[OverTheWire] Natas – Level 03


There is nothing on this page

Xem source:

<!– This stuff in the header has nothing to do with the level –>
<link rel="stylesheet" type="text/css" href="http://natas.labs.overthewire.org/css/level.css">
<link rel="stylesheet" href="http://natas.labs.overthewire.org/css/jquery-ui.css" />
<link rel="stylesheet" href="http://natas.labs.overthewire.org/css/wechall.css" />
<script src="http://natas.labs.overthewire.org/js/jquery-1.9.1.js"></script>
<script src="http://natas.labs.overthewire.org/js/jquery-ui.js"></script>
<script src=http://natas.labs.overthewire.org/js/wechall-data.js></script><script src="http://natas.labs.overthewire.org/js/wechall.js"></script>
<script>var wechallinfo = { "level": "natas3", "pass": "sJIJNW6ucpu6HPZ1ZAchaDtwd7oGrD14" };</script></head>
<div id="content">
There is nothing on this page
<!– No more information leaks!! Not even Google will find it this time… –>

Dòng nói đến Google là một gợi ý về file robots.txt. Truy cập:

User-agent: *
Disallow: /s3cr3t/

Truy cập:

Index of /s3cr3t
[ICO] Name Last modified Size Description
[DIR] Parent Directory -
[TXT] users.txt 12-Jul-2013 13:35 40
Apache/2.2.22 (Ubuntu) Server at natas3.natas.labs.overthewire.org Port 80

Mở file users.txt:


→ flag = Z9tkRkWmpt9Qr7XrR5jWRkgOU901swEZ.

You may also like...

Leave a Reply

Your email address will not be published. Required fields are marked *