Forensic

Wednesday 20 January 2016, 18:21  #1
Forensic - Log Analysis -web attack
MukeshSaiKumar
  • 3 posts

I have "understood" the logs from the text file provided as part of the challenge. from this data, what do i have to submit??? (I can’t validate the challenge)

Thursday 21 January 2016, 22:31  #2
Forensic - Log Analysis -web attack
b0z
b0z
  • 16 posts

Hello dude,

If you understood the logs, you should be able to extract a kind of string to these logs and this kind of string should used for validation.

Saturday 27 May 2017, 02:15  #3
Forensic - Log Analysis -web attack
prizraknavsegda
  • 2 posts

Hello,

I’m blocked in this challenge.

I managed to extract some information in all uri after decoding still no luck.

Any suggestions ?

Thank you

Sunday 9 July 2017, 23:12  #4
Forensic - Log Analysis -web attack
prizraknavsegda
  • 2 posts

Challenge solved.
There are failed requests that should be understood and left !!

Wednesday 30 August 2017, 16:36  #5
Forensic - Log Analysis -web attack
Victor
  • 4 posts

I’m stuck in this challenge from many days and I have no idea what to do now.. I can’t see where are those failed requests.. Maybe there’s something missing in my knowledge.. Can anyone please suggest me what should I do and what I’m missing ?? Really I have no idea..  😕
[EDITED] My bad... I saw that but I just ignored.. ;-P Now going to validate... 😄

Thursday 10 May 2018, 22:23  #6
Forensic - Log Analysis -web attack
cobra
  • 1 posts

Fawkin hell. The wrong request(where in condition result could be 1 or 2 sec sleep, but next request was continueing without any stop) I understood as broken bit. So I got 111001x, not 111001. There were 3 symbols like this one. So, my bit array could be 1110010 or 1110011. I combined 3 symbols with 2 places(0 and 1). I got 8 passwords and all these was wrong. Fawkin hell. I spent a lot of time for it and I waste it. With help of some guy I found somewhere on root-me forum, where he spotted few first symbols. All joy I got from this chellenge was lost because of this 2-mean wrong request