<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://araisantai.github.io/</id><title>Araisantai Archive Pages</title><subtitle>Final year computer science student at IPB University currently learning anything IT related. CTF Competition enjoyer with a team of 3, specialized in web exploitation and digital forensics. Interested in Cyber Security, especially in Web Security. Selftaught, persistent, and eager to learn more.</subtitle> <updated>2024-05-13T16:36:04+07:00</updated> <author> <name>araisantai</name> <uri>https://araisantai.github.io/</uri> </author><link rel="self" type="application/atom+xml" href="https://araisantai.github.io/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://araisantai.github.io/"/> <generator uri="https://jekyllrb.com/" version="4.3.3">Jekyll</generator> <rights> © 2024 araisantai </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>Find IT CTF 2024</title><link href="https://araisantai.github.io/posts/Find-IT-CTF-2024/" rel="alternate" type="text/html" title="Find IT CTF 2024" /><published>2024-05-06T00:00:00+07:00</published> <updated>2024-05-13T16:35:26+07:00</updated> <id>https://araisantai.github.io/posts/Find-IT-CTF-2024/</id> <content src="https://araisantai.github.io/posts/Find-IT-CTF-2024/" /> <author> <name>araisantai</name> </author> <category term="CTFs Archive" /> <category term="2024 CTF" /> <summary> Find IT CTF 2024 Tags: national Status: Not started pwned: 4 Web kue Description Aku baru saja membuat website yang menggunakan cookies berbasis JWT menggunakan chatgpt, tapi ada yang salah sepertinya ketika mengenkripsi JWT-nya. Solution We’re give a source code so its a whitebox challenge, lets start by checking app.js. const jwt = require("jsonwebtoken"); const express = requ... </summary> </entry> <entry><title>Ugra CTF</title><link href="https://araisantai.github.io/posts/Ugra-CTF/" rel="alternate" type="text/html" title="Ugra CTF" /><published>2024-02-12T00:00:00+07:00</published> <updated>2024-02-15T13:22:52+07:00</updated> <id>https://araisantai.github.io/posts/Ugra-CTF/</id> <content src="https://araisantai.github.io/posts/Ugra-CTF/" /> <author> <name>araisantai</name> </author> <category term="CTFs Archive" /> <category term="2024 CTF" /> <summary> Ugra CTF Tags: international Status: Not started pwned: 4 Web Wicket Gate Description url: [https://wicketgate.q.2024.ugractf.ru/pf6cubh8bv090t5y](https://wicketgate.q.2024.ugractf.ru/pf6cubh8bv090t5y) Solution We’re given a website service, The website is presented in Russian, causing some functions to not be fully understood by me. However, my main focus was on the login appl... </summary> </entry> <entry><title>Protergo CTF</title><link href="https://araisantai.github.io/posts/Protergo-CTF/" rel="alternate" type="text/html" title="Protergo CTF" /><published>2024-02-08T00:00:00+07:00</published> <updated>2024-02-15T13:22:52+07:00</updated> <id>https://araisantai.github.io/posts/Protergo-CTF/</id> <content src="https://araisantai.github.io/posts/Protergo-CTF/" /> <author> <name>araisantai</name> </author> <category term="CTFs Archive" /> <category term="2024 CTF" /> <summary> Protergo CTF 2024 Protergo CTF, 7 Days CTF Challenges by Protergo Tags: national Status: Done pwned: 3 Jumper url : tokyo.ctf.protergo.party:10002 Analyze Given a web service containing a simple login page. By performing a simple SQL injection bypass, we successfully bypassed the login using the payload ' or 1=1 -- -. This redirected us to the dashboard. From here, I performed ... </summary> </entry> <entry><title>Square CTF</title><link href="https://araisantai.github.io/posts/Square-CTF/" rel="alternate" type="text/html" title="Square CTF" /><published>2023-11-12T00:00:00+07:00</published> <updated>2024-02-12T20:18:59+07:00</updated> <id>https://araisantai.github.io/posts/Square-CTF/</id> <content src="https://araisantai.github.io/posts/Square-CTF/" /> <author> <name>araisantai</name> </author> <category term="CTFs Archive" /> <category term="2023 CTF" /> <summary> Tags: international Status: Done pwned: 3 Be the admin we need to become admin by changing the cookie admin biasa ganti cookie A nya gede Just go around path traversal POST /accept HTTP/1.1 Host: 184.72.87.9:8013 Content-Length: 282 Cache-Control: max-age=0 Upgrade-Insecure-Requests: 1 Origin: http://184.72.87.9:8013 Content-Type: application/x-www-form-urlencoded User-Agent... </summary> </entry> </feed>
