App - Script

Tuesday 23 October 2018, 00:27  #1
App - Script Python - Pickle
SSJ26
  • 6 posts

I have no idea where to start. I don’t know how to AUTH. Can anyone give me a hint?

Tuesday 23 October 2018, 10:23  #2
App - Script Python - Pickle
Th1b4ud
  • 1636 posts

I think you know http GET/POST request, but do you know what is http AUTH request ?

Tuesday 23 October 2018, 19:11  #3
App - Script Python - Pickle
SSJ26
  • 6 posts

No, I don’t. I have been looking for some resources. But I’m not sure that I’m looking at what i needed. If you know a good resource that i can read/watch can you share?

Tuesday 23 October 2018, 19:43  #4
App - Script Python - Pickle
SSJ26
  • 6 posts

Now i am able to send AUTH request (With Burp first I intercepted , and then send to repeater and change the ’GET’ part to ’AUTH’ ). Now when I use AUTH with admin I get: "result": "Can’t find ’Authenticate’ header"

Tuesday 23 October 2018, 23:44  #5
App - Script Python - Pickle
Th1b4ud
  • 1636 posts

It says "Can’t find ’Authenticate’ header". So had it.

Saturday 3 November 2018, 22:58  #6
App - Script Python - Pickle
SSJ26
  • 6 posts

Now I get output: Authentication succesful. I inserted authenticate header, and then write something that it won’t give errors. But now I have no idea to what to do

Saturday 3 November 2018, 23:12  #7
App - Script Python - Pickle
Th1b4ud
  • 1636 posts

1. Go to https://google.fr
2. Type ’python pickle exploit’
3. Read the docs

Saturday 3 November 2018, 23:35  #8
App - Script Python - Pickle
SSJ26
  • 6 posts

I already did that. I send data with python, then I listen with recv method but there is nothing. Not even an error

Sunday 18 December 2022, 12:39  #9
App - Script Python - Pickle
bunnybuster
  • 1 posts

@SSJ26 Did you use ADMIN header with admin value? I can’t reproduce the behaviour of server when it prints "result": "Can’t find ’Authenticate’ header". It stubbornly responds back with "result": "unknown user group: /"