Reset Jim's Password
Difficulty: ๐๐๐
Description: Reset Jim's password via the Forgot Password mechanism with the original answer to his security question.
Category: Broken Authentication
Tags: OSINT
Solution:
Go to Forgot Password
, use jim@juice-sh.op as email, and optionally enter the answer. This will throw Wrong answer to security question.
Open Burp Suite
โ Proxy
โ HTTP History
and find POST /rest/user/reset-password
, send it to repeater
Send it to intruder
, click clear ยง
, add ยง
to value off answer:
Go to payload
, search Google for a list of common names and load that list to payload options
Go to options
โ Grep - Extract
and Add Wrong answer to security question.
Click start attack
and wait for the successful attack, find the status 200
Yeh his middle name is Samuel, use it to reset the password, we got this challenge