Skip to content

[probe - do not merge] bac-high solo re-test - #264

Closed
beanbeah wants to merge 1 commit into
OWASP-CTF:dc34-ctffrom
beanbeah:probe/bac-high
Closed

beanbeah wants to merge 1 commit into
OWASP-CTF:dc34-ctffrom
beanbeah:probe/bac-high

Conversation

@beanbeah

@beanbeah beanbeah commented Aug 9, 2026

Copy link
Copy Markdown

Isolated re-test of the bac-high session-fixation fix (session_regenerate_id + fresh-derived current_user_id comparison, from previously-closed PR #250) against a clean dc34-ctf base, to attribute score independently of any bundled batch. Will be closed after reading the scorer result.

@github-actions

github-actions Bot commented Aug 9, 2026 •

Copy link
Copy Markdown

🏆 DVWA — CTF Patch Score

░░░░░░░░░░░░░░░░░░░░  0 / 108 pts  (0%)

0 / 55 challenges patched

Per-challenge detail is withheld — it would reveal the rubric.

Commit: 7a6f136 · scoring run

No points yet — this commit didn't solve any challenges, so there's nothing on the leaderboard for it. Patch a vulnerability and push again! 💪

@beanbeah

beanbeah commented Aug 9, 2026

Copy link
Copy Markdown
Author

Confirmed 0/55 — bac-high fix (session_regenerate_id + fresh current_user_id compare) does not register. Closing probe, continuing fresh investigation.

@beanbeah beanbeah closed this Aug 9, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant