Username: 
Password: 
Restrict session to IP 

Evil  Go to the PHP My Admin challenge

Global Rank: 773
Totalscore: 27863
Posts: 5
Thanks: 9
UpVotes: 3
Registered: 6y 127d


Last Seen: 6y 76d
The User is Offline
Evil
Google/translate3Thank You!2Good Post!1Bad Post! link
This challenge is evil. Found a hint but it only added to the possibilities haha
Global Rank: 118
Totalscore: 138369
Posts: 25
Thanks: 24
UpVotes: 17
Registered: 10y 9d
busyr`s Avatar


Last Seen: 293d 21h
The User is Offline
RE: Evil
Google/translate3Thank You!2Good Post!0Bad Post! link
True...

Is there any other way than brute-force?
Global Rank: 248
Totalscore: 78369
Posts: 1323
Thanks: 1169
UpVotes: 669
Registered: 10y 276d




Last Seen: 1d 12h
The User is Offline
RE: Evil
Google/translate2Thank You!2Good Post!0Bad Post! link
Not really, but it's very obvious with the hint.
I chose a very common name, and there might be little quirk/gotcha... but many people got it straigth away.
It actually was the real setup i chose when there was a pma on this box a few months ago Smile

Happy Holidays!
gizmore
The geeks shall inherit the properties and methods of object earth.
Global Rank: 3124
Totalscore: 4244
Posts: 10
Thanks: 4
UpVotes: 5
Registered: 5y 254d
fuzzy`s Avatar
Last Seen: 2y 219d
The User is Offline
RE: Evil
Google/translate1Thank You!2Good Post!0Bad Post! link
Hi,

It's hard to me to guess this
subdomain name
.
It could be something like admin.wechall.net <-- am I correctly understand what subdomain is?


Thanks for help!
Global Rank: 248
Totalscore: 78369
Posts: 1323
Thanks: 1169
UpVotes: 669
Registered: 10y 276d




Last Seen: 1d 12h
The User is Offline
RE: Evil
Google/translate3Thank You!1Good Post!0Bad Post! link
I already gave it away above. But there is still some "gotcha".
Imagine you setup some apache vhosts Smile
The geeks shall inherit the properties and methods of object earth.
Global Rank: 3124
Totalscore: 4244
Posts: 10
Thanks: 4
UpVotes: 5
Registered: 5y 254d
fuzzy`s Avatar
Last Seen: 2y 219d
The User is Offline
RE: Evil
Google/translate1Thank You!1Good Post!0Bad Post! link
Got it! Wow, it was obvious and extremely interesting (never configured vhosts before).

Once again: thanks for help (and new portion of knowledge) man! Smile
Global Rank: 508
Totalscore: 42600
Posts: 173
Thanks: 155
UpVotes: 144
Registered: 7y 338d
space`s Avatar
The User is Offline
RE: Evil
Google/translate2Thank You!3Good Post!0Bad Post! link
if you are more interested in apache config, see the tool apachectl --help

e.g. to display all vhosts: apachectl -S
Contact only via c3BhY2VAd2VjaGFsbC5uZXQ= or PM...
Windows can be secure... but only if you don't use it Happy
Global Rank: 5155
Totalscore: 1363
Posts: 5
Thanks: 3
UpVotes: 3
Registered: 6y 98d
Last Seen: 3y 155d
The User is Offline
RE: Evil
Google/translate1Thank You!2Good Post!0Bad Post! link
I know vhost, but have no idea
Global Rank: 1727
Totalscore: 11385
Posts: 37
Thanks: 24
UpVotes: 22
Registered: 287d 21h
Last Seen: 1d 10h
The User is Offline
RE: Evil
Google/translate2Thank You!1Good Post!0Bad Post! link
I may be dense. I found the hint page, buddy, but not getting past it... Brute force?
Global Rank: 1727
Totalscore: 11385
Posts: 37
Thanks: 24
UpVotes: 22
Registered: 287d 21h
Last Seen: 1d 10h
The User is Offline
RE: Evil
Google/translate1Thank You!1Good Post!0Bad Post! link
Yes, I'm dense! So many fruitless paths. Got it finally. No fun (sulk)! Okay, it was a little fun.
tunelko, gridder, bogdan23, codenameblitz, amnesia, Redknee, ckclark, helit, silenttrack, qdxy, TheHiveMind, Z, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89 have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 18265 times.