Target from: CTF Playground

Intermediate, Non rootable, Timed

pling / 0.0.0.0

2: Flags (2:app)
1: Service
1,010 pts
Avg. headshot: 10,384 minutes

#headshot

Level 8 / Master Securitas

JorgeGsC / 359th Place

2: Flags found
1: Service discovered
1,010 pts
161 minutes

Welcome to Pling, this misconfiguration is so common that it has a name starting with off-by something something. By exploiting this vulnerability you will be able to access files far outside your reach as a normal user.

To start the challenge visit the page at http://10.0.14.26:1337/ and try to follow the instructions. Your timer starts from the first time you connect to the service.

51 Headshots (newer first)

jinake, d3v3t, JorgeGsC, NegaRequiem, g1ggl3r, roronoazolo, c0nfirm, XNOEX, nudim, s1ngle, Astralis, Ckabos, Touchme, katto, alamillo, echoOne, Sid110307, karpik, Atlantica
doofyr, Byt3P4ss, poggiesai, hazy, cavca2012, DamianPellejero, Pablo977, jaxafed, antonioban, 4rl4dn4, uApocryphon, noother, B13ss3d, AskTaimoor, No0ne, Clientname, Tr1s, Sev7en, D1ie3z, srrequiem, bas1c, vicky5, ddr4ramm, PufferOverflow, Grosik, r0b0tG4nG, Pegasus, sirEgghead, biba22, g0rchy, hitmanalharbi

1 Writeup by:

Activity Stream

Latest activity on the platform

JorgeGsC managed to headshot [pling], in 161 minutes, 29 days ago
JorgeGsC Got the flag from outside the webroot of pling for 700 points, 29 days ago
JorgeGsC Got a flag from there of pling for 300 points, 29 days ago
JorgeGsC Is getting started with pling for 10 points, 29 days ago