RainyDay - HTB [Discussion]
by - Thursday, January 1, 1970 at 12:00 AM
(October 16, 2022, 11:14 PM)lnf02 Wrote:
(October 16, 2022, 10:46 PM)m4rsh3ll Wrote:
(October 16, 2022, 10:12 PM)Hacker2222 Wrote: for user flag .............. ps xau in container shows sleep command . this process has mount on root of host. u can read ssh private key of jack .......


check cat /proc/NUMBER/root/home/jack/.ssh/id_rsa


Which regex did you use for pattern? I can find any string what I whant, for example first "def" entry is in 47 line. But I can't find any "sec" or "key" entry


Two hints...

Is your search case sensitive? 

And the second one...

Maybe the key is not on that file...


Yeah thx.
Reply
(October 16, 2022, 11:48 PM)lnf02 Wrote: Once you get inside the Host, you will need to escalate privileges (as always)... 

I think you will find this useful ;)


Thanks you for your sharring
Reply
I'm stuck at jack_adm. Some tips ?
Reply
thaanx so much!!
Reply
(October 16, 2022, 11:48 PM)lnf02 Wrote: Once you get inside the Host, you will need to escalate privileges (as always)... 

I think you will find this useful ;)


thx bro
Reply
(October 16, 2022, 11:48 PM)lnf02 Wrote: Once you get inside the Host, you will need to escalate privileges (as always)... 

I think you will find this useful ;)


Thanks!
Reply
thanks
Reply
(October 16, 2022, 11:48 PM)lnf02 Wrote: Once you get inside the Host, you will need to escalate privileges (as always)... 

I think you will find this useful ;)


thx
Reply
(October 15, 2022, 09:12 PM)Hacker2222 Wrote: use python3 reverse shell ............. run in backgroudn option .. exec sh instead of bash


can you please paste your reverse shell payload
Reply
😛
Reply


 Users viewing this thread: RainyDay - HTB [Discussion]: No users currently viewing.