Dev0ops hints

It’s the first time I give “hints”, so please remove this post if deemed necessary.

For anyone looking to get hold of the user, I can see at least 2 ways in: one being more popular than the other. So at least 2 methods, 2 different places.

@lokori, “how many ways to skin a cat” to get the user, actually? Are there more than 2 intended methods?

can someone pm me? I think I have a way in but want to bounce an idea off… Can’t say anymore without spoiling.

i got user flag , i want to ask something in method to get shell
please ,anyone can PM me

@Anna said:
i got user flag , i want to ask something in method to get shell
please ,anyone can PM me

Feel free to shoot me a PM if you still have questions.

Got root. PM me for hints that aren’t giveaways.

and rooted. took me quite a while. I suspect someones messing with the files on the box…

canape and this box has similar weakness

can pm me if you need a nudge

This one has me stumped. I don’t even know where to start. I found something that can possibly be a way in but I don’t know where my files end up on the system. Once uploaded I can’t run

There are at least three paths :slight_smile: One of these is totally unintended and I didn’t even realize it before :astonished: DesignOops.

Spoiler Removed - Arrexel

@Didakt said:
Spoiler Removed - Arrexel

Now that you know of the possibility, try to read as much as you can. One hint is to see what other port is opened and think of what is needed for the service to work well.

Spoiler Removed - Arrexel

@nardin said:
Owned… pm if you need

Same

Spoiler Removed - Arrexel

I think mentioning explicitly which vulnerability you should (or could) use counts as a spoiler. Though in this case it’s sort of easy to guess that as the machine isn’t that difficult intentionally.

Can anyone help me please im stuck at a point where i am not sure which exploit to do. Can anyone contact me please Thanks

This box was simply magnificent, my thanks to the creator for providing us with this experience.

tip: first step in Dev0ops resembles the first step to becoming a giant spider killer :wink:

Got the user but unsure how to privesc, do I need a reverse shell or…?

@Narmu you need to log in to the machine to find a way to privesc. Reverse shell is a good idea :slight_smile: