Code Monkey home page Code Monkey logo

azgoat's Introduction

AzGOAT

Vulnerable Azure Environment (WIP) Scenario 1- No Metadata leaks, is it? Ana works for an ecommerce company, she was assigned to create an extension for a product, she created a brilliant piece of code, hosted the code on Azure VM. One fine day she was alerted by a friendly hacker that a bug in the code leads to compromise of a storage account. Try to investigate the incident by reproducing the attack chain. Source code is hosted on this git repo for reference. The URL of hosting- http://mywebapp.eastus.cloudapp.azure.com:5000/test_ssrf.

Scenario 2- Use your creativity for a shortcut of Scenario 1.

Scenario 3- From publicly exposed storage to a compromised database! Yummyfood is an online food delivery app which invites you to perform a pentest with the main objective to compromise restricted Azure SQL Server DB. They have loaded code for code review here- https://sachall2.blob.core.windows.net/vmmachinedetails/demo%20code.txt

Scenario 4- Cloud malfunctioned to rain shell Challenge is to obtain as many details about the hosting environment using this- https://rcechall.azurewebsites.net/api/HttpTrigger1?q=https://www.google.com

azgoat's People

Contributors

akriti-s avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.