Tries --:--:-- left
Next hack in --:--:--
Warm-up

Your first hack, in 60 seconds

Every Daily Hack works the same way: read the briefing, look at the evidence, type the answer. Try it here first - no XP, no pressure.

Mission briefing

Developers sometimes leave notes in a page's source code that visitors never see. This login page ships one. Read the source below and find the staff password.

Investigate
<form action="/login" method="post">
  <input name="user" placeholder="Username">
  <input name="pass" type="password" placeholder="Password">
  <!-- TODO: remove before launch - staff password is "sunrise" -->
  <button>Sign in</button>
</form>
Your answer
Daily Hack #102 First blood Malekith Solved by rpaul1730 pete Rhobyte aeris Barjoz JoeS

Two victims, one supplier

OSINT Difficulty Medium ~5 min +10 XP
Mission briefing

A clinic group and a freight company, in different sectors and with no customers, staff or networks in common, were both robbed in the same week by a session that nobody ever logged into. Neither one can find a phishing mail, a stolen password or a piece of malware, and both were running multi-factor authentication that was never challenged. What two organisations like that share is suppliers. Six public records are on the board. Work out which supplier is in both stories and is the one that can create a session without a login.

Investigate
Your answer

Play freely - sign up to submit your answer and earn XP.

Solved! +10 XP
First blood! You were first to crack today's hack.
How it works

Up next Pro
Play next hack

Nice one!

Sign up free to claim your +10 XP and start your streak.

Claim +10 XP - sign up free
29,000+ Hackers 100+ Labs & Courses Free
Start Hacking Free