Skip to content
Draft
Show file tree
Hide file tree
Changes from all commits
Commits
Show all changes
53 commits
Select commit Hold shift + click to select a range
8d47ca8
Create _build.yml
bnreplah Oct 4, 2024
a6459b3
Update _build.yml
bnreplah Oct 4, 2024
5c4089f
Update README.md
bnreplah Oct 4, 2024
ca9de6e
Update _build.yml
bnreplah Oct 4, 2024
b62f9a0
Create veracode.yml
bnreplah Oct 4, 2024
c10cbb9
Update _build.yml
bnreplah Oct 4, 2024
d931646
Update README.md
bnreplah Oct 4, 2024
9af44c3
Update _build.yml
bnreplah Oct 11, 2024
daf6f4a
Update _build.yml
bnreplah Oct 15, 2024
be6db1a
Delete veracode.yml
bnreplah Oct 15, 2024
e9e6799
Merge pull request #11 from bhalpern-GHOrg-Demo/bnreplah-patch-9
bnreplah Oct 15, 2024
541bc65
Delete .github/workflows/_build.yml
bnreplah Oct 15, 2024
b93ca7d
Merge pull request #10 from bhalpern-GHOrg-Demo/bnreplah-patch-8
bnreplah Oct 15, 2024
55e32ed
Update README.md
bnreplah Oct 15, 2024
7931e36
Update README.md
bnreplah Oct 15, 2024
8cd0e8e
Update README.md
bnreplah Oct 15, 2024
74ce440
Merge pull request #12 from bhalpern-GHOrg-Demo/bnreplah-patch-10
bnreplah Oct 15, 2024
67da254
Update README.md
bnreplah Oct 15, 2024
ea38225
Update README.md
bnreplah Oct 15, 2024
2c1ef39
Merge pull request #14 from bhalpern-GHOrg-Demo/bnreplah-patch-12
bnreplah Oct 15, 2024
ab280aa
Update README.md
bnreplah Oct 15, 2024
608cab5
Update README.md
bnreplah Oct 15, 2024
5a09523
Update README.md
bnreplah Oct 15, 2024
996b778
Update README.md
bnreplah Oct 15, 2024
d1a7c9b
Update README.md
bnreplah Oct 15, 2024
faf89b9
Update README.md
bnreplah Oct 15, 2024
7699d61
Update README.md
bnreplah Oct 15, 2024
fa4fe9c
Create _build.ym
bnreplah Oct 15, 2024
3711c83
Update README.md
bnreplah Oct 15, 2024
3bb7626
Update README.md
bnreplah Oct 15, 2024
cfa11cf
Update README.md
bnreplah Oct 15, 2024
3407ad5
Update README.md
bnreplah Oct 15, 2024
e74a4e0
Update README.md
bnreplah Oct 15, 2024
70b4908
Update README.md
bnreplah Oct 15, 2024
508da90
Update README.md
bnreplah Oct 15, 2024
5132253
Update README.md
bnreplah Oct 15, 2024
792a084
Update README.md
bnreplah Oct 15, 2024
bfdfd7f
Rename _build.ym to _build.yml
bnreplah Oct 15, 2024
84f3bcf
Update README.md
bnreplah Oct 15, 2024
5893e31
Create veracode.yml
bnreplah Oct 15, 2024
905d53d
Update README.md
bnreplah Oct 15, 2024
ab7a9cd
Update README.md
bnreplah Oct 15, 2024
8d57a7e
Merge pull request #20 from bhalpern-GHOrg-Demo/bnreplah-patch-17
bnreplah Oct 15, 2024
6934944
Update veracode.yml
bnreplah Oct 15, 2024
f52cda5
Update _build.yml
bnreplah Oct 15, 2024
02a18ad
Update README.md
bnreplah Oct 15, 2024
78266d9
Update README.md
bnreplah Oct 15, 2024
b102e6d
Update _build.yml
bnreplah Oct 15, 2024
951b495
Update README.md
bnreplah Oct 15, 2024
05c1093
Merge pull request #21 from bhalpern-GHOrg-Demo/bnreplah-patch-18
bnreplah Oct 15, 2024
c6f6941
Create srcclr.yml
bnreplah Dec 4, 2024
77b05ad
Update README.md
bnreplah Apr 30, 2025
ca8b497
Add empty line to README.md
bnreplah Nov 24, 2025
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
39 changes: 39 additions & 0 deletions .github/workflows/_build.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,39 @@
name: _build

on:
push:
pull:




jobs:
build:
runs-on: ubuntu-latest
# grants permissions for the artifact to be uploaded
permissions:
contents: read
packages: write


steps:

# Checks-out your repository under $GITHUB_WORKSPACE, so your job can acces it and clones the repo
- uses: actions/checkout@v3

- name: Set up JDK 17
uses: actions/setup-java@v3
with:
java-version: '17'
distribution: 'adopt'

- name: Build with Maven
run: |
pwd
mvn -B clean package --file pom.xml

- uses: actions/upload-artifact@v4
with:
name: veracode-artifact
path: /home/runner/work/vulnado/vulnado/target/vulnado-0.0.1-SNAPSHOT.jar
if-no-files-found: error
32 changes: 31 additions & 1 deletion README.md
Original file line number Diff line number Diff line change
@@ -1,4 +1,4 @@
# Vulnado - Intentionally Vulnerable Java Application
I'm# Vulnado - Intentionally Vulnerable Java Application

This application and exercises will take you through some of the OWASP top 10 Vulnerabilities and how to prevent them.

Expand All @@ -23,3 +23,33 @@ The docker network created by `docker-compose` maps pretty well to a multi-tier
* [XSS - Cross Site Scripting](exercises/02-xss.md)
* [SSRF - Server Side Request Forgery](exercises/03-ssrf.md)
* [RCE - Remote Code Execution & Reverse Shell](exercises/04-rce-reverse-shell.md)

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
1 change: 1 addition & 0 deletions srcclr.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1 @@
workspace_token: E77HYodl
3 changes: 3 additions & 0 deletions veracode.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,3 @@
veracode_static_scan:
policy: 'Veracode Recommended Very High'
use_custom_workflow: _build