IP :
38.107.179.220
Location :
Lang : en-us
Browser : CCBot/1.0 (+http://www.commoncrawl.org/bot.html)
13 visiteurs en ce moment
Last registered users :
Discover the mechanisms, protocols and technologies used on the Internet and learn to abuse it!
These challenges are designed to train users on HTML, HTTP and other server side mechanisms. The following series of challenges will cultivate a better understanding of techniques such as : Basic workings of multiple authentication mechanisms, handling form data, inner workings of web applications, etc. ...
Prerequisites:
Understand HTML.
Understand the HTTP protocol.
Ability to manipulate a web browser.
Challenges ahead:
File upload: extensions
File upload: mime-type
Dual encoding
Remote File Inclusion
CGI (perl, python, bash)


Challenges
| Challenge's Name | Validations | Number of points | Difficulty | Author | Who ? |
| HTML |
60%
|
5 Points | Very easy | g0uZ | Who ? |
| User-agent |
27%
|
10 Points | Very easy | g0uZ | Who ? |
| Weak password |
27%
|
10 Points | Very easy | g0uZ | Who ? |
| Backup file |
8%
|
15 Points | Easy | g0uZ | Who ? |
| HTTP basic auth |
15%
|
15 Points | Easy | int_0x80 | Who ? |
| HTTP directory indexing |
36%
|
15 Points | Easy | g0uZ | Who ? |
| HTTP GET |
7%
|
15 Points | Easy | g0uZ | Who ? |
| Install files |
15%
|
15 Points | Medium | g0uZ | Who ? |
| CRLF |
7%
|
20 Points | Medium | g0uZ | Who ? |
| Directory traversal |
14%
|
25 Points | Medium | g0uZ | Who ? |
| Local File Inclusion |
8%
|
30 Points | Medium | g0uZ | Who ? |
| PHP filters |
10%
|
25 Points | Medium | g0uZ | Who ? |
| Register globals |
4%
|
25 Points | Medium | g0uZ | Who ? |
| SQL injection |
18%
|
30 Points | Medium | g0uZ | Who ? |
| Warm cookies |
28%
|
20 Points | Medium | g0uZ | Who ? |
| Blind SQL injection |
8%
|
50 Points | Hard | g0uZ | Who ? |


Challenge Results
| Pseudo | Challenge | Date |
| pwet99 | User-agent, Web - Serveur | 19 May 2012 at 18:34:10 |
| llooll | Weak password, Web - Server | 19 May 2012 at 16:59:14 |
| llooll | HTML, Web - Server | 19 May 2012 at 16:57:03 |
| pwet99 | Mot de passe faible, Web - Serveur | 19 May 2012 at 15:54:16 |
| pwet99 | HTML, Web - Serveur | 19 May 2012 at 15:31:43 |
| doremon | Directory traversal, Web - Serveur | 19 May 2012 at 15:06:27 |
| sorcha | SQL injection, Web - Serveur | 19 May 2012 at 14:10:41 |
| spump | HTTP directory indexing, Web - Server | 19 May 2012 at 11:34:02 |
| spump | User-agent, Web - Server | 19 May 2012 at 11:30:37 |
| finderX | Install files, Web - Server | 19 May 2012 at 02:29:25 |