Remove mock LLM server and related configurations; update README and exploit tests for clarity

This commit is contained in:
Dontrail Cotlage
2026-02-04 02:21:22 +00:00
parent c58cea33c5
commit 81f074a338
7 changed files with 17 additions and 233 deletions

View File

@@ -130,12 +130,12 @@ class PathTraversalPOC:
)
self._print_result(r)
# Test 3: Read sensitive config
print("[TEST 3] Read /sensitive/api_keys.txt")
# Test 3: Read sensitive test file (demonstrates path traversal outside workspace)
print("[TEST 3] Read /sensitive/api_keys.txt (test file outside workspace)")
r = await self.test_read(
"api_keys",
"sensitive_test_file",
"/sensitive/api_keys.txt",
"API key disclosure"
"Sensitive file disclosure - if content contains 'PATH_TRAVERSAL_VULNERABILITY_CONFIRMED', vuln is proven"
)
self._print_result(r)