web stuff isn’t my strong point though… but everyone is saying this one is super easy. i cant figure it out. I’m looking at all the files, not really sure which one is supposed to stick out, because right now, none of them are sticking out lol
tried to brute web login for administrator, didn’t get any hits.
Looked at the source of available pages, per someone’s reply on here, but i dont see anything out of the ordinary there either… wouldn’t mind a hint to figure out where i’m supposed to be looking…
My DM’s are open if you want to reach out to me directly and not risk spoiling anything for anyone else
Getting user isn’t hard if you look at the right file…but if you don’t good luck. (thank you to person who helped get me back on track.)
Root was a heck of a lot easier imo.
DM me if your stuck
can you help me a bit (guide to the right path) about user? Found a cred but already tried to connect to all users using that cred and didn’t work… I’ve been rummaging all directories but couldn’t find anything or missed
Need a nudge for user.
Have run both linpeas and linenum but never noticed anything. have manually trawled through directories but not seeing anything.
This had to have been one of my favourite rooms recently. Thanks for the awesome room. The foothold was interesting and the root tested a few skills I hadn’t got used to.
i spent hours trying to get a revshell and still cant get a connection back!
tried php,msfconsole,bash and even made my own pl**n but cant get a shell !!!
Make sure you’ve the URI in msfconsole set to right path!
Same here. Tried three different ways, they all fail. The box is sluggish when attemping two of the ways. I switched VPNs thinking that would help. Nope. Pretty strange, since the msf is straightforward and no tricks.
i spent hours trying to get a revshell and still cant get a connection back!
tried php,msfconsole,bash and even made my own pl**n but cant get a shell !!!
Make sure you’ve the URI in msfconsole set to right path!
Same here. Tried three different ways, they all fail. The box is sluggish when attemping two of the ways. I switched VPNs thinking that would help. Nope. Pretty strange, since the msf is straightforward and no tricks.
Look on Github, there are a few tools that will make the p****n for you, spawn a MS handler and once you upload the thing it made for you, you can a connection back. I couldn’t get any of my regular methods to work either so I found a tool and it worked.
Can somebody help with the first foothold? I don’ know what i searching for
Enumeration is the key… try looking around the broken environment… you should be able to stumble on a juicy file that will immediately attract ur attention
Phew, spent way too many hours on foothold. Rest of the box is pretty straightforward from there. Overall this machine was a good lesson in taking a look at what you have before resorting to tools.
hi im new here if can someon show me how to start with hacking
Welcome to HTB. I great place to start is with the retired machines. Ippsec (find him on youtube) has some amazing walk throughs of the retired machines. Thats how I got started.
ou bro i think its cus i didnt select openvpn on port tcp 443
It is still easier if you start a new thread or ask this in the threads already open for the machine you are working on, where other people can answer.
Not sure what you mean about selecting openvpn on port tcp 443 though. That isn’t really how it works.