CDNio HTB
by cavour13 - Saturday January 11, 2025 at 09:37 AM
#11
(01-30-2025, 01:51 PM)bxdman Wrote: Can anyone help me with a hint?

check bot_runner. make bot request a page and cache it.
Reply
#12
I know the principle is a Cache spoofing attack, but I'm having a bit of trouble making a cache using /visit, there's no way to make one correctly. My payload is being returned with a 400 status code. Can anyone give a little hint on this? Confused
Reply
#13
(02-09-2025, 12:45 PM)akared666 Wrote: I know the principle is a Cache spoofing attack, but I'm having a bit of trouble making a cache using /visit, there's no way to make one correctly. My payload is being returned with a 400 status code. Can anyone give a little hint on this? Confused

Well, I've got the flag, if you encounter the same 400 status code as me just need to modify your http header, if the error is “invalid token” then send a few more requests on the line, the reason is not clear!
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 91 7,556 11 hours ago
Last Post: ukaugse
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 364 88,800 Yesterday, 07:41 PM
Last Post: napo22
  [FREE] HTB-ProLabs APTLABS Just Flags kewlsunny 23 2,357 03-28-2026, 03:30 AM
Last Post: lulaladrow
  HTB Eloquia User and Root Flags - Insane Box 69646B 13 356 03-27-2026, 06:14 PM
Last Post: vlxw
  HTB - ALL Challenges you Stuck in osamy7593 2 652 03-27-2026, 04:24 PM
Last Post: catsweet



 Users browsing this thread: