Official Cybermonday Discussion

EU VIP + vpn still doesn’t work. Fix please.

Same, EU VIP does not work for me either

Thanks to a very generous Russian guy who helped me through. And Thank you to everyone else for keep pushing my will up that this machine can be solved.

Couldn’t have survived this machine without the help of community. Thank you all!

2 Likes

Had the same issue, switched to VIP and worked

I’m at the very last step of the root? Can I DM someone?

Yeah, sure, shoot. :wink:

Anyone able to access the machine? Entirely down for me.

Same here, it just doesn’t spawn

I can give reasonable hints for foothold/user, but I’m overthinking root. Anyone with root who can give some hints feel welcome.

After ssrf, after we have this internal service connect to our local service as a replica. I’m stuck there with the cluster.
One of the node disconnects few seconds after it connects and there is no data to work with. Anyone mind giving me nudge there?

Any nudge on the foothold? I know there is an endpoint D*****d which requires higher priv I got the idea that there’s iA*** parameter needs to be forged with the request but can’t really abuse it do you mind if I dm u?

I need help with the payload to set the key. Anyone can help?

Stop slavering the machine pls

Alright figured out the authorization for creating webhooks part. Now I just need to figure out what to do next. Any and all nudges would be appreciated.

I think I’m on very last part of user and need help, could someone help me please ? I don’t want to give up that close :cry:

anybody know what action is taking place so that the web app isn’t accepting connections from nginx? several times now that getting 504s after restarts

can I get some help with the last part of the user? I’ve been stuck for a while know and it feels like it’s so close to being solved. :worried:

Rooted, finally! The foothold was tedious as heck, I wish user just ended right there. The rest of it was not even half as bad. Big thank-you to @HelloThere for pointing me in the right direction!

Rooted a second time, this time getting total control. Likely an unintended route.

1 Like

I’ve been able to do SSRF but haven’t found my next attack target yet, I’ve tried scanning for IP addresses with no luck. Is it rihgt truck to rely on guesswork?