SlideShare a Scribd company logo
1 of 7
I hear about this site www.hackertest.net from my friend, this site have puzzle
to solve to enter to the next level. So this is the answer of level i pass, but
i stuck at level 20. Is there level 21? The tool to pass all level only text
editor and GIMP, maybe above level 20 are the real hacker test :-)
————————
level 1 http://www.hackertest.net/
Password:null
From— view page source
<script language=JavaScript>
{
var a=—null—;
function check()
{
if (document.a.c.value == a)
{
document.location.href=—http://www.hackertest.net/—+document.a.c.va
lue+—.htm—;
.
.
.
————————
level 2 http://www.hackertest.net/null.htm
Password:l3l
From— view page source
<script language=—JavaScript— type=—text/javascript—>
var pass, i;
pass=prompt(—Please enter password!—,—");
if (pass==—l3l—) {
window.location.href=—http://www.hackertest.net/—+pass+—.htm—;
.
.
.
————————
level 3 http://www.hackertest.net/l3l.htm
Password:#000000
From— view page source
<body onload=javascript:pass(); alink=—#000000?>
<SCRIPT LANGUAGE=—JavaScript—>
function pass()
{
var pw, Eingabe;
pw=window.document.alinkColor;
Eingabe=prompt (—Please enter password—);
if (Eingabe==pw)
{
window.location.href=String.fromCharCode(97,98,114,97,101)+—.htm—;
.
.
.
————————
level 4 http://www.hackertest.net/abrae.htm
————————
level 5 http://www.hackertest.net/sdrawkcab.htm
Password:SAvE-as hELpS a lOt
From— view page source
<script language=JavaScript>
var pass, i;
pass=prompt(—Password: —,—");
if (pass==—SAvE-as hELpS a lOt—) {
window.location.href=—save_as.htm—;
.
.
.
————————
level 6 http://www.hackertest.net/save_as.htm
Password:hackertestz
From— view page source
<SCRIPT SRC=—psswd.js— LANGUAGE=—JavaScript—
type=—text/javascript—></script>
Open http://www.hackertest.net/psswd.js
<!—
var pass;
pass=prompt(—Password:—,—");
if (pass==—hackertestz—) {
window.location=—included.htm—;
.
.
.
————————
level 7 http://www.hackertest.net/included.htm
Username:phat
Password:jerkybar3
From— view page source
<body bg=—images/included.gif—>
Open http://www.hackertest.net/images/included.gif
————————
level 8 http://www.hackertest.net/pwd2.php
Username:zadmin
Password:stebbins
From— view page source
<form action=phat.php method=post>
Open http://www.hackertest.net/phat.php
<BODY BGCOLOR=—ffffff— TEXT=—000000? BG=—images/phat.gif—>
Open http://www.hackertest.net/images/phat.gif
the result is —Look for a .PhotoShopDocument!— => PSD
Download http://www.hackertest.net/images/phat.psd
Open phat.psd using photoshop or gimp
Hide another layers, only show Background and DEMO DEMO DEMO DEMO
————————
level 9 http://www.hackertest.net/phat.php
Form— view page source
<!—————————————————————-
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
—————— Password: Z2F6ZWJydWg= add a page extention to
that ————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
——————————————————————
—————————— >
Decode Z2F6ZWJydWg= (base 64 to text), using online tools like:
- http://ostermiller.org/calc/encode.html
- http://webnet77.com/cgi-bin/helpers/base-64.pl
-
http://www.opinionatedgeek.com/dotnet/tools/Base64Decode/Default.as
px
- http://www.motobit.com/util/base64-decoder-encoder.asp
- etc.
The result : gazebruh
————————
level 10 http://www.hackertest.net/gazebruh.php
Password:shackithalf
From— view page source
<td width=—100%—><font size=—2? face=—Tahoma—><i>S</i>treet Korner
is your
own online <i>hack</i>er simulation. W<i>it</i>h over 100 levels
that require
different skills to get to another step of the game, this new
real-life immitation will <i>h</i>elp you advance your security
knowledge.
This site will help you improve your JavaScript, PHP, HTML and
graphic thinking in <i>a</i> fun way that will entertain any
visitor! Have
a spare minute? Log on! Each level wil<i>l</i> provide you with a
new,
harder clue to find a way to get to another level. Only <i>f</i>ew
people
have gotten to the end of the maze— Will you crack this
site?</font></td>
The italic tag S-hack-it-h-a-l-f = shackithalf
————————
level 11 http://www.hackertest.net/gazebruh.php
From— hidden text, using Ctrl+A you can find clue —Level 11:
rofl.php—
————————
level 12 http://www.hackertest.net/rofl.php
From— view page source
<meta name=—robots— content=—goto: clipart.php—>
————————
level 13 http://www.hackertest.net/clipart.php
From— view page source
<meta name=—clue— content=—use graphic software—>
.
.
.
<img border=—0? src=—images/logo.jpg— width=—300?
height=—145?></td>
.
.
.
View http://www.hackertest.net/images/logo.jpg, and zoom it, you
can find puta.php
View page source http://www.hackertest.net/puta.php
<meta name=—clue— content=—use graphic software—>
.
.
.
<td width=—100%— height=—267? valign=—top—><b><font size=—7?
face=—Arial—><img src=—images/lvl13.gif—></font></b><p>&nbsp;</p>
.
.
.
View http://www.hackertest.net/images/lvl13.gif, and zoom it, you
can find 4.xml
In http://www.hackertest.net/4.xml, you can find 4xml.php
————————
level 14 http://www.hackertest.net/4xml.php
From— view page source
<meta name=—clue— content=—use graphic software—>
.
.
.
<img src=—images/bidvertiser.gif—>
.
.
.
View http://www.hackertest.net/images/bidvertiser.gif using GIMP,
you can find text TOTALLY!!! php
————————
level 15 http://www.hackertest.net/totally.php
From— Since you still have your photoshop open, check this out:
images/pass2level16.jpg << good luck with it!
Open http://www.hackertest.net/images/pass2level16.jpg, nothing =>
unavailable
————————
level 16 http://www.hackertest.net/unavailable/
From— view page source
UNAVAILABLE
<!— level 17: /images— —>
Visit http://www.hackertest.net/unavailable/images
View page source
<body background=—bg.jpg—>
Download bp.jpg, open with text editor, you can find Ducky.php
————————
level 17 http://www.hackertest.net/unavailable/Ducky.php
Password: your IP address
You can find your IP address, using online tool, such as:
- http://whatismyipaddress.com/
- http://www.ip2location.com/
- etc.
After login then view page source—
<b>Warning</b>: Cannot modify header information — headers already
sent by (output started at
/home/hackert/public_html/unavailable/Ducky.php:11) in
<b>/home/hackert/public_html/unavailable/Ducky.php</b> on line
<b>58</b><br />
../level18.shtml
.
.
.
————————
level 18 http://www.hackertest.net/level18.shtml
Scroll to bottom of page, you can find —
$pass) { $errormsg=$msg; show_login_page($errormsg); exit(); } else
{ setmycookie(); } } else { if ($_COOKIE[$cookiename]<>$pass) {
show_login_page($errormsg); exit(); } else { // do nothing } } ?>
/level19.shtml << told ya to think like a n00b!!!
————————
level 19 http://www.hackertest.net/level19.shtml
From— view page source
.
.
.
<td width=—100%— background=—images/level20_pass.gif—>
.
.
.
View http://www.hackertest.net/images/level20_pass.gif using GIMP,
you can find text —gazebruh2?
————————
level 20 http://www.hackertest.net/gazebruh2.htm
In the page you can see
1. hex.gif contain:
—436f6e67726174756c6174696f6e732532312b596f752b686176652b7061737365
642b746f2b6c6576656c2b31302e2b486572652532432b7468696e67732b6265636
f6d652b6d7563682b6d6f72652b6469666663756c742b2533422d2532395b486f70
652b796f752b6765742b7468726f7567682532312b456e6a6f792e—
if you decode it, the message —Congratulations%
21+You+have+passed+to+level+10.+Here%
2C+things+become+much+more+diffcult+%3B-%29[Hope+you+get+through%
21+Enjoy.—
2. some character:
VldwSk5Gb3lVa2hQUjJSclRUSlJlbFJITlU5TlIwNTBWbTE0YTFJelVqSlpNakF4WWt
kT2NFNVlWbUZYUmtZeVYycEtTbG95U25SUFZFNU5Xbm93T1QwOT09
if you decode it (base 64) 4 times, the message —Go to
www.streetkorner.net/gb now.”
3. using Ctrl+A, you find ^^^^^^^^^^ Change domain, add ”22332? at
the end, reach it and then get hold of ” ^^^^^^^^^^
So my experiment end at http://www.hackertest.net/gb22332/ to reach
level 21, if it is exists :-)

More Related Content

What's hot

What's hot (7)

Hacking mail server
Hacking mail serverHacking mail server
Hacking mail server
 
OpenID Security
OpenID SecurityOpenID Security
OpenID Security
 
Client sidesec 2013-intro
Client sidesec 2013-introClient sidesec 2013-intro
Client sidesec 2013-intro
 
Php 3 1
Php 3 1Php 3 1
Php 3 1
 
Ethical hacking
Ethical hackingEthical hacking
Ethical hacking
 
Client sidesec 2013 - non js
Client sidesec 2013 - non jsClient sidesec 2013 - non js
Client sidesec 2013 - non js
 
Eeconf - EEeeeek - the most hacked website i've ever seen
Eeconf - EEeeeek - the most hacked website i've ever seenEeconf - EEeeeek - the most hacked website i've ever seen
Eeconf - EEeeeek - the most hacked website i've ever seen
 

Viewers also liked

Parque de Cabárceno Cantabria
Parque de Cabárceno CantabriaParque de Cabárceno Cantabria
Parque de Cabárceno Cantabriapocholinyabe
 
沒有人能讓我們痛苦
沒有人能讓我們痛苦沒有人能讓我們痛苦
沒有人能讓我們痛苦He Yan
 
影响一生的哲理故事2
影响一生的哲理故事2影响一生的哲理故事2
影响一生的哲理故事2He Yan
 
钱塘观潮:百余人被卷
钱塘观潮:百余人被卷钱塘观潮:百余人被卷
钱塘观潮:百余人被卷LINWEIYUAN
 
Camino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de CompostelaCamino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de CompostelaCarlos Colomer
 
Barcelona, Passeig de Gràcia
Barcelona, Passeig de GràciaBarcelona, Passeig de Gràcia
Barcelona, Passeig de GràciaCarlos Colomer
 
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 232015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23vinhbinh2010
 
低潮時享受學習
低潮時享受學習低潮時享受學習
低潮時享受學習He Yan
 
Littoral breton1
Littoral breton1Littoral breton1
Littoral breton1Balcon60
 
Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)maditabalnco
 
Las playas en China
Las playas en ChinaLas playas en China
Las playas en Chinamocanos net
 
Parque Cabarceno, Cantabria
Parque Cabarceno, CantabriaParque Cabarceno, Cantabria
Parque Cabarceno, CantabriaCarlos Colomer
 

Viewers also liked (20)

Parque de Cabárceno Cantabria
Parque de Cabárceno CantabriaParque de Cabárceno Cantabria
Parque de Cabárceno Cantabria
 
沒有人能讓我們痛苦
沒有人能讓我們痛苦沒有人能讓我們痛苦
沒有人能讓我們痛苦
 
影响一生的哲理故事2
影响一生的哲理故事2影响一生的哲理故事2
影响一生的哲理故事2
 
钱塘观潮:百余人被卷
钱塘观潮:百余人被卷钱塘观潮:百余人被卷
钱塘观潮:百余人被卷
 
Camino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de CompostelaCamino de Santiago, Monte do gozo - Santiago de Compostela
Camino de Santiago, Monte do gozo - Santiago de Compostela
 
New York city
New York cityNew York city
New York city
 
Bilbao, Vizcaya
Bilbao, VizcayaBilbao, Vizcaya
Bilbao, Vizcaya
 
Barcelona, Passeig de Gràcia
Barcelona, Passeig de GràciaBarcelona, Passeig de Gràcia
Barcelona, Passeig de Gràcia
 
Emma maersk big bateau ha
Emma maersk big bateau haEmma maersk big bateau ha
Emma maersk big bateau ha
 
Parque Natural de Cabárceno
Parque Natural de CabárcenoParque Natural de Cabárceno
Parque Natural de Cabárceno
 
Doctor zivago1
Doctor zivago1Doctor zivago1
Doctor zivago1
 
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 232015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
2015 - Pictures of the month_OCTOBER - Oct 16 - Oct 23
 
低潮時享受學習
低潮時享受學習低潮時享受學習
低潮時享受學習
 
Littoral breton1
Littoral breton1Littoral breton1
Littoral breton1
 
Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)Travel Photographer Asia 2016; Featured Entries (3)
Travel Photographer Asia 2016; Featured Entries (3)
 
Noruega fiordos turismo extremo aventura
Noruega fiordos turismo extremo aventuraNoruega fiordos turismo extremo aventura
Noruega fiordos turismo extremo aventura
 
El paisajista Martín Rico
El paisajista Martín RicoEl paisajista Martín Rico
El paisajista Martín Rico
 
Las playas en China
Las playas en ChinaLas playas en China
Las playas en China
 
Lierganes, Cantabria
Lierganes, CantabriaLierganes, Cantabria
Lierganes, Cantabria
 
Parque Cabarceno, Cantabria
Parque Cabarceno, CantabriaParque Cabarceno, Cantabria
Parque Cabarceno, Cantabria
 

Similar to Hacker Test Levels

Flash Widget Tutorial
Flash Widget TutorialFlash Widget Tutorial
Flash Widget Tutorialhussulinux
 
Website Hacking Oldie
Website Hacking OldieWebsite Hacking Oldie
Website Hacking OldieAung Khant
 
Behat - Drupal South 2018
Behat  - Drupal South 2018Behat  - Drupal South 2018
Behat - Drupal South 2018Berend de Boer
 
Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017Christian Heilmann
 
Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2devninjabr
 
Malware analysis
Malware analysisMalware analysis
Malware analysisDen Iir
 
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTYWilliam Chong
 
AFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack EncoreAFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack EncoreEngineor
 
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)Damien Carbery
 
Ruby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start UpRuby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start UpPrateek Saxena
 
PHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source ProjectPHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source Projectxsist10
 
Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)Peter Sabev
 
What Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 AppsWhat Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 AppsDoris Chen
 
Building a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profitBuilding a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profitBen Limmer
 
7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First TimeDmitry Mayorov
 
Intro to Php Security
Intro to Php SecurityIntro to Php Security
Intro to Php SecurityDave Ross
 
Panmind at Ruby Social Club Milano
Panmind at Ruby Social Club MilanoPanmind at Ruby Social Club Milano
Panmind at Ruby Social Club MilanoPanmind
 

Similar to Hacker Test Levels (20)

Flash Widget Tutorial
Flash Widget TutorialFlash Widget Tutorial
Flash Widget Tutorial
 
Website Hacking Oldie
Website Hacking OldieWebsite Hacking Oldie
Website Hacking Oldie
 
Behat - Drupal South 2018
Behat  - Drupal South 2018Behat  - Drupal South 2018
Behat - Drupal South 2018
 
Seven Reasons for Code Bloat
Seven Reasons for Code BloatSeven Reasons for Code Bloat
Seven Reasons for Code Bloat
 
Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017Leveling up your JavaScipt - DrupalJam 2017
Leveling up your JavaScipt - DrupalJam 2017
 
Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2Uazaa uma-farsa-parte 2
Uazaa uma-farsa-parte 2
 
Malware analysis
Malware analysisMalware analysis
Malware analysis
 
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
5 年後還是新手 - WordPress Plugin 開發大冒險 - GOTY
 
AFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack EncoreAFUP Lorraine - Symfony Webpack Encore
AFUP Lorraine - Symfony Webpack Encore
 
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)Debugging - Figuring it out yourself (WordCamp Dublin 2019)
Debugging - Figuring it out yourself (WordCamp Dublin 2019)
 
Kioptrix 2014 5
Kioptrix 2014 5Kioptrix 2014 5
Kioptrix 2014 5
 
Ruby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start UpRuby on Rails - The Best Track for your Start Up
Ruby on Rails - The Best Track for your Start Up
 
PHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source ProjectPHP SA 2014 - Releasing Your Open Source Project
PHP SA 2014 - Releasing Your Open Source Project
 
Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)Secure Software: Action, Comedy or Drama? (2017 edition)
Secure Software: Action, Comedy or Drama? (2017 edition)
 
What Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 AppsWhat Web Developers Need to Know to Develop Windows 8 Apps
What Web Developers Need to Know to Develop Windows 8 Apps
 
Building a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profitBuilding a Single Page Application using Ember.js ... for fun and profit
Building a Single Page Application using Ember.js ... for fun and profit
 
7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time7 Tips on Getting Your Theme Approved the First Time
7 Tips on Getting Your Theme Approved the First Time
 
Intro to Php Security
Intro to Php SecurityIntro to Php Security
Intro to Php Security
 
Client side
Client sideClient side
Client side
 
Panmind at Ruby Social Club Milano
Panmind at Ruby Social Club MilanoPanmind at Ruby Social Club Milano
Panmind at Ruby Social Club Milano
 

More from Andi Master Hiyperterminal (7)

Windows shutdown virus source code c++
Windows shutdown virus source code c++Windows shutdown virus source code c++
Windows shutdown virus source code c++
 
Program investasi (MUST READ)
Program investasi (MUST READ)Program investasi (MUST READ)
Program investasi (MUST READ)
 
Fiber optik
Fiber optikFiber optik
Fiber optik
 
Dasar plc ( Ladder Language )
Dasar plc ( Ladder Language )Dasar plc ( Ladder Language )
Dasar plc ( Ladder Language )
 
Cover
CoverCover
Cover
 
Binahong
BinahongBinahong
Binahong
 
Contoh Jual beli lelang
Contoh Jual beli lelangContoh Jual beli lelang
Contoh Jual beli lelang
 

Recently uploaded

BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdfBASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdfSoniaTolstoy
 
Web & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfWeb & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfJayanti Pande
 
JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...
JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...
JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...anjaliyadav012327
 
Separation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesSeparation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesFatimaKhan178732
 
The basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxThe basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxheathfieldcps1
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxSayali Powar
 
1029 - Danh muc Sach Giao Khoa 10 . pdf
1029 -  Danh muc Sach Giao Khoa 10 . pdf1029 -  Danh muc Sach Giao Khoa 10 . pdf
1029 - Danh muc Sach Giao Khoa 10 . pdfQucHHunhnh
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Krashi Coaching
 
Student login on Anyboli platform.helpin
Student login on Anyboli platform.helpinStudent login on Anyboli platform.helpin
Student login on Anyboli platform.helpinRaunakKeshri1
 
Beyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactBeyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactPECB
 
Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...
Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...
Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...fonyou31
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptxVS Mahajan Coaching Centre
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introductionMaksud Ahmed
 
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Sapana Sha
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)eniolaolutunde
 
Russian Call Girls in Andheri Airport Mumbai WhatsApp 9167673311 💞 Full Nigh...
Russian Call Girls in Andheri Airport Mumbai WhatsApp  9167673311 💞 Full Nigh...Russian Call Girls in Andheri Airport Mumbai WhatsApp  9167673311 💞 Full Nigh...
Russian Call Girls in Andheri Airport Mumbai WhatsApp 9167673311 💞 Full Nigh...Pooja Nehwal
 

Recently uploaded (20)

BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdfBASLIQ CURRENT LOOKBOOK  LOOKBOOK(1) (1).pdf
BASLIQ CURRENT LOOKBOOK LOOKBOOK(1) (1).pdf
 
Web & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdfWeb & Social Media Analytics Previous Year Question Paper.pdf
Web & Social Media Analytics Previous Year Question Paper.pdf
 
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
Mattingly "AI & Prompt Design: Structured Data, Assistants, & RAG"
 
JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...
JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...
JAPAN: ORGANISATION OF PMDA, PHARMACEUTICAL LAWS & REGULATIONS, TYPES OF REGI...
 
Separation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and ActinidesSeparation of Lanthanides/ Lanthanides and Actinides
Separation of Lanthanides/ Lanthanides and Actinides
 
Mattingly "AI & Prompt Design: The Basics of Prompt Design"
Mattingly "AI & Prompt Design: The Basics of Prompt Design"Mattingly "AI & Prompt Design: The Basics of Prompt Design"
Mattingly "AI & Prompt Design: The Basics of Prompt Design"
 
The basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptxThe basics of sentences session 2pptx copy.pptx
The basics of sentences session 2pptx copy.pptx
 
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptxPOINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
POINT- BIOCHEMISTRY SEM 2 ENZYMES UNIT 5.pptx
 
1029 - Danh muc Sach Giao Khoa 10 . pdf
1029 -  Danh muc Sach Giao Khoa 10 . pdf1029 -  Danh muc Sach Giao Khoa 10 . pdf
1029 - Danh muc Sach Giao Khoa 10 . pdf
 
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
Kisan Call Centre - To harness potential of ICT in Agriculture by answer farm...
 
Student login on Anyboli platform.helpin
Student login on Anyboli platform.helpinStudent login on Anyboli platform.helpin
Student login on Anyboli platform.helpin
 
Beyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global ImpactBeyond the EU: DORA and NIS 2 Directive's Global Impact
Beyond the EU: DORA and NIS 2 Directive's Global Impact
 
Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...
Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...
Ecosystem Interactions Class Discussion Presentation in Blue Green Lined Styl...
 
Advance Mobile Application Development class 07
Advance Mobile Application Development class 07Advance Mobile Application Development class 07
Advance Mobile Application Development class 07
 
INDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptx
INDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptxINDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptx
INDIA QUIZ 2024 RLAC DELHI UNIVERSITY.pptx
 
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions  for the students and aspirants of Chemistry12th.pptxOrganic Name Reactions  for the students and aspirants of Chemistry12th.pptx
Organic Name Reactions for the students and aspirants of Chemistry12th.pptx
 
microwave assisted reaction. General introduction
microwave assisted reaction. General introductionmicrowave assisted reaction. General introduction
microwave assisted reaction. General introduction
 
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111Call Girls in Dwarka Mor Delhi Contact Us 9654467111
Call Girls in Dwarka Mor Delhi Contact Us 9654467111
 
Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)Software Engineering Methodologies (overview)
Software Engineering Methodologies (overview)
 
Russian Call Girls in Andheri Airport Mumbai WhatsApp 9167673311 💞 Full Nigh...
Russian Call Girls in Andheri Airport Mumbai WhatsApp  9167673311 💞 Full Nigh...Russian Call Girls in Andheri Airport Mumbai WhatsApp  9167673311 💞 Full Nigh...
Russian Call Girls in Andheri Airport Mumbai WhatsApp 9167673311 💞 Full Nigh...
 

Hacker Test Levels

  • 1. I hear about this site www.hackertest.net from my friend, this site have puzzle to solve to enter to the next level. So this is the answer of level i pass, but i stuck at level 20. Is there level 21? The tool to pass all level only text editor and GIMP, maybe above level 20 are the real hacker test :-) ———————— level 1 http://www.hackertest.net/ Password:null From— view page source <script language=JavaScript> { var a=—null—; function check() { if (document.a.c.value == a) { document.location.href=—http://www.hackertest.net/—+document.a.c.va lue+—.htm—; . . . ———————— level 2 http://www.hackertest.net/null.htm Password:l3l From— view page source <script language=—JavaScript— type=—text/javascript—> var pass, i; pass=prompt(—Please enter password!—,—"); if (pass==—l3l—) { window.location.href=—http://www.hackertest.net/—+pass+—.htm—; . . . ———————— level 3 http://www.hackertest.net/l3l.htm Password:#000000 From— view page source <body onload=javascript:pass(); alink=—#000000?> <SCRIPT LANGUAGE=—JavaScript—> function pass() { var pw, Eingabe; pw=window.document.alinkColor; Eingabe=prompt (—Please enter password—); if (Eingabe==pw) { window.location.href=String.fromCharCode(97,98,114,97,101)+—.htm—; . . . ———————— level 4 http://www.hackertest.net/abrae.htm ————————
  • 2. level 5 http://www.hackertest.net/sdrawkcab.htm Password:SAvE-as hELpS a lOt From— view page source <script language=JavaScript> var pass, i; pass=prompt(—Password: —,—"); if (pass==—SAvE-as hELpS a lOt—) { window.location.href=—save_as.htm—; . . . ———————— level 6 http://www.hackertest.net/save_as.htm Password:hackertestz From— view page source <SCRIPT SRC=—psswd.js— LANGUAGE=—JavaScript— type=—text/javascript—></script> Open http://www.hackertest.net/psswd.js <!— var pass; pass=prompt(—Password:—,—"); if (pass==—hackertestz—) { window.location=—included.htm—; . . . ———————— level 7 http://www.hackertest.net/included.htm Username:phat Password:jerkybar3 From— view page source <body bg=—images/included.gif—> Open http://www.hackertest.net/images/included.gif ———————— level 8 http://www.hackertest.net/pwd2.php Username:zadmin Password:stebbins From— view page source <form action=phat.php method=post> Open http://www.hackertest.net/phat.php <BODY BGCOLOR=—ffffff— TEXT=—000000? BG=—images/phat.gif—> Open http://www.hackertest.net/images/phat.gif the result is —Look for a .PhotoShopDocument!— => PSD Download http://www.hackertest.net/images/phat.psd Open phat.psd using photoshop or gimp
  • 3. Hide another layers, only show Background and DEMO DEMO DEMO DEMO ———————— level 9 http://www.hackertest.net/phat.php Form— view page source <!—————————————————————- —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————— Password: Z2F6ZWJydWg= add a page extention to that ———————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————————————————— —————————— > Decode Z2F6ZWJydWg= (base 64 to text), using online tools like: - http://ostermiller.org/calc/encode.html - http://webnet77.com/cgi-bin/helpers/base-64.pl - http://www.opinionatedgeek.com/dotnet/tools/Base64Decode/Default.as px - http://www.motobit.com/util/base64-decoder-encoder.asp - etc. The result : gazebruh ———————— level 10 http://www.hackertest.net/gazebruh.php Password:shackithalf From— view page source <td width=—100%—><font size=—2? face=—Tahoma—><i>S</i>treet Korner is your own online <i>hack</i>er simulation. W<i>it</i>h over 100 levels that require
  • 4. different skills to get to another step of the game, this new real-life immitation will <i>h</i>elp you advance your security knowledge. This site will help you improve your JavaScript, PHP, HTML and graphic thinking in <i>a</i> fun way that will entertain any visitor! Have a spare minute? Log on! Each level wil<i>l</i> provide you with a new, harder clue to find a way to get to another level. Only <i>f</i>ew people have gotten to the end of the maze— Will you crack this site?</font></td> The italic tag S-hack-it-h-a-l-f = shackithalf ———————— level 11 http://www.hackertest.net/gazebruh.php From— hidden text, using Ctrl+A you can find clue —Level 11: rofl.php— ———————— level 12 http://www.hackertest.net/rofl.php From— view page source <meta name=—robots— content=—goto: clipart.php—> ———————— level 13 http://www.hackertest.net/clipart.php From— view page source <meta name=—clue— content=—use graphic software—> . . . <img border=—0? src=—images/logo.jpg— width=—300? height=—145?></td> . . . View http://www.hackertest.net/images/logo.jpg, and zoom it, you can find puta.php View page source http://www.hackertest.net/puta.php <meta name=—clue— content=—use graphic software—> . . . <td width=—100%— height=—267? valign=—top—><b><font size=—7? face=—Arial—><img src=—images/lvl13.gif—></font></b><p>&nbsp;</p> . . . View http://www.hackertest.net/images/lvl13.gif, and zoom it, you
  • 5. can find 4.xml In http://www.hackertest.net/4.xml, you can find 4xml.php ———————— level 14 http://www.hackertest.net/4xml.php From— view page source <meta name=—clue— content=—use graphic software—> . . . <img src=—images/bidvertiser.gif—> . . . View http://www.hackertest.net/images/bidvertiser.gif using GIMP, you can find text TOTALLY!!! php ———————— level 15 http://www.hackertest.net/totally.php From— Since you still have your photoshop open, check this out: images/pass2level16.jpg << good luck with it! Open http://www.hackertest.net/images/pass2level16.jpg, nothing => unavailable ———————— level 16 http://www.hackertest.net/unavailable/ From— view page source UNAVAILABLE <!— level 17: /images— —> Visit http://www.hackertest.net/unavailable/images View page source <body background=—bg.jpg—> Download bp.jpg, open with text editor, you can find Ducky.php ———————— level 17 http://www.hackertest.net/unavailable/Ducky.php Password: your IP address You can find your IP address, using online tool, such as: - http://whatismyipaddress.com/ - http://www.ip2location.com/ - etc. After login then view page source— <b>Warning</b>: Cannot modify header information — headers already sent by (output started at /home/hackert/public_html/unavailable/Ducky.php:11) in <b>/home/hackert/public_html/unavailable/Ducky.php</b> on line
  • 6. <b>58</b><br /> ../level18.shtml . . . ———————— level 18 http://www.hackertest.net/level18.shtml Scroll to bottom of page, you can find — $pass) { $errormsg=$msg; show_login_page($errormsg); exit(); } else { setmycookie(); } } else { if ($_COOKIE[$cookiename]<>$pass) { show_login_page($errormsg); exit(); } else { // do nothing } } ?> /level19.shtml << told ya to think like a n00b!!! ———————— level 19 http://www.hackertest.net/level19.shtml From— view page source . . . <td width=—100%— background=—images/level20_pass.gif—> . . . View http://www.hackertest.net/images/level20_pass.gif using GIMP, you can find text —gazebruh2? ———————— level 20 http://www.hackertest.net/gazebruh2.htm In the page you can see 1. hex.gif contain: —436f6e67726174756c6174696f6e732532312b596f752b686176652b7061737365 642b746f2b6c6576656c2b31302e2b486572652532432b7468696e67732b6265636 f6d652b6d7563682b6d6f72652b6469666663756c742b2533422d2532395b486f70 652b796f752b6765742b7468726f7567682532312b456e6a6f792e— if you decode it, the message —Congratulations% 21+You+have+passed+to+level+10.+Here% 2C+things+become+much+more+diffcult+%3B-%29[Hope+you+get+through% 21+Enjoy.— 2. some character: VldwSk5Gb3lVa2hQUjJSclRUSlJlbFJITlU5TlIwNTBWbTE0YTFJelVqSlpNakF4WWt kT2NFNVlWbUZYUmtZeVYycEtTbG95U25SUFZFNU5Xbm93T1QwOT09 if you decode it (base 64) 4 times, the message —Go to
  • 7. www.streetkorner.net/gb now.” 3. using Ctrl+A, you find ^^^^^^^^^^ Change domain, add ”22332? at the end, reach it and then get hold of ” ^^^^^^^^^^ So my experiment end at http://www.hackertest.net/gb22332/ to reach level 21, if it is exists :-)