This is the first of five "flags" of 2018 Bad Santa Hacker's Adventure Joe's Addition. A flag in this adventure is an itemn on Bad Santa's list. You will go through a series of hacker challenges led by Bad Santa himself! To get the most out of this game, it is best to have OWASP ZAP installed and be using Firefox with the Cookie-Editor extension.

CWE-200: Information Exposure
One of the mistakes made by many web programmers is unintentionally revealing sensitive information that can lead to a breach. See what sensitive information you can find that will allow you to capture flag 1.

To begin, try guessing the password using the form below.


Bad Santa's Christmas List:

  1. __________
  2. __________
  3. __________
  4. __________
  5. __________