← all labs
Intermediate
WEB+SSH
★★☆☆☆

Source Code

Find secrets in exposed version control history

/start source
22
Total Solves
25m 1s
Avg Solve Time
1
First Blood Claimed
2m 5s
Record Time

// FIRST BLOOD

Grex 🩸
cracked in 28m 4s

// TOP 10 FASTEST

#1 「 ✦ Rimuru ✦ 」 2m 5s
#2 F03ever 4m 49s
#3 harpy 5m 3s
#4 Kael 6m 27s
#5 Rocostre 7m 13s
#6 privalman 7m 27s
#7 CipherWolf45🐺 8m 32s
#8 firestormhunter 9m 34s
#9 r 10m 24s
#10 vwdg 11m 15s

// RELATED · Intermediate TIER

Command Injection
WEB+SSH Chain OS commands through a web interface
★★☆☆☆
Database Bypass
WEB+SSH Bypass authentication with SQL injection
★★☆☆☆
Malicious Upload
WEB+SSH Upload a web shell past file filters
★★☆☆☆
XML Attack
WEB Read server files through XML entity injection
★★☆☆☆
Path Traversal
WEB+SSH Traverse directories to read sensitive files
★★☆☆☆
Script Kiddie
WEB+SSH Inject JavaScript to steal credentials
★★☆☆☆

Spawn this box.
Capture the flag.

Join the Discord and type /start source to spin up your own container.