Commit Graph

1944 Commits

Author SHA1 Message Date
cktricky c10b6be504 oops 2013-09-11 11:01:37 -04:00
cktricky c56dbe54a7 no change really 2013-09-11 10:58:46 -04:00
cktricky aab489ef40 fix for performance bug 2013-09-10 21:58:29 -04:00
cktricky 6f71d7eda7 bug fix w/ the performance section 2013-09-10 21:57:03 -04:00
cktricky d5801f0684 Merge branch 'master' of github.com:OWASP/railsgoat into top-10-2013 2013-09-10 13:31:48 -04:00
Ken Johnson 2eeb8291ba Merge pull request #40 from mccabe615/master
Minor Changes
2013-09-10 10:19:48 -07:00
Michael McCabe 9638d8137b travis fix 2013-09-10 10:02:11 -04:00
Michael McCabe 2949ff6a0d Merge branch 'master' of github.com:mccabe615/railsgoat into ubuntu-fix 2013-09-10 09:18:08 -04:00
Michael McCabe 987b6d8844 setting up travis ci env 2013-09-10 09:17:40 -04:00
Michael McCabe 292e8d9845 adding execjs and therubyracer to fix js issue on ubuntu 2013-09-09 21:45:00 -04:00
mccabe615 5123d8ba77 Update README.md 2013-09-06 16:03:09 -04:00
Michael McCabe 16d1150375 adding basic tests or user model, more to come 2013-09-06 15:55:08 -04:00
Michael McCabe 69c180e845 minor changes to spec_helper and user model 2013-09-06 15:54:06 -04:00
Michael McCabe dc3de592ea init\'ing guard-rspec 2013-09-06 15:44:40 -04:00
Michael McCabe 914e35e0dd adding rspec-rails and guard-rspec 2013-09-06 15:43:59 -04:00
Michael McCabe 71c690bd03 Merge branch 'master' of github.com:mccabe615/railsgoat 2013-09-06 10:09:04 -04:00
Michael McCabe 0bb5fd06c1 fixing Gemfile 2013-09-06 10:08:53 -04:00
mccabe615 08c7800dff Update README.md
Update readme with getting started instructions
2013-09-06 10:04:25 -04:00
Michael McCabe 1f3620a3de adding rspec and auto test runs 2013-09-05 16:52:17 -04:00
cktricky 17e082a63e I believe the secure_compare tutorial is complete 2013-08-18 20:46:40 -04:00
cktricky 5b6b88a4ba fixed broken auth numbering and also the incorrect accordion labels within insecure_compare 2013-08-18 20:18:33 -04:00
cktricky bc74edf28d lastest work towards the secure_compare tutorial 2013-08-18 20:10:36 -04:00
cktricky 3c7a3fc9e4 still working on the timing attack prevention tutorial 2013-08-18 17:39:13 -04:00
cktricky 979b6a229a working on avoiding timing attacks piece 2013-08-17 21:27:33 -04:00
cktricky d909f55ab9 initial write-up for gauntlt 2013-08-08 21:25:52 -04:00
cktricky 077e45c819 Merge branch 'master' of github.com:OWASP/railsgoat into top-10-2013 2013-08-08 16:59:14 -04:00
cktricky 65eb2caeaf made a suggestion based on digininjas comment on Rails tutorials blog post. Better to change method name to hash_password than encrypt_password 2013-08-08 16:57:58 -04:00
cktricky 761e38905e oops 2013-08-08 16:24:10 -04:00
cktricky 8d5df9dd9a fixed this 2013-08-08 16:21:53 -04:00
cktricky c024bd6591 changed something small 2013-08-08 16:21:04 -04:00
cktricky 9533f0d098 added a task for stopping and starting rails 2013-08-08 16:17:55 -04:00
cktricky dafff5e60e added ability to start and stop from rake tasks 2013-08-08 15:30:26 -04:00
cktricky 659ff82b77 Merge branch 'master' of github.com:OWASP/railsgoat into top-10-2013 2013-08-08 14:12:49 -04:00
cktricky 1b9e60b982 uncessary task 2013-08-08 14:11:49 -04:00
cktricky 2a4a7a5440 that was painful but managed to install gauntlt. Turns out you need to revert to minitest 4 (not 5, for the love of humantiy, not 5). Also, added rspec (not sure that did anything). Lastly, aruba and gauntlt. So, we now have a dir explicitly for attack files. 2013-08-08 14:04:52 -04:00
cktricky 8f4644c312 new note on top 10, 2013 progress 2013-07-28 20:13:16 -04:00
cktricky 66445167bd shifting tutorials 2013-07-28 19:59:03 -04:00
cktricky ef9570c4b2 Merge branch 'master' of github.com:OWASP/railsgoat 2013-07-28 19:45:00 -04:00
cktricky f67bd0f5ed correct naming within the command injection tutorial 2013-07-28 19:44:51 -04:00
Ken Johnson 0dd84a1724 Merge pull request #38 from cmlh/license
Add LICENSE.md file
2013-07-27 05:11:24 -07:00
Christian Heinrich 558b020411 Add LICENSE.md file
https://help.github.com/articles/open-source-licensing#how-can-i-go-back-through-my-public-repositories-and-give-them-licenses
2013-07-27 12:31:51 +10:00
Ken Johnson 14c1fb367d added a tutorial for command injection 2013-07-10 20:42:04 -04:00
Ken Johnson 82b5809bee almost finished with the write-up for the command injection vulnerability 2013-07-10 11:41:36 -04:00
Ken Johnson ce6f32a1a2 working command injection in fileupload, closes issue #23 2013-07-09 16:36:03 -04:00
Ken Johnson ea2014b637 I have exhausted all thoughts on how to actually get jquery file upload to work, so screw it, I am just going to make something homegrown for tomorrow 2013-07-09 13:53:00 -04:00
Ken Johnson 1a79471ef8 trying to fix a bug where you have to click twice on the tutorial credentials button 2013-06-20 11:28:29 -04:00
Ken Johnson 2e052828a6 taskbar / active enhancement 2013-06-16 00:49:28 -04:00
Ken Johnson 7b900bda2d fixes issue #24 2013-06-10 16:25:14 -04:00
Ken Johnson 56381fe318 fixed issue #25 2013-06-10 15:27:21 -04:00
Ken Johnson 5ea8006fc1 closes issue #22 2013-06-07 09:05:11 -04:00