Reddish - Hints and Tips

@cgrenier said:
Being able to run commands as root on b***** is required, true, no shell is needed.
If you found the root.txt by exploring via rsy***, it means than someone has forgotten to cleanup.

Ok, perhaps, I did not put it very correctly. Your quote (“Being able to run commands as root on b***** is required, true, no shell is needed.”) is more correct.

Hi all, stuck after the first container. I see other containers; in one of these I get a possible suggestion of what I could try next. I have been trying and failing. Can anyone share with me ideas in PM?
Thanks a lot!

@davidlightman said:
Hi all, stuck after the first container. I see other containers; in one of these I get a possible suggestion of what I could try next. I have been trying and failing. Can anyone share with me ideas in PM?
Thanks a lot!

So do I

Made some progress (got RCE); struggling to get a reverse shell.
PS: feel free to delete if too spoilish.

@davidlightman said:
Made some progress (got RCE); struggling to get a reverse shell.
PS: feel free to delete if too spoilish.

I’m just in the same place as you… struggling my mind to get the shell with no luck :cold_sweat:

even without the user to the moment, this box really fixed in my mind the methodology discussed so far !

really stuck on reading user.txt on the second container, if there is any hint, pls pm me !

Small progress: got reverse shell!

So, i have a shell as root in b***** but i can’t find root.txt, is there any one i can pm for a hint?

hi anybody can help me
im stuck on the first container i got shell and find another web app on another container but stuck to exploit it
im i on the right path or its rabbit hole pleease pm

Rooted. Thanks to anyone who helped.

@Relwarc17 said:
So, i have a shell as root in b***** but i can’t find root.txt, is there any one i can pm for a hint?

Try checking for permissions :wink:

Finally conquered !

The trajectory is simply magnificent …
the lack of resources on the hosts is simply beautiful, every second was a school !

This box really deserves a medal !

My lengths to the creator and the privileged minds who helped me on this journey!

This box was fun but was also very painful.

stuck on the first container – I can get all the stuff I need on the first container, and I’m seeing something that hints a certain other server has something interesting available, but all my attempts at extracting said interesting information yield nothing, and timing out in a minute or so. Would totally appreciate a nudge on how to look harder, I’m totally running out of ideas.

@osku said:
stuck on the first container – I can get all the stuff I need on the first container, and I’m seeing something that hints a certain other server has something interesting available, but all my attempts at extracting said interesting information yield nothing, and timing out in a minute or so. Would totally appreciate a nudge on how to look harder, I’m totally running out of ideas.

+1

that box was a great journey, thx to @yuntao, quite different but full of fun.
The only thing I would also suggest as others have already done: Some checkpoints would be nice to get in at a certain point after resets.

PM if you need help.

@spoppi said:
that box was a great journey, thx to @yuntao, quite different but full of fun.
The only thing I would also suggest as others have already done: Some checkpoints would be nice to get in at a certain point after resets.

PM if you need help.

True… If you ■■■■ up somewhere in the middle… You’re doomed… Lol

Holy Moly, Just rooted!!!

It’s an ultralong journey.

Thanks to my bros for the help

Edit: writing the walkthrough for my own notes is a nightmare by itself… it’s just so so long…

Edit:
NVM, rooted it. Thanks you guys who helped me. :smiley:

it was a lovely box, thanks @yuntao