OWASP/iGoat-Swift

Runtime Brute Force Attack / incorrect PIN (spoil inside ! ;)

ddouhine opened this issue · 5 comments

The correct PIN seems to be:
func_validatepin

Which is:
image

But it doesn't work.
image

Tested against the simulator and two real devices (jb and not jb).

Davy

Fixed.... wait for my PR.....

image

This issue has been fixed. @ddouhine Let us know if any more issues. Thanks @masbog

Sorry guys, still not working for me using https://github.com/OWASP/iGoat-Swift/blob/master/iGoat-Swift_v1.0.ipa
Did the ipa had been packaged with the latest changes ?

img_1272

Yes, the IPA needs to be updated ;)
I've just build the app using Xcode and "1181" works well ;)
Thanks guys !

I've updated IPA. All changes should reflect in new binary.