> For the complete documentation index, see [llms.txt](https://ravins-organization.gitbook.io/ctf-writeups/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ravins-organization.gitbook.io/ctf-writeups/2025/wapt-module-natas/natas-5.md).

# Natas 5

After logging in we see

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2Fl3x6s0jXnVUMwMHFXfPU%2Fimage.png?alt=media&amp;token=c60397a5-f4f2-451a-818d-451cdc41f7cf" alt=""><figcaption></figcaption></figure>

Access disallowed, you are not logged in, so first things first I decided to inspect the webpage.&#x20;

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2FoeQWPgIMBFM1Fu2Pcocd%2Fimage.png?alt=media&amp;token=ee7dc2ec-bde0-42e1-86b9-7f1620ede00f" alt=""><figcaption></figcaption></figure>

Under the Application tab we see loggedin has a value of 0, lets try changing that to 1

<figure><img src="https://175444261-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FyxEI13wXOyST4LLTOUiS%2Fuploads%2FOS3amLusyUN3xsc72hKA%2Fimage.png?alt=media&amp;token=35783d3b-9117-4393-abf7-588f96d1bddc" alt=""><figcaption></figcaption></figure>

And after reloading we can see that the flag is shown

```
Access granted. The password for natas6 is 0RoJwHdSKWFTYR5WuiAewauSuNaBXned
```
