TryHackMe: OWASP Top 10 || Severity 6 || Security Misconfiguration

goay xuan hui
Apr 6, 2021

#1 Hack into the webapp, and find the flag!

thm{4b9513968fd564a87b28aa1f9d672e17}
  • This challenge addresses the leakage of sensitive data on public database like GitHub.
  • The hint is asking us to look at the documentation of the source code.
  • If we google “Pensive Notes”, we can see that it is published to GitHub and contains the default credentials.

--

--

goay xuan hui

A food lover, a cyber security enthusiast, a musician and a traveller, so you will see a mix of different contents in my blog. ☺️