Assignate

EasyWeb

Overview

An online shop has just launched, Can you figure out a way to walk out with the best deal in the store? Flag Format: Flag{text}

Lab Details

Prerequisites & Requirements

  • Knowledge of HTTP requests and how to interact with them (POST, JSON).
  • Familiar with Burpsuite to analyze HTTP Requests.
  • Awareness of common web vulnerabilities.

What will you learn?

  • How webshops handle user balance and purchases in Flask.
  • How price manipulation via client input can create a vulnerability.
  • The importance of server-side validation (not trusting user-provided data).

Tools

  • Browser
  • Burpsuite
  • Foxy proxy extension

Job Positions

Tags

Mass AssignmentOwasp Top 10Api SecurityInput ValidationLogic Flaw