hxp CTF 2022 hxp

2022

Join us on IRC! Libera Chat | #hxpctf - Stalk us on Twitter @hxpctf

sqlite_web

by sandr0
web zahjebischte

Difficulty estimate: medium - medium

Points: round(1000 ยท min(1, 10 / (9 + [17 solves]))) = 385 points

Description:

We hacked your database, locked you out of your server and encrypted all your tables. If you want them back, send us

and we will send you the password (flag) which is safely stored on the server.

hxp's seal of open source web quality


Disclaimer

This challenge offers an individual instance for you and therefore runs behind a proxy requesting login credentials. Locally use hxp:hxp.


Download:

sqlite_web-c910c710158cf245.tar.xz (3.4 MiB)

Connection (mirrors):

  • Instancer nc 94.130.178.227 8096

Solved by:

# Team Time
sqlite_web released 2023-03-11 09:16:46 +0000 UTC
๐Ÿฅ‡ ./Vespiary 2023-03-11 14:21:03 +0000 UTC
๐Ÿฅˆ thehackerscrew 2023-03-11 14:28:53 +0000 UTC
๐Ÿฅ‰ idek 2023-03-11 15:56:50 +0000 UTC
4 Kalmarunionen 2023-03-11 17:39:29 +0000 UTC
5 copy 2023-03-11 18:05:27 +0000 UTC
6 Blue Water 2023-03-11 21:43:12 +0000 UTC
7 Katzebin 2023-03-11 22:14:48 +0000 UTC
8 DTRUSH 2023-03-12 02:14:46 +0000 UTC
9 Never Stop Exploiting 2023-03-12 04:08:24 +0000 UTC
10 FrenchRoomba 2023-03-12 04:17:51 +0000 UTC
11 Dragon Sector 2023-03-12 04:54:27 +0000 UTC
12 Straw Hat 2023-03-12 06:21:14 +0000 UTC
13 Balsn 2023-03-12 10:38:45 +0000 UTC
14 796f75 2023-03-12 10:40:54 +0000 UTC
15 about:blankets 2023-03-12 13:24:10 +0000 UTC
16 KITCTF 2023-03-12 13:37:54 +0000 UTC
17 bi0s 2023-03-12 15:33:40 +0000 UTC