HyperText Transfer Protocol (HTTP) Leave a Comment / Web Requests A Walk-Through Solving Hack The Box Academy’s Web Requests Module on HyperText Transfer Protocol (HTTP). Objective : To get the flag, start the above exercise, then use cURL to download the file returned by ‘/download.php’ in the server shown above. Target(s): 83.136.253.125:47106 Note: I’m using Pwnbox, so you don’t need to set up a local VM for this. First, we open a terminal that uses the Bash shell. cURL can be used to make basic HTTP request and to download a page or a file, whereas the -0 flag allows us to output the content of the file. The command would look like this : curl -0 http://<target-ip>/download.php Flag captured : HTB{64$!c_cURL_u$3r}