Now you can Subscribe using RSS

Submit your Email

Thứ Hai, 10 tháng 10, 2016

HitCon ctf

Unknown


Challenge Are You Rich?No I'm poor :)(http://52.197.140.254/are_you_rich/)
- This Challenge about  SQL injection.

- So i use Time-Based to get the Flag
- First we need to be know a name of the table_name(It's flag1)
- And then we just get flag (I guess the name of column is flag)
- So this is my code to do this but sometime  some words of the flag return wrong so i print the time to check it  :)



Unknown

0 nhận xét :

Đăng nhận xét