Hawk

so brute force is the answer? I haven’t had any luck if it is…

fun box

I found a tool in a repository, but I’m not sure if that’s the right tool as I’ve tried. Probably doing something wrong (wrong flags, wordlist)

i’m enum everthing but still have no idea how to find pass for user : d***** ?

any pointers on the wordlist? tried the usuals but nothing yet

@giido said:
any pointers on the wordlist? tried the usuals but nothing yet

maybe the cipher is wrong?

@giido said:
any pointers on the wordlist? tried the usuals but nothing yet

same boat

me too no idea

any clues on priv escalation? I can see a DB running as root, but not sure if that’s right or how to proceed

any hint on wordlist pls?

@mrh4sh
very nice box, I enjoyed it a lot.

Anyone have any hints for privesc?

@lahirukkk said:
any hint on wordlist pls?

Like @Parttimesecguy said , Maybe the cipher is wrong… simple wordlists are fine

@xMagass said:

@retr090 said:
any hint on wordlist pls?

Like @Parttimesecguy said , Maybe the cipher is wrong… simple wordlists are fine

As you said cipher is wrong. got the password now. Thanks :smiley:

never mind i got the shell :smiley:

@lahirukkk said:

@xMagass said:

@lahirukkk said:
any hint on wordlist pls?

Like @Parttimesecguy said , Maybe the cipher is wrong… simple wordlists are fine

As you said cipher is wrong. got the password now. Thanks :smiley:

Did you go through a lot of ciphers? There are so many to try… :wink:

@NinjaRockstar said:

@lahirukkk said:

@xMagass said:

@lahirukkk said:
any hint on wordlist pls?

Like @Parttimesecguy said , Maybe the cipher is wrong… simple wordlists are fine

As you said cipher is wrong. got the password now. Thanks :smiley:

Did you go through a lot of ciphers? There are so many to try… :wink:

You have the time i think :wink: but google may help

@Waffles said:
Anyone have any hints for privesc?

Think out of the box!

I have run all the hash types through rockyou without success. Any hints towards a viable wordlist?

@ralphyz said:
I have run all the hash types through rockyou without success. Any hints towards a viable wordlist?

If you do it the right way rockyou will be enough.