Tuesday, October 30, 2012

OverTheWire Wargame "Natas" Level 3 [How-To/Web]

After breaking Level 2 with some knowledge of how web servers hold their data, we move on to Level 3 which presents us with the same page as level 2:

Doing the same thing as the other levels, we view the source and see this:

Not even Google will find it? What does that mean?
Well, if you didn't already know, there are files on web servers called "robots.txt" which tell searches such as Google where not to store information about. Google has one that we can view here. It's pretty much a directory listing of certain stuff that the website wants to keep a "secret" from searches.

After knowing this, lets see if this website has a robots file by going to the URL/robots.txt
User-agent: *
Disallow: /s3cr3t/
 So we can now see the website wants to disallow the parsing of the /s3cr3t/ folder... so lets just go straight TO that folder.

Bam, users.txt again. Opening it up we can see:

Which authenticate us to Level 4.


  1. Your site is very informative and your articles are wonderful.web design tips

  2. this is really nice and effective blog, i found lots of information in this blog and sites for commenting is best.Very nice I like a lot of these topics... Packers and Movers Kolkata

  3. All you have to do is add more content about this information becasue we all acutally want to know more about this
    ||Happy Weels Game at happy wheels||
    ||Fireboy and lavagirl game online at fireboywatergirl.co||
    ||Happy Wheelshappywheels.in||
    ||happy wheels gamehappy wheels game||