← all labs
Advanced
WEB+SSH
★★★☆☆

Blind Injection

Extract data through boolean-based blind SQL injection

/start blind_sqli
11
Total Solves
59m 43s
Avg Solve Time
1
First Blood Claimed
17m 29s
Record Time

// FIRST BLOOD

cracked in 53m 55s

// TOP 10 FASTEST

#1 harpy 17m 29s
#2 vwdg 25m 35s
#3 Rocostre 30m 27s
#4 firestormhunter 34m 59s
#5 anderdingus 37m 59s
#6 bussi 50m 53s
#7 iamunknown77 52m 23s
#8 TheCyberVendetta 53m 55s
#9 「 ✦ Rimuru ✦ 」 1h 3m
#10 privalman 1h 39m

// RELATED · Advanced TIER

Template Injection
WEB+SSH Execute code through template engines
★★★☆☆
Token Forger
WEB+SSH Forge authentication tokens
★★★☆☆
Root Access
SSH Escalate from user to root via SUID
★★★☆☆
Internal Access
WEB+SSH Access internal services through SSRF
★★★☆☆
Hash Cracker
WEB+SSH Crack weak password hashes from an exposed database
★★★☆☆
Race the Clock
WEB Exploit a race condition to bypass purchase limits
★★★☆☆

Spawn this box.
Capture the flag.

Join the Discord and type /start blind_sqli to spin up your own container.