HelpLine

rooted…■■■■, I learned a lot about powershell-fu…

I was afraid of this box because it is red. And after start I had hard time on the most step in spite of all hints. But after rooting I say that it is real box with real-case situations.
It is very stable and it allows get additional hints from the result of work of other hackers.

And that is why it defenitely is worth the force and the time.

I found creds for two users, but can’t found way for change users, could somebody help me PM

A week later, finally rooted. Thank you to @tabacci and @Ripc0rd for the help. Helpful tips:

Know Powershell. Understand commands and what you can use to leverage your way into getting root.txt.

Rooted and got user! Holy ■■■■ I’m sure I didn’t do this the intended way because I f***ed this box HARD to get that to work. Hahaha. Okay, time to reset before anyone notices.

Could use some help for escalating to leo. I know what I need to do, but I am facing some difficulty.

I have administrator hashes, can pass the hash with psexec but I cannot read the root.txt or user.txt. I see the XML file but having problems decoding it. I am on the file system looking for something to get/do. I would appreciate a hint int he right direction.

Congrats to @egre55. Solid box. I haven’t solved it yet, but I am determined to! Currently stuck after getting read access to the xml file. Probably should find a way to make that information useful, but I have run through all my ideas and need to seek guidance on where to go next.

Totally stuck with getting normal login done. Cannot find a way in this box. I know it sounds weird, but I think I know where to go, but do not know how.

If anyone can help me with reading flags, please PM. I’m able to login with two different users, but cannot read certain files. Any help is appreciated!

rooted but stuck with user.txt. any nudges?

I cannot read user nor root any of accounts. Any nudge would be good

I’m still trying to wrap my head around why psexecing as Administrator still shows i’m NT AUTH/SYS after running whoami

Stuck at LFI… Is the user named Ls Ro a hint? I found a PoC from Pedro R**o but I cannot make it to work.

It’s not about the destination but the journey, this is an all around great box. There is a shortcut and a long catch (that i know of) to root.txt/user.txt both is worth exploring. Thanks to @essex09 for the hints along the way.

edit
Apparently there is more than two ways :slight_smile:

.

Well finally rooted, I used the “easy way” and still this box was pretty cool. Still working on the other ways for now.
Good job @egre55 the box is amazing

Thanks to @0xskywalker for the hints !

Coincidentally, im listening to devil trigger XD

Wow.

This machine was different and “new.” I did learn a couple of new things and I loved it. So Thank you @egre55 for it.

Anyway, there seems to be a couple of ways to get user and a couple of ways to get root.

The easiest way from my opinion seems to be abusing the system permissions.

what a great box! Message me if you need help