Deven and Refaat

>>> from team import place
# 4th

>>> from team import score
# 10800 points

Members

User Name Score
Deven Captain 10100
refaat 700

Solves

Challenge Category Value Time
Hidden Path and Forensics Challenge Group 3 200
Challenge 4 Group 2 200
Challenge 1 Group 2 100
Medium 2 Group 7 200
Easy 1 Group 7 100
Remote Code Execution (RCE) via File Upload Group 9 400
Decoder Challenge Group 3 100
Open Redirect Group 10 100
Cross-Site Scripting (XSS) Group 9 100
IDOR Challenge Group 3 200
Path Traversal Group 4 200
Parameter Pollution Group 4 200
Decrypt Hidden Commit Challenge Group 3 400
Challenge 4: (Medium) Group 5 200
Challenge 3: (Medium) Group 5 200
Challenge 2: (Easy) Group 5 100
Challenge 1: (Hard) Group 5 400
1st Challenge Group 8 100
Command Injection Group 4 400
SQL Injection Challenge Group 3 100
Medium 1 Group 7 200
JSON API Injection Group 4 100
Search Functionality Group 4 100
Challenge 3 Group 2 200
Challenge 3 - Medium Group 6 200
JaSON Bourne's Secure Login (Medium) Group 1 200
Challenge 5 – Hard Group 6 400
Challenge 4 – Medium Group 6 200
Challenge 2 – Easy Group 6 100
Challenge 5: (Easy) Group 5 100
Brute-Force Side-Channel Attack (Hard) Group 1 400
Client-side information leakage (Medium) Group 1 200
Deven Biehler’s XSS-Attack (Easy) Group 1 100
SQL Injection Challenge (Easy) Group 1 100
5th Challenge Group 8 400
3rd Challenge Group 8 200
2nd Challenge Group 8 100
SQL Injection Group 10 200
Cross-Site Scripting (XSS) Group 10 200
Weak Password Group 10 100
Weak JWT Secret Group 9 200
SQL Injection (SQLi) Group 9 200
Insecure Direct Object Reference (IDOR) Group 9 100
Filter Evader W8 100
XSSInsider W8 100
Bank Heist: CSRF Exploit W8 100
Broken Access Control HW3 100
Insecure File Upload HW3 100
SQLI HW3 100
IDOR HW3 100
The Hidden Layer W6 100
Challenge_4 HW2 100
Challenge_1 HW2 100
Challenge_2 HW2 100
Challenge_0 HW2 100
XSS W5 100
Cross Origin Chaos W5 100
Challenge_3 HW2 100
Bypass 2FA W3 100
Pathfinder W2 100
JavaScript Analysis W2 100
Elevated Access W2 100
HTTP Auth Bypass W2 100
Header Hunters W2 100
I told you not to look here! W1 100
Decode and Conquer(1) W1 100
Decode and Conquer(0) W1 100
Flag Within W1 100