Friday, December 2, 2022

Demo of Struts2

 

Overview

Demo of the Apache Struts CVE-2017-5638 Struts2 vulnerabilities that affected Equifax in 2017.

Apache Struts 2 is an open-source framework for Java EE applications development used in numerous web applications on the Internet.

Prerequisites

  • Docker Desktop

  • Web Browser

  • Access to Snyk.io

  • Access to GitHub

  • Visual Code Studio with Snyk IDE plugin

  • Snyk CLI

  • gotty

  • tmux

It's understood that while containers are often described as “lightweight VMs” despite nothing is actually virtualized instead the kernel is shared with the host system.

Containers are chroot that isolate and define the resources it's allotted.

Containers are built from a Dockerfile containing the instructions for setting up the environment and what to do when invoked.

No comments:

Post a Comment