write up ctf by ariafatah

ariaf.my.id/ctf_aria/web_exploit/E_Includes.html


soal

Can you get the flag?
Additional details will be available after launching your challenge instance.

launch istance

Can you get the flag?
Go to this website and see what you can discover.

hint

  • Is there more code than what the inspector initially shows?

solve

  • saya mengecek di sini terdapat file css dan js dan ketika saya mengeceknya terdapat sebuah flag alt text
  • http://saturn.picoctf.net:58642/style.css /* picoCTF{1nclu51v17y_1of2_ */
  • http://saturn.picoctf.net:58642/script.js // f7w_2of2_b8f4b022}
  • lalu gabungkan flagnya sesuai urutan picoCTF{1nclu51v17y_1of2_f7w_2of2_b8f4b022}

flag

picoCTF{1nclu51v17y_1of2_f7w_2of2_b8f4b022}