252 Implemented insecure cookie vulnerability - Fixes #206. 2021-08-27 14:15:55 +01:00
Thalita
d080104ddc Implemented IDOR vulnerability and flag. 2021-08-25 19:37:20 +01:00
Thalita
e4364dfc41 Improved SQL Injection experience. Database errors are now shown to the user, and feedback is more helpful to help build queries. Fixes #205. 2021-08-24 19:08:44 +01:00
Thalita
5f10fada6f Fixed Issue #202 and removed redundant table and redundant code for user management. 2021-08-24 16:04:38 +01:00
Thalita
d320f5cbbb Edited list of table names used in Commando randomisation to remove mySQL reserved words. 2021-08-22 18:12:05 +01:00
Thalita
b867086a53 Improved code to grant XSS flag - fixes Issue #196. 2021-08-21 17:37:12 +01:00
Thalita
7326e0e6b9 Fixed footer layout to match the rest of the application. Fixed references to logout.php page. 2021-08-20 15:13:10 +01:00
Thalita
073be7ee4b Refactored nav page to reduce code duplication. 2021-08-20 11:38:55 +01:00
Thalita
fe30bd87e5 Implemented log out funcionality. 2021-08-20 10:51:32 +01:00
Thalita
9760598b4c Edited CSS for buttons 2021-08-19 20:19:04 +01:00
Thalita
112d161612 Created a new page to allow users to update their profile. 2021-08-19 17:03:59 +01:00
Z. Cliffe Schreuders
154abf4f87 oVirt changes for win7 2021-07-22 11:15:28 +01:00
thomashaw
80e170a828 (temporary) ZAP downgrade (fix) 2021-06-09 20:33:30 +01:00
thomashaw
cef8faa496 (temporary) ZAP downgrade (fix) 2021-06-09 18:56:45 +01:00
thomashaw
1dabbf48b7 (temporary) ZAP downgrade (fix) 2021-06-09 18:26:34 +01:00
thomashaw
d15153dacb (temporary) ZAP downgrade (fix) 2021-06-09 17:09:48 +01:00
thomashaw
96e7cb10c9 (temporary) ZAP downgrade (fix) 2021-06-09 15:44:39 +01:00
thomashaw
3ff620d04e (temporary) ZAP downgrade (fix) 2021-06-09 13:42:24 +01:00
thomashaw
7db57d6ab7 (temporary) ZAP downgrade 2021-06-07 16:10:32 +01:00
Z. Cliffe Schreuders
963a2009ca ovirt base box update 2021-05-19 00:48:28 +01:00
Z. Cliffe Schreuders
84735fd6f8 ovirt base box update 2021-05-18 14:25:49 +01:00
Z. Cliffe Schreuders
81a20f75ce ovirt base box update 2021-05-18 13:20:24 +01:00
thomashaw
2aaf8422c4 ASE8: update 2021-04-14 22:39:07 +01:00
thomashaw
82821745a8 ASE8: printflag fix 2021-04-14 21:24:28 +01:00
thomashaw
89b54801d4 ASE8: printflag fix 2021-04-14 21:22:20 +01:00
thomashaw
40e35c3fd7 ASE8: Fix 2021-04-14 12:01:01 +01:00
thomashaw
f685e32972 ASE8: Modified the challenges. There are now 2. 1) Info leak of a function in print statements; 2) Brute-force 2021-04-14 00:41:43 +01:00
thomashaw
b6384bd845 ASE8: Modified the challenges. There are now 3. 1) Info leak of a function in print statements; 2) Info leak via format string vulnerability; 3) Brute-force 2021-04-14 00:26:44 +01:00
thomashaw
744d03dfbb ASE8: canary update 2021-04-13 21:50:20 +01:00
thomashaw
434fcfabd1 ASE8: using system instead of execve for demonstration purposes 2021-04-07 19:18:19 +01:00
thomashaw
fd11b4b1e9 ASE8: Added a fourth variant of the challenge 2021-04-07 19:13:38 +01:00
thomashaw
941805a99c ASE lab 8: Linux ASLR bypass 2021-04-06 21:52:01 +01:00
thomashaw
cd20b3f010 MetaCTF: nx_bof include a string ending in /bin/sh for convenience... 2021-03-25 23:29:43 +00:00
thomashaw
a646ab3d5f MetaCTF: include_c fix 2021-03-23 11:16:01 +00:00
thomashaw
e68304930d MetaCTF: wip/debug 2021-03-22 21:58:06 +00:00
thomashaw
8d7fe91dd3 MetaCTF: wip/debug 2021-03-22 21:38:29 +00:00
thomashaw
d53d05b126 MetaCTF: wip/debug 2021-03-22 21:07:33 +00:00
thomashaw
2cb2ed5e40 MetaCTF: wip/debug 2021-03-22 21:06:34 +00:00