secureArchive

MediumWeb Security

Overview

SCENARIO

The Relic Archive accepts plain-text files from developers and locks them down immediately after upload. Every file that lands in the archive gets its permissions wiped, making it unreadable to anyone. The flag is already sitting in the archive, safely locked away.

Your job is to make it readable again. You have nothing but a file upload form and a .txt
extension requirement.

Flag format: flag{}

Infrastructure

- Docker Container — HTTP on port 8888

Provided Files

- SourceCode_secureArchive.zip (2.6 KB)

Job Positions

Penetration Tester

Tags

Command InjectionPhpInput ValidationSource Code ReviewUnrestricted File Upload