API | Web Challenge | Arab Regional CTF 2018

Ahmed ElTijani
SUDOROOT
Published in
1 min readDec 31, 2019

Challenge Name: API

Category: Web

Points: 200

Description:

this is the url to flag, only admin can view it, can you get it ?

http://35.193.45.56/api/api.php?version=2&action=flag

Writeup:

--

--

Ahmed ElTijani
SUDOROOT

S3cr3tSDN \n OSWE \n OSCP \n CTF Player \n Bug Bounty Hunter \n SQL injector