Place a record in the database with your name (that clearly identifies you !) concatenated to the end of the magic name and with a score of zero. You can get a hint as to that magic name by finding the worst possible jotto score. If there is a tie find the older record.


Below are all 8 Jotto players who have clearly hacked the game and the database.
lucky.SDL has guessed owasp in 0 guesses on 2012-02-07 04:20:16 lucky.IRSDL has guessed owasp in 0 guesses on 2012-02-07 04:20:31 lucky.IRSDL has guessed IRSDL in 0 guesses on 2012-02-07 04:21:39 lucky.you.are..and.twitter.com.then.IRSDL has guessed IRSDL in 0 guesses on 2012-02-07 04:22:51 luckyArthur has guessed lucky in 0 guesses on 2012-02-07 04:26:52 luckyArthur has guessed yhpxl in 0 guesses on 2012-02-07 04:26:52 luckyTristan has guessed aaaaa in 0 guesses on 2012-02-07 04:44:58 luckyQuentin has guessed aaaaa in 0 guesses on 2012-02-07 04:44:58




The Vicnum project was developed for educational purposes to demonstrate common web vulnerabilities. For comments please visit the OWASP project page.