Definitely one of my favourite machines so far, this one really forces you to understand all the pieces of the web-app it is running in order to get user.
Hints I think may be useful:
User - if you’re struggling to get a proper shell back, it’s always a good idea to match the language you use for your shell, with the language that has the RCE …
Root - There is an application that should stand out by this point - some research about how it is used on this box, and you should get root.
hello guys , i need some help on this box for the foothold enumeration, the api its not working , i don’t know if its a issue , i conf in my etc/hosts but i dont know its not loading…any hint shall be appreciate , thank you
You are on the right track, keep at it. I suggest adding all of what you enumerate into the hosts file. Beyond that, I am stuck at trying to make v***t work.
Could someone PM-me some recommendations on how to make the links in the top right corner (eg: https://api.craft.htb/api/) to properly resolve? I always get blocked by annoying sh*t like this which I know must be trivial but never did before…
If anyone is getting stuck after RCE and interacting with db (before getting user), and you’re using commands with * to enumerate but getting single responses, try commands that select things 1 at a time.
Thoroughly enjoyed this realistic box! I see most of the hints needed are already given in this thread, but I’ll leave a small hint for breaking out of the jail: