Mango

user.txt ok

@skullkiddo said:
Really fun box! Thanks @MrR3boot for that. Just rooted it.

Glad you had fun :slight_smile:

Thanks @MrR3boot nice box!

Type your comment> @bluealder said:

Thanks @MrR3boot nice box!

Now go and taste real Mango’s :stuck_out_tongue:

So far I found a search engine, an a*******.php page and an orange login screen. I can’t think of anything even with the hints in this threads…

Would anyone be so kind as to shoot me a small nudge?

enum /ve…/co…ser check default file names

yo im stuck in the rabbithole any tips

Unable to go further than a search engine and an axxxxxtx.php page, please someone help me with a nudge? TIA :slight_smile:

Type your comment> @n4v1n said:

Unable to go further than a search engine and an axxxxxtx.php page, please someone help me with a nudge? TIA :slight_smile:

same boat =) would appreciate a nudge

edit: found it! thanks to @dontknow

Type your comment> @n4v1n said:

Unable to go further than a search engine and an axxxxxtx.php page, please someone help me with a nudge? TIA :slight_smile:

What else could you check about a https page that might hold some information? Something you’re supposed to check anyway if you get invalid ********* error anyway :slight_smile:

This was a really fun box and a great learning experience. Kudos to @MrR3boot.

Obligatory hints.

User: very thorough enumeration is the key, knowing a bit of CS theory (and applying it in terms of code) really helps cutting down the time needed.
Root: I said “very thorough enumeration” for a reason.

Can someone help me on this box please?

@rowra said:
Type your comment> @n4v1n said:

Unable to go further than a search engine and an axxxxxtx.php page, please someone help me with a nudge? TIA :slight_smile:

What else could you check about a https page that might hold some information? Something you’re supposed to check anyway if you get invalid ********* error anyway :slight_smile:

Could you explain a little bit further? I have no idea what you are talking about D:
Thanks!

@dvargasj said:

@rowra said:
Type your comment> @n4v1n said:

Unable to go further than a search engine and an axxxxxtx.php page, please someone help me with a nudge? TIA :slight_smile:

What else could you check about a https page that might hold some information? Something you’re supposed to check anyway if you get invalid ********* error anyway :slight_smile:

Could you explain a little bit further? I have no idea what you are talking about D:
Thanks!

When you opened port 443, firefox likely gave you an error, which you probably ignored. Have a look at the details of the error.

rooted

PM for Nuggets

Last login: Thu Oct 10 08:33:27 2019
root@mango:~# id
uid=0(root) gid=0(root) groups=0(root)

thanks to all friends who patiently were on my site and helped me :smiley: :smiley: and also thanks to box creator for the learning experience.

screenshot
Fun box. In the last step, the first thing you try may not work, but it should be fairly obvious what to try

Type your comment> @clubby789 said:

@dvargasj said:

@rowra said:
Type your comment> @n4v1n said:

Unable to go further than a search engine and an axxxxxtx.php page, please someone help me with a nudge? TIA :slight_smile:

What else could you check about a https page that might hold some information? Something you’re supposed to check anyway if you get invalid ********* error anyway :slight_smile:

Could you explain a little bit further? I have no idea what you are talking about D:
Thanks!

When you opened port 443, firefox likely gave you an error, which you probably ignored. Have a look at the details of the error.

Got it, thanks!

Can someone give me a nudge for the initial foothole with the mango hint?

Joined the Mango club :slight_smile:

Last login: Thu Oct 10 08:33:27 2019
root@mango:~# id
uid=0(root) gid=0(root) groups=0(root)
root@mango:~#

Awesome box, thank you @MrR3boot !