- Name: Web Fundamentals
- Profile: tryhackme.com
- Difficulty: Easy
- Description: Learn how the web works!
Install tools used in this WU on BlackArch Linux:
$ sudo pacman -S curl
Disclaimer: all the answer are well explained on the room description so I won't detail them here.
How do we load websites?#
What request verb is used to retrieve page content?
What port do web servers normally listen on?
What's responsible for making websites look fancy?
More HTTP - Verbs and request formats#
What verb would be used for a login?
What verb would be used to see your bank balance once you're logged in?
Does the body of a GET request matter? Yea/Nay
What's the status code for "I'm a teapot"?
What status code will you get if you need to authenticate to access some content, and you're unauthenticated?
What's the GET flag?
curl -X GET http://10.10.205.207:8081/ctf/get
What's the POST flag?
curl -X POST http://10.10.205.207:8081/ctf/post -d flag_please
What's the "Get a cookie" flag?
curl -X GET http://10.10.205.207:8081/ctf/getcookie --head
What's the "Set a cookie" flag?
curl -X GET http://10.10.205.207:8081/ctf/sendcookie -b 'flagpls=flagpls'