Official Caption Discussion

Sometimes you can have your cache and eat it too

1 Like

That’s the reason I paused solving this box and switch to Portswigger’s LABS where I can find and practice cache cases :wink: In my opinion it will help me to understand this kind of bugs.

Thanks for a hint!

Cheers

Nice! No problem. Practice is always good. So is context. This a CTF. It’s a manufactured game. If there’s an extra intermediary somewhere, then it’s probably either opening up a vulnerability or complicating another one

hi. i’m having problems with logging in on port 8080. i know what the credentials are but i don’t know why it won’t let me log in again. i’ve already rebooted the machine 2 times.

any hint to bypass login in gitbucket?

Any hint to bypass 403 to get the /logs file?
I’ve bypassed the Varnish proxy via smuggling attack but the acl rule of HAProxy intercept the request and it could not reach to the backend server to retrieve logs file

bro use h2smuggler

Is there anything I need to do first before trying to use h2csmuggler? I see some comments about abusing CSRF or XSS attacks, but I can’t stay a method of where these would be used

u just need admin cookie

I have no idea how to get this cookie with sm*** I try with some X**

Feel free to DM on here or discord if you’re still stick. I manged to own this box last night.

To get user was interesting, but the root privexec was so niche.

admin cookie with cache poisoning