Poison

anyone able to pm me? I have a couple questions about priv esc

Can someone pm me, im stucked on the esc

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

@0xEA31 said:
May I ask why the Poison box has this name?

Another way to get user has to do with it :wink:

I’m running into weird issues with JTR. Looks to not like using rockyou as a wordlist, but I’d rather not waste too much time bruteforcing if there’s a list I can use. Anyone else having issues with JTR, or can I PM someone willing to help?

Having an issue with privesc. It looks like I successfully extracted the zip but it doesn’t appear to be useful for anything. Is it a distraction, or am I missing something?

I don’t see any other priv esc vectors after searching around the box for a while. Please pm me.

Nevermind, got it!

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

@putabones said:
Spoiler Removed - Arrexel

I didn’t get shell :slight_smile: so can’t give hints on Priv esc. Dirbuster or gobuster didn’t show anything. Any other tools provide better results for initiatl steps?

I would say take a look at all the ports you have ID’d already, then work your way through the ones you can access. You should be able to see ones that correlate to each other.

yeah got it :slight_smile: thanks. Now working on Priv Esc.

Spoiler Removed - Arrexel

Any hints on the extracted file?
Is it usefull or not?

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel

Spoiler Removed - Arrexel