Let's go!
Merry XQLmas
The elves at santa's workshop are excited to bring you this year's xmas gift.
Unfortunately, the elves used an insecure jolly large language model to generate their SQL.
Due to a programming error, santa set his standards too high and you're on the naughty list.
Your task, should you choose to accept it, is to hack the naughty nice list, before midnight xmas eve. (technically anytime works)
Your tasks:
- log in to your user (hint: see xmas card)
- remove yourself from the naughty list (XKCD 327)
- check for presents
Don't worry, there are multiple ways to approach this problem.
- debugging
- SQL injecting (partially working)
- bruteforcing
Easy Mode
URL map hint
Not all URLs listed.
Look around in the site for ideas.
- /gingerbread/users/{name}
SQL hint
SQLite
Try as blank of a password as possible