logo http://www.root-me.org logo http://www.root-me.orglogo http://www.root-me.org Create an account | Login | français  
Home  -> Challenges  -> Web - Server
Twitter Stream

Your Informations

IP : 38.107.179.220
Location :
Lang : en-us
Browser : CCBot/1.0 (+http://www.commoncrawl.org/bot.html)


Users

13 visiteurs en ce moment

Last registered users :
 novice2005   pwet99   Hughe   Auranium   Belebostre   Sperrow   justdouit 
Statistics
statistiques -Membrers : 2585
-Papers : 483
-Messages : 397
-ShoutBox : 522
-Challengers : 1741

ShoutBox
g0uZ    23 April 2012 20:01:43
xyphr    23 April 2012 15:55:35
hi, how come the wargames do not connect on port 2223 ? or on 22 the user and pass dont work ?

koma    26 February 2012 16:19:13
kapil sharma maybe you are searching at the wrong place

kapil sharma    25 February 2012 19:25:00
i am unable to understand that what paasword is putting into stegnography image method . .what is the puzzle?

kapil sharma    25 February 2012 19:24:12
i am unable to understand that what paasword is putting into stegnography image method . .what is the puzzle?

5P00N    7 February 2012 22:07:33
what do i do on here my friend told me it teaches you to hack from square 1

5P00N    7 February 2012 22:07:22
what do i do on here my friend told me it teaches you to hack from square1

Armel    27 August 2011 22:07:35
Of course John!

g0uZ    29 January 2011 11:34:57
Fixed : lang handling bug.

g0uZ    23 January 2011 19:07:32
Welcome all !


You have to be logged in to post
HG


Web - Server

Discover the mechanisms, protocols and technologies used on the Internet and learn to abuse it!

These challenges are designed to train users on HTML, HTTP and other server side mechanisms. The following series of challenges will cultivate a better understanding of techniques such as : Basic workings of multiple authentication mechanisms, handling form data, inner workings of web applications, etc. ...

Prerequisites:

- Understand HTML.
- Understand the HTTP protocol.
- Ability to manipulate a web browser.

Challenges ahead:

- File upload: extensions
- File upload: mime-type
- Dual encoding
- Remote File Inclusion
- CGI (perl, python, bash)


BG BD
HGHG

  Challenges

Challenge's Name Validations Number of points Difficulty Author Who ?
HTML
60%
5 Points Very easy g0uZ Who ?
User-agent
27%
10 Points Very easy g0uZ Who ?
Weak password
27%
10 Points Very easy g0uZ Who ?
Backup file
8%
15 Points Easy g0uZ Who ?
HTTP basic auth
15%
15 Points Easy int_0x80 Who ?
HTTP directory indexing
36%
15 Points Easy g0uZ Who ?
HTTP GET
7%
15 Points Easy g0uZ Who ?
Install files
15%
15 Points Medium g0uZ Who ?
CRLF
7%
20 Points Medium g0uZ Who ?
Directory traversal
14%
25 Points Medium g0uZ Who ?
Local File Inclusion
8%
30 Points Medium g0uZ Who ?
PHP filters
10%
25 Points Medium g0uZ Who ?
Register globals
4%
25 Points Medium g0uZ Who ?
SQL injection
18%
30 Points Medium g0uZ Who ?
Warm cookies
28%
20 Points Medium g0uZ Who ?
Blind SQL injection
8%
50 Points Hard g0uZ Who ?

BG BD
HGHG

 Challenge Results

Pseudo Challenge Date
pwet99 User-agent,  Web - Serveur 19 May 2012 at 18:34:10
llooll Weak password,  Web - Server 19 May 2012 at 16:59:14
llooll HTML,  Web - Server 19 May 2012 at 16:57:03
pwet99 Mot de passe faible,  Web - Serveur 19 May 2012 at 15:54:16
pwet99 HTML,  Web - Serveur 19 May 2012 at 15:31:43
doremon Directory traversal,  Web - Serveur 19 May 2012 at 15:06:27
sorcha SQL injection,  Web - Serveur 19 May 2012 at 14:10:41
spump HTTP directory indexing,  Web - Server 19 May 2012 at 11:34:02
spump User-agent,  Web - Server 19 May 2012 at 11:30:37
finderX Install files,  Web - Server 19 May 2012 at 02:29:25

0 | 10 | 20 | 30 | 40

BG BD