MhackGyver

MhackGyver pentest team official website

Download as .zip Download as .tar.gz View on GitHub

input

sqli1.ctf.tamu.edu
Oh, how lovely it would be if you could log in as admin.
The data you could find, flags that would be thereā€¦

output

We have a form that return Dat be invalid login info! if we try the wrong login/password.

Just input the classic SQL injection: form And you obtain the flag: flag