0CTF 2017 - complicated xss (web 177)
Tags
attack-pattern: | Data Javascript - T1059.007 Server - T1583.004 Server - T1584.004 Tool - T1588.002 Brute Force - T1110 Connection Proxy - T1090 |
Common Information
Type | Value |
---|---|
UUID | 02044647-93f4-458a-b7a6-7f00307e1d59 |
Fingerprint | 9f4b983325ae01bb |
Analysis status | DONE |
Considered CTI value | -2 |
Text language | |
Published | March 20, 2017, 12:31 a.m. |
Added to db | Aug. 31, 2024, 12:24 a.m. |
Last updated | Nov. 17, 2024, 12:55 p.m. |
Headline | UNKNOWN |
Title | 0CTF 2017 - complicated xss (web 177) |
Detected Hints/Tags/Attributes | 35/1/26 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 31 | ✔ | Dragon Sector | https://blog.dragonsector.pl/feeds/posts/default | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | admin.goverment.vip |
|
Details | Domain | 1 | government.vip |
|
Details | Domain | 1 | r1.read |
|
Details | Domain | 54 | re.search |
|
Details | Domain | 1 | res.group |
|
Details | Domain | 1 | admin.government.vip |
|
Details | Domain | 3 | gynvael.coldwind.pl |
|
Details | Domain | 4 | http.open |
|
Details | Domain | 49 | xhr.open |
|
Details | File | 2 | md5.md5 |
|
Details | File | 3 | payload.js |
|
Details | File | 15 | urllib.url |
|
Details | File | 1 | run.php |
|
Details | File | 3 | coldwind.pl |
|
Details | File | 1 | 0ctf.php |
|
Details | File | 1 | 0ctfstage2.js |
|
Details | File | 14 | object.key |
|
Details | File | 6 | window.xml |
|
Details | File | 1 | contentwindow.xml |
|
Details | File | 1 | hithereasdf.txt |
|
Details | md5 | 1 | 0000000702e3e0e0848435ed83afff57 |
|
Details | Url | 1 | http://admin.goverment.vip:8000 |
|
Details | Url | 1 | http://gynvael.coldwind.pl/0ctf.php |
|
Details | Url | 1 | http://gynvael.coldwind.pl/0ctfstage2.js'),document.body.appendchild |
|
Details | Url | 1 | http://admin.government.vip:8000 |
|
Details | Url | 1 | http://gynvael.coldwind.pl/0ctf.php?b= |