Im kinda lost, got d**** credentials, but no idea where to go next
Just rooted !
Thanks for the machine @jkr ! I wonder where did you get the inspiration for the root flag, it reminds me one of the levels of bandit, the one that i struggled with the most !
I say something strange when i got in the user, hints from the guys on this thread helped me a lot ! i think they provide enough info already ! I would chat with someone who got root too ! the usual thing that i do didnāt worked, but i just tried something that seemed weird on my enum and it worked, coupled with the hints on the forum and got it !
Would love to hear from you @jkr, Thanks again !
I have tried and tried and that port is always āclosedā
Struggling to crack creds. The usual tools finish almost instantly with a false alarm.
Anyone with a PM to help with syntax? Feel like Iām doing something silly.
Struggling with what to do with credentials of d****. I have RTFM multiple times and have the credentials cracked, just not quite getting what I have the ability to do under the unprivileged userā¦
Any nudges appreciated, PMs as well.
I got in and found the an interesting, plain view treat but cracking is taking forever? Weird
Nevermind.
Can anybody help me. I cracked creds and found āprivate spaceā, but I doesnāt really give me anything
Got Shell As www-data Any Hints For User?
Type your comment> @xy83rx said:
Got Shell As www-data Any Hints For User?
Read the code and go to the place you wonāt expect
@H4X00R I Have Got The Hash For The User. Now Do I Need To Crack That For The Password Of User?
Type your comment> @xy83rx said:
@H4X00R I Have Got The Hash For The User. Now Do I Need To Crack That For The Password Of User?
John is your best friend
Got creds, and found p*****e
, but it gives permission denied error, can anyone tell me if I am on the right path?
Got Shell As www-data, cracked password but it was useless.
any hint?
iām looking at cronjob, canāt understand how to use it to restore backupā¦
Type your comment> @ls4cfk said:
Got Shell As www-data, cracked password but it was useless.
any hint?
iām looking at cronjob, canāt understand how to use it to restore backupā¦
itās not that far. Look closer where you were. Go to the place you wouldnāt expect
Rooted.
Learnt something new from this box. Thanks @jkr !
Hints: The box name is a huge hint. Check permissions and read that specific file that has some interesting details.
Root: Quite easy. Once you get user, you will find another interesting file with an obvious line.
Feel free to ask for help.
Can anyone confirm if i should look at cron jobs to get user ?
John is not helpful, any tips to get user please.
@saminskip said:
Struggling to crack creds. The usual tools finish almost instantly with a false alarm.
Anyone with a PM to help with syntax? Feel like Iām doing something silly.
Itās not a false alarm, itās just not used for quite what you expect.