Skip navigation

Tag Archives: Hack

On hax.tor.hu, the site provides numerous interesting “hacking” challenges to the users. To make an account and log into the site, the site provides “simple (not really)” challenges. By passing through the 5 warmup challenges, you can make an account. Really, its pretty interesting. I will explain each of the warmups here, although if you really want to try the warmups, you should do them yourself..

-Warning- The author is not proficient himself, so don’t trust him too much

You should do this on Google Chrome…just makes your life easier

Warmup 1
View the source… scroll to the bottom of the page. There, you should be able to find the password without a problem.
Hint: + indicates to put the words together without the + sign.

Warmup 2
Telnet the http://www.fbi.gov site.
To telnet means to establish a connection with the Telnet protocol.
To do this, run the telnet command on terminal…or cmd.
it should look something like: telnet http://www.fbi.gov 22
The 22 indicates the port number with 22 being the default.
This should tell you the ssh similar to the one given by the example

Warmup 3
This one is funny: it tells you to pick a bacon out of a list…that doesn’t include one.
The list gives apples, lemons, mangos, and oranges, but nowhere can you find bacons.
Here, you have to edit the source of the page so that there is a bacon.
If you are on google chrome, go to view, developer, developer tools. There, search for the source that codes for the selection box. With it found, write an option for bacons:

<select name=”chosen”>
<option value=”Apple”>Apple</option>
<option value=”Bacon”>Bacon</option>
<option value=”Lemon”>Lemon</option>
<option value=”Mango”>Mango</option>
<option value=”Orange”>Orange</option>

With the bacon in there, the list now should contain a bacon. Select it, then proceed to warmup 4.

Warmup 4

Similar to number 2, the site tells you to get the password from a page that cannot be opened with a browser.

Go to terminal again and type:

telnet hax.tor.hu 80

this connects you with the site.

To get the specific page, you type

GET http://hax.tor.hu/pwfor4/

This will give you the answer.

Proceed

Warmup 5  [Edited] <- Thank you people for commenting

Hashing…

I don’t know if this is the right method but, just try every digit/alphabet until the numbers get close enough.

To save you from the pain, the pw is live.

The password changes…you’re on your own for this one. It’s more time consuming than difficult.

Congrats, now you can register for the site. (All that just to register)

Advertisements