Foothold: You should take a look more carefuly at the parameters
User: Way hard than root. Sometimes you should take care of things from the inside, once you get it, you’ll get the job done.
Root: Stay at home
Hello everyone leaned alot from this box although i still have a quick question. When I reattempt the box, as my second time… When generating the ssh key for user… I gets frozen half way while retrieving the key… I’m not sure why it won’t show the full key… only half of it and just stuck… missing other half of the key… any suggestions? Appreciate it.
Hi guys,
I’m currently shell as _****d but I cannot find a way to get to the correct user…
I saw the same service as the one I used to get my shell but it seems that the exploit have been fixed, I also got the file of the initial service but the code don’t help me more… any clue ?
Hi guys,
I’m currently shell as _****d but I cannot find a way to get to the correct user…
I saw the same service as the one I used to get my shell but it seems that the exploit have been fixed, I also got the file of the initial service but the code don’t help me more… any clue ?
Check how the new thing was started. It might lead you to discovering something that will help you get to where you want to go.
Hi guys,
I’m currently shell as _****d but I cannot find a way to get to the correct user…
I saw the same service as the one I used to get my shell but it seems that the exploit have been fixed, I also got the file of the initial service but the code don’t help me more… any clue ?
Check how the new thing was started. It might lead you to discovering something that will help you get to where you want to go.
Yeah I tried the service locally, I tried searching in /pc to find info on the process but nothing (to see the new code) and I don’t have access to r.*******s directory, does it have smth to do with lc and hd ?
Hi guys,
I’m currently shell as _****d but I cannot find a way to get to the correct user…
I saw the same service as the one I used to get my shell but it seems that the exploit have been fixed, I also got the file of the initial service but the code don’t help me more… any clue ?
Check how the new thing was started. It might lead you to discovering something that will help you get to where you want to go.
Yeah I tried the service locally, I tried searching in /pc to find info on the process but nothing (to see the new code) and I don’t have access to r.*******s directory, does it have smth to do with lc and hd ?
You are on the right track. I’ve PM’d you to avoid spoilers.
Hi, I’m having problems with foothold. I have RCE, I’ve tried some basic commands like id, cat or ls with options and no problem at all. I can even ** back to my system and get a connection but can’t spawn a shell, or if I’m spawning one I’ve no feedback at all. Any help?
Tough box, espacally of the few rabbit holes and also the p**g command does not work, so i always thought my in**tion does not work. The user part i have glady seen bevor on another box in the past. The Root part was also not too easy for me couse i thought i have to use open***. But finally got it If anyone need help, just pm me.
hey guys. can anyone give me a nudge, or brief explanation about how that service on port 3*** works? I solved it with tips, however how can someone find that logic of the service in the first place? any help is appreciated:)