Hint for Waldo

@Frey said:
SUID or not to be SUID? Privesc Hint Hint.

:confused: Kind of lost on this one, didn’t find any suid file on the entire disk, so I guess I’d like to be suid? But I don’t know how somebody would be interested in me :smiley:

@sazouki said:
m****@10.10.10.87: Permission denied (publickey).

any hint how to fix this

How did you solve this?

Same place as you, wondering if this is one of these nuggets you need to know. Still very possible I missed something though…

@kudrom said:

@Frey said:
SUID or not to be SUID? Privesc Hint Hint.

:confused: Kind of lost on this one, didn’t find any suid file on the entire disk, so I guess I’d like to be suid? But I don’t know how somebody would be interested in me :smiley:

Nvm

I just ended up scripting a filesystem downloader. FML. Local enumeration took 5 seconds then. Now starting on root.

Cant work on the machine @eu-vip-19, it seems that some idiot is hammering the webserver. Have to wait 5 minutes for one request.

Rooted…Not sure I liked the priv esc though, but did learn a few things on the way about capabilities of linux. This box required some research :slight_smile:

Any non substantial hints?

@TazWake said:
@sazouki said:
m****@10.10.10.87: Permission denied (publickey).

  any hint how to fix this

How did you solve this?

wrong user

@sazouki said:

@TazWake said:
@sazouki said:
m****@10.10.10.87: Permission denied (publickey).

  any hint how to fix this

How did you solve this?

wrong user

Its quite obvious if you realize where you downloaded the file :wink:

to get user use this site , will make it easy

@sazouki said:

wrong user

Ah - ok.

@Warlord711 said:
Its quite obvious if you realize where you downloaded the file :wink:

Urgh… thanks.

Spoiler Removed - Arrexel

@waspy said:
to get user use this site , will make it easy
Online tool to format private key.

Also try using the same php functions which encoded the content, to decode the content. Use a php interactive shell to decode the content and print to screen

Finally got root on this box. I did learn a bunch about some enumeration techniques for priv esc. Def added few new tricks to my toolbox. My advise is to follow OWASP techniques, realize that sysadmins are dumb, jail sucks, and also get to know linux permissions well.

:smile:

Stuck on privesc. I understand I need to “escape”, but I can’t see how. Can I PM somebody?

@elio said:
Stuck on privesc. I understand I need to “escape”, but I can’t see how. Can I PM somebody?

Think what you’ve got, and what you want to do. After a quick “Googling” you’ll find your Graal :slight_smile:

i escaped but still stuck mybe i need to do something with logmo**** :wink: