Sammangi Gowtam Pratap Kumar
2nd place
13930 points
Awards
Hint 46
hints
Hint for Frontend Typosquatting
-100
Hint 44
hints
Hint for Forgotten Developer Backup
-70
Hint 91
hints
Hint for Bonus Payload
-10
Hint 30
hints
Hint for DOM XSS
-10
Hint 23
hints
Hint for Admin Section
-25
Hint 64
hints
Hint for Outdated Allowlist
-10
Solves
| Challenge | Category | Value | Time |
| Leaked Access Logs | Sensitive Data Exposure | 1000 | |
| Supply Chain Attack | Vulnerable Components | 1000 | |
| Vulnerable Library | Vulnerable Components | 700 | |
| Legacy Typosquatting | Vulnerable Components | 700 | |
| Access Log | Sensitive Data Exposure | 700 | |
| Privacy Policy Inspection | Security through Obscurity | 450 | |
| Blockchain Hype | Security through Obscurity | 1000 | |
| Login Support Team | Security Misconfiguration | 1350 | |
| Login Bjoern | Broken Authentication | 700 | |
| Bjoern's Favorite Pet | Broken Authentication | 450 | |
| Password Strength | Broken Authentication | 250 | |
| Extra Language | Broken Anti Automation | 1000 | |
| SSRF | Broken Access Control | 1350 | |
| Exposed Metrics | Sensitive Data Exposure | 100 | |
| Confidential Document | Sensitive Data Exposure | 100 | |
| DOM XSS | XSS | 100 | |
| Bonus Payload | XSS | 100 | |
| Bully Chatbot | Miscellaneous | 100 | |
| Login Amy | Sensitive Data Exposure | 450 | |
| Forged Review | Broken Access Control | 450 | |
| GDPR Data Erasure | Broken Authentication | 450 | |
| Forged Feedback | Broken Access Control | 450 | |
| View Basket | Broken Access Control | 250 | |
| Five-Star Feedback | Broken Access Control | 250 | |
| Error Handling | Security Misconfiguration | 100 | |
| Admin Section | Broken Access Control | 250 | |
| Privacy Policy | Miscellaneous | 100 | |
| Login Admin | Injection | 250 | |
| Unlock Individual Challenges | Unlock | 5 |