Errr…I’m feeling a bit surprised about the location of the user flag. I was plotting my next step in what I believed to be a much longer game when I sort of stumbled on it.
Regardless, nice box and which taught me a thing or two about a particular method of digging deeper. Thanks!
Neat box. As a general hint, the admin of these machines has a TERRIBLE memory and writes everything down.
Also, you can do the entire maneuver using resources on the boxes. You can tunnel if you want to but there are ways around it. For root, check out the logs to give you an idea of the trick to use to get SSH into doing something it doesn’t normally.
There are approximately six concepts to understand for this machine, making it more complex than most machines.
Been going at this box for 24 hrs now , I’ve “vaulted” over the first hurdle , broke out of Jail and “tunneled” my way to the host on the other side. I’ve tried LFI / RFI and even considered “shocking” the other reachable host but the tool that can do that is just a dummy …
I’m probably going to kick myself at some point but would really appreciate some help with this one …
Got root.txt without getting into Vault (Even before user.txt). I don’t feel it is intended and maybe someone placed it there by mistake while doing the machine alongside me. Can I PM someone to discuss?
@flash said:
Got root.txt without getting into Vault (Even before user.txt). I don’t feel it is intended and maybe someone placed it there by mistake while doing the machine alongside me. Can I PM someone to discuss?
Yeah PM me, I’d definitely be interested to hear how you did it
i dont know what am i doing wrong…i can upload certain file but it cant get executed on the server as intended.i am not able to get reverse connection …can anyone help me?
Edit:got it.Thanks to forum peoples and al those who were kind to me.
You need N*** because , if you don’t know where you are going , how are you going to get there ? Suggest you look up the different applications for N*** and different types of ways it can look for what you need given your current topology