Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
In this lab, you will analyze the website of a fictional casino called Casino Royale, whose implementation shows unusual behavior in how it handles internal files. It is suspected to be vulnerable to Local File Inclusion (LFI).
Your mission is to identify how the site interacts with its resources and assess whether its structure can be exploited to access sensitive information from the server.
Follow these instructions to get started:
1 https://storage.googleapis.com/cybersecurity-machines/casino-lab.ova
You may consider using the following tools during your investigation:
Remember: not every included file was meant to be seen.
Happy hacking!
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration
Difficulty
intermediate
Average duration
2 hrs
Technologies
linux
cybersecurity
red team
LFI
owasp-a05-security-misconfiguration