Join us at IRC!
You cannot teach a man anything; you can only help him find it within himself. - Galileo
Wednesday, May 23, 2012
Navigation
Members Online
Total Online: 31
Web Spiders: 15
Guests Online: 24
Members Online: 7

Registered Members: 70162
Newest Member: Windows-2012
Latest Articles
View Thread

HellBound Hackers | Challenges | Basic

Author

Basic 29

iantharan
Member



Posts: 27
Location: right behind you...
Joined: 14.04.08
Rank:
Hacker Level 3
Posted on 01-06-11 21:21
so, i can log in as all three users, but i dont really understand how i'm supposed to find the 'answer'
Author

RE: Basic 29

starofale
Member



Posts: 211
Location: England
Joined: 05.12.07
Rank:
God
Posted on 01-06-11 23:36
I suspect you're trying a standard SQL-style injection. I know that there are some injections that only show you part of the database. If you dump the whole database the answer is pretty obvious.

From the HBHBot:
Read up on XPath and how XML works. Also, check the source.

You need to work out what the injection should be specifically for this challenge - you can't use a generic one.


Try a new search engine
Author

RE: Basic 29

iantharan
Member



Posts: 27
Location: right behind you...
Joined: 14.04.08
Rank:
Hacker Level 3
Posted on 02-06-11 19:35
I'm trying to put //* into my query to dump everything, still no luck..

Not sure if that was a spoiler <.< if it is, I'll remove it.
Author

RE: Basic 29

iantharan
Member



Posts: 27
Location: right behind you...
Joined: 14.04.08
Rank:
Hacker Level 3
Posted on 02-06-11 20:05
Nevermind, I got it :D
Guest
Username

Password

Remember Me


Bookmark This Page
Affiliates
Adverts

 

 

Links
By using, viewing or obtaining any information contained on this site, you agree to the disclaimer.

© HellBound Hackers 2008- 2009. Since 3rd December 2004.