Skip to content

Commit

Permalink
[Livelabs ID: 11105] Story of a Hack updates (#283)
Browse files Browse the repository at this point in the history
* dbseclab_v5.5

* dbseclab_v5.5

* dbseclab_v5.5

* dbseclab_v5.5

* Squashed commit of the following:

commit 41135e2
Author: Dan Wiliams <127415766+dannymgithub@users.noreply.github.com>
Date:   Thu Dec 21 17:09:01 2023 -0500

    WMS 11492- SQL Firewall  new Livelabs  (#157)

    * Revert "[WMSID 11492] SQL Firewall new Livelabs (#153)"

    This reverts commit b00fe40.

    * Revert "Revert "[WMSID 11492] SQL Firewall new Livelabs (#153)""

    This reverts commit 575187b.

* dbseclab_v5.5

* dbseclab_v5

* dbseclab_v5.5

* dbseclab_v5.6

* dbseclab_v5.6

* dbseclab_v5.6

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab_v6.0

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab_v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* updating dv lab - rce

* small updates - rce

* make changes - rce

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.1

* dbseclab-v6.2

* dbseclab-v6.2

* Updates for 23ai

* Updates for labs

* update dv labs

* updates to the lab

* dv lab updates

* dbseclab_v70

* dbseclab-v6.2

* lab updates

* update lab

* updates to adb dv lab

* adb dv lab updates

* adb dv lab updates

* adb dv lab updates

* dbseclab-v6.2

* dbseclab-v6.2

* adb dv lab updates

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* adb dv lab updates

* adb dbv lab updates

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* updates to adb dv lab

* adb dv lab

* adb dv labs

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dv lab updates

* adb dv lab updates

* adb dv lab updates

* adb dv lab update

* adb dv

* adb dv labs

* adb dv lab updates

* dv lab updates

* dv labs update

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dv lab updagtes

* dv lab updates

* dv lab updates

* dv lab updates

* dv lab updates

* adb dv lab

* adb dv updates

* adb dv lab update

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dv lab updates

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.2

* dbseclab-v6.3

* dbseclab_v6.3

* dbseclab_v6.3

* dbseclab_v6.3

* dbseclab_v6.3

* dbseclab_v6.3

* ocw24 dv hol

* dv hol ocw

* dv ocw hol

* dbseclab_v6.3

* dbseclab_v6.4

* dbseclab_v6.4

* dbseclab_v6.3

* dbseclab-v6.3

* dbseclab-v6.3

* dbseclab-v6.3

* dbseclab-v6.3

* dbseclab-v6.3

* dbseclab_v6.3.1

* dbseclab-v6.3.1

* dbseclab-v6.3.1

* dbseclab-v6.3.1

* dbseclab-v6.3.1

* dbseclab-v6.3.1

* dbseclab-v6.3.1

* data redaction lab for 23.6 release

* free tier folder for new data redaction livelab

* updated markdown

* updates to the data redaction lab

* Update intro.md

* dbsec-v7.0

* dbseclab-v7.0

* Update manifest.json

* dbseclab-storyhack_v7.0

* dbseclab-storyhack-v7.0

* dbseclab-storyhack_v7.0

* dbseclab_storyhack-v7.0

* dbseclab-storyhack_v7.0

* dbseclab-storyhack_v7.0

* dbseclab-storyhack_v7.0

* dbseclab_story-v7.1

* dbseclab_storyhack-v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

* dbseclab_story-hack_v7.1

---------

Co-authored-by: Hakim LOUMI <hloumi76@gmail.com>
Co-authored-by: richardcevans <richardcevans@gmail.com>
Co-authored-by: Ana-Maria COMAN <157381084+anacoman11@users.noreply.github.com>
Co-authored-by: Dan Wiliams <127415766+dannymgithub@users.noreply.github.com>
  • Loading branch information
5 people authored Dec 18, 2024
1 parent 13f75bb commit 3daf261
Show file tree
Hide file tree
Showing 2 changed files with 6 additions and 5 deletions.
4 changes: 2 additions & 2 deletions database/story/intro/intro.md
Original file line number Diff line number Diff line change
Expand Up @@ -30,7 +30,7 @@ In our scenario, this database contains sensitive data that could be used by the

As your attack protocol progresses, you will test the same commands from the same interfaces, but this time pointing to another Oracle Database named PDB2. Oracle's recommended security controls protect PDB2. You will see how a well-configured database can block the most common attacks used to break in and steal data.

*Versions tested in this lab:* Oracle DB EE 19.23, OEM 13.5, AVDF 20.13
*Versions tested in this lab:* Oracle DB EE 19.23, OEM 13.5, AVDF 20.13 an OKV 21.9

### Objectives
This lab helps you learn to use some of the most important security features of the Oracle Database.
Expand Down Expand Up @@ -123,4 +123,4 @@ Unfortunately, whether you pay the ransom or not, your sensitive data is now out
## Acknowledgements
- **Author** - Hakim Loumi, Database Security Senior Principal PM
- **Contributors** - Russ Lowenthal, Database Security VP
- **Last Updated By/Date** - Hakim Loumi, Database Security PM - November 2024
- **Last Updated By/Date** - Hakim Loumi, Database Security PM - December 2024
7 changes: 4 additions & 3 deletions database/story/story-hack/story-hack.md
Original file line number Diff line number Diff line change
Expand Up @@ -467,10 +467,11 @@ In this lab, you will perform a "UNION-based" SQL injection attack on an applica
```
<copy>
cd /home/oracle/DBSecLab/admin
stop_Glassfish.sh
cd $DBSEC_ADMIN
./stop_Glassfish.sh
sudo sed -i -e 's|pdb1|pdb2|g' /u01/app/glassfish/hr_prod_pdb2/WEB-INF/classes/hr.properties
start_Glassfish.sh
./start_Glassfish.sh
cd $DBSEC_LABS/story-hack
</copy>
```
Expand Down

0 comments on commit 3daf261

Please sign in to comment.