|
Wargames2011
|
|
04-07-2011, 10:49 AM
(This post was last modified: 04-07-2011 10:50 AM by p0pc0rn.)
Post: #1
|
|||
|
|||
|
Wargames2011
wargames2011 ade sikit yg aku dapat dari sape tah..ttbe je bg kt aku suh share..
Code: http://www.filehosting.org/file/details/243552/tbd.rarCode: http://www.fileserve.com/file/DDwDN6JCode: http://www.wupload.com/file/43128258/tbd.rarCode: http://www.filesonic.com/file/1363827434/tbd.rarCode: http://www.multiupload.com/I2SN3RV1SEcrypto 100 200 Network 100 200 Puzzle 100 200 Binary 100 Forensic 100 200 ------------------------- updated with binary 300 network 200 crypto 300 Code: http://www.multiupload.com/S3ZBO8M63Fsape2 nk tambah,nak mirror digalakkan solution untuk crypto 100 Code: http://w3.tbd.my/thread-8982-post-103163.htmlCode: http://w3.tbd.my/thread-8983-post-103280.html#pid103280solution untuk crypto 300 Code: http://w3.tbd.my/thread-8979-post-103148.htmlsolution forensic 200 Code: http://w3.tbd.my/thread-8983-post-103220.html#pid103220solution binary 100 Code: http://w3.tbd.my/thread-8988-lastpost.htmlsolution puzzle 100 Code: http://w3.tbd.my/thread-8983-post-103271.html#pid103271updated ngn bonus challenge Code: http://w3.tbd.my/thread-9860.html
|
|||
|
04-07-2011, 11:33 AM
Post: #2
|
|||
|
|||
|
RE: Wargames2011
xleh nk donlod
![]() pleh upload ke file hosting yg kurg x (mediafire ke)pliss
[̲̅ə̲̅٨̲̅٥̲̅٦̲̅]
i ℓ٥ﻻ ﻉ√٥υ F٥rﻉ√ﻉr ღ |_|0|_| |_|_|0| |0|0|0| http://jonhburn2.freehostia.com/lol.txt |
|||
|
04-07-2011, 01:00 PM
(This post was last modified: 04-07-2011 01:03 PM by p0pc0rn.)
Post: #3
|
|||
|
|||
|
RE: Wargames2011
aku takle upload kt mediafire T___T
sape2 nk aku emel then tolog upload Code: http://www.fileserve.com/file/DDwDN6J
|
|||
|
04-07-2011, 01:03 PM
Post: #4
|
|||
|
|||
|
RE: Wargames2011
tumpang belajar ye master 2 semua
Quote:"If you think network security is a joke, keep laughing..."---------> http://www.aliencrew.com/albums.html <-------- [video=youtube]http://www.youtube.com/watch?v=VNLtJlEMNMg[/video] |
|||
|
04-07-2011, 01:05 PM
(This post was last modified: 04-07-2011 01:13 PM by p0pc0rn.)
Post: #5
|
|||
|
|||
|
RE: Wargames2011
Code: http://www.wupload.com/file/43128258/tbd.rarCode: http://www.filesonic.com/file/1363827434/tbd.rarCode: http://www.multiupload.com/I2SN3RV1SE
|
|||
|
04-07-2011, 01:55 PM
Post: #6
|
|||
|
|||
|
RE: Wargames2011
mirror, direct donlod - http://lix.in/-9a3bab
▲ ![]() ▲ ▲ Spoiler:
|
|||
|
04-07-2011, 02:11 PM
Post: #7
|
|||
|
|||
|
RE: Wargames2011
Forensic200 kut
![]() Dari readme: Quote:OHMAIGAWD! It seems like we've been hacked! But what did the hackers steal? From the logs, it seems like they exploited an SQL injection bug on our website. Help us find the name of the database that they stole and we shall reward you handsomely. Dari log: Quote:172.16.61.1 - - [25/May/2011:08:25:06 -0400] "GET /news.php?id=1 AND ORD(MID((IFNULL(CAST(DATABASE() AS CHAR(10000)), CHAR(32))), 1, 1)) > 64 AND 3400=3400 HTTP/1.1" 200 271 "-" "sqlmap/0.8 (http://sqlmap.sourceforge.net)" Penerangan: Quote:1 AND ORD(MID((IFNULL(CAST(DATABASE() AS CHAR(10000)), CHAR(32))), 1, 1)) > 64 AND 3400=3400 Boleh diterjemahkan ke sql: Quote:SELECT somecolumn FROM sometable WHERE id=1 AND ORD(MID((IFNULL(CAST(DATABASE() AS CHAR(10000)), CHAR(32))), 1, 1)) > 64 AND 3400=3400 Part yang diboldkan tu akan return true (1) jika ASCII value untuk character pertama dari nama current database lebih besar dari 64. So kita boleh dapatkan ASCII value untuk character pertama database dengan cara menaikkan nilai 64 tadi sehingga satu nilai yang return false (0). Selepas false kita uji plak untuk character kedua, sampai la abes. So dah dapat suma, kita convert la dari ASCII value ke ASCII: PHP Code: <?phpQuote:john@john-Latitude-E6410:~/Desktop$ php forensic200.php p/s: xtau btol ke salah, mungkin popcorn leh kompemkan
[̲̅ə̲̅٨̲̅٥̲̅٦̲̅]
i ℓ٥ﻻ ﻉ√٥υ F٥rﻉ√ﻉr ღ |_|0|_| |_|_|0| |0|0|0| http://jonhburn2.freehostia.com/lol.txt |
|||
|
04-07-2011, 02:18 PM
(This post was last modified: 04-07-2011 02:18 PM by p0pc0rn.)
Post: #8
|
|||
|
|||
|
RE: Wargames2011
salah
![]() jwpn dia wgmy2011 sexplaination aku rs da betul.tp myb aku takpaham script/programming so tak sure salah ape..aku wat manually je compare ngn ascii table
|
|||
|
04-07-2011, 02:23 PM
Post: #9
|
|||
|
|||
RE: Wargames2011
(04-07-2011 02:18 PM)p0pc0rn Wrote: salah dh tau dh mana salah ![]() aku xtgk btol2 log just amek kt dia tukar character je (1,1 > 2,1 > etc) pdhal dia pnya compare dlm log tu x ikut turutan dari kecik ke besar lol jap aku tukar
[̲̅ə̲̅٨̲̅٥̲̅٦̲̅]
i ℓ٥ﻻ ﻉ√٥υ F٥rﻉ√ﻉr ღ |_|0|_| |_|_|0| |0|0|0| http://jonhburn2.freehostia.com/lol.txt |
|||
|
04-07-2011, 02:30 PM
(This post was last modified: 04-07-2011 02:31 PM by p0pc0rn.)
Post: #10
|
|||
|
|||
|
RE: Wargames2011
aku amik contoh utk 6th char
Code: 172.16.61.1 - - [25/May/2011:08:25:06 -0400] "GET /news.php?id=1 AND ORD(MID((IFNULL(CAST(DATABASE() AS CHAR(10000)), CHAR(32))), 6, 1)) > 64 AND 3400=3400 HTTP/1.1" 200 221 "-" "sqlmap/0.8 (http://sqlmap.sourceforge.net)"just cek utk 2 char yg last jeh aku wat. > 32 true which means char tu bkn char yg ke dec=33 > 48 false thats y next step dia reduce char jadi char dec=40 > 40 true then up jd 44 > 44 still true dia try 46 > 46 still true then dia test 47 > 47 true then dia stop. sbb? dia da test > 48 adalah salah which is dec 49 is not the right char lastly dia test > 47 which is char dec=48 so char yg betul adelah usha kt ascii table dec =48 --> 0 then go on utk char yg lain2 ![]() ni bkn aku yg wat..sape tah kasik solution
|
|||
|
04-07-2011, 02:33 PM
Post: #11
|
|||
|
|||
|
RE: Wargames2011
yeah mcm tu
aku xtgk btol2 log igtkn sqlmap dia buat nek satu2 smpai false ![]() so sapa2 nk try sila baca penerangan popcorn untuk lbh faham
[̲̅ə̲̅٨̲̅٥̲̅٦̲̅]
i ℓ٥ﻻ ﻉ√٥υ F٥rﻉ√ﻉr ღ |_|0|_| |_|_|0| |0|0|0| http://jonhburn2.freehostia.com/lol.txt |
|||
|
04-07-2011, 03:44 PM
Post: #12
|
|||
|
|||
RE: Wargames2011
(04-07-2011 02:33 PM)johnburn Wrote: yeah mcm tu Sebab tu sqlmap sedut cepat . +rape both u n p0pc0rn.
▲ ![]() ▲ ▲ Spoiler:
|
|||
|
04-07-2011, 04:03 PM
Post: #13
|
|||
|
|||
|
RE: Wargames2011
updated with
binary 300 network 200 crypto 300 Code: http://www.multiupload.com/S3ZBO8M63F
|
|||
|
04-07-2011, 04:18 PM
Post: #14
|
|||
|
|||
|
RE: Wargames2011
puzzle 200:
Code: QWgsIHlvdSBoYXZlIGRlY29kZSB0aGUgcXItY29kZS4gTm93IHByb2NlZWQgd2l0aCB0aGUgaW1hZ2VzLiBZb3UgaGF2ZSB0byBzb2x2ZSB0aGUgZXF1YXRpb24gb24gaXQuIFRoYXQgc2hvdWxkIGJlIHlvdXIgZmxhZw==POC math plz.. http://w3.tbd.my/thread-12396-post-141831.html <-- WTF? So Awesome!!! |
|||
|
04-07-2011, 04:21 PM
(This post was last modified: 11-07-2011 11:31 AM by najashark.)
Post: #15
|
|||
|
|||
|
RE: Wargames2011
http://www.mediafire.com/?v5pvj5p5tz2fd9u
-binary100 -binary200 -binary300 -bonus -crypto100 -crypto200 -crypto300 -forensics100 -forensics200 -network100 -network200 -network300 -puzzle100 -puzzle200 |
|||
|
« Next Oldest | Next Newest »
|
User(s) browsing this thread: 1 Guest(s)

p0pc0rn


x (mediafire ke)
[video=youtube]http://www.youtube.com/watch?v=VNLtJlEMNMg[/video]