PlayerTwo write-up from limbernie

This has got to be one of the hardest box I've attempted because of the heap exploitation.

https://hackso.me/player2-htb-walkthrough/

limbernie
Write-ups | Discord - limbernie#0386

Comments

  • Awesome write up - as always!

    This box nearly broke me. It started off hard and every single step got harder. Love the clarity around how you've described the final exploit - mine was a total mess as I tried all kinds of stupid things!

    TazWake

    Note: https://www.nohello.com/

    Happy to help people but PLEASE explain your problem in as much detail as possible! If you say vague things like "It's not working", I cant help. This isn't Twitter so my DMs are always open.

  • Well Done!)

    tabacci

  • Fine exploit for root but I would use ssh for remote exploitation.
    You already have ssh key at this moment and ssh doesn't demand upload and use socat.

Sign In to comment.