SShortSingh.
Back to feed

Researcher Solves Intigriti SQL Injection CTF via Base64-Encoded URL Parameter

0
·1 views

A security researcher solved the Intigriti September 2026 Critter Gallery CTF challenge by identifying a SQL injection vulnerability in the application's 'pic' URL parameter. The parameter accepted base64-encoded animal names, which the server decoded and inserted directly into a SQL query without proper sanitization or parameterization. By manipulating the decoded input with boolean conditions and UNION SELECT statements, the researcher confirmed the injection and determined the query returned a single column. Further enumeration of the challenge database via information_schema revealed a table called 'secret_vault' containing a 'note' column, from which the flag was extracted. The successful submission was accepted by Intigriti under reference INTIGRITI-T8Z07V6I.

Read the full story at DEV Community

This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)

Log in to join the discussion and vote.

Log in

Related stories

0
ProgrammingDEV Community ·

AWS offers secure EC2 management without opening SSH port

AWS Systems Manager Session Manager provides an alternative to SSH for managing Linux EC2 instances. It allows administrators to establish interactive sessions without exposing the inbound SSH port 22. The method relies on an agent installed on the instance and administrator IAM permissions. All session requests are handled through AWS services, removing the need for a direct network path to the instance. This approach enhances security by eliminating the requirement for an open inbound port on the instance's security group.

0
ProgrammingDEV Community ·

Node.js Express Service Adds Early Image Size Limits to Block Oversized Uploads

A technical guide recommends implementing early size checks for image uploads in Node.js Express applications. The method involves reading image metadata before full processing to compare dimensions against set limits. This prevents expensive decoding of oversized files, such as identity documents in fintech services. The approach uses two separate limits: one for file size during transfer and another for pixel dimensions during processing. Early rejection reduces server load and provides clear feedback when uploads exceed configured thresholds.

0
ProgrammingDEV Community ·

Developer creates interactive Netflix catalog explorer using Python and open data

A developer built an interactive data visualization application to explore Netflix's catalog using a public dataset. The tool was created with Python, pandas, Plotly, and Streamlit, analyzing 8,807 titles including movies and TV shows. It features summary indicators, charts by release year and content type, and breakdowns by country and genre. The project demonstrates connecting exploratory data analysis with reproducible deployment while acknowledging the dataset represents a historical snapshot.

0
ProgrammingDEV Community ·

Laravel Horizon's built-in alerting limited, additional monitoring tools required

Laravel Horizon's only native alert is 'LongWaitDetected', which triggers when a queue's estimated wait time exceeds a configurable threshold. This alert repeats every five minutes during the condition but never sends a recovery notification, and it fails if Horizon itself is down. Gauges from packages like spatie/laravel-prometheus can monitor if Horizon is running or paused, while counters are needed to track failure rates and job latency for actionable alerts. Some issues, like expired job reservations, do not generate any metrics and require direct checks of the queue state.

Researcher Solves Intigriti SQL Injection CTF via Base64-Encoded URL Parameter · ShortSingh