Please ask questions ONLY in this topic.

Re: Help with the snacks

Post by c24lightning on Thu May 01, 2008 7:54 pm
([msg=1879]see Re: Help with the snacks[/msg])

Damascus2k8 wrote:
c24lightning wrote:In real life now, there is almost more than a 0% chance of it not being encrypted. I'd like to see the mission with an encrypted pass, just to through people off track.. :twisted: :D


Yes but part of the vulnerability in this challenge is the fact that the password isn't checked anytime after login, so that would kind of defeat the purpose of the challenge don't you think?

How so? It would be funny -- set a fake cookie with encrypted hash of logged in user that is not checked after login. :D :D Newbs posting every two seconds on the forums that they don't get why it won't work. :D They decrypt the pass and it turns out to be their own password! :idea: So they try it on the guy's account they're trying to hack and it just doesn't work. :?: :?:

:D :) :twisted: :) :D

But it would make the forums really clogged with nothing but "I DON'T GET IT!!!"... :cry:
Here's some sites you might be interested in:

Need a proxy? Here - user:pass combination is proxy:bypass
c24lightning
Poster
Poster
 
Posts: 203
Joined: Sat Apr 19, 2008 7:46 am
Location: The infinite insanity of thought
Blog: View Blog (0)


Re: Stuck...but don't know why!

Post by c24lightning on Thu May 01, 2008 7:56 pm
([msg=1880]see Re: Stuck...but don't know why![/msg])

Damascus2k8 wrote:
c24lightning wrote:better man than i!"
correct is "better man than me"

I'm just being a pain.. :D


If you've completed basic 10, you should know how to get to the point that makes someone 'better man than you'..


looool :roll: there's always one! ;)

If there aren't pains in the world, the world would be perfect because there would be nothing to be a pain about. If the world was perfect, there would be no need for hacking. So in a perfect world, HTS wouldn't be, and people wouldn't be asking how to hack a bank account on a hacking challenge site.
Here's some sites you might be interested in:

Need a proxy? Here - user:pass combination is proxy:bypass
c24lightning
Poster
Poster
 
Posts: 203
Joined: Sat Apr 19, 2008 7:46 am
Location: The infinite insanity of thought
Blog: View Blog (0)


Re: Help with the snacks

Post by Damascus2k8 on Thu May 01, 2008 10:07 pm
([msg=1898]see Re: Help with the snacks[/msg])

c24lightning wrote:How so? It would be funny -- set a fake cookie with encrypted hash of logged in user that is not checked after login. :D :D Newbs posting every two seconds on the forums that they don't get why it won't work. :D They decrypt the pass and it turns out to be their own password! :idea: So they try it on the guy's account they're trying to hack and it just doesn't work. :?: :?:

:D :) :twisted: :) :D

But it would make the forums really clogged with nothing but "I DON'T GET IT!!!"... :cry:


:D Hahaha :D

I get your meaning now! :oops:

Sorry, these late nights are starting to warp my mind, that coupled with some of these logic missions and well...... :o

I think thats a good idea (and a bad, for the reason you mentioned). Maybe we should suggest it to the admin(s)!


C0362AF19B89E861F21485CE1D2B430E



"Change your thoughts and you change your world!"
Damascus2k8
Experienced User
Experienced User
 
Posts: 68
Joined: Mon Apr 14, 2008 8:18 pm
Location: /root
Blog: View Blog (0)


Re: Stuck...but don't know why!

Post by Damascus2k8 on Thu May 01, 2008 10:32 pm
([msg=1900]see Re: Stuck...but don't know why![/msg])

c24lightning wrote:If there aren't pains in the world, the world would be perfect because there would be nothing to be a pain about. If the world was perfect, there would be no need for hacking. So in a perfect world, HTS wouldn't be, and people wouldn't be asking how to hack a bank account on a hacking challenge site.


Yes, how true that is! ;)

And also if this was a perfect world,
- all browsers would have an equal! :mrgreen:
- Microsoft wouldn't exist...
- - so neither would windows...
- - - so everyone would have to use Linux! :ugeek:

......or maybe not.

This thread is quickly steering away from topic, reading these i nearly forgot we were in the realistic 8 thread! :D :D :D

Oh and btw, realistic 8 seems to be working again now, just in case anyone was wondering after reading the first few posts here. (Pity about 9 and 10 though :cry: )


C0362AF19B89E861F21485CE1D2B430E



"Change your thoughts and you change your world!"
Damascus2k8
Experienced User
Experienced User
 
Posts: 68
Joined: Mon Apr 14, 2008 8:18 pm
Location: /root
Blog: View Blog (0)


Re: Stuck...but don't know why!

Post by adigahacker on Sat May 03, 2008 9:54 pm
([msg=2029]see Re: Stuck...but don't know why![/msg])

Robbinski12 wrote:why dont you clear the log before you click back?


maybe because there is no forms you can use to clear the logs in any other page than the one you where on "BEFORE" you get the msg ....

but ... who knows ....
adigahacker
New User
New User
 
Posts: 2
Joined: Sat Apr 19, 2008 5:36 pm
Blog: View Blog (0)


Re: A push in the right direction?

Post by Creia on Sun May 04, 2008 1:42 am
([msg=2041]see Re: A push in the right direction?[/msg])

i have been looking again and again...and again to the name list..but i still cant figure out what is the right one,so many gary!! am i juz being stupid for can't something in front of my eyes? :oops:
Creia
New User
New User
 
Posts: 1
Joined: Fri May 02, 2008 8:36 am
Blog: View Blog (0)


Re: A push in the right direction?

Post by Sydeth on Sun May 04, 2008 5:51 am
([msg=2055]see Re: A push in the right direction?[/msg])

I have the same problem. I have the userlist and I have determined which one is the true one. Now, how do I get the password?
Sydeth
New User
New User
 
Posts: 7
Joined: Sun Apr 27, 2008 9:18 am
Blog: View Blog (0)


Re: Stuck

Post by vort3x on Sun May 04, 2008 6:50 am
([msg=2056]see Re: Stuck[/msg])

i look at cookies and this is all i get

Name __utma
Value 198402870.190450119.1209901493.1209901493.1209901493.1
Host .hackthissite.org
Path /
Secure No
Expires Tue, 04 May 2010 11:50:37 GMT

* Edit Cookie
* Delete Cookie

Name __utmb
Value 198402870.10.10.1209901493187
Host .hackthissite.org
Path /
Secure No
Expires Sun, 04 May 2008 12:20:37 GMT

* Edit Cookie
* Delete Cookie

Name __utmc
Value 198402870
Host .hackthissite.org
Path /
Secure No
Expires At End Of Session

* Edit Cookie
* Delete Cookie

Name __utmz
Value 198402870.1209901493.1.1.utmcsr=(direct)|utmccn=(direct)|utmcmd=(none)
Host .hackthissite.org
Path /
Secure No
Expires Sun, 02 Nov 2008 23:44:53 GMT

* Edit Cookie
* Delete Cookie

Name phpbb3_28pla_k
Value bcb12ba40e65f212
Host .hackthissite.org
Path /
Secure No
Expires Mon, 04 May 2009 11:45:33 GMT

* Edit Cookie
* Delete Cookie

Name phpbb3_28pla_sid
Value 4d171de51c23ae5bf257aa83a9b54d15
Host .hackthissite.org
Path /
Secure No
Expires Mon, 04 May 2009 11:45:33 GMT

* Edit Cookie
* Delete Cookie

Name phpbb3_28pla_u
Value 866
Host .hackthissite.org
Path /
Secure No
Expires Mon, 04 May 2009 11:45:33 GMT

* Edit Cookie
* Delete Cookie

Name PHPSESSID
Value njq2guiroahqottarg15f9ek54
Host hackthissite.org
Path /
Secure No
Expires At End Of Session

* Edit Cookie
* Delete Cookie

Name PHPSESSID
Value 2eiv9kr022644gr7lpp6stace3
Host http://www.hackthissite.org
Path /
Secure No
Expires At End Of Session

* Edit Cookie
* Delete Cookie

Name style_cookie
Value null
Host http://www.hackthissite.org
Path /
Secure No
Expires Mon, 04 May 2009 11:49:40 GMT
vort3x
New User
New User
 
Posts: 8
Joined: Thu Apr 17, 2008 6:51 am
Blog: View Blog (0)


Re: Stuck

Post by -system- on Tue May 13, 2008 8:08 pm
([msg=2391]see Re: Stuck[/msg])

you know, I like to just put -->anything'<-- in my sql injection OR you could just... hey I need to do a math equation -->'x'='x<-- anyone know what that makes? ;)
[system]
[for all who are great there are greater]
-system-
New User
New User
 
Posts: 9
Joined: Sun May 11, 2008 2:26 pm
Blog: View Blog (0)


Re: Stuck

Post by -system- on Tue May 13, 2008 8:39 pm
([msg=2393]see Re: Stuck[/msg])

Ok, I've got the username, now how do I find the password?
[system]
[for all who are great there are greater]
-system-
New User
New User
 
Posts: 9
Joined: Sun May 11, 2008 2:26 pm
Blog: View Blog (0)


PreviousNext

Return to (Real 8) United Banks Of America

Who is online

Users browsing this forum: No registered users and 0 guests