Discuss Scratch

scratchusername40
Scratcher
1000+ posts

ATs Capture The Flag

Chiroyce wrote:

scratchusername40 wrote:

Is this a server side vulnerability? or client side
ok heres clue #3 - server side
ok
mybearworld
Scratcher
1000+ posts

ATs Capture The Flag


lol (I didn't just put something blank, I just removed what I did)
Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

mybearworld wrote:

lol (I didn't just put something blank, I just removed what I did)
still not a vuln tho
scratchusername40
Scratcher
1000+ posts

ATs Capture The Flag

check the logs, did I get it?
I can redo it if you want

Last edited by scratchusername40 (March 19, 2022 14:19:47)

mybearworld
Scratcher
1000+ posts

ATs Capture The Flag


?
Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

mybearworld wrote:

?
someone DOSing server i had to restart sorry

scratchusername40 wrote:

check the logs, did I get it?
nope - you did not get the flag.

Last edited by Chiroyce (March 19, 2022 14:21:09)

Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

ok its been 22 minutes so here's the next clue - RCE


also feel free to use google or duckduckgo for this challenge

Last edited by Chiroyce (March 19, 2022 14:22:23)

mybearworld
Scratcher
1000+ posts

ATs Capture The Flag

Chiroyce wrote:

also feel free to use google or duckduckgo for this challenge
but I want to use startpage
I'm googling how curl works so-

Chiroyce wrote:

(#87)
ok its been 22 minutes so here's the next clue - RCE
now I gotta google what that is too
NFlex23
Scratcher
1000+ posts

ATs Capture The Flag

Chiroyce wrote:

(#87)
ok its been 22 minutes so here's the next clue - RCE


also feel free to use google or duckduckgo for this challenge
I thought it was something of that sort…
Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

one of you partially exploited the vulnerability!! but you didnt get the flag
Retr0id
Scratcher
68 posts

ATs Capture The Flag

Just started now, I have RCE, now to find the flag.
NFlex23
Scratcher
1000+ posts

ATs Capture The Flag

Uh, Replit went out. I think I was getting close…
mybearworld
Scratcher
1000+ posts

ATs Capture The Flag

this is very unstable
Autofirejm
Scratcher
1000+ posts

ATs Capture The Flag

Chiroyce wrote:

one of you partially exploited the vulnerability!! but you didnt get the flag
:O I wonder who it was!
(Not me though:P)
mybearworld
Scratcher
1000+ posts

ATs Capture The Flag

Chiroyce wrote:

one of you partially exploited the vulnerability!! but you didnt get the flag
I hope it was me but it wasn't
lol
I NEED TO CONTINUE AAA

Last edited by mybearworld (March 19, 2022 14:27:04)

Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

NFlex23 wrote:

Uh, Replit went out. I think I was getting close…

mybearworld wrote:

this is very unstable
someone is kinda spamming the server so i had to do a quick restart - it should be fine now
mybearworld
Scratcher
1000+ posts

ATs Capture The Flag

i'll have to stop now so good luck everyone
Retr0id
Scratcher
68 posts

ATs Capture The Flag

Flag submitted

btw I started a bit late, about 8 minutes ago.

Last edited by Retr0id (March 19, 2022 14:30:14)

Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

scratchusername40 has exploited the vuln but hasn't found the flag, congrats on that at least!!

(i got to know you from my logs -> found your repl )
Chiroyce
Scratcher
1000+ posts

ATs Capture The Flag

Retr0id wrote:

btw I started a bit late, about 8 minutes ago.
AND Retr0id WINS THE COMPETITION!! They found the flag!!!

whew that was intense!! but you found it!!

now shall i release an explanation for this or should i wait for more people to complete?

Last edited by Chiroyce (March 19, 2022 14:31:42)

Powered by DjangoBB