<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Web on Tyler's Blog</title><link>https://blog.zars.me/tags/web/</link><description>Recent content in Web on Tyler's Blog</description><generator>Hugo</generator><language>en-us</language><copyright>© Athul</copyright><lastBuildDate>Sat, 17 Jun 2023 12:13:32 +0530</lastBuildDate><atom:link href="https://blog.zars.me/tags/web/index.xml" rel="self" type="application/rss+xml"/><item><title>nahamctf 2023</title><link>https://blog.zars.me/posts/nahamctf2023/</link><pubDate>Sat, 17 Jun 2023 12:13:32 +0530</pubDate><guid>https://blog.zars.me/posts/nahamctf2023/</guid><description>I keep having busy weekends and I wish I had a touch more time to grind out the challenges I had left for this CTF. Awesome challenges by the authors! Thanks for the fun CTF nahamsec team!
Glasses 50 points - Warmups - 955 Solves - easy Author: @JohnHammond#6971 Everything is blurry, I think I need glasses! We can&amp;rsquo;t inspect element with a mouseclick. No worries, just use the keyboard shortcut (or on Mac the menu still pops).</description></item><item><title>deadsecCTF 2023</title><link>https://blog.zars.me/posts/deadsecctf-2023/</link><pubDate>Mon, 22 May 2023 12:13:32 +0530</pubDate><guid>https://blog.zars.me/posts/deadsecctf-2023/</guid><description>Dont&amp;rsquo; hack my website My Attempt echo &amp;amp; head both work with no spaces, id, whoami
Running df will show us
Filesystem 1K-blocks Used Available Use% Mounted on overlay 98831908 6164312 92651212 7% / /dev/sda1 98831908 6164312 92651212 7% /flag.txt none 4096 0 4096 0% /tmp none 4096 0 4096 0% /run Anything containing flag.txt won&amp;rsquo;t work.
head${IFS}&amp;amp;&amp;amp;${IFS}pwd /app head${IFS}&amp;amp;&amp;amp;${IFS}a=fl&amp;amp;&amp;amp;${IFS}b=ag&amp;amp;&amp;amp;${IFS}c=.t&amp;amp;&amp;amp;${IFS}d=xt a=fl${IFS}b=ag${IFS}c=.t${IFS}d=xt${IFS}&amp;amp;&amp;amp;${IFS}echo${IFS}$a$b$c$d fl b=ag c=.t d=xt a=fl${IFS}ag${IFS}.t${IFS}xt${IFS}&amp;amp;&amp;amp;${IFS}echo${IFS}$a$b$c$d fl ag .t xt Somehow strip out the whitespace?</description></item><item><title>HeroCTF V5</title><link>https://blog.zars.me/posts/heroctfv5/</link><pubDate>Mon, 15 May 2023 12:13:32 +0530</pubDate><guid>https://blog.zars.me/posts/heroctfv5/</guid><description>Overview HeroCTF was my first solo team attempt at CTF&amp;rsquo;ing. It was a blast and huge props to the authors of the challenges. I had fun solving all the ones I did and had plenty of time to experiment with the ones I couldn&amp;rsquo;t. The CTF was hosted here: link. I&amp;rsquo;ll break down my solves below in no particular order.
dev.corp 1/4 The famous company dev.corp was hack last week.. They don&amp;#39;t understand because they have followed the security standards to avoid this kind of situation.</description></item></channel></rss>