I’ve got my payload working, but can’t catch a reverse shell from it. Is this the right way to get shell?
I assume that there may well be more than one way to do this. I spent a bunch of time struggling with trying to get a shell directly and ended up just downloading and executing something to get it instead.
Also, since there may be multiple ways, it’s possible that the error message people are reporting can be a non-issue, but in my case anytime I got that error message it meant that I wasn’t sending properly formatted data.
I’d suggest trying to simplify what you’re sending. Can you get it to connect back to you at all? Once you get that working, you can improve it from there.
I keep having connection issues between ping, dirb, Nikto , all the usual tools, anyone else this issue?
make sure the VM is still running. seems like with the new time limits set up this happens to me all the time and I have to go back into the dashboard and re-initialize the box.
I keep having connection issues between ping, dirb, Nikto , all the usual tools, anyone else this issue?
make sure the VM is still running. seems like with the new time limits set up this happens to me all the time and I have to go back into the dashboard and re-initialize the box.
Yeah I’m running it off a dedicated laptop and the VPN is always running, have you managed to get dirb working at all?
Hey guys, could someone give me a nudge? I found a s** service running in a weird place and some pages that don’t resolve. Tried digging but pooled out an empty shovel
Thanks to @naveen1729 for helping me out of the rabbit hole
Nice box
User
It is necessary to see what the developers have changed in the code of the application, it is possible to see something interesting. The part of the RCE is to see how to take advantage of the language and the part of getting out of jail was complicated, sometimes one relies on any script that is in the machine when you can modify it and see if it is returning what it should.
Root
The part of the root is simple, just copy and paste a part of “that” and get what you want according to the documentation
Wow, I really like this box! Even though I needed nudges as I was overseeing the obvious things and began overcomplicating things and then followed the rabbit… ?