codem-chat Category: Web / Forensics / Reverse Engineering File Provided: codem-chat.rar 1. Initial Reconnaissance
Examine the "private chat" feature. Can a user view messages from a room they aren't invited to by manipulating the roomID ? 3. Exploitation Path codem-chat.rar
Install the unrar utility via sudo apt install unrar and use unrar x codem-chat.rar . codem-chat Category: Web / Forensics / Reverse Engineering
Use The Unarchiver or the brew command brew install unrar . codem-chat.rar
If the chat allows "file sharing," try to fetch /etc/passwd or the flag file using ../../flag.txt . 4. Conclusion & Flag