tools in all containers + apt GPG fix for 2026 clock + target dropdown fixed

- all 6 Dockerfiles: vim curl wget netcat git python3-pip now installed
- apt-insecure.conf (AllowInsecureRepositories) copied into images so
  participants can apt-get install despite expired Ubuntu/Debian GPG keys
- warmup base ubuntu:20.04 (EOL, GPG expired) -> ubuntu:24.04
- installed vim+git live into all 18 running team containers
- team portal target dropdown reloads after login (was empty pre-auth)
- attack log endpoint + A/D submit (attacker vs target) verified e2e
This commit is contained in:
root
2026-09-23 18:54:03 +08:00
parent 24dbf0a662
commit 029b0f809a
7 changed files with 36 additions and 9 deletions
+5
View File
@@ -0,0 +1,5 @@
# Allow apt to work on hosts whose clock is past GPG key expiry (2026+)
Acquire::AllowInsecureRepositories "true";
Acquire::AllowDowngradeToInsecureRepositories "true";
Apt::Get::AllowUnauthenticated "true";
Apt::Get::force-yes "true";
+5 -2
View File
@@ -12,9 +12,12 @@ WORKDIR /app
ENV DEBIAN_FRONTEND=noninteractive ENV DEBIAN_FRONTEND=noninteractive
ENV DB_PATH=/data/app.db ENV DB_PATH=/data/app.db
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
# Install packages we need (exiftool, sqlite3, sshd, build tools, editor) # Install packages we need (exiftool, sqlite3, sshd, build tools, editor)
RUN apt-get update && \ RUN apt-get -o Acquire::AllowInsecureRepositories=true update && \
apt-get install -y --no-install-recommends \ apt-get -y --allow-unauthenticated install --no-install-recommends \
libimage-exiftool-perl \ libimage-exiftool-perl \
sqlite3 \ sqlite3 \
openssh-server \ openssh-server \
+9 -2
View File
@@ -6,8 +6,11 @@ ARG PASSWORD=root
ENV DEBIAN_FRONTEND=noninteractive ENV DEBIAN_FRONTEND=noninteractive
WORKDIR /home/ctfuser/chall WORKDIR /home/ctfuser/chall
RUN apt-get update && \ # Allow apt on hosts whose clock is past GPG key expiry (2026+)
apt-get install -y --no-install-recommends \ COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && \
apt-get -y --allow-unauthenticated install --no-install-recommends \
make \ make \
g++ \ g++ \
socat \ socat \
@@ -16,6 +19,10 @@ RUN apt-get update && \
bash \ bash \
nano \ nano \
vim \ vim \
curl \
wget \
netcat-openbsd \
git \
&& rm -rf /var/lib/apt/lists/* && rm -rf /var/lib/apt/lists/*
RUN useradd -m -d /home/ctfuser -s /bin/bash ctfuser && echo "ctfuser:${PASSWORD}" | chpasswd RUN useradd -m -d /home/ctfuser -s /bin/bash ctfuser && echo "ctfuser:${PASSWORD}" | chpasswd
+5 -2
View File
@@ -13,9 +13,12 @@ ENV PYTHONDONTWRITEBYTECODE=1 \
PYTHONUNBUFFERED=1 \ PYTHONUNBUFFERED=1 \
PIP_NO_CACHE_DIR=1 PIP_NO_CACHE_DIR=1
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
# Install packages we need (exiftool, sqlite3, sshd, build tools, editor) # Install packages we need (exiftool, sqlite3, sshd, build tools, editor)
RUN apt-get update && \ RUN apt-get -o Acquire::AllowInsecureRepositories=true update && \
apt-get install -y --no-install-recommends \ apt-get -y --allow-unauthenticated install --no-install-recommends \
libimage-exiftool-perl \ libimage-exiftool-perl \
sqlite3 \ sqlite3 \
openssh-server \ openssh-server \
+4 -1
View File
@@ -5,7 +5,10 @@ ENV DEBIAN_FRONTEND=noninteractive
ENV HOME=/home/ctfuser ENV HOME=/home/ctfuser
WORKDIR /home/ctfuser/chall WORKDIR /home/ctfuser/chall
RUN apt-get update && apt-get install -y --no-install-recommends \ # Allow apt on hosts whose clock is past GPG key expiry (2026+)
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && apt-get -y --allow-unauthenticated install --no-install-recommends \
openssh-server \ openssh-server \
build-essential \ build-essential \
libffi-dev \ libffi-dev \
+4 -1
View File
@@ -5,7 +5,10 @@ ENV DEBIAN_FRONTEND=noninteractive
ENV HOME=/home/ctfuser ENV HOME=/home/ctfuser
WORKDIR /home/ctfuser/chall WORKDIR /home/ctfuser/chall
RUN apt-get update && apt-get install -y --no-install-recommends \ # Allow apt on hosts whose clock is past GPG key expiry (2026+)
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
RUN apt-get -o Acquire::AllowInsecureRepositories=true update && apt-get -y --allow-unauthenticated install --no-install-recommends \
openssh-server \ openssh-server \
build-essential \ build-essential \
libffi-dev \ libffi-dev \
+4 -1
View File
@@ -12,8 +12,11 @@ ARG PASSWORD
ENV DEBIAN_FRONTEND=noninteractive ENV DEBIAN_FRONTEND=noninteractive
# Allow apt on hosts whose clock is past GPG key expiry (2026+)
COPY apt-insecure.conf /etc/apt/apt.conf.d/99gemastik-insecure
# Install necessary packages # Install necessary packages
RUN apt-get update && apt-get install -y nano vim git openssh-server python3 curl netcat-traditional wget sudo nginx golang-go && rm -rf /var/lib/apt/lists/* RUN apt-get -o Acquire::AllowInsecureRepositories=true update && apt-get -y --allow-unauthenticated install nano vim git openssh-server python3 python3-pip curl netcat-traditional wget sudo nginx golang-go && rm -rf /var/lib/apt/lists/*
# Create ctfuser and set password # Create ctfuser and set password
RUN useradd -m -d /home/ctfuser ctfuser && echo ctfuser:${PASSWORD} | chpasswd RUN useradd -m -d /home/ctfuser ctfuser && echo ctfuser:${PASSWORD} | chpasswd