webmedium
Точка невозврата (Point of No Return)
hackerlab
Task: Shop with voucher system where flag costs 1337$ but balance is only 1000$. Solution: Combined IDOR (uid parameter manipulation) with race condition to redeem vouchers multiple times, gaining enough balance to purchase the flag.
$ ls tags/ techniques/
race_conditiontoctousession_manipulationbalance_manipulationidorinsecure_direct_object_referenceconcurrent_requestsvoucher_systemthreadingshop_exploitation
Race Condition via concurrent voucher redemptionIDOR exploitation via uid parameter manipulationMulti-session attack coordinationThread synchronization with Barrier
🔒
Permission denied (requires tier.pro)
Sign in to access full writeups
Create a free account with GitHub, then upgrade to Pro.
$ssh [email protected]