diff --git a/.github/workflows/dockerfile_ci.yml b/.github/workflows/dockerfile_ci.yml index 7d1a53c..a33f60c 100644 --- a/.github/workflows/dockerfile_ci.yml +++ b/.github/workflows/dockerfile_ci.yml @@ -15,7 +15,7 @@ on: env: DOCKER_LOGIN_NAME: ${{ secrets.DOCKER_LOGIN_NAME }} DOCKER_LOGIN_PASS: ${{ secrets.DOCKER_LOGIN_PASS }} - DOCKER_TAG: "0.0.6" + DOCKER_TAG: "0.0.7" jobs: docker: runs-on: ubuntu-latest diff --git a/README.md b/README.md index 009b35d..7fa9e0e 100644 --- a/README.md +++ b/README.md @@ -86,49 +86,49 @@ Depending on the cloud service provider you are using, choose the corresponding Alibaba Cloud ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker run -itd --name terraformgoat_aliyun_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker exec -it terraformgoat_aliyun_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker run -itd --name terraformgoat_aliyun_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker exec -it terraformgoat_aliyun_0.0.7 /bin/bash ``` Tencent Cloud ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.6 -docker run -itd --name terraformgoat_tencentcloud_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.6 -docker exec -it terraformgoat_tencentcloud_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.7 +docker run -itd --name terraformgoat_tencentcloud_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.7 +docker exec -it terraformgoat_tencentcloud_0.0.7 /bin/bash ``` Huawei Cloud ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.6 -docker run -itd --name terraformgoat_huaweicloud_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.6 -docker exec -it terraformgoat_huaweicloud_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.7 +docker run -itd --name terraformgoat_huaweicloud_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.7 +docker exec -it terraformgoat_huaweicloud_0.0.7 /bin/bash ``` Amazon Web Services ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.6 -docker run -itd --name terraformgoat_aws_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.6 -docker exec -it terraformgoat_aws_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.7 +docker run -itd --name terraformgoat_aws_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.7 +docker exec -it terraformgoat_aws_0.0.7 /bin/bash ``` Google Cloud Platform ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.6 -docker run -itd --name terraformgoat_gcp_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.6 -docker exec -it terraformgoat_gcp_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.7 +docker run -itd --name terraformgoat_gcp_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.7 +docker exec -it terraformgoat_gcp_0.0.7 /bin/bash ``` Microsoft Azure ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.6 -docker run -itd --name terraformgoat_azure_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.6 -docker exec -it terraformgoat_azure_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.7 +docker run -itd --name terraformgoat_azure_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.7 +docker exec -it terraformgoat_azure_0.0.7 /bin/bash ``` ## :page_facing_up: Demo @@ -138,9 +138,9 @@ After entering the container, cd to the corresponding scenario directory and you Here is a demonstration of the [Alibaba Cloud Bucket Object Traversal](https://github.com/HXSecurity/TerraformGoat/tree/main/aliyun/oss/bucket_object_traversal) scenario build. ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker run -itd --name terraformgoat_aliyun_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker exec -it terraformgoat_aliyun_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker run -itd --name terraformgoat_aliyun_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker exec -it terraformgoat_aliyun_0.0.7 /bin/bash ``` ![img](./images/1663151143.png) diff --git a/README_CN.md b/README_CN.md index 9c90623..61a1440 100644 --- a/README_CN.md +++ b/README_CN.md @@ -85,49 +85,49 @@ TerraformGoat 使用 Docker 镜像部署,因此需要 Docker Engine 环境支 阿里云 ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker run -itd --name terraformgoat_aliyun_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker exec -it terraformgoat_aliyun_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker run -itd --name terraformgoat_aliyun_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker exec -it terraformgoat_aliyun_0.0.7 /bin/bash ``` 腾讯云 ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.6 -docker run -itd --name terraformgoat_tencentcloud_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.6 -docker exec -it terraformgoat_tencentcloud_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.7 +docker run -itd --name terraformgoat_tencentcloud_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_tencentcloud:0.0.7 +docker exec -it terraformgoat_tencentcloud_0.0.7 /bin/bash ``` 华为云 ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.6 -docker run -itd --name terraformgoat_huaweicloud_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.6 -docker exec -it terraformgoat_huaweicloud_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.7 +docker run -itd --name terraformgoat_huaweicloud_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_huaweicloud:0.0.7 +docker exec -it terraformgoat_huaweicloud_0.0.7 /bin/bash ``` Amazon Web Services ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.6 -docker run -itd --name terraformgoat_aws_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.6 -docker exec -it terraformgoat_aws_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.7 +docker run -itd --name terraformgoat_aws_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aws:0.0.7 +docker exec -it terraformgoat_aws_0.0.7 /bin/bash ``` Google Cloud Platform ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.6 -docker run -itd --name terraformgoat_gcp_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.6 -docker exec -it terraformgoat_gcp_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.7 +docker run -itd --name terraformgoat_gcp_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_gcp:0.0.7 +docker exec -it terraformgoat_gcp_0.0.7 /bin/bash ``` Microsoft Azure ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.6 -docker run -itd --name terraformgoat_azure_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.6 -docker exec -it terraformgoat_azure_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.7 +docker run -itd --name terraformgoat_azure_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_azure:0.0.7 +docker exec -it terraformgoat_azure_0.0.7 /bin/bash ``` ## :page_facing_up: 演示 @@ -135,9 +135,9 @@ docker exec -it terraformgoat_azure_0.0.6 /bin/bash 进入到容器后,cd 到对应的场景目录,就可以开始部署靶场了,这里以 [阿里云 Bucket 对象遍历](https://github.com/HXSecurity/TerraformGoat/tree/main/aliyun/oss/bucket_object_traversal) 漏洞场景的搭建进行演示: ```bash -docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker run -itd --name terraformgoat_aliyun_0.0.6 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.6 -docker exec -it terraformgoat_aliyun_0.0.6 /bin/bash +docker pull registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker run -itd --name terraformgoat_aliyun_0.0.7 registry.cn-hongkong.aliyuncs.com/huoxian_pub/terraformgoat_aliyun:0.0.7 +docker exec -it terraformgoat_aliyun_0.0.7 /bin/bash ``` ![img](./images/1663151143.png)