Posts

Showing posts with the label Web Ring

Web Ring - Glamtariels Fountain Walkthrough

Image
This is one of those challenges that was personally interesting, especially due to an Error I was making in the payload and and interesting challenge to implement XXE type attack. And this time it was definitely time for BurpSuite to be used (Free version is sufficient). As we progess through the doors upon completion of Borio Mine doors we are greeted and presented to look at an XXE type of challenge. When clicked at the fountain we are are redirected to the following URL https://glamtarielsfountain.com/ Difficulty Level 5/5 Where at the bottom of the page there are values Snack and Ticket. Which upon inspection of the JavaScript on the HTML page are nothing interesting and a rabbit hole to avoid with regards to cookie tampering or CSRF related attack. It took some time for me to understand the different responses of the website and hit the reset button provided on the website accordingly.   Two Behaviours to note: 1.     If you see the following Response “Trying t...

Web Ring - Open Boria Mine Door Wlakthrough

Image
After hearing more hints from Alabaster Snowball upon completion of Boria PCAP mining challenge , we walk to Hal TandyBuck who asks us to unlock the Boria Mine door. Upon accessing the terminal we are presented with a HTML/Graphics programming challenge. Where we need to link up two color sensors in each panel and link them up all together to open the mine door. Hints collected on this challenge give us some direction around what needs to be done in order to connect the color sensor and what controls we need to bypass. Challenge Difficulty 3/5 1. The locks take input, render some type of image, and process on the back end to unlock. To start, take a good look at the source HTML/JavaScript. 2. Developers use both client- and server-side input validation to keep out naughty input. (input validation bypasses ?) 3. Understanding how Content-Security-Policy works can help with this challenge. (maybe we will have to use Burp?) After doing a bit of reading from the following Reference URLs b...

Web Ring - Boria PCAP Mining Walkthrough

Image
As we progress through the web ring tunnel within 2022 Kringlecon CTF, we come across Alabaster Snowball who provides us the Victim.pcap file and weberror.log file. After which we are being asked a series of question to be analysed from the pcap and the log file to answer those questions. In the below answers for all of them have used the pcap to answer the questions and I have shown commands+output of log file analysis too Naughty IP - Difficulty Level 1/5 Use the artifacts from Alabaster Snowball to analyse this attack on the Boria mines. Most of the traffic to this site is nice, but one IP address is being naughty! Which is it? Visit Sparkle Redberry in the Tolkien Ring for hints.   To answer this question based on the hints provided on looking for top talkers, we can open up the pcap file within Wireshark and choose Statistics from menu bar and choose conversation options and choose IPv4 tab within the open window. Which presents to us that the IP that talks more the server is ...