HTTP - Cookies

20 Points  0x0

Bob created a PHP script to gather user emails

Author

g0uZ,  

Level  Difficulty

Validations

27140 Challengers 14%

Note  Notation

941 Votes

To reach this part of the site please login

Challenge Results Challenge Results

Pseudo Challenge Lang date
Nizar Tajmouti   HTTP - Cookies 18 January 2021 at 00:59
Mastas   HTTP - Cookies 17 January 2021 at 22:19
anastasiia_hudkova   HTTP - Cookies 17 January 2021 at 21:40
therbret   HTTP - Cookies 17 January 2021 at 20:52
JaLord   HTTP - Cookies 17 January 2021 at 19:15
vquantum   HTTP - Cookies 17 January 2021 at 18:40
vadymbabaiev   HTTP - Cookies 17 January 2021 at 18:04
Deviss   HTTP - Cookies 17 January 2021 at 15:31
osama   HTTP - Cookies 17 January 2021 at 12:33
nathanp   HTTP - Cookies 17 January 2021 at 11:36

 65 Challenges

Results Name Validations Number of points  Explanation for the scores Difficulty  Difficulty Author Note  Notation Solution
pas_valide HTML - Source code 49% 99688 5 g0uZ 3
pas_valide HTTP - Open redirect 19% 38147 10 Swissky 10
pas_valide HTTP - User-agent 25% 49945 10 g0uZ 10
pas_valide Weak password 34% 68117 10 g0uZ 7
pas_valide PHP - Command injection 18% 36241 10 sambecks 10
pas_valide Backup file 17% 34534 15 g0uZ 7
pas_valide HTTP - Directory indexing 24% 47704 15 g0uZ 7
pas_valide HTTP - Headers 16% 32704 15 Arod 9
pas_valide HTTP - POST 13% 25877 15 Th1b4ud 10
pas_valide HTTP - Improper redirect 13% 25578 15 Arod 10
pas_valide HTTP - Verb tampering 15% 28782 15 g0uZ 10
pas_valide Install files 14% 28522 15 g0uZ 3
pas_valide CRLF 10% 19321 20 g0uZ 7
pas_valide File upload - Double extensions 11% 21674 20 g0uZ 9
pas_valide File upload - MIME type 9% 16952 20 g0uZ 10
pas_valide HTTP - Cookies 14% 27133 20 g0uZ 7
pas_valide Insecure Code Management 3% 5422 20 Swissky 6
pas_valide JSON Web Token (JWT) - Introduction 3% 5988 20 Kn0wledge 5
pas_valide Directory traversal 11% 22082 25 g0uZ 3
pas_valide File upload - Null byte 8% 15314 25 g0uZ 4
pas_valide JSON Web Token (JWT) - Weak secret 3% 4227 25 Jrmbt 6
pas_valide JWT - Revoked token 1% 1259 25 ArnC 6
pas_valide PHP - assert() 5% 9158 25 Birdy42 9
pas_valide PHP - Filters 7% 13251 25 g0uZ 3
pas_valide PHP - register globals 6% 10918 25 g0uZ 1
pas_valide PHP - Remote Xdebug 1% 486 25 mayfly 2
pas_valide File upload - ZIP 3% 5625 30 ghozt 3
pas_valide Command injection - Filter bypass 3% 4294 30 sambecks 6
pas_valide Java - Server-side Template Injection 4% 6395 30 righettod 4
pas_valide JSON Web Token (JWT) - Public key 1% 1660 30 Jrmbt 4
pas_valide Local File Inclusion 9% 16833 30 g0uZ 4
pas_valide Local File Inclusion - Double encoding 5% 8217 30 zM_ 3
pas_valide PHP - Loose Comparison 3% 4430 30 ghozt 4
pas_valide PHP - preg_replace() 4% 6195 30 sambecks 4
pas_valide PHP - type juggling 3% 6049 30 vic 4
pas_valide Remote File Inclusion 4% 7347 30 g0uZ 8
pas_valide SQL injection - Authentication 13% 25529 30 g0uZ 11
pas_valide SQL injection - Authentication - GBK 3% 5603 30 dvor4x 3
pas_valide SQL injection - String 6% 11806 30 g0uZ 8
pas_valide XSLT - Code execution 2% 2226 30 ghozt 5
pas_valide LDAP injection - Authentication 4% 6594 35 g0uZ 8
pas_valide NoSQL injection - Authentication 3% 5020 35 mastho 8
pas_valide PHP - Path Truncation 2% 3731 35 Geluchat 5
pas_valide PHP - Serialization 3% 4567 35 Arod 2
pas_valide SQL injection - Numeric 5% 8553 35 g0uZ 6
pas_valide SQL Injection - Routed 2% 2761 35 soka 5
pas_valide SQL Truncation 3% 4107 35 Geluchat 2
pas_valide XML External Entity 2% 3169 35 sambecks 2
pas_valide XPath injection - Authentication 3% 4727 35 g0uZ 6
pas_valide GraphQL 1% 204 40 CanardMandarin 1
pas_valide Java - Spring Boot 1% 1478 40 dvor4x 2
pas_valide Local File Inclusion - Wrappers 2% 2056 40 sambecks 4
pas_valide PHP - Eval 1% 1881 40 chmod 9
pas_valide PHP - Unserialize overflow 1% 292 40 mayfly 2
pas_valide SQL injection - Error 3% 4365 40 sambecks 4
pas_valide SQL injection - Insert 1% 1804 40 sambecks 3
pas_valide SQL injection - File reading 2% 3346 40 Arod 3
pas_valide XPath injection - String 2% 2686 40 g0uZ 5
pas_valide NoSQL injection - Blind 1% 1870 45 ghozt 5
pas_valide SQL injection - Time based 2% 3178 45 ycam 4
pas_valide Server Side Request Forgery 1% 802 50 sambecks 7
pas_valide SQL injection - Blind 3% 4595 50 g0uZ 5
pas_valide LDAP injection - Blind 1% 2035 55 g0uZ 2
pas_valide XPath injection - Blind 1% 1420 75 g0uZ 4
pas_valide SQL injection - Filter bypass 1% 1411 80 sambecks 5