Whispers of the Moonbeam
Personal Rating: Very Easy
We start off with a website.


This immediately looks like OS Command injection since the ls
command is likely executed with the "gossip" command. A very simple OS command injection was sufficient to get the flag:

Last updated