Skip to content

No Sql Injection

Resource

Creds: \ email: picoplayer355@picoctf.org password: {"$ne":"wrong"}

After logging in as Admin, check Session storage for token and decode (b64) it