done
can someone PM me on intial foothold, which previous box is this like?
and me,pls
I know what I need to do in order to get root. Well, at least, I think I do. The problem is that the .exe I needed used to be there. But now itās not. Iāve used this .exe earlier on but I canāt seem to find it anywhere now. Thereās a shortcut for it on the desktop but itās not in the location where that shortcut is pointing. Any ideas?
@Mapperist said:
I know what I need to do in order to get root. Well, at least, I think I do. The problem is that the .exe I needed used to be there. But now itās not. Iāve used this .exe earlier on but I canāt seem to find it anywhere now. Thereās a shortcut for it on the desktop but itās not in the location where that shortcut is pointing. Any ideas?
I got stuck on this for days dude. Try not to focus too hard on the .exe itself, but what it could create. As soon as I realised this I had root.txt instantly.
@ashishjv1 said:
@ashishjv1 said:
@Seepckoa said:
@mxchai said:
Would be nice if someone could PM me about the initial foothold. I have no idea what to do except testing the web app, of which I found only XSS.Thanks!
You need to do a little enumeration at the login level, we could inject what in a login page ?
i pretty much get what i need to do but the usernames taken * all of it *
Need to wait for my turn i guess !
Took me 2 days just to find xxxx.exe . Did someone mess up with the file or was it intentionally kept there ?
Rooted !
You didnāt even need to find āITā, you could of accessed it from anywhere.
@DataPush3r said:
@ashishjv1 said:
@ashishjv1 said:
@Seepckoa said:
@mxchai said:
Would be nice if someone could PM me about the initial foothold. I have no idea what to do except testing the web app, of which I found only XSS.Thanks!
You need to do a little enumeration at the login level, we could inject what in a login page ?
i pretty much get what i need to do but the usernames taken * all of it *
Need to wait for my turn i guess !
Took me 2 days just to find xxxx.exe . Did someone mess up with the file or was it intentionally kept there ?
Rooted !
You didnāt even need to find āITā, you could of accessed it from anywhere.
Is there a way to access it from anywhere ? If Yes, Could you PM Me ?
2 days to find that ****.exe?
Takes only minutes with the right dir commandā¦
@quadzer0 said:
2 days to find that ****.exe?Takes only minutes with the right dir commandā¦
Yup ! I fell for the .lnk trap ā¦
Hey guys, anyone else having trouble having a persistent shell (user level)? Mine drops everytime after about 20 seconds. Not sure what Iām doing wrong
Iām having the same problem @Elios, iāve tried different shells
@Elios said:
Hey guys, anyone else having trouble having a persistent shell (user level)? Mine drops everytime after about 20 seconds. Not sure what Iām doing wrong
same hereā¦
never once seen the shell drop on this box. Donāt know what your doing, but I used multiple different shells, and none dropped. I did get a couple hangs, but it was because I was doing stuff to hang it, while experimenting
kudos to this box fun oneā¦ PM for nudges ā¦
@stahaa said:
@Elios said:
Hey guys, anyone else having trouble having a persistent shell (user level)? Mine drops everytime after about 20 seconds. Not sure what Iām doing wrongsame hereā¦
try different shells for starters and see how they behave
@w31rd0 said:
@sysTester said:
@Elios said:
Hey guys, anyone else having trouble having a persistent shell (user level)? Mine drops everytime after about 20 seconds. Not sure what Iām doing wrongsame hereā¦
try different shells for starters and see how they behave
hmmā¦ i am gonna try, thanks
@stahaa said:
@w31rd0 said:
@stahaa said:
@Elios said:
Hey guys, anyone else having trouble having a persistent shell (user level)? Mine drops everytime after about 20 seconds. Not sure what Iām doing wrongsame hereā¦
try different shells for starters and see how they behave
hmmā¦ i am gonna try, thanks
i had quite a few unstable shells at some pointā¦ but one method i used was quire stable after allā¦
so maybe reset if you see no difference after all
@Elios said:
Hey guys, anyone else having trouble having a persistent shell (user level)? Mine drops everytime after about 20 seconds. Not sure what Iām doing wrong
There might be a script that deletes files you upload after a certain time?
i got the initial credential but now i am stuck. how do i get reverse shell. Please give some hints : (