Official Pit Discussion

Type your comment> @adminseeker said:

I Understood what is the exploit c****it. But I don’t know how to execute it. Any nudge or help is appreciated!!!

Did your try it in ms or did you tried it manually

edit: Be very thorough during initial enumeration, everything you need can be found by walking.

Type your comment> @n0leptr said:

So I’ve taken a walk, but I’m stuck from there. I find something useful on my stroll but unsure how to proceed.

Join the club. Feel like I have the morsel of info I need, but now I can’t do what I want with it to make it worth while

I am sitting at the c*****t page for the past hour, could i possibly get a nudge?

Spoiler Removed

I have to say, it’s a while I didn’t get stuck this bad, and on a medium machine. I managed to get one person name by taking an extended walk, but for the rest, no luck.
What seems really weird to me is that 80 seems completely useless.

Type your comment> @Barik1Babouzzi said:

Type your comment> @adminseeker said:

I Understood what is the exploit c****it. But I don’t know how to execute it. Any nudge or help is appreciated!!!

Did your try it in ms or did you tried it manually

In my case I tried both things without any success :frowning:

Type your comment> @Barik1Babouzzi said:

Type your comment> @adminseeker said:

I Understood what is the exploit c****it. But I don’t know how to execute it. Any nudge or help is appreciated!!!

Did your try it in ms or did you tried it manually
ms

Hmm I got soft that running on the higher port and one endpoint but I don’t think this could be in use now. I didn’t found anything on the port 80. Any nudge would be nice.

Type your comment> @SovietBeast said:

Hmm I got soft that running on the higher port and one endpoint but I don’t think this could be in use now. I didn’t found anything on the port 80. Any nudge would be nice.

The box twitter release announcement has a pretty good hint. That should get you into another endpoint at least.

@zer0bubble said:
Type your comment> @SovietBeast said:

Hmm I got soft that running on the higher port and one endpoint but I don’t think this could be in use now. I didn’t found anything on the port 80. Any nudge would be nice.

The box twitter release announcement has a pretty good hint. That should get you into another endpoint at least.

Yes thanks I got some of it my laziness will kill me some day. Lesson for future me always scan everything. But now I know where to search info I hope I don’t stuck for another hours

rooted. thanks.

I’m completely stuck. :neutral: can anybody give me a nudge with the “walk” thing?

Type your comment> @FQuen said:

I’m completely stuck. :neutral: can anybody give me a nudge with the “walk” thing?

-bscure -nternet -atagram

:neutral:

Dm if you need help, NOT spoiling type of help!

the file gets automatically deleted after some time. I don’t like this boxEDIT: got root,yes my fault, can simple copy the files around . Though overall I didn’t much like the box tbh… its focus is mostly limited to walking around and around like a merry go round… Need help? Dm.

Spoiler Removed

Type your comment> @kragle said:

the file gets automatically deleted after some time. I don’t like this box.

If you can RCE you can circumvent that issue. It’s not an issue with the box, it’s an issue with you needing to do more work.

Hey, is there any kind of protection to outbound traffic? I can not get any kind of reverse shell after have gained code exec

EDIT: Nevermind, found a different path