Welcome to HBH! If you have tried to register and didn't get a verification email, please using the following link to resend the verification email.

basic 20


ghost's Avatar
0 0

Well i thought i would start the first thread on it, so if its all good with u guys i was thinking, post questions/answers here so we dont have like 20 diffrent topics on it.

Has this challenge got to do with cookies? I did an injection and got

Am i going the right way?Delete if anyone thinks spoiler


Uber0n's Avatar
Member
0 0

You might not want to post your cookies in a hacking forum… :p


ghost's Avatar
0 0

thats just not smart


ghost's Avatar
0 0

very smart posting such things :P


Ingelo's Avatar
q|^.^|p - Say w00t!
0 0

hahaha :P


ghost's Avatar
0 0

Am I correct if I reach this message?

"Nice try, but that isn't the answer …."

I think the first part is done. Now I have to think about the 2nd part.


ghost's Avatar
0 0

anyone else having trouble posting from the url?


Uber0n's Avatar
Member
0 0

Haha I solved it before HBH was down for upgrading, it was already uploaded then :happy:

It's simple, but different ;)


ghost's Avatar
0 0

Just try something with the cookie. If you are on the right way, the challenge will tell you and give you enough info to complete it.


ghost's Avatar
0 0

So am I on the right track?


lukem_95's Avatar
Member
0 0

lol thats as far as i got… but the hint doesn't help me much, a bit of googling is in order.


ghost's Avatar
0 0

Okay, I figured out what to do in this challenge. I just need to find out how to do that :)

Regards, CyBeR


ghost's Avatar
0 0

Yes. I came to part 'Nice try….' can anyone give me link to an good article (except google and yahoo…).


ghost's Avatar
0 0

google all you want, but unless you know specifically what you need to be googling for, you most likely won't get the desired results.

If google doesn't work for you, you could always try the articles here on HBH. Now I know there aren't any for this particular challenge, but the admins of this site (and "ex-admins" ;) ) write some very helpful articles, so why not check out some of them that involve using cookies, and I bet you'll find what you're looking for. :)

Good luck, and if you need further help, feel free to PM me. ^_^

– Skunkfoot


ghost's Avatar
0 0

this challenge is like a combination, some people have already posted the first bit in here, and from the message you get starting with "nice try" you can see exactly what you have to do.


ghost's Avatar
0 0

Oh, man. I was OOOVERLOOKING at it. Thank you for the previous hints. Helped me a lot. (ex-admin :)).

HINT: well, it reminds me of one of PREVIOUS basic challenges (not 18).


ghost's Avatar
0 0

Uber0n wrote: You might not want to post your cookies in a hacking forum… :p

What could you do with his cookies?

Also, how would i continue the challenge after i got the nice try..(i thought i had it before i hit enter)?


ghost's Avatar
0 0

welcome kaksii :D

and his cookies, depending on what sites they were from, *could *show us his usernames and/or passwords…not that anyone here would use that information for "evil" :D


ghost's Avatar
0 0

On most other sites, with someones cookies you can stick them as your own and the system will think you are them

HBH checks IP so thats not really a problem


ghost's Avatar
0 0

this challenge is simlar to another basic. All you have to do is the same thing as that challenge but incorporating cookies somehow…


ghost's Avatar
0 0

SH*T!!!!!!!

Forgot about that omfg im so stupid

sry guys, it slipped my mind

Fixed


I-O-W-A's Avatar
[Forever Blind To See]
0 0

yeah this challange aint really mega hard maybe takes a bit of thinking about but thts it , just remember whoami lol


ghost's Avatar
0 0

poguile thats a really big sig. no chance of scaling that down a bit?


ghost's Avatar
0 0

sakarin wrote: poguile thats a really big sig. no chance of scaling that down a bit? damn right…..


Uber0n's Avatar
Member
0 0

Ponguile wrote: What could you do with his cookies?

IF someone would break the hash algorithm for HBH's hashes (by comparing his/her own password using different combinations of algorithms with the one in the cookie) it would be easy to make a bruteforcer to crack this kind of hashes.

I know they use their own hashing method, but with some testing (or even an algorithm combination bruteforcer) you could possibly make it… ;)


ghost's Avatar
0 0

I think that was a spoiler :ninja:


ghost's Avatar
0 0

yeah someone might want to edit that…good challenge idea tho, night_shadows


SySTeM's Avatar
-=[TheOutlaw]=-
20 0

WHAT'S WITH EVERYONE POSTING DAMN SPOILERS :@