by Billy Cody | Feb 22, 2018 | Natas
Login Username: natas9 Password: W0mMhUcRRnG8dcghE4qvk3JA9lGt8nDl URL: http://natas9.natas.labs.overthewire.org Solution Again, view the sourcecode. Let’s try testing the search function and see how it relates to this sourcecode. I’ll search for...
by Billy Cody | Feb 22, 2018 | Natas
Login Username: natas8 Password: DBfUBfqQG69KvJvJ1iAbMoIpwSNQ9bWe URL: http://natas8.natas.labs.overthewire.org Solution Let’s check out the sourcecode. Oh no. It looks like they encoded their secret code. If only we could reverse it. Oh wait, we totally can....
by Billy Cody | Feb 22, 2018 | Natas
Login Username: natas7 Password: 7z3hEENjQtflzgnT29q7wAvMNfZdh0i9 URL: http://natas7.natas.labs.overthewire.org Solution As always, let’s check the source code. Alright. Well, we know where the password is. Fat load of good that does. Let’s check out these...
by Billy Cody | Feb 20, 2018 | Natas
Login Username: natas6 Password: aGoY4q2Dc6MgDq4oL4YtoKtyAg9PeHa1 URL: http://natas6.natas.labs.overthewire.org Solution A form and a link to view sourcecode. Let’s view the sourcecode. It’s just some checks for the form on submission. It checks if there...
by Billy Cody | Feb 20, 2018 | Natas
Login Username: natas5 Password: iX6IOfmpN7AYOQGPwtn3fXpbaJVJcHfq URL: http://natas5.natas.labs.overthewire.org Solution Uh. Alright. Maybe (finally) there’ll be a cookie we can change. Using EditThisCookie… Let’s change that value to 1 (true). After...
by Billy Cody | Feb 20, 2018 | Natas
Login Username: natas4 Password: Z9tkRkWmpt9Qr7XrR5jWRkgOU901swEZ URL: http://natas4.natas.labs.overthewire.org Solution Alright. It looks like we have to make this server think we came from http://natas5.natas.labs.overthewire.org/. There’s a couple of places...
by Billy Cody | Feb 20, 2018 | Natas
Login Username: natas3 Password: sJIJNW6ucpu6HPZ1ZAchaDtwd7oGrD14 URL: http://natas3.natas.labs.overthewire.org Solution Yeah yeah. Not even Google will find it? Google uses web-crawlers to index content. You can tell it not to with a file called robots.txt....
by Billy Cody | Feb 20, 2018 | Natas
Login Username: natas2 Password: ZluruAthQk7Q2MqmDeTiUij2ZvWy2mBi URL: http://natas2.natas.labs.overthewire.org Solution Sure. Okay. Check the source. Urgh. They didn’t lie. There’s a few things that webpages could hide stuff in. Script files, CSS...
by Billy Cody | Feb 20, 2018 | Natas
Login Username: natas1 Password: gtVrDuiDfck831PqWsLEZy5gyDz1clto URL: http://natas1.natas.labs.overthewire.org Solution Right. Well let’s give it a go anyway. Urgh. Fine. Let’s just manually put view-source: in the URL....
by Billy Cody | Feb 20, 2018 | Natas
Alright, we got through Bandit pretty easily. Let’s try out Natas. Natas focuses on web servers, so there’s a lot of web exploitation involved. Some of it just sucks. But we shall press on! Login Username: natas0 Password: natas0 URL:...