-
Notifications
You must be signed in to change notification settings - Fork 1
Writeup: Advent of Cyber 4 Day 3
Link: Advent Of Cyber 4 on TryHackMe
What is the name of the Registrar for the domain santagift.shop?
We take a look using the ICANN Lookup website: https://lookup.icann.org/en/lookup
Answer: NAMECHEAP INC
Find the website's source code (repository) on github.com and open the file containing sensitive credentials. Can you find the flag?
There it's just a matter of looking for the URL, and finding the oldest repository involved.
There we look for interesting files, such as for example config.php
.
This produces a flag:
Answer: {THM_OSINT_WORKS}
What is the name of the file containing passwords?
(See Q2)
Answer: config.php
What is the name of the QA server associated with the website?
If we scroll down in the file a bit, we can see the following:
Answer: qa.santagift.shop
What is the DB_PASSWORD that is being reused between the QA and PROD environments?
(See Q4)
Answer: S@nta2022