- Laboratório DevSecOps em containers com:
- Java Goof,
- Sonar,
- OWASP ZAP,
- OWASP Juice Shop,
- Hawkscan
- Dentro da pasta clonada executar:
docker-compose up
-This is a collection of Java demo apps that are vulnerable in different ways.
It's divided into modules, each one having its own README:
- http://localhost:9000
- Usuário e senha inicial: admin
- Para entrar no shell do container java-goof execute:
docker-compose exec java-goof bash
- http://localhost:8080/zap
- Referência:
- Passos para rodar:
- descomentar o service hawkscan.
- alterar o conteúdo do arquivo stackhawk.yml
- alterar o valor do environment API_KEY no service hawkscan
- Referência: