Welcome Guest ( Log In | Register )



2 Pages V   1 2 >  
Reply to this topicStart new topic
> Whyme's Cracking Challenge Part 1 Of 4 (easy), Very Easy Cracking Challenge
whyme
post May 8 2005, 04:28 AM
Post #1


Newbie [ Level 1 ]
Group Icon

Group: Members
Posts: 8
Joined: 22-February 05
Member No.: 2,747



Well, I couldn't resist not making one myself, so here it goes:

I have a little VB App that will ask for your username and password, and will give you an "access key" once you get the right info, this is pain-stakingly easy (heck, you don't even need to know the username and password - big hint. smile.gif ), but, this is just to rev up your engines, as this is part 1 of my four part VB/PHP/MySQL/C++ Cracking Challenge.

Each challange will connect onto the next challenge, so the end product that you get from this one, will be highly important for the next challenge that you undertake.

you can find the program here.

http://xeek.trap17.com/lorem.exe

Have fun,

-whyme

small topic title name change wink.gif hacking = cracking

This post has been edited by jipman: May 8 2005, 12:22 PM
Go to the top of the page
 
+Quote Post
mastercomputers
post May 8 2005, 07:43 AM
Post #2


PESTICIDAL MANIAC
Group Icon

Group: Members
Posts: 626
Joined: 1-September 04
From: Auckland, New Zealand
Member No.: 27



Not fond of VB but still was able to do this challenge under Linux, which is just a bonus, since I hate needing to switch back to Windows.

Hopefully you'll bring more challenges similar to this but a bit harder, we could find all the information we needed just viewing this in a hex-editor, without needing that username and password but we could use them and still get a popup of what the key is.


Cheers,


MC
Go to the top of the page
 
+Quote Post
miCRoSCoPiC^eaRt...
post May 8 2005, 10:00 AM
Post #3


PsYcheDeLiC dR3aMeR
Group Icon

Group: Admin
Posts: 2,242
Joined: 29-January 05
From: Nakorn Chaisri, Thailand
Member No.: 2,411
myCENTs:84.36



Hehe.. I did it in windows too and pm-ed you a snapshot. As MC pointed out - I never needed to figure out your password. I got to the popup of your keys straight out wink.gif Check your pm for the resultant screenshot - it's on imageshack... and I'd have uploaded the cracked file tongue.gif but now it's in such a state that you can type any login/pass and get to your final popup screen tongue.gif I went one step up and removed all the your login/pass checking parts from the code and fixed the JUMP instructions to point straight to your popup box.. this way it completely bypasses your verification system.. no more pass needed.. the snapshot that you've received was logged in with "blah" & "blah" as username/pass wink.gif

Comeup with somethign harder next time..

Regards,
m^e
Go to the top of the page
 
+Quote Post
qwijibow
post May 8 2005, 11:36 AM
Post #4


Way Out Of Control - You need a life :)
Group Icon

Group: Members
Posts: 1,366
Joined: 14-September 04
From: Nottingham England
Member No.: 570



WOW....
why are VB windows executables made up of 75% NULL.
that doesnt happen on the GNU c++ compiled ececuatbales.

anyways....
yeah, ive completed it too, but i used the *nix strings command instead of a hex-editor.

are we supposed to PM the answers, or post them ???

edit:
lol, ahh, found a second set of passwords and usernames after i relxed grep and discovered the typo.

QUOTE
passowrd is ###############
Go to the top of the page
 
+Quote Post
whyme
post May 8 2005, 11:16 PM
Post #5


Newbie [ Level 1 ]
Group Icon

Group: Members
Posts: 8
Joined: 22-February 05
Member No.: 2,747



Haha, like what I said, this isn't meant to be hard or challenging, only to start up your engines for the next one. tongue.gif

I'm currently developing the next challenge in PHP , and that "end product" you get from this challenge will be important for the next one.

I expect to be done in 5 - 8 days.

cheers,

-whyme
Go to the top of the page
 
+Quote Post
qwijibow
post May 9 2005, 11:42 AM
Post #6


Way Out Of Control - You need a life :)
Group Icon

Group: Members
Posts: 1,366
Joined: 14-September 04
From: Nottingham England
Member No.: 570



lol.. okay, i thought that
QUOTE
this is just to rev up your engines
was a clue to start reverse engineering smile.gif
Go to the top of the page
 
+Quote Post
mastercomputers
post May 9 2005, 11:51 AM
Post #7


PESTICIDAL MANIAC
Group Icon

Group: Members
Posts: 626
Joined: 1-September 04
From: Auckland, New Zealand
Member No.: 27



m^e,

If I maybe so bold, I want to test your theory on the any state.

Depending on how your altered the jump, how about inputting the correct username and password into it and seeing whether this is the case?


MC
Go to the top of the page
 
+Quote Post
miCRoSCoPiC^eaRt...
post May 10 2005, 09:02 AM
Post #8


PsYcheDeLiC dR3aMeR
Group Icon

Group: Admin
Posts: 2,242
Joined: 29-January 05
From: Nakorn Chaisri, Thailand
Member No.: 2,411
myCENTs:84.36



Hehe okk.. once this challenge is over - I'll upload the cracked file here wink.gif Even the correct username pass will work..
Go to the top of the page
 
+Quote Post
qwijibow
post May 10 2005, 12:32 PM
Post #9


Way Out Of Control - You need a life :)
Group Icon

Group: Members
Posts: 1,366
Joined: 14-September 04
From: Nottingham England
Member No.: 570



altering jump instructions with hex-editors used to be what all the 7337 h@)(0r$ were doing back in the Amiga days.

anyone have an amiga ?

i remember when you booted a game (cos thats what you did, games didnt run inside OS's)
a crached game would show up a page bragging about who pirated and crached is..

"Crystal Cracked" were quite famous.

this bragging page would often have very amasing graphics, cool music.
eventually, the bragging page became more important that the cracking.

and this is how demo's came to be (or thats how the legeng goes)

they also used to post the hpone numbers of the BBS servers that these hackers used to run.

damnit.. i really was born 10 years too late.

in the amiga days, we didnt have any of this Geforce FX 6800 SLI PCI-E crap !

We had the "Angus" Chip, and if you were rich, you upgraded to "Fat Angus"
and if you were really rich, you could go crazy, an buy a super charged "Fatter Angus" chip.

and if you were a billionaire, you could rpobably afford 2mb or ram for $300.

ahh the good old days.
Go to the top of the page
 
+Quote Post
Billwaa
post May 14 2005, 02:55 AM
Post #10


Member [ Level 1 ]
Group Icon

Group: Members
Posts: 38
Joined: 13-May 05
Member No.: 5,050



Don't work for me, it said I am missing a dll or something.
Go to the top of the page
 
+Quote Post

2 Pages V   1 2 >
Reply to this topicStart new topic

Collapse

> Similar Topics

Topics Topics
  1. Hackers Challenge(42)
  2. Hackers Challenge 2(48)
  3. Hackers Challenge 3(29)
  4. Qwijibows Cracking Challenge(11)
  5. Whats That Hacking Challenge?(9)
  6. Cracking Challenge(7)
  7. Batch Challenge(18)
  8. Dragon52225's Sql Challenge #1(3)


 



- Lo-Fi Version Time is now: 3rd December 2008 - 07:25 PM