RegistrierenSidebar verstecken
Nickname: 
Passwort: 
Sitzung auf IP beschränken 

How to find PHPSESSID  Gehe zur Blinded by the light Challenge

Globaler Rang: 3315
Gesamtpunkte: 6097
Nachrichten: 6
Dank: 2
+Votes: 2
Registriert : 11y 71d

Zuletzt gesehen am: 361d 12h
Der Benutzer ist Offline
How to find PHPSESSID
Google/Übersetzer0Danke Schön!0Gute Nachricht!0Schlechte Nachricht! Link
This is a blind sql injection, so I tried to write a python code, but I also need to know PHPSESSID to solve a challenge with my account. Without that, I can solve this challenge, but not with my account. I tried to find a cookie, but in this site I don't have any cookie like other sites. document.cookie show only ''. How to find a cookie?
Globaler Rang: 18
Gesamtpunkte: 391332
Nachrichten: 6
Dank: 5
+Votes: 5
Registriert : 10y 261d







Der Benutzer ist Offline
RE: How to find PHPSESSID
Google/Übersetzer1Danke Schön!1Gute Nachricht!0Schlechte Nachricht! Link
Because the cookie is marked "HTTPOnly" you probably cannot get it using Javascript.

Most browsers let you view the cookies for a particular site (check the preferences).

Depending on your browser, it might be easier to just install an extension that lets you view cookies for the site you're currently browsing.

In Firefox and Chrome you also have a "developer's console" (called Firebug in Firefox, not sure of the Chrome name), that lets you see a lot of information, including cookies being sent to the site.
Globaler Rang: 3315
Gesamtpunkte: 6097
Nachrichten: 6
Dank: 2
+Votes: 2
Registriert : 11y 71d

Zuletzt gesehen am: 361d 12h
Der Benutzer ist Offline
Another problem occurred
Google/Übersetzer0Danke Schön!0Gute Nachricht!0Schlechte Nachricht! Link
Thank you. In chrome, 'EditThisCookie' showed httpOnly cookie. But, in www.wechall.net, cookie named 'WC' is set before log-in, and after log-in, the value of cookie is not changed. More strange thing is that log-in that is tried after deleting cookie are not allowed. There is one cookie that is named 'WC' and there are no other cookies but 'WC'. What should I do to get a cookie that is really related to my log-in?
Globaler Rang: 18
Gesamtpunkte: 391332
Nachrichten: 6
Dank: 5
+Votes: 5
Registriert : 10y 261d







Der Benutzer ist Offline
RE: How to find PHPSESSID
Google/Übersetzer1Danke Schön!1Gute Nachricht!0Schlechte Nachricht! Link
Hello,

That's normal Smile Cookie "WC" identifies your session with the site; when you login, the server registers that, and even though your session id stays the same, the server now knows that you're logged in (data related to each session is stored on the server).

You can use your "WC" cookie to solve the challenges. You can think of "WC" as a variation of "PHPSESSID", it just has a different name and format. Smile
Globaler Rang: 3315
Gesamtpunkte: 6097
Nachrichten: 6
Dank: 2
+Votes: 2
Registriert : 11y 71d

Zuletzt gesehen am: 361d 12h
Der Benutzer ist Offline
Thank you
Google/Übersetzer1Danke Schön!1Gute Nachricht!0Schlechte Nachricht! Link
I was confused a little bit, now I got to know a way to do it. Thank you!
Redknee, tunelko, silenttrack, n0tHappy, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, JanLitwin17, SwolloW, dangarbri haben dieses Thema abonniert und erhalten EMails bei einer neuen Nachricht.
1 Personen sehen sich diese Thema gerade an.
Dieses Thema wurde 8515 mal angesehen.