ctfx [Web] – north korea [100pts]


What is North Korea hiding?

http://problems.ctfx.io:7002/

This one was a really easy one, first thing i did was inspecting the source code and I found endpoint http://problems.ctfx.io:7002/code tryed to access it but it was just giving a message “nice try kido!”. At the main page there is a special hint about this saying “We, the Democratic People’s Republic of Korea, have developed a revolutionary new security standard. The West doesn’t stand a chance.” So the West doesn’t have access? so lets try with a north korea ip changing the X-Forwarded.For header.

1
2
3

kinyabitch@Debian /v/w/html> curl -H "X-Forwarded-For: 175.45.177.64" http://problems.ctfx.io:7002/code
ctf(jk_we_aint_got_n0_nuk35)