Sniper

Rooted. Wow that took a long time but was wonderfully educational. Thanks @MinatoTW & @felamos!

Hints:

Foothold: Look around for something vulnerable to injection. Research how that works. Don’t use the tool in the packet, set it up yourself using the Indian for guidance then switch to the white wolf.

User: It’s possible to get a user shell using nothing but the white wolf. You have a command box and credentials, find the command you need, then use it to spawn the shell as a user.

Root: Look for interesting files when enumerating where you land. Open and you will see a response to something. Enumerate the system to find that something, then follow the instructions carefully. Many people on here are generating venomous payloads, this isn’t necessary; you can finish the job and get a shell without. Finishing the job may not require Windows but it is much easier on a Windows box.*

*If anyone managed to get around this on Linux, please PM me.