• Puzzle 1

This puzzle is about unauthorized access. 

MoonyLand has an eCommerce shopping website which citizens visit to shop for electronics and luxury items such as mobile phones and watches. The shoppers are able to shop as guests or register for a shopping account to easily track their orders and save some of their details such as name, shipping address and credit cards for quicker purchases in future. 

Since its establishment, the website has got many registered users. Your task is to get access to the account of the first user who ever registered on the website and get all his/her personal details.


Scope of Puzzle: 

https://moonyland.com/shopping


Hint:

The login page of MoonyLand shopping has sql injection vulnerability using the query: SELECT * WHERE username = x and password = y 


Puzzle 1

Category: Simple Puzzles

Buy the Solution to This Puzzle

  • A$62.00