FUSS 3

web nodejs FCSC 2020 solved on

star star star

Description

Security problems were reported with Version 2 of their solution, so Feedback Unlimited Secure Solutions decided to upgrade their software. The main change removes special rights to its moderation team. Is this enough to improve the security?

Note: This challenge has been made for the finale of FCSC 2020.

This challenge has been split into three parts:

Challenge Instructions

  1. First, download docker-compose.yml:
    curl https://hackropole.fr/challenges/fcsc2020-web-fuss-3/docker-compose.public.yml -o docker-compose.yml
  2. Launch the challenge by executing in the same folder:
    docker compose up
  3. Access the challenge at http://localhost:8000/.
⚠️ Important: You must solve the challenge by interacting with the Docker container through the exposed network port. Any other way is not considered valid.

In case you encounter problems, please consult the FAQ.

Flag

Share my success on Fediverse, Twitter, Linkedin, Facebook, or via email.

Submit your solution

You can submit your writeup for this challenge. Read the FAQ to learn how to proceed.

You need to be logged in to submit a writeup.

Writeups

There are no public solutions for this challenge yet, but you can submit yours after getting the flag.