Skip to content

Latest commit

 

History

History

Secure-Note

Folders and files

NameName
Last commit message
Last commit date

parent directory

..
 
 
 
 
 
 

SecureNote

Description Building Secure Applications is hard! But we tried. Can you get the flag from Secure Note? You might need to dig deep into your skills for this one. (PS: The challenge requires no automated testing tools! using them == instant ban)

Author: r3x & 4lph4

Short writeup

  • Challenge involves Reversing, Web, and Crypto
  • Reverse the binary to get the endpoints
  • Trigger the XSS bug in the website and get admin cookie
  • Use Hash Length extension attack to get authenticated as admin and get the flag