That is great that you explained how deserialization works. It will definitely help those without (or with small) web development background, including me :smile:
I think people appreciate vidoes that shows whats going on in depth, rather than just…
Same situation for me :(
Already tried to do this locally with evil-**rm as well as remotely from my Windows machine with $Cred object and -Credentials argument. Both methods gave same error :/
Could somebody help me with this?
a little question. Could someone explain me what am I doing wrong with TGT?
I managed to get credentials for sv*-*******o user, I cracked AS-REP response. Then I tried to g****T.py and I successfully saved ticket in cache, but actually…
Ok. Rooted. But can someone explain me why script line
EXECUTING command included in $*?
i will appreciate some explanation on DM. I dont like rooting machines without fully understanding what happens.
Thanks in advance
it seems images are filled with some info. I used steghide and it prompts for password. It doesnt have anything with task (root hash already obtained) but just for my curiosity: did anyone cracked it? Is it some easter egg? Is it worth to be …
Finally made user part. My first BOF and ROP. It took me a long time to get used to radare2 and learn the idea of ROP and reversing binaries at all.
It was fun and had educative value. Great.
Feel free to dm me for nudges.
Type your comment> @smaxs said:
Same situation. Stuck since yesterday. I will appreciate any hints on DM.
Edit: Done. Nightmare.
Edit2: To be clear - it was nightmare for me to root the machine due to lack of knowledge of ELK stack as w…
Hello guys :)
Just started haystack.
Could you tell me if the needle.img is connected with steganography? Do I need to use steganography tools to obtain some information from this picture?
Edit: Ok, I found it :smile:
Hint: use e.g. burp guys!
Ok, I have a question. I rooted the machine, but it would be impossible for me without reading this topic. How you guys come up with the idea like "oh, lets take a look at p********s and then take a look at $P*** and so on to get root"?
The box was great! But trying to understend why some tools didn`t work for me and had to install 3d software on W*********.
Could somebody DM me to maybe discuss why ************.rb doesnt work in my case?
DM me for hints if you stuck guys :smile:
Finally owned the machine. It`s my second active machine owned, therefore I am very happy. It took me couple of hours to made it. I have to admit that i had to take a look at google to find out some things connected certainly to Magento Platform, bu…