Oouch

As there is still no page for Oouch, I guess I’ll create one…

that waf is really annoying when you have something running in the background that throws different kinds of payloads against the box ?

So no owns - no resets and so rating on the box… A little Weird for me lol

It’s listed as a hard box - they normally take 4 - 5 hours before first blood. Looks like it’s had a few resets though.

we’re barely 2 hours in and if this is anything like qtcs other box, it’s gonna be a while before someone draws blood :stuck_out_tongue:
i’ve got an idea or two about what might be going on, but nothing useful so far
edit: ayyyyy it helps if you can read. i missed something very obvious that i’ve been searching for all the time :expressionless:

Yoo, what’s going on with the graphical thing on Oouch profile in HTB, there is a dot in the center and it is not going anywhere lool

port 80** doesn’t show anything or its just me?

@thecowmilk said:

Yoo, what’s going on with the graphical thing on Oouch profile in HTB, there is a dot in the center and it is not going anywhere lool

That is how all boxes are shown before a few people have rooted the box :smile:

I am authorized in multiple places. Trying to make them work together.

Ahhh I see…

Was anyone able to register and login lol?

obviously^

Close to getting something but one particular thing I need is disabled. Very annoying

I see a possible vuln, but the WAF does not seem to like my attempts at all…

Type your comment> @Maddzie said:

obviously^

bruh lol I can’t…

“Internal Server Error” bruh

Authorized everywhere, cant seem to pass the code 500 Server error :confused:

Type your comment> @bertalting said:

Authorized everywhere, cant seem to pass the code 500 Server error :confused:

Me too…

I see a possible vuln, but the WAF does not seem to like my attempts at all…

Got a response… Now trying to get something useful…

get middleware tokens but dont know what to do with it