Wednesday, April 16, 2014 Login · Register
    Login
Username

Password


Remember Me

Not a member yet?
Click here to register.

Forgotten your password?
Request a new one here.

 

    Users Online
  • · Members on IRC: 53   
  • · Total Members: 14,473
  • · Newest Member: riel
  •  

     

        Related Ads
     

     

     

        Top 10 Forum Posters
    UserPosts
    bluechill1411   
    madf0x1277   
    cruizrisner1057   
    Qwexotic1034   
    Null Set869   
    auditorsec603   
    Override602   
    godofcereal599   
    TurboBorland585   
    Teddy469   
     

        Affiliates




  • iExploit


  • iExploit


  • WeChall





  • Thisislegal.com

  •  

        Related Ads
     

    View Thread
         
    Security Override Hacking Challenges Advanced Challenges
    Advanced level 1
    Register FAQ Members List Today's Posts Search

    Print Thread
    02-03-2014 01:55 PM Advanced level 1
    Hello,

    I'm just stuck on this one. I understand that your input has to be of the same type as the value you are comparing it with. I also understand basic pregmatch so I have no problems coming through the filters. Now I just dont get why my input isnt working. I did alot of research on preg match since i started this challange, but i just cant figure out what the input has to be.... I actually thought i had some good knowledge of PHP, but now i'm actually pretty ashamed that I can't even figure this out :'Wink.

    Any help or hints would be very appreciated.

    -English is not my native language so please forgive me for my bad grammar.
     
    Offline
    02-03-2014 11:18 PM RE: Advanced level 1 | Edited by k3y1and 02-03-2014 11:19 PM
    hello

    firstyou need to put the code into your own server to play without spend time to try again

    replace the functions
    complete_advanced_1() to echo "congratulations";
    fail_advanced_1() to echo "FAIL-----------------";

    AND
    $input = "your test input";

    and then play with diferents inputs trying to pass the firts if[]
     
    Offline
    02-04-2014 04:00 AM RE: Advanced level 1
    Hey thanks for your reply, but i have no problems comming through the first if. I understand pregmatch so i have no problems with that. because i also always get the confirmation that i came through the filter, but that i do have the wrong answer.... But thanks for your reply i will try it on my own server!
     
    Offline
    02-04-2014 08:25 AM RE: Advanced level 1
    If you need a hint for Adv1 just use google to cover the difference between '=='; srcmp() and so on.

    It has sth to do with the way php deals with types.....
    Join our IRC channal! irc.evilzone.org #Evilzone #SecurityOverride

    "The quieter you become the more you are able to hear."

    "With great power comes great responsibility"
     
    Offline
    02-04-2014 08:30 AM RE: Advanced level 1
    Solved it thanks to hotsauce!

    For everyone who also has trouble on solving this.
    PHP doesnt work with "int" or "string" like Java does. You just use a $ and php will figure out what kind of variable it will make of it. Now think of how you could help php a little bit so it will make the right type of it Wink

    -stupid i didnt think of this myself in the first time tbh....

    Goodluck
     
    Offline
    02-04-2014 08:31 AM RE: Advanced level 1
    Teddy wrote:
    If you need a hint for Adv1 just use google to cover the difference between '=='; srcmp() and so on.

    It has sth to do with the way php deals with types.....


    Hey Teddy,

    I saw your post after I posted mine. Yes you're right. I blame myself for being so stupid that I didnt think of it Pfft

    Thanks anyway
     
    Offline
    02-04-2014 03:16 PM RE: Advanced level 1 | Edited by Teddy 02-04-2014 03:17 PM
    PHP doesnt work with "int" or "string" like Java does.


    That article doesn't discribe how to solve this challange but it pushes you to the direction it is about

    [url] http://turbochaos.blogspot.de/2013/08/exploiting-exotic-bugs-php-type-juggling.html [/url]
    Join our IRC channal! irc.evilzone.org #Evilzone #SecurityOverride

    "The quieter you become the more you are able to hear."

    "With great power comes great responsibility"
     
    Offline
    Jump to Forum:
    Forum powered by fusionBoard