Celestial hint

guys, cau you help me on priv esc?

@MindOverflow42 you can PM me and tell me what you’ve tried and I’ll guide without spoilers.

I’m having troube with the privilege escalation too. I’ve tried a few things and I can’t see the hint that is supposed to be in the user folder :disappointed:

Hi, when I run repeater in Burpsuite I obtain the following error:

SyntaxError: Unexpected token 

   at Object.parse (native)
   at Object.exports.unserialize (/home/sun/node_modules/node-serialize/lib/serialize.js:62:16)
I have followed all the instructions to get the reverse shell but at the last step fail ...

Finally got it. I didn’t notice the a few details in the user folder. As they’ve already said: Keep an eye on the clock.

with so many hints no one got the privilege to ask for another hints .
pretty easy machine

Hey guys, i’m doing the privesc on the box, and i get root. Then a couple min later the box stops responding when i attempt to exec a command (cat /root/root.txt). Would someone be willing to DM me. I’d like to make sure i’m looking at the right thing for privesc.

I just managed to get root.txt on Celestial, but I’m not exactly sure how it worked even though I have a general idea. Would someone mind DM’ing me? Thanks

Hey, just to help with privesc a little, there is no need to know EXACTLY what is going on and how, just enumerate well, look closely and DOIT :slight_smile:

I stole user.txt without shell. Now I work for shell and privilege escalation.

Can someone help me out in dm for getting the initial shell on this one? do we have to have nodejs installed?

@securityprince said:
Can someone help me out in dm for getting the initial shell on this one? do we have to have nodejs installed?

No you do not. Nothing special is needed for this box.

@GingerHackz said:

@securityprince said:
Can someone help me out in dm for getting the initial shell on this one? do we have to have nodejs installed?

No you do not. Nothing special is needed for this box.

Tried the exact method from the blogpost, not getting a reverse shell. Can we discuss over dm?

@Th3R0ck said:
Hey guys, i’m doing the privesc on the box, and i get root. Then a couple min later the box stops responding when i attempt to exec a command (cat /root/root.txt). Would someone be willing to DM me. I’d like to make sure i’m looking at the right thing for privesc.

DM me

take care at a certain thing running on the machine and send you request through a existing script. if you need more details pm me

@Nutellack said:
take care at a certain thing running on the machine and send you request through a existing script. if you need more details pm me

I take root shell, useful hint!

If I’m following the right article, I’ve followed it step by step, and I only get a bunch of errors as response.

having issues figuring out how to serialize the payload. Anyone have a non spoiling tip?

SyntaxError: Unexpected token

at Object.parse (native)
at Object.exports.unserialize

or invalid username type

I think I’ll try SOFTER, as I have no idea why

alright, I was an idiot as usual…