Pathy - SMP CTF 2024 - Selection Round

Posted on by pmsiam0

Hi, this is Parvez Mosharaf Siam. Today, I am writing this write-up on behalf of our teammate badhacker0x1. So, without any further delay, let's jump into the write-up.

Description: Injection basics.

Challenge Author: badhacker0x1

Challenge URL:- http://172.104.185.76:3000/

image

Lets explore. Try to search by my name badhacker it says “You are not famous enough!!” :3

There is nothing more in the challenge source also.

image-1

Lets turn on the hacker mood. And lets the some basic injection payload’s as per the description says.

image-2

Payload:- ' or '1'='1 Well that was easy!!!