Advent of Cyber 2024  Day 12: If I can’t steal their money, I’ll steal their joy!

Lab link.

1. What is the flag value after transferring over $2000 from Glitch’s account?

We send the POST /transfer request to the repeater.

I wanted to send 500 dollars, so I multiplied the request so much that it exceeded 2000 dollars. Then, I made a requests group and sent it as a parallel.

Then I make a resquests group and did send as a parallel. If we refresh the browser, we’ll get the flag.

Bir yanıt yazın

E-posta adresiniz yayınlanmayacak. Gerekli alanlar * ile işaretlenmişlerdir