Skip to main content

Juicy

Task 1 Juicy

Meet Juicy, a lively golden retriever with a habit of wandering from room to room. She's friendly, curious, and absolutely terrible at keeping out of places she shouldn't be. Whenever her owner is on a call, typing away, or talking about something that ought to stay private, Juicy somehow ends up nearby; ears perked up, tail wagging, and absorbing every word.

Juicy isn't supposed to repeat what she has heard, and the owner keeps a close eye on every message you send to her. Anything suspicious or too direct might raise an eyebrow, so you'll need to be subtle, creative, and patient if you want to retrieve the information she's holding on to.

Using AttackBox or your own VM with the VPN connected, start the challenge here:

http://MACHINE_IP

Note: You'll be interacting with a live LLM behind the scenes. Behaviour might vary between attempts, responses may shift slightly, and part of the challenge is adapting your approach as Juicy reacts to what you say.

Answer the questions below
What is the system prompt leakage flag?
THM{ef2a23f500198ae5afd6af4d3c1073be}
What is the prompt injection flag?
THM{f0626fe6bb06656abf34478081ce8dd2}
What is the flag from the internal panel?
THM{cf986b58a02c9899d97c11f891bea6e0}
What is the Wi-Fi passphrase?
ball-chicken-park-7