Chaos

I have got revers shell as ww*-***a, any hint for become user?

Edit: working on root

@th30ne said:
I got to the “U wil fid noting hee” site. it creates p** files. At this point I am stuck. I found a aj**.p*p file and tried using zap but did not notice. any hints what I should do next would be welcomed! thx

Use Burp for see what happens… aj**.p*p is not the way.

Alright, I am having trouble figuring out how to actually utilize LX within the PF CER ! I have Googled the snot out of the topic and there are very few walk throughs laying out the process. I have used BR and one code gave feedback but the D*ld url did not exist. Any help based on that knowledge would be amazing. Sorry to bother all.

Hi All, please can someone PM me. I am struggling to find the decryption file. I used WF*** and D*** and still no luck.

If anyone needs help with the decryption portion give me a ring :slight_smile:

Finally got this box. This is only my second box on HTB and there were definitely some quirks to getting it going. Once I figured those things out it went much smoother. Fun box.

If anyone needs some direction hit me up.

Finally rooted! Get root is trivial once you do the hardest part, the ‘echoes in my mind’ get me out xd
Gracias @samsepi0l por el apoyo! :wink:

I got to like this one as it progressed, though as a rule i don’t generally care for CTF challenges

New users may find this one fairly complex - as always enumerate and read this forum well, it has everything you need

Seasoned HTB users - Just don’t overthink, pretty much everything has been covered in other boxes

Initial step : if you believe your on the right path, and its refusing to work - try clearing your browser cache and try again

Next bit - i recommend cli over gui

Brush up on python (i had to !) or use what you find and search google for a similiar script

User - so blindingly obvious it will slap you in the face

Root - not complicated. just look for something out of place in the user folder

Thanks and respect given who nudged/proofread on a certain script step - you know who you are

rooted this machine if anyone need help feel free to pm :slight_smile:

Hi folks,

I’m stuck a little getting a shell. I’m using th w****18 option to spawn a php reverse shell but it drops immediately after the connection is established. Did anybody had the same issue?

EDIT: solved. The pe(a)rl of wisdom helped. Thanks for that!

Heres a pearl of wisdom - you can use other languages other than php

I am going with openssl s_client and there is no msg anywhere. Any hint?

@anina said:
I am going with openssl s_client and there is no msg anywhere. Any hint?

try to list what’s in there :slight_smile:

@ophelia said:

@anina said:
I am going with openssl s_client and there is no msg anywhere. Any hint?

try to list what’s in there :slight_smile:

I tried, but everything is empty

@anina said:

@ophelia said:

@anina said:
I am going with openssl s_client and there is no msg anywhere. Any hint?

try to list what’s in there :slight_smile:

I tried, but everything is empty

There is something in there. You just need to use the right command here. There is more than just the INBOX folders

@ophelia said:

@anina said:

@ophelia said:

@anina said:
I am going with openssl s_client and there is no msg anywhere. Any hint?

try to list what’s in there :slight_smile:

I tried, but everything is empty

There is something in there. You just need to use the right command here. There is more than just the INBOX folders

Thank you, found it.

Can anybody help me with the Python script? I have the right script, but I’m running into an error that I can’t seem to fix.

Can someone PM hint with decoding msg before running thru dec script ( reversed script)

Edited: nvm found it.

Got root finally! PM me if you need any hints.

I am having issue to get root. Could someone give me a hint?

Edit: Got root :))) Thanks to @clmtn and @Baikuya for hints