Please ask questions ONLY in this topic.

Please ask questions ONLY in this topic.

Post by -mouse- on Sun May 18, 2008 5:00 pm
([msg=2774]see Please ask questions ONLY in this topic.[/msg])

I only use linux and I know how to use linux. I generally know of perl but I am stump on what pipe command to use to get a file list or admin password hash or how to find it. That demo.exe I have no ideal what it and no way to know.

EDITED BY FAITH

Please ask questions only in this topic.
Just to keep the forum neat, and hopefully your post more noticed.
Please help us to keep the forum clean by report trashy posts. :>
You may start a new post if you're making a tutorial. However, if the tutorials are similar, please do not make two.

I wish you best luck with this mission, and hope you enjoy it.

<3 faith.
-mouse-
New User
New User
 
Posts: 5
Joined: Mon May 12, 2008 11:33 pm
Blog: View Blog (0)


Re: piping help

Post by djpitagora on Mon May 26, 2008 11:15 am
([msg=3256]see Re: piping help[/msg])

you don't need any pipe comands or to run that demo.exe. You should focus a bit on XSS. That's the way to go on this one
djpitagora
New User
New User
 
Posts: 24
Joined: Sun May 25, 2008 5:49 am
Blog: View Blog (0)


Please Help Me

Post by chalkie1983 on Tue May 27, 2008 5:02 am
([msg=3304]see Please Help Me[/msg])

Hi there,
So far i have managed to get to realistic 9 without any problems, just trial and error, but this one really has me stumped, i have created a cookie stealer that works perfectly, and ive tested it from a few different machines... But i just cant seem to work out how to access the system as m-crap the boss. being in perl i have also exhausted all my knowlege trying to figure a way of finding the database for system users but again unsuccsessfull... some help/advice would be great

many thanks in advance
chalkie1983
New User
New User
 
Posts: 5
Joined: Tue May 27, 2008 4:59 am
Blog: View Blog (0)


Re: Please Help Me

Post by djpitagora on Tue May 27, 2008 5:29 am
([msg=3305]see Re: Please Help Me[/msg])

I know it's frustrating. Apparently the script wants a particular type of cookie stealer. I don't know...it compares strings I guess and when it finds what it likes in it the script will give you the cookie. I tested like 3-4 different script (all working!!!) until I finally got the right one.
djpitagora
New User
New User
 
Posts: 24
Joined: Sun May 25, 2008 5:49 am
Blog: View Blog (0)


Re: Please Help Me

Post by chalkie1983 on Wed May 28, 2008 4:00 am
([msg=3395]see Re: Please Help Me[/msg])

many thanks for your help, i figured it out
chalkie1983
New User
New User
 
Posts: 5
Joined: Tue May 27, 2008 4:59 am
Blog: View Blog (0)


just out of curiosity ***Contains a small spoiler****

Post by chalkie1983 on Wed May 28, 2008 4:08 am
([msg=3396]see just out of curiosity ***Contains a small spoiler****[/msg])

does the site take you back to HTS when you complete the last mission of clearing your tracks??
chalkie1983
New User
New User
 
Posts: 5
Joined: Tue May 27, 2008 4:59 am
Blog: View Blog (0)


Re: Please Help Me

Post by generalacc on Thu May 29, 2008 5:40 am
([msg=3489]see Re: Please Help Me[/msg])

Ok if i encode my XSS in base64 will it work? I know- try it... the "realistic" 9
generalacc
New User
New User
 
Posts: 2
Joined: Mon May 26, 2008 8:33 am
Blog: View Blog (0)


Finishing the mission

Post by jmillican on Fri May 30, 2008 4:28 am
([msg=3690]see Finishing the mission[/msg])

Ok, i've succeeded in logging in as his boss and paying him. Now it's telling me to subscribe to some log to clear it but I've got no idea what it's on about. Have explored the website and found no log files, and have tried appending /log /logfiles etc to the url. No spoilers please (of course) but I'm a little stuck
jmillican
New User
New User
 
Posts: 18
Joined: Sat May 03, 2008 7:43 am
Blog: View Blog (0)


Re: Please Help Me

Post by djpitagora on Fri May 30, 2008 4:52 am
([msg=3692]see Re: Please Help Me[/msg])

generalacc wrote:Ok if i encode my XSS in base64 will it work? I know- try it... the "realistic" 9

you don't need to encode it or look for complicated solution. The solution is easy and straight forward...you just have to use one specific solution out of the several that would work in the real world
djpitagora
New User
New User
 
Posts: 24
Joined: Sun May 25, 2008 5:49 am
Blog: View Blog (0)


Re: Finishing the mission

Post by djpitagora on Fri May 30, 2008 5:01 am
([msg=3693]see Re: Finishing the mission[/msg])

jmillican wrote:Ok, i've succeeded in logging in as his boss and paying him. Now it's telling me to subscribe to some log to clear it but I've got no idea what it's on about. Have explored the website and found no log files, and have tried appending /log /logfiles etc to the url. No spoilers please (of course) but I'm a little stuck


then you haven't explored it enough. In one particular page you should find a directory (not the one with the logs) but from there you can browse through the directory structure until you find the logs. I can't say anything more without ruining the fun :P
djpitagora
New User
New User
 
Posts: 24
Joined: Sun May 25, 2008 5:49 am
Blog: View Blog (0)


Next

Return to (Real 9) CrappySoft

Who is online

Users browsing this forum: No registered users and 0 guests