Kristen Eggleston
  • Demo Reel
  • Blog

SkillsQuest (SSQ) by NetWars CTF

11/29/2025

 
This time I felt incredibly confident. I was no longer tripped up on what an MD5hashsum is or SQL syntax. I was ready. 

And I was ready! I completed every 'easy' and 'medium' task and half of the 'hard' and 'difficult' tasks. 

Unfortunately I didn't take any notes on this one and only remember discovering that linux saves your bash commands. I knew about the 'history' command but didn't realize there was a whole .bash_history file saved to the user profiles. 

I was glad that this time, I knew how to use URL encoding to bypass path traversal filters in BurpSuite and how to exploit an XSS vulnerability to hijack the admin session.

Comments are closed.

    Author

    Compilations and contemplations of my time as a Side Effects intern.

    Archives

    November 2025
    August 2013
    July 2013
    June 2013

    Categories

    All
    Discoveries
    Fun Renders
    It Totally Works
    New Feature
    Personal
    Problems
    Uber Shader

Proudly powered by Weebly