Hi! This is my first ever write-up for challenges based on my senior's CTF project, skrctf.me which is a ctf site for beginner players.
Can you find the flag in this website?
Flag format: SKR{flag_flag}
At first, it shows a simple html header and a body:
My first action is to inspect the webpage for the flag:
Just like that, I got the flag!
Flag: SKR{imp0rt4nt_c0mm3nt_a24996}
I remember that I put a flag in this website, but I just can't find it. Can you help me?
Flag format: SKR{flag_flag}
As hinted in the image, "It's too bright"
So I have an idea of looking into the css file of the site.
Flag: SKR{wh0_turn_th3_light5_0n?_10621b}
I made a website with login using PHP and MySQL! Feel free to try it
The challenge is about SQLi (SQL injection) attack
Using a simple sql injection payload
' OR '1' = '1
https://ctflearn.com/lab/SQL-Injection-Part-1
This site provides clear explanation on basics of SQL injection techniques
Flag: SKR{Do_not_forget_to_escape_user_input_c75983}