Skip to content

Releases: OWASP/wrongsecrets

1.6.9: Bugfixes in challenges

31 Aug 09:40
91fdac4
Compare
Choose a tag to compare

What's Changed

Docs:

Bugfixes:

  • Update Challenge35 as there as a bug in the component ordering by @commjoen in #942
  • Update challenge32 to explain external website usage by @commjoen in #948
  • Replace Challenge32 with another prompting game (Gandalf) as the old prompting game is shut down by @commjoen in #950
  • Fix for challenge29 as there was an issue with decyrpting the actual answer by @commjoen in #949
  • Fixes for Challenge17 generation by @commjoen in #951

LCM:

Full Changelog: 1.6.8...1.6.9

Special Thanks

Special thanks to @bendehaan , @commjoen, and @djvinnie for their hard work on this release!

1.6.8

18 Aug 19:47
96ce218
Compare
Choose a tag to compare

What's Changed

New challenges

Bugfixes

  • Update container-alts-test.yml to test bug fix in action by @commjoen in #939

LCM

Full Changelog: 1.6.7...1.6.8

Special Thanks

Special thanks to @bendehaan and @commjoen for their hard work on this release!

1.6.7: Back to Java17(LTS) and other LCM

31 Jul 14:40
91f33e4
Compare
Choose a tag to compare

What's Changed

Bugfixes:

LCM:

Full Changelog: 1.6.6...1.6.7

Thanks

Thanks to @commjoen for his hard work on this release!

1.6.6: Challenge 34, LCM & Doc improvements

26 Jun 04:21
2d2b1b6
Compare
Choose a tag to compare

What's Changed

New Challenges

  • feat(#692): Challenge 34 with a focus on determenistic use of KDFs by @commjoen in #866

Small Fixes

LCM:

Full Changelog: 1.6.5...1.6.6

Special Thanks

We would like to thank @commjoen and @bendehaan for their hard work on this release.

1.6.5: Challenge 33, score-tracking on home, ui tests, small fixes & docs

02 Jun 22:28
42e63b0
Compare
Choose a tag to compare

What's Changed

Documentation:

  • #630 Docker image jeroenwillemsen/wrongsecrets:1.5.14-no-vault hangs … by @MarcinNowak-codes in #631
  • Update ctf instructions for challenge 30 by @commjoen in #821
  • Update README.md (badges & screenshots), challenge1 text, and a ui-bug by @commjoen in #825

Quality updates:

  • chore: add Spotless formatter by @nbaars in #790
  • UI Test Framework by @RemakingEden in #808
  • Automate spotless apply as part of pre-commit by @commjoen in #824
  • Fix for okteto; namespace substitution in challenge33.yml by @commjoen in #827
  • Scoring UI test tweaks by @RemakingEden in #828
  • Pre-release fixes (docs, tests, bugfixes in challenge 33 & challenge 13, pre-commit&node upgrades) and setting up 1.6.5 release by @commjoen in #829

New Features:

New Challenges:

LCM

Full Changelog: 1.6.4...1.6.5

Special Thanks

We would like to thank @bendehaan, @RemakingEden , @nbaars, @MarcinNowak-codes , @commjoen , and @devsecops

1.6.4: performance improvements, LCM, and 3 new challenges (LocalStorage, AI/LLM and documentation)

17 May 15:15
7b8fd5e
Compare
Choose a tag to compare

What's Changed

New challenges

Small updates

  • Code tidying, challenge difficulty refactor, removal of unnecessary code by @nbaars in #789
  • fix: wire challenges to compute size dynamically. by @nbaars in #820

Other features

  • Optimize performance of the app by means of JS minification and enabling GZIP compression by @commjoen in #805
  • Fixes for docs and challenges by @commjoen in #806
  • Update README.md to add new contributor Novice-Expert by @commjoen in #807

Dependency updates

  • build(deps): bump asciidoctorj.version from 2.5.7 to 2.5.8 by @dependabot in #777
  • build(deps): bump checkstyle from 10.9.3 to 10.10.0 by @dependabot in #792
  • build(deps): bump cyclonedx-maven-plugin from 2.7.7 to 2.7.8 by @dependabot in #794
  • build(deps): bump aws.sdk.version from 2.20.53 to 2.20.56 by @dependabot in #797
  • build(deps): bump spring-cloud-azure-dependencies from 5.0.0 to 5.1.0 by @dependabot in #800
  • build(deps): bump aws from 4.64.0 to 4.65.0 in /aws by @dependabot in #801
  • build(deps): bump hashicorp/google from 4.62.1 to 4.63.1 in /gcp by @dependabot in #799
  • build(deps): bump hashicorp/google-beta from 4.62.1 to 4.63.1 in /gcp by @dependabot in #791
  • build(deps): bump azurerm from 3.53.0 to 3.54.0 in /azure by @dependabot in #796
  • build(deps): bump http from 3.2.1 to 3.3.0 in /gcp by @dependabot in #793
  • build(deps): bump http from 3.2.1 to 3.3.0 in /azure by @dependabot in #798
  • build(deps): bump http from 3.2.1 to 3.3.0 in /aws by @dependabot in #795
  • build(deps): bump minimatch from 8.0.3 to 9.0.0 in /js by @dependabot in #779
  • build(deps): bump lycheeverse/lychee-action from 1.7.0 to 1.8.0 by @dependabot in #819

New Contributors

Full Changelog: 1.6.3...1.6.4

Special Thanks

Special thanks to @nbaars , @bendehaan , @Novice-expert , @puneeth072003 , @commjoen, @mikewoudenberg , and @h43z for their hard work on this release!

1.6.3: Http caching, bugfixes and LCM

26 Apr 08:43
8382162
Compare
Choose a tag to compare

What's Changed

Bugfixes

  • Fix for string checks for challenge 7, 13, and 14 by @commjoen in #788

New features

LCM

  • build(deps): bump lycheeverse/lychee-action from 1.6.1 to 1.7.0 by @dependabot in #764
  • build(deps-dev): bump @commitlint/config-conventional from 17.4.4 to 17.6.1 by @dependabot in #768
  • build(deps-dev): bump eslint from 8.37.0 to 8.39.0 by @dependabot in #767
  • build(deps): bump spring-boot-starter-parent from 3.0.5 to 3.0.6 by @dependabot in #771
  • build(deps): bump maven-checkstyle-plugin from 3.2.1 to 3.2.2 by @dependabot in #774
  • build(deps): bump cyclonedx-maven-plugin from 2.7.6 to 2.7.7 by @dependabot in #786
  • build(deps): bump spotbugs-maven-plugin from 4.7.3.3 to 4.7.3.4 by @dependabot in #785
  • build(deps): bump spring-cloud-gcp-dependencies from 4.1.3 to 4.2.0 by @dependabot in #770
  • build(deps): bump aws.sdk.version from 2.20.39 to 2.20.53 by @dependabot in #787
  • build(deps): bump hashicorp/google-beta from 4.59.0 to 4.62.1 in /gcp by @dependabot in #769
  • build(deps): update terraform-aws-modules/vpc/aws requirement from ~> 3.19.0 to ~> 4.0.1 in /aws by @dependabot in #783
  • build(deps): bump random from 3.4.3 to 3.5.1 in /aws by @dependabot in #781
  • build(deps): bump aws from 4.61.0 to 4.64.0 in /aws by @dependabot in #780
  • build(deps): bump terraform-aws-modules/eks/aws from 19.12.0 to 19.13.1 in /aws by @dependabot in #782
  • build(deps): bump azurerm from 3.50.0 to 3.53.0 in /azure by @dependabot in #773
  • build(deps): bump random from 3.4.3 to 3.5.1 in /gcp by @dependabot in #778
  • build(deps): bump random from 3.4.3 to 3.5.1 in /azure by @dependabot in #776
  • build(deps): bump hashicorp/google from 4.59.0 to 4.62.1 in /gcp by @dependabot in #775
  • Update README.md by @commjoen in #766

Full Changelog: 1.6.2...1.6.3

Special Thanks

Special thanks to @commjoen and @nbaars for their hard work on this release!

1.6.2: Improved UI, big doc update, LCM, and Challenge29

15 Apr 05:58
9b31e2d
Compare
Choose a tag to compare

What's Changed

This is a big documentation update, with which we are now at 100% passing of the OpenSSF: OpenSSF Best Practices.
Next, we have a new challenge added, and are preparing to add a few more in a couple of weeks ;-).

Documentation:

LCM:

  • build(deps-dev): bump eslint from 8.36.0 to 8.37.0 by @dependabot in #733
  • build(deps-dev): bump eslint-plugin-n from 15.6.1 to 15.7.0 by @dependabot in #735
  • build(deps): bump spring-boot-starter-parent from 3.0.4 to 3.0.5 by @dependabot in #726
  • build(deps): bump cyclonedx-maven-plugin from 2.7.5 to 2.7.6 by @dependabot in #730
  • build(deps): bump checkstyle from 10.8.0 to 10.9.3 by @dependabot in #744
  • build(deps): bump spotbugs-maven-plugin from 4.7.3.2 to 4.7.3.3 by @dependabot in #745
  • build(deps): bump aws.sdk.version from 2.20.23 to 2.20.37 by @dependabot in #728
  • build(deps): bump spring-cloud-dependencies from 2022.0.1 to 2022.0.2 by @dependabot in #748
  • build(deps): bump spring-cloud-gcp-dependencies from 4.1.1 to 4.1.3 by @dependabot in #729
  • build(deps): bump jruby-complete from 9.4.1.0 to 9.4.2.0 by @dependabot in #731
  • build(deps): bump asciidoctor-maven-plugin from 2.2.2 to 2.2.3 by @dependabot in #746
  • build(deps): bump thymeleaf-layout-dialect from 3.2.0 to 3.2.1 by @dependabot in #749
  • build(deps): bump springdoc-openapi-starter-webmvc-ui from 2.0.4 to 2.1.0 by @dependabot in #747
  • build(deps): bump aws.sdk.version from 2.20.37 to 2.20.38 by @dependabot in #750
  • build(deps): bump spotbugs-annotations from 4.6.0 to 4.7.3 by @dependabot in #753
  • build(deps): bump aws.sdk.version from 2.20.37 to 2.20.39 by @dependabot in #752
  • build(deps): bump hashicorp/google from 4.55.0 to 4.59.0 in /gcp by @dependabot in #732
  • build(deps): bump hashicorp/google-beta from 4.55.0 to 4.59.0 in /gcp by @dependabot in #734
  • build(deps): bump azurerm from 3.45.0 to 3.50.0 in /azure by @dependabot in #736
  • build(deps): bump terraform-aws-modules/eks/aws from 19.10.0 to 19.12.0 in /aws by @dependabot in #738
  • build(deps): bump aws from 4.56.0 to 4.61.0 in /aws by @dependabot in #737
  • build(deps): bump minimatch from 7.3.0 to 8.0.3 in /js by @dependabot in #754
  • build(deps): bump jquery from 3.6.3 to 3.6.4 by @dependabot in #751

Bugfixes

New Challenges

New Contributors

Special thanks to

Special thanks to: @bendehaan , @puneeth072003 , @szh , @turjoc120, @nbaars , and @commjoen for their hard work on this release!

Full Changelog: 1.6.1...1.6.2

1.6.1: UI extended, OpenSSF compliance, improved Q/A, and Challenge28

16 Mar 21:41
4c0ed6d
Compare
Choose a tag to compare

What's Changed

UI Changes:

  • Add a link to our OWASP Project page and add a Donate link for cloud cost coverage by @commjoen in #691
  • feat(#707): Initial overhaul for ui, licenses to be included by @commjoen in #708

Bugfixes:

  • Fix(#701): ui rendering on XS screens (stack not rendering) fixed: empty collumn filled again on mobile in portraid by @commjoen in #704

Improved Q/A and OpenSSF Compliance:

New Challenge:

Special thanks to:
Special thanks to @bendehaan , @puneeth072003, @nbaars , and @commjoen for making this release a reality!

Full Changelog: 1.6.0...1.6.1

1.6.0: Kubernetes 1.25, big development support update, new License, Okteto environment update, bug fixes, and LCM

10 Mar 23:33
c843f33
Compare
Choose a tag to compare

What's Changed

Key Changes

the following items where the core of this release:

Bug fixes

The following bug fixes were introduced in order to have a smooth experience with the challenges as a user:

  • Update challenge13.yml so that the workflow is triggered every month so you can do the challenge by @commjoen in #620
  • fix(#676): replaced thymeleaf unwrapped expressions and updated contributing.md by @commjoen in #677
  • Fix for challenge 19 and 20 on ARM: now all challenges work on (Linux/Mac OS) with ARM (aarch64) again.
  • Updated with #649 RBAC detailed description reason by @madhuakula in #672

Development support updates

We had a lot of work in this release done to make it easier for you to contribute to the project:

LCM/Patches:

  • Bump class-validator and javascript-obfuscator in /js by @dependabot in #623
  • Bump s4u/setup-maven-action from 1.6.0 to 1.7.0 by @dependabot in #633
  • Bump lycheeverse/lychee-action from 1.5.4 to 1.6.1 by @dependabot in #63
  • Bump cyclonedx-maven-plugin from 2.7.4 to 2.7.5 by @dependabot in #636
  • Bump spring-boot-starter-parent from 3.0.2 to 3.0.3 by @dependabot in #643
  • Bump spring-cloud-gcp-dependencies from 4.0.0 to 4.1.1 by @dependabot in #644
  • Bump aws.sdk.version from 2.19.33 to 2.20.12 by @dependabot in #641
  • Bump datatables from 1.13.1 to 1.13.2 by @dependabot in #645
  • Update hashicorp/google requirement from ~> 4.52.0 to ~> 4.54.0 in /gcp by @dependabot in #642
  • Bump terraform-aws-modules/eks/aws from 19.7.0 to 19.10.0 in /aws by @dependabot in #638
  • Update aws requirement from ~> 4.53.0 to ~> 4.56.0 in /aws by @dependabot in #639
  • Update hashicorp/google-beta requirement from ~> 4.52.0 to ~> 4.54.0 in /gcp by @dependabot in #637
  • Update azurerm requirement from ~> 3.42.0 to ~> 3.45.0 in /azure by @dependabot in #635
  • build(deps): bump cyclonedx-core-java from 7.3.1 to 7.3.2 by @dependabot in #662
  • build(deps): bump checkstyle from 10.7.0 to 10.8.0 by @dependabot in #657
  • build(deps): bump erzz/codeclimate-standalone from 0.0.4 to 0.0.5 by @dependabot in #671
  • build(deps): bump minimatch from 6.1.6 to 7.3.0 in /js by @dependabot in #658
  • build(deps): bump aws.sdk.version from 2.20.12 to 2.20.14 by @dependabot in #661
  • build(deps): update hashicorp/google requirement from ~> 4.54.0 to ~> 4.55.0 in /gcp by @dependabot in #660
  • build(deps): update hashicorp/google-beta requirement from ~> 4.54.0 to ~> 4.55.0 in /gcp by @dependabot in #659

New Contributors

Special thanks to

Special thanks to @madhuakula , @bendehaan , @puneeth072003, @MarcinNowak-codes, and @commjoen for making this release a reality!

Full Changelog: 1.5.14...1.6.0