Rayhan0x01's Blog

DevOps and AppSec Practitioner

3 June 2022

CA CTF 2022: Exploiting LFR and forging Cookies - Mutation Lab

In this writeup, we’ll go over the web challenge Mutation Lab, rated as medium difficulty in the CyberApocalypse CTF 2022. The solution requires exploiting a local file read vulnerability to steal the cookie signing key and crafting a session cookie for the admin.


Tags :

[ HTB  CA-CTF  ctf  web  cookie-forgery  lfr  cookie-session  directory-traversal  cve-2021-23631  write-up  ]