tools in all containers + apt GPG fix for 2026 clock + target dropdown fixed
- all 6 Dockerfiles: vim curl wget netcat git python3-pip now installed - apt-insecure.conf (AllowInsecureRepositories) copied into images so participants can apt-get install despite expired Ubuntu/Debian GPG keys - warmup base ubuntu:20.04 (EOL, GPG expired) -> ubuntu:24.04 - installed vim+git live into all 18 running team containers - team portal target dropdown reloads after login (was empty pre-auth) - attack log endpoint + A/D submit (attacker vs target) verified e2e
This commit is contained in:
@@ -0,0 +1,5 @@
|
||||
# Allow apt to work on hosts whose clock is past GPG key expiry (2026+)
|
||||
Acquire::AllowInsecureRepositories "true";
|
||||
Acquire::AllowDowngradeToInsecureRepositories "true";
|
||||
Apt::Get::AllowUnauthenticated "true";
|
||||
Apt::Get::force-yes "true";
|
||||
@@ -12,9 +12,12 @@ WORKDIR /app
|
||||
ENV DEBIAN_FRONTEND=noninteractive
|
||||
ENV DB_PATH=/data/app.db
|
||||
|
||||
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
|
||||
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
|
||||
|
||||
# Install packages we need (exiftool, sqlite3, sshd, build tools, editor)
|
||||
RUN apt-get update && \
|
||||
apt-get install -y --no-install-recommends \
|
||||
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && \
|
||||
apt-get -y --allow-unauthenticated install --no-install-recommends \
|
||||
libimage-exiftool-perl \
|
||||
sqlite3 \
|
||||
openssh-server \
|
||||
|
||||
@@ -6,8 +6,11 @@ ARG PASSWORD=root
|
||||
ENV DEBIAN_FRONTEND=noninteractive
|
||||
WORKDIR /home/ctfuser/chall
|
||||
|
||||
RUN apt-get update && \
|
||||
apt-get install -y --no-install-recommends \
|
||||
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
|
||||
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
|
||||
|
||||
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && \
|
||||
apt-get -y --allow-unauthenticated install --no-install-recommends \
|
||||
make \
|
||||
g++ \
|
||||
socat \
|
||||
@@ -16,6 +19,10 @@ RUN apt-get update && \
|
||||
bash \
|
||||
nano \
|
||||
vim \
|
||||
curl \
|
||||
wget \
|
||||
netcat-openbsd \
|
||||
git \
|
||||
&& rm -rf /var/lib/apt/lists/*
|
||||
|
||||
RUN useradd -m -d /home/ctfuser -s /bin/bash ctfuser && echo "ctfuser:${PASSWORD}" | chpasswd
|
||||
|
||||
@@ -13,9 +13,12 @@ ENV PYTHONDONTWRITEBYTECODE=1 \
|
||||
PYTHONUNBUFFERED=1 \
|
||||
PIP_NO_CACHE_DIR=1
|
||||
|
||||
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
|
||||
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
|
||||
|
||||
# Install packages we need (exiftool, sqlite3, sshd, build tools, editor)
|
||||
RUN apt-get update && \
|
||||
apt-get install -y --no-install-recommends \
|
||||
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && \
|
||||
apt-get -y --allow-unauthenticated install --no-install-recommends \
|
||||
libimage-exiftool-perl \
|
||||
sqlite3 \
|
||||
openssh-server \
|
||||
|
||||
@@ -5,7 +5,10 @@ ENV DEBIAN_FRONTEND=noninteractive
|
||||
ENV HOME=/home/ctfuser
|
||||
WORKDIR /home/ctfuser/chall
|
||||
|
||||
RUN apt-get update && apt-get install -y --no-install-recommends \
|
||||
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
|
||||
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
|
||||
|
||||
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && apt-get -y --allow-unauthenticated install --no-install-recommends \
|
||||
openssh-server \
|
||||
build-essential \
|
||||
libffi-dev \
|
||||
|
||||
@@ -5,7 +5,10 @@ ENV DEBIAN_FRONTEND=noninteractive
|
||||
ENV HOME=/home/ctfuser
|
||||
WORKDIR /home/ctfuser/chall
|
||||
|
||||
RUN apt-get update && apt-get install -y --no-install-recommends \
|
||||
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
|
||||
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
|
||||
|
||||
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && apt-get -y --allow-unauthenticated install --no-install-recommends \
|
||||
openssh-server \
|
||||
build-essential \
|
||||
libffi-dev \
|
||||
|
||||
@@ -12,8 +12,11 @@ ARG PASSWORD
|
||||
|
||||
ENV DEBIAN_FRONTEND=noninteractive
|
||||
|
||||
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
|
||||
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
|
||||
|
||||
# Install necessary packages
|
||||
RUN apt-get update && apt-get install -y nano vim git openssh-server python3 curl netcat-traditional wget sudo nginx golang-go && rm -rf /var/lib/apt/lists/*
|
||||
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && apt-get -y --allow-unauthenticated install nano vim git openssh-server python3 python3-pip curl netcat-traditional wget sudo nginx golang-go && rm -rf /var/lib/apt/lists/*
|
||||
|
||||
# Create ctfuser and set password
|
||||
RUN useradd -m -d /home/ctfuser ctfuser && echo ctfuser:${PASSWORD} | chpasswd
|
||||
|
||||
Reference in New Issue
Block a user