🎉

All Flags Captured!

Outstanding work — you've exploited all 10 vulnerabilities in the First National Bank CTF. Full marks: 100 / 100 points

Enter Your Flags

🎯 Vulnerability Reference

#VulnerabilityOWASP CategoryKey Tools
#01SQL Injection — Login BypassA03:2021 Injectionsqlmap, Burp Suite
#02SQL Injection — Data ExtractionA03:2021 Injectionsqlmap --dump
#03Reflected XSS (URL Parameter)A03:2021 InjectionBurp Suite, manual
#04Stored XSS (Feedback Form)A03:2021 InjectionBurp Suite, BeEF
#05Directory TraversalA01:2021 Access Controlcurl, dotdotpwn
#06Broken Access Control (Admin)A01:2021 Access Controlgobuster, manual
#07IDOR — Statement DownloadA01:2021 Access ControlBurp Intruder
#08Sensitive Data / Source ReconA02:2021 CryptographicDevTools, grep
#09CSRF — Static TokenA01:2021 Access ControlBurp CSRF PoC
#10Insecure Password ResetA07:2021 Auth FailuresBurp Intruder, hydra
Your Progress
Track captured flags & score
0 / 100
Points
0 / 10 flags  ·  0%