Alert(1) And Win - A Hack JavaScript Challenge
Alert(1) And Win - A Hack JavaScript Challenge
Written by Lucy Black   
Sunday, 06 October 2013

What's the best way to understand the vulnerabilities in code? Hack it yourself. This is the idea behind Alert(1) and Win  - a set of JavaScript hacking puzzles.

The idea behind Alert(1) And Win is simple. You are shown a function which generates some code using an input parameter. All you have to to is subvert the code so that you execute an Alert(1) function call.

In a "normal" program calling Alert, is not behavior that the original programmer intended as if you can call Alert you can call just about anything!

Here it's a fun challenge to help you hone your coding skills.



The website allows you to enter a name or just get on with trying out your solution. As long as your entry results in legal JavaScript it shows you the result  - both the HTML you generated and what it did - and if you do manage to call Alert(1) you are rewarded and encouraged to move on to the next problem. Of course, the problems are graduated and there is much gnashing of teeth and wailing about problem 13.

There is a leaderboard and there are comments which can give the game away. Don't go below the "Here be spoilers" warning if you want to have an honest attempt. An added complication is that you are challenged to solve the problem in the smallest number of characters.




Some players are thinking outside the box and attempting to hack the leaderboard or some other aspect of the site. Well I suppose if you paint a target on your chest what else can you you expect.?

As a serious point, the challenge does help you think like an attacker and it does demonstrate that accepting any sort of code input is risky. 

So if you have some time to spare give it a try - but be warned it could take more time than you could possibly imagine....



Apple Extends Reach of Its College Coding Curriculum

Apple has announced a global expansion of its Swift app development curriculum to more than 20 colleges and universities outside the US, including Australia's largest higher education institution, RMI [ ... ]

Bug Bounty Bonanza

HackerOne's annual Hack the World Challenge has opened with additional monetary rewards and double points from its sponsors. Google has a new Android App Bug Bounty program on HackerOne and GitHu [ ... ]

More News


Last Updated ( Sunday, 06 October 2013 )

RSS feed of news items only
I Programmer News
Copyright © 2017 All Rights Reserved.
Joomla! is Free Software released under the GNU/GPL License.