Shafrira Goldwasser
Last updated
Last updated
Shafrira Goldwasser (Hebrew: שפרירה גולדווסר; born 1959) is an Israeli-American computer scientist and winner of the Turing Award in 2012. She is the RSA Professor of Electrical Engineering and Computer Science at Massachusetts Institute of Technology; a professor of mathematical sciences at the Weizmann Institute of Science, Israel; the director of the Simons Institute for the Theory of Computing at the University of California, Berkeley; and co-founder and chief scientist of Duality Technologies.
Chal: I asked ChatGPT to make this webapp but I couldnt prove it was secure. In honor of this Turing Award winner, prove it is insecure by returning the flag.
The website let’s us choose a Cyber Heroine and read their biography. The most probable attack vector seems SQLi.
It is also vulnerable to command injection. We can use the following payload to list the files in the directory:
The flag is in the root directory of the server
To read the flag.txt
contents we can use the follwing CURL
command