Username: 
Password: 
Restrict session to IP 

Evil  Go to the PHP My Admin challenge

Global Rank: 875
Totalscore: 29843
Posts: 5
Thanks: 9
UpVotes: 3
Registered: 12y 119d


Last Seen: 12y 68d
The User is Offline
Evil
Google/translate3Thank You!2Good Post!1Bad Post! link
This challenge is evil. Found a hint but it only added to the possibilities haha
Global Rank: 126
Totalscore: 146529
Posts: 25
Thanks: 25
UpVotes: 18
Registered: 16y 2d
busyr`s Avatar


Last Seen: 1y 5d
The User is Offline
RE: Evil
Google/translate3Thank You!2Good Post!0Bad Post! link
True...

Is there any other way than brute-force?
Global Rank: 246
Totalscore: 88161
Posts: 1673
Thanks: 1356
UpVotes: 912
Registered: 16y 269d




Last Seen: 10s
The User is Online
RE: Evil
Google/translate2Thank You!2Good Post!0Bad Post! link
Not really, but it's very obvious with the hint.
I chose a very common name, and there might be little quirk/gotcha... but many people got it straigth away.
It actually was the real setup i chose when there was a pma on this box a few months ago Smile

Happy Holidays!
gizmore
The geeks shall inherit the properties and methods of object earth.
Global Rank: 4203
Totalscore: 4402
Posts: 10
Thanks: 6
UpVotes: 7
Registered: 11y 247d
fuzzy`s Avatar
Last Seen: 8y 212d
The User is Offline
RE: Evil
Google/translate1Thank You!2Good Post!0Bad Post! link
Hi,

It's hard to me to guess this
subdomain name
.
It could be something like admin.wechall.net <-- am I correctly understand what subdomain is?


Thanks for help!
Global Rank: 246
Totalscore: 88161
Posts: 1673
Thanks: 1356
UpVotes: 912
Registered: 16y 269d




Last Seen: 10s
The User is Online
RE: Evil
Google/translate3Thank You!1Good Post!0Bad Post! link
I already gave it away above. But there is still some "gotcha".
Imagine you setup some apache vhosts Smile
The geeks shall inherit the properties and methods of object earth.
Global Rank: 4203
Totalscore: 4402
Posts: 10
Thanks: 6
UpVotes: 7
Registered: 11y 247d
fuzzy`s Avatar
Last Seen: 8y 212d
The User is Offline
RE: Evil
Google/translate1Thank You!1Good Post!0Bad Post! link
Got it! Wow, it was obvious and extremely interesting (never configured vhosts before).

Once again: thanks for help (and new portion of knowledge) man! Smile
Global Rank: 551
Totalscore: 45801
Posts: 220
Thanks: 208
UpVotes: 218
Registered: 13y 330d
space`s Avatar
The User is Offline
RE: Evil
Google/translate2Thank You!3Good Post!0Bad Post! link
if you are more interested in apache config, see the tool apachectl --help

e.g. to display all vhosts: apachectl -S
Contact only via c3BhY2VAd2VjaGFsbC5uZXQ= or PM...
Windows can be secure... but only if you don't use it Happy
Global Rank: 7120
Totalscore: 1487
Posts: 5
Thanks: 3
UpVotes: 4
Registered: 12y 90d
Last Seen: 9y 147d
The User is Offline
RE: Evil
Google/translate1Thank You!2Good Post!0Bad Post! link
I know vhost, but have no idea
Global Rank: 791
Totalscore: 32552
Posts: 74
Thanks: 38
UpVotes: 48
Registered: 6y 280d
Last Seen: 3y 144d
The User is Offline
RE: Evil
Google/translate2Thank You!1Good Post!0Bad Post! link
I may be dense. I found the hint page, buddy, but not getting past it... Brute force?
Global Rank: 791
Totalscore: 32552
Posts: 74
Thanks: 38
UpVotes: 48
Registered: 6y 280d
Last Seen: 3y 144d
The User is Offline
RE: Evil
Google/translate1Thank You!1Good Post!0Bad Post! link
Yes, I'm dense! So many fruitless paths. Got it finally. No fun (sulk)! Okay, it was a little fun.
tunelko, gridder, bogdan23, codenameblitz, amnesia, Redknee, ckclark, helit, abcxyz, silenttrack, n0tHappy, nonfungiblesecurity, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, SwolloW, dangarbri have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 25214 times.