Bastion

Rooted, thanks @L4mpje for creating this box. Had a great time with it.

I completed this without the need for a windows VM which was great. I had a similar issue @gm0 , but samdump2 can do everything bkhive could from what I found on the internet. So I was able to create the h***.txt with the files on the .v*d. I’ve only rooted the box one way. *R*****NG was the way I got in. Would you mind PMing me the details of the other ways?

As always, if anyone needs any help, drop me a PM.
HF

@gm0 Samdump2 can do everything bkhive could from what I found on the internet. So I was able to create the h***.txt with the files on the .v*d. I’ve only rooted the box one way. *R*****NG was the way I got in. Would you mind PMing me the details of the other ways?

As always, if anyone needs any help, drop me a PM.
HF

guys my command get on top of the vhd horse is erroring out, Anyone to help?

I’m pretty stuck on this, wondering if anyone can help out. I’ve got the User credentials from the backup but can’t find a way to use that towards actually getting User. I’ve used it to authenticate to R*C (via r*ccl**nt) but can’t seem to actually do anything with that. Any pointers or nudges would be greatly appreciated.

Edit: Got it, thanks for the PMs.

Really am dying on root for this one… any hints welcome… I think ive done all my brain could conjure up as far as priv esc… just need a nudge… thanks.

Nice machine, really a lot to learn. Thanks to @HEXE and @Chrix87 for their help.
Root is not complicate i think get user it is not so easy, but I used only Kali.
Thanks to @L4jmpje

Hi, can Anyone help me?

I’m stuck, i mount the vhd and search inside but i didn’t find anything useful.

I don’t know what else to do.

If I try to guestmount the B*****p nothing ends up in my local directory, any ideas?

Feel free to PM

Ping me I have a doubt

Type your comment> @rheaalleen said:

If I try to guestmount the B*****p nothing ends up in my local directory, any ideas?

Feel free to PM

You shud guestmount the file… and not the B**** directory

I have a question, so I’ve mounted the VHD file using guestmount, then after that I’ve searched through the directories but so far I didn’t find anything interesting. Any hint where I can find that “file”?

Type your comment> @M160 said:

I have a question, so I’ve mounted the VHD file using guestmount, then after that I’ve searched through the directories but so far I didn’t find anything interesting. Any hint where I can find that “file”?

someone already called this file USA uncle…

Don’t you know the USA uncle?

then google his location , if I remember VHD wasn’t only one, if you cant find the uncle here then try the other one

@HEXE thanks, I got the creds and was able to go through :+1:

Big thanks to @0xNoOne and @L4mpje <3 . Rooted the box with pure Linux.
Learned a lot here. My hints for the following:

USER:
The guy in Transformers Movie

ROOT:
you have to find something here. knowing the windows command-line will help you here.
after that you have to decipher.

:slight_smile:

Got root! Thanks for all the hints to everyone in this thread and thanks to @L4mpje for this cool box. I thoroughly enjoyed this box… even through banging my head against the wall trying to figure out the next step. I really learned A LOT on this box.

I’m also relatively novice when it comes to this, so any new members here’s some hints I wish I could have gotten:

For user: You need to understand how a password is stored on a system, look this up first. There is a program that you can use afterwards that will help you further that you will probably have to download. Google for cracking stored NTLM passwords or something along these lines - Hope this isn’t to much of a hint, remove if necessary

For root: Don’t get hung up on what you are more than likely hung up on, if it doesn’t seem right it probably isn’t. Google everything you find on this system and it will jump at you like a spider monkey. Also always remember dir doesn’t always list all the directories.

Edit: PM if you need help. I don’t bite.

Please ping me who completed bastion i have a doubt on it

Wow. Ended up using windows at the end there. I have an idea about how to do it without it, might try it for kicks later.

User did with Kali entirely. Gotta learn about what the tastiest files to grab from a windows machine might be in order to get user.

For root… find that non-standard thing installed and google a bunch. Then maybe hop on your windows box…?

DM me if you need a nudge. lmk where you’re at.
Also DM if you did root without windows, want to confirm if I know how you did it.

Nailed user, Onward and upwards to root!

@juggydancesqd said:
Nailed user, Onward and upwards to root!

And rooted! good fun this one, Give me a nudge if you want a hint

having issues on mouting .vhs files, it’s seems like guestmount stays on “supermin: ext2: copying files from host filesystem”