PentesterAcademy – Aditya Agrawal http://localhost Security Researcher. RailFan. Foodie Tue, 19 Jul 2016 08:14:35 +0000 en-US hourly 1 https://wordpress.org/?v=4.4.4 [Pentester Academy] Web Application Security Challenge 15 http://localhost/pentester-academy-web-application-security-challenge-15/ http://localhost/pentester-academy-web-application-security-challenge-15/#respond Thu, 08 Jan 2015 13:13:33 +0000 http://manifestsecurity.com/?p=1865 This challenge is almost like the last one .In this also there are 4 parts of the file with w,c,x,b as there name instead of xaa,xab,xac,xad in the case of last one.But i do not know in what order i should concatenate them and what would be the output file.So after lot of researching over the internet i came to conclusion that these are the parts of an image file.

so i saved the files as image.w,image.c,image.x,image.b then concatenated in to an .jpg file

]]>
http://localhost/pentester-academy-web-application-security-challenge-15/feed/ 0
[Pentester Academy] Web Application Security Challenge 14 http://localhost/pentester-academy-web-application-security-challenge-14/ http://localhost/pentester-academy-web-application-security-challenge-14/#respond Thu, 08 Jan 2015 13:13:18 +0000 http://manifestsecurity.com/?p=1863 This challenge is one of the interesting challenge till now.
So i downloaded the file from the link given on the challenge page.

Then on intializing the intial packets i realized that this capture file is of uploading a file to a website(ww18.speedyshare.com).

In our case the file has been divided in 4 parts while uploading and if we look the packets which followed the multipart/form-data then there is common .

All the packet no. 182,63,15,116 are followed by packets which have xaa,xab,xac,xad respectively.

So now the saved the media data of the following four files packets.


Then concatenated all the files in to a zip file.


]]>
http://localhost/pentester-academy-web-application-security-challenge-14/feed/ 0
[Pentester Academy] Web Application Security Challenge 9 http://localhost/pentester-academy-web-application-security-challenge-9/ http://localhost/pentester-academy-web-application-security-challenge-9/#respond Thu, 08 Jan 2015 13:13:00 +0000 http://manifestsecurity.com/?p=1861 http://localhost/pentester-academy-web-application-security-challenge-9/feed/ 0 [Pentester Academy] Web Application Security Challenge 7 http://localhost/pentester-academy-web-application-security-challenge-7/ http://localhost/pentester-academy-web-application-security-challenge-7/#respond Thu, 08 Jan 2015 13:12:49 +0000 http://manifestsecurity.com/?p=1859 http://localhost/pentester-academy-web-application-security-challenge-7/feed/ 0 [Pentester Academy] Web Application Security Challenge 6 http://localhost/pentester-academy-web-application-security-challenge-6/ http://localhost/pentester-academy-web-application-security-challenge-6/#respond Thu, 08 Jan 2015 13:12:38 +0000 http://manifestsecurity.com/?p=1857 http://localhost/pentester-academy-web-application-security-challenge-6/feed/ 0 [Pentester Academy] Web Application Security Challenge 5 http://localhost/pentester-academy-web-application-security-challenge-5/ http://localhost/pentester-academy-web-application-security-challenge-5/#respond Thu, 08 Jan 2015 13:12:29 +0000 http://manifestsecurity.com/?p=1855 http://localhost/pentester-academy-web-application-security-challenge-5/feed/ 0 [Pentester Academy] Web Application Security Challenge 4 http://localhost/pentester-academy-web-application-security-challenge-4/ http://localhost/pentester-academy-web-application-security-challenge-4/#respond Thu, 08 Jan 2015 13:11:18 +0000 http://manifestsecurity.com/?p=1853 http://localhost/pentester-academy-web-application-security-challenge-4/feed/ 0 [Pentester Academy] Web Application Security Challenge 36 http://localhost/pentester-academy-web-application-security-challenge-36/ http://localhost/pentester-academy-web-application-security-challenge-36/#respond Thu, 08 Jan 2015 09:12:53 +0000 http://manifestsecurity.com/?p=1795 http://localhost/pentester-academy-web-application-security-challenge-36/feed/ 0 [Pentester Academy] Web Application Security Challenge 35 http://localhost/pentester-academy-web-application-security-challenge-35/ http://localhost/pentester-academy-web-application-security-challenge-35/#respond Thu, 08 Jan 2015 09:12:44 +0000 http://manifestsecurity.com/?p=1793 Insert </script><script>alert(/"exploitprotocol"/)// in the search field.

]]>
http://localhost/pentester-academy-web-application-security-challenge-35/feed/ 0
[Pentester Academy] Web Application Security Challenge 34 http://localhost/pentester-academy-web-application-security-challenge-34/ http://localhost/pentester-academy-web-application-security-challenge-34/#respond Thu, 08 Jan 2015 09:12:35 +0000 http://manifestsecurity.com/?p=1791 Modified info value in localstorage to </div><iframe src="" onload=alert(1)><div>

]]>
http://localhost/pentester-academy-web-application-security-challenge-34/feed/ 0