ok so, I got the user flag and found the bash script i am supposed to run, when I run the script i connect to the machine as root but after 2-3 seconds get disconnected… I dont know what’s causing this…can anyone help? Thanks in advance
Its like that whatever you are doing to get a shell is only running as long as the script runs - so when it exits, so does the shell.
You might want to get it to do something which gives more stable access to a secure shell.
I got user at this point, and I think I found what I need to know for root, but based on what I found and how it can be used, it got me all confused…can someone help and put me in the right track?
I got user at this point, and I think I found what I need to know for root, but based on what I found and how it can be used, it got me all confused…can someone help and put me in the right track?
Difficult to not spoil, but if it is writable, write to it.
Hi everyone, ive been looking for a CVE but there so many that i cant tell what to use. Any help? please
I had the same problem initially but if you look at how they have patched these types of vulnerabilities you can use that knowledge to find the correct one by automation. It really makes the needle stand out from the haystack.
Some people said this box is easy but honestly, when you never had to exploit that kind of vulnerability, it’s kind of a nightmare. I spent hours and hours reading articles and watching videos, trying to get my head around it, plus… Java… and in the end that was a little push from @TazWake that helped me enough to get a shell. But, yeah, if you struggle, that’s okay, lots of new things here and you might catch a lot of fishes before grabbing the good one. Good box overall, and root part was just a matter of paying attention.
I also don’t know why people said to look at the newest CVE, it seems very misleading, unless there are several ways to do it, in case I’d be happy if someone could give me a link with explanations
Thanks @egotisticalSW & @felamos !
Rooted!
I highly recommend this box for beginners, especially the privilege escalation part.
User: Google-fu
ROOT: that’s easy, you got this.
PM me for a nudge. But first tell me what you’ve tried.