Reset Jim's Password
Difficulty: ๐๐๐
Description: Reset Jim's password via the Forgot Password mechanism with the original answer to his security question.
Category: Broken Authentication
Tags: OSINT
Solution:
Go to Forgot Password, use jim@juice-sh.op as email, and optionally enter the answer. This will throw Wrong answer to security question.

Open Burp Suite โ Proxy โ HTTP History and find POST /rest/user/reset-password, send it to repeater

Send it to intruder, click clear ยง, add ยง to value off answer:

Go to payload, search Google for a list of common names and load that list to payload options

Go to options โ Grep - Extract and Add Wrong answer to security question.

Click start attack and wait for the successful attack, find the status 200

Yeh his middle name is Samuel, use it to reset the password, we got this challenge