Z. Cliffe Schreuders
|
e2160095a1
|
ovirt base updates
|
2021-09-15 17:24:06 +01:00 |
|
Cliffe
|
8174fc663b
|
Merge pull request #209 from tvergilio/commando_redundant_flag
Commando redundant flag
|
2021-09-13 21:42:59 +01:00 |
|
Thalita
|
8fa23964ea
|
Minor CSS edit to remove fixed-width product images so they don't display on top of each other.
|
2021-09-13 15:49:51 +01:00 |
|
Thalita
|
acfc6656ae
|
Removed redundant flag. Fixes #208.
|
2021-09-13 15:42:13 +01:00 |
|
Z. Cliffe Schreuders
|
3bd31396f7
|
Merge branch 'master' of https://github.com/cliffe/SecGen
|
2021-09-02 14:06:40 +01:00 |
|
Z. Cliffe Schreuders
|
0a742b2608
|
oVirt base updates
|
2021-09-02 13:45:13 +01:00 |
|
Thalita
|
1e2ba7e225
|
Major refactor of SQLi generator to try to separate PHP from Ruby code.
|
2021-08-30 19:22:45 +01:00 |
|
Thalita
|
b5393515a5
|
Minor refactoring: mainly spaces.
|
2021-08-30 19:20:56 +01:00 |
|
Thalita
|
a5b012a179
|
More refactoring and some small fixes.
|
2021-08-29 18:01:08 +01:00 |
|
Thalita
|
c90f5f321c
|
Refactored blacklist generator. Removed redundant authentication file.
|
2021-08-29 12:49:36 +01:00 |
|
Thalita
|
45930008c9
|
Refactored search code for clarity. Removed some duplication.
|
2021-08-28 19:26:43 +01:00 |
|
Thalita
|
31caa0c1da
|
Fixed 404 error when trying to fetch dependencies from external sites. Refactored the PHP pages to remove some duplication.
|
2021-08-27 15:39:34 +01:00 |
|
Thalita
|
20d48fd252
|
Implemented insecure cookie vulnerability - Fixes #206.
|
2021-08-27 14:15:55 +01:00 |
|
Thalita
|
d080104ddc
|
Implemented IDOR vulnerability and flag.
|
2021-08-25 19:37:20 +01:00 |
|
Thalita
|
e4364dfc41
|
Improved SQL Injection experience. Database errors are now shown to the user, and feedback is more helpful to help build queries. Fixes #205.
|
2021-08-24 19:08:44 +01:00 |
|
Thalita
|
5f10fada6f
|
Fixed Issue #202 and removed redundant table and redundant code for user management.
|
2021-08-24 16:04:38 +01:00 |
|
Thalita
|
d320f5cbbb
|
Edited list of table names used in Commando randomisation to remove mySQL reserved words.
|
2021-08-22 18:12:05 +01:00 |
|
Thalita
|
b867086a53
|
Improved code to grant XSS flag - fixes Issue #196.
|
2021-08-21 17:37:12 +01:00 |
|
Thalita
|
7326e0e6b9
|
Fixed footer layout to match the rest of the application. Fixed references to logout.php page.
|
2021-08-20 15:13:10 +01:00 |
|
Thalita
|
073be7ee4b
|
Refactored nav page to reduce code duplication.
|
2021-08-20 11:38:55 +01:00 |
|
Thalita
|
fe30bd87e5
|
Implemented log out funcionality.
|
2021-08-20 10:51:32 +01:00 |
|
Thalita
|
9760598b4c
|
Edited CSS for buttons
|
2021-08-19 20:19:04 +01:00 |
|
Thalita
|
112d161612
|
Created a new page to allow users to update their profile.
|
2021-08-19 17:03:59 +01:00 |
|
Z. Cliffe Schreuders
|
154abf4f87
|
oVirt changes for win7
|
2021-07-22 11:15:28 +01:00 |
|
thomashaw
|
80e170a828
|
(temporary) ZAP downgrade (fix)
|
2021-06-09 20:33:30 +01:00 |
|
thomashaw
|
cef8faa496
|
(temporary) ZAP downgrade (fix)
|
2021-06-09 18:56:45 +01:00 |
|
thomashaw
|
1dabbf48b7
|
(temporary) ZAP downgrade (fix)
|
2021-06-09 18:26:34 +01:00 |
|
thomashaw
|
d15153dacb
|
(temporary) ZAP downgrade (fix)
|
2021-06-09 17:09:48 +01:00 |
|
thomashaw
|
96e7cb10c9
|
(temporary) ZAP downgrade (fix)
|
2021-06-09 15:44:39 +01:00 |
|
thomashaw
|
3ff620d04e
|
(temporary) ZAP downgrade (fix)
|
2021-06-09 13:42:24 +01:00 |
|
thomashaw
|
7db57d6ab7
|
(temporary) ZAP downgrade
|
2021-06-07 16:10:32 +01:00 |
|
Z. Cliffe Schreuders
|
963a2009ca
|
ovirt base box update
|
2021-05-19 00:48:28 +01:00 |
|
Z. Cliffe Schreuders
|
84735fd6f8
|
ovirt base box update
|
2021-05-18 14:25:49 +01:00 |
|
Z. Cliffe Schreuders
|
81a20f75ce
|
ovirt base box update
|
2021-05-18 13:20:24 +01:00 |
|
thomashaw
|
2aaf8422c4
|
ASE8: update
|
2021-04-14 22:39:07 +01:00 |
|
thomashaw
|
82821745a8
|
ASE8: printflag fix
|
2021-04-14 21:24:28 +01:00 |
|
thomashaw
|
89b54801d4
|
ASE8: printflag fix
|
2021-04-14 21:22:20 +01:00 |
|
thomashaw
|
40e35c3fd7
|
ASE8: Fix
|
2021-04-14 12:01:01 +01:00 |
|
thomashaw
|
f685e32972
|
ASE8: Modified the challenges. There are now 2. 1) Info leak of a function in print statements; 2) Brute-force
|
2021-04-14 00:41:43 +01:00 |
|
thomashaw
|
b6384bd845
|
ASE8: Modified the challenges. There are now 3. 1) Info leak of a function in print statements; 2) Info leak via format string vulnerability; 3) Brute-force
|
2021-04-14 00:26:44 +01:00 |
|
thomashaw
|
744d03dfbb
|
ASE8: canary update
|
2021-04-13 21:50:20 +01:00 |
|
thomashaw
|
434fcfabd1
|
ASE8: using system instead of execve for demonstration purposes
|
2021-04-07 19:18:19 +01:00 |
|
thomashaw
|
fd11b4b1e9
|
ASE8: Added a fourth variant of the challenge
|
2021-04-07 19:13:38 +01:00 |
|
thomashaw
|
941805a99c
|
ASE lab 8: Linux ASLR bypass
|
2021-04-06 21:52:01 +01:00 |
|
thomashaw
|
cd20b3f010
|
MetaCTF: nx_bof include a string ending in /bin/sh for convenience...
|
2021-03-25 23:29:43 +00:00 |
|
thomashaw
|
a646ab3d5f
|
MetaCTF: include_c fix
|
2021-03-23 11:16:01 +00:00 |
|
thomashaw
|
e68304930d
|
MetaCTF: wip/debug
|
2021-03-22 21:58:06 +00:00 |
|
thomashaw
|
8d7fe91dd3
|
MetaCTF: wip/debug
|
2021-03-22 21:38:29 +00:00 |
|
thomashaw
|
d53d05b126
|
MetaCTF: wip/debug
|
2021-03-22 21:07:33 +00:00 |
|
thomashaw
|
2cb2ed5e40
|
MetaCTF: wip/debug
|
2021-03-22 21:06:34 +00:00 |
|