Hehe... Somehow yes ;-)
Anything more would be a spoiler... You know what I mean as soon as you "executed" it for the first time ;-) Feel free to PM me for some hint :-)
i continue to struggle with privesc no matter the OS... i got the initial shell relatively easy... but when i comes to building from there.. i always get lost. I use all the enum scripts their is, but i never seem to put things together once inside. Can some1 let me in on their process of attacking boxes, and share their goto's? please and thank you!
Okay so I found what I need to use to PE to root. Not sure what I'm supposed to do with the c*********.** file. I've read about how the NM files are configured but so far can't come up with anything. A nudge would be appreciated.
Okay so I found what I need to use to PE to root. Not sure what I'm supposed to do with the c*********.** file. I've read about how the NM files are configured but so far can't come up with anything. A nudge would be appreciated.
@nuxmorpheus01 after your initial enumeration you will find some interesting pages, from there you just have to get your shell onto the server, one of the most trivial ones there is
Comments
ayyy let's go
box not spawning properly for anyone else?
First Blood in already. Under an hour. Interesting.......
Shell is pretty easy, permission denied for user.txt
easy shell, but now.... reading...
user.txt
rooted
user: straight forward
root: use what you can
Hmmm. Got to u*****.php but whatever I do I cannot sneak a shell onto the site. Anyone got an idea where I could be going wrong?
.
Update: Owned user and root!
The box is bit buggy tbh.
not getting php to execute the shell. got any articles I can reference?
This box is so slow
think this box is getting trolled big time. Keeps getting reset. u may want to save for another day. Making it rough right now.
Managed to get a shell as A***** but struggling to escalate to other user. Any nudges would be hugely appreciated.
Weird, I got a shell in one way, the box reset, and I can no longer get a shell using the said method
What on EARTH is going on for root on this box?!
Rooted :-)
Hint for user:
Hint for root:
If you need some help => 1) Your findings so far? 2) Your conclusions? 3) Your further ideas?
RESPECT++ if I was able to help you! => https://www.hackthebox.eu/home/users/profile/139772
No messages on the wall please and don't message me via HTB chat, please use the forum!
Type your comment> @v1p3r0u5 said:
This is as useful as "use your keyboard"... lol
Type your comment> @Fugl said:
Hehe... Somehow yes ;-)
Anything more would be a spoiler... You know what I mean as soon as you "executed" it for the first time ;-) Feel free to PM me for some hint :-)
If you need some help => 1) Your findings so far? 2) Your conclusions? 3) Your further ideas?
RESPECT++ if I was able to help you! => https://www.hackthebox.eu/home/users/profile/139772
No messages on the wall please and don't message me via HTB chat, please use the forum!
Got a shell but don't know how to pivot from here.
The user part was fun, especially in how a Linux i**ge manipulation tool can be used to get the initial shell.
However the box may become unstable on free servers
Rooted.
I enjoyed, learned some stuff
Rooted, ctf-y but fun.
Tip for user
Tip for root
i continue to struggle with privesc no matter the OS... i got the initial shell relatively easy... but when i comes to building from there.. i always get lost. I use all the enum scripts their is, but i never seem to put things together once inside. Can some1 let me in on their process of attacking boxes, and share their goto's? please and thank you!
Okay so I found what I need to use to PE to root. Not sure what I'm supposed to do with the c*********.** file. I've read about how the NM files are configured but so far can't come up with anything. A nudge would be appreciated.
so i have an initial shell since morning but i can't read user.txt. I tried a few things related to ssh but no luck. Any nudge?
Type your comment> @slimz28 said:
same boat...
okay, so there is something with che_******. file. but i don't now how to use that to get priv shell from web shell.
Type your comment> @plusX said:
Its a file that makes the user know what's wrong if you look closely
OSCP
rooted, good linux box, i don't know why some ppl saying it's CTF-LIKE
Type your comment> @plusX said:
Man, Any hints on how to get this initial shell?
I am following something but looks like a dead end.