Tags: web ldap 

Rating:

LDAP injection to brute force the user password hash. More details in the full writeup.

Original writeup (https://infosecwriteups.com/davincictf-web-challenges-writeup-517e77d6fa39).