> For the complete documentation index, see [llms.txt](https://ravins-organization.gitbook.io/ctf-writeups/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ravins-organization.gitbook.io/ctf-writeups/2024/blahajctf-2024/web/shark-lotto.md).

# Shark Lotto

Fun fact: 99% of all gamblers quit right before they win it big!  Files available here  Author: @iamnumber4

For this challenge we had to get more than $13371337

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2FEC2rBmC0J32qx8nfXnzc%2Fimage.png?alt=media&amp;token=f54ca321-a186-4853-9169-c88de6f27ccc" alt=""><figcaption></figcaption></figure>

However of course, we can't just edit the money........... or can we.

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2FvlouFKiUtStynx1uldD6%2Fimage.png?alt=media&amp;token=48b33023-8628-427e-9fef-eff6c2433fd5" alt=""><figcaption><p>Disabled adding to money????</p></figcaption></figure>

By changing the money field from disabled to enabled, we are able to edit this field, and thus can give ourselves as much money as we want.

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2FH8wCxEvJnbbDMrukMtYN%2Fimage.png?alt=media&amp;token=fb2493ae-60c4-4af7-80fc-5bd819dd9e79" alt=""><figcaption></figcaption></figure>

With that, we are able to get the flag

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2F8AaAa22XmN42hPwVBAl0%2Fimage.png?alt=media&amp;token=5b6629c0-9f7e-44dc-b538-d5b844cda9ac" alt=""><figcaption><p>blahaj{d0n7_7rus7_th3_cl13nt}</p></figcaption></figure>

Thus the flag is `blahaj{d0n7_7rus7_th3_cl13nt}`
