Jerry

Looks like it started working good.
There should be some monitoring for trolling in place.

Well, that was an easy one :slight_smile:

Anyone want to PM me a hint on this one? I’m new to this and I think this one should be easy but I can’t find a way to brute force the login page.

Hi n0bf, bruteforce was not the right way :slight_smile:
If you have find the login page, you can try to find information to connect without bruteforce

Where is the user.txt file it isn’t in public or admin desktop files, and they’re all that I can see.
Also people keep resetting my webshell, you cannot use it, goes to my lhost…

rooted :frowning:

probably the easiest host ever, a bit over 5 min. for all

2…txt is weak!!!

Wow that was too easy… :smiley:

can people not change the password…

basic enumeration will get you in

owned, very annoying box if you’re not vip, reset is mandatory before any exploit.
available for PM as usual :wink:

Hi Can a friend help me ? I found a username password but it isn’t true complete

If it wasnt for the issues with logging in I would have solved this one in un der 10 minutes as many people have mentioned. Very easy box, all the answers are available through enumeration and quick google search if your not familiar.

Easiest box so far, i did on htb!!! definitely a good box to start for beginners, any doubts you can DM me or hit me up on discord [ Ruthvik#7626 ]

Dear everyone messing with the password. Why?

PM me, need help past the manager GUI

im starting to think that there is a malfunction with the machine. after reset with 30 sec the credentials got changed. admins should check this one out. and if it turns out that someone is changing the password. they should ban him for at least a week

ok who thinks that HTB admins are changing the password on purpose for people to buy VIP Services? i mean no one is that fast to change the password in 30 sec after reset

I was able to auth to the page once for around 15 seconds.