That was quick lol. Seems like a super easy machine. It’s nice to have easy ones littered in between the difficult ones for a breather week. I could the insane machine as a breather week for me too I didn’t even attempt it lol
Not sure you got to the login page, but remember some urls are only accessible if you edit the hosts file to add the url x ip association.
Also: your strategy is overcomplicating things, there is no need to any of the strategies you are trying.
hey, I am stuck with root. I know the dessert and already got info from keepass but the info I got is invalid! Can you give me a hand?
Ofcourse!
Btw, you are 99% there.
Look at the contents of the file again. There are many ways one can login to stuff. Maybe you are focused on the wrong one.
I’m kinda lost.
I logged in and found the ticket with some info, but how do i get an RCE or revshell or anything else?
There is no need for revshells. It’s simpler
could you give me a lil push?
Thanks! But in the contents of the file i have already tried with the s… key, an it says it is in invalid format for when i try to connect with it!! Im losing my mind hahah
Read my comment
Feel free to DM friend
i did ssh and i’m stuck
Check DM’s bro
I’m logged into the page. But, I’m not able to get any credentials to ssh. Do you have any hints?
Check every user profile, take your time reading info…
Rooted. DM if you need a nudge, please provide where your stuck and what you’ve tried
Got user on 15 minutes and i consider it a lot because i was exploiting a nonexistent exploit lol. I mean, there is not even an exploit at all, just common sense lol.
Landed user pretty easily, just some common sense. Might need a push with root though…
Rooted! This was a very easy machine lol. Perfect for developing the hacker’s mindset!
User: Logic lol, it’s an easy machine and there’s no even need of exploiting anything, just look things inside the webapp.
Root: All this machine is about logic. Just lookup on Google and follow the steps. It’s really easy. Remember the easy machines is all about public PoCs.
Good luck! If you need help, DM and i’ll help UuU
Got it!
Had some issues with my password not being all lowercase for the kdbx…
Rooted, thanks for the machine!
Likewise: if help is needed reach out!
I was bashing my head in trying to figure out how to get root.
Its very simple.
Google for a tool to retrieve the password from the files you find on the desktop which will help you get the dessert.
I spent hours trying to crack it which i gave up on.
Dm me if you have questions