LaCasaDePapel

I have managed to ssh onto the box after nabbing a key. However, I cannot read user.txt with this user :lol: This box is a tricky little sod!

I thought it would be easier, instead I’m pretty stumped…
I can browse dirs but I cannot read files via https, and I can read only some files via the good old port.
I don’t know how to put the two things together, can’t read user.txt, and can’t get a shell.
Any help in PM please?

Ok: 5 minutes after writing this I’ve found a way to the next step

Anyone can point me to get root.txt I am in a stable shell already

Type your comment> @hal9k2 said:

Anyone can point me to get root.txt I am in a stable shell already

I am currently having ā€œfunā€ with this :lol:

Type your comment> @monkeychild said:

Type your comment> @hal9k2 said:

Anyone can point me to get root.txt I am in a stable shell already

I am currently having ā€œfunā€ with this :lol:

have no idea how to ā€œupdateā€ certain files in order to get # as permissions don’t allow me to do it…

i have reached the very last bastion . banging myself to get shell with me******.**i can anyone tell how to proceed for root ?

Struggling with certs for days, don’t know what am I doing wrong.
I have the c*.k** file from n****** folder (from old door), generated crt and p12 file providing everything needed (good timestamp, CN, O) but still error.

If someone could PM me it would be great ! Thanks !

Edit : Solved ! Thanks :slight_smile:

OK I am done with root, I wasn’t aware of certain feature of permissions, that was problem…

Got this box finally.
Little frustrating, no doubt.

[USER]
Old door, you’ll see something delicious. Research certs and o****sl. → https. Learn how the site works. Find more goodies.

[ROOT]
Use one of those goodies. Do some googling on s*h. Then everything you need is in that directory. This part isn’t super intuitive.

DM me for clues. Lmk what you’ve done so far so I don’t give too much away.

Found out by accident what I needed to do for root.
Still looking for a documentation reference though. Who can do what in that directory?

I need help I am stuck. I have the c*.**y file. I know I am meant to create a cert with that. But i can’t figure out how to without getting errors. Service says ā€œyou need a client cert to continueā€

@z3255859 same problem

I’m stuck at the p** shell. I’ve found the code for $t**** but I don’t know what to do. I will appreciate some hints.

Type your comment> @HackSh00t said:

I’m stuck at the p** shell. I’ve found the code for $t**** but I don’t know what to do. I will appreciate some hints.

Pm me…

Could anyone give me a nudge for root?

hi all can someone pm which character keeps crashing the service?

Rooted. Enjoyable box. Possibly my favorite.
It’s easy to overthink this one. There’s a reason it’s rated easy. If it’s looking too complicated, you’re overthinking it. Go back to basics.

My hints (HTTPS way):

User: Enumerate! In full. All ports, all services. You’ll obtain some loot. Save it for later. Next, as mentioned before, there’s an old door. Knock on it and it should let you enter. You’ll be greeted with a message. If you know what it is, great! If not, google it. Talk to it in nice, simple terms and you’ll be presented with a gift from a far eastern metropolis. Analyze it! Even if you don’t understand its function, focus on what you do understand. Read it line by line. It’s giving you a massive hint. Also, some more loot is obtained here. Use that loot and the loot from earlier to get to the right page. Once there, find out what you can get, not what you can do. Again, stick to basics and you’ll get what you need.

Root: Easier than user. It’s right in front of you once you’re inside. Don’t confuse yourself by over-analyzing it. Think how you can make its job work for you. Again, stick to basics.

I hope I haven’t given away too many spoilers.

Finally got root on this box! Took a lot longer than I thought it would, but happy i got it! Definitely learned A LOT from this box, so thank you @thek for the box.

PM for hints :slight_smile:

I’m stuck at the p** shell. I’ve found the code for $t**** but I don’t know what to do. I will appreciate some hints.

PM for Hints !!!

any hint for root ? I got ssh shell… and stuck :frowning: