webhard

original_task

miptctf

Task: Web app with notes, two Flask backends (DEV/PROD) behind nginx, flag only on PROD via localhost, bot restricted to ports 443/4443. Solution: DNS HTTPS/SVCB record attack (RFC 9460) to redirect browser TCP connection to port 1337 while URL shows port 443, bypassing bot port check.

$ ls tags/ techniques/
dns_https_svcb_port_redirectionbrowser_ssrf_via_dnsform_autosubmit_posturl_tcp_port_mismatch

🔒

Permission denied (requires tier.pro)

Sign in to access full writeups

Create a free account with GitHub, then upgrade to Pro.

$ssh [email protected]