HTB RouterSpace
by - Thursday, January 1, 1970 at 12:00 AM
Anyone got hash or ssh for this, cant be bothered with spinning up an apk emulator
Reply
you must run the app in emulator and intercept the request with burp , once did that you will find RCE which allow you to add your ssh public key to authorized keys then connect with private keys , if this help give me rep , if you still stuck pm
Reply
(March 20, 2022, 02:11 AM)john2 Wrote: you must run the app in emulator and intercept the request with burp , once did that you will find RCE which allow you to add your ssh public key to authorized keys then connect with private keys , if this help give me rep , if you still stuck pm


Dramas with visualizing the APK and capturing that request. Went all in, set up mobsf with dynamic analysis, grabbed the endpoint its talking to but nothing past that .

Edit - ah got it. Thx for the nudge
Reply
Good’s
Reply
This can help:
https://0xdedinfosec.vercel.app/posts/hackthebox-routerspace-writeup
Reply
(March 22, 2022, 09:04 PM)DvDr_SF Wrote: This can help:
https://0xdedinfosec.vercel.app/posts/hackthebox-routerspace-writeup


Thx saw this too! - the APK part was the painful bit, rest was easy.
Reply
(March 23, 2022, 06:44 AM)skyweasel Wrote:
(March 22, 2022, 09:04 PM)DvDr_SF Wrote: This can help:
https://0xdedinfosec.vercel.app/posts/hackthebox-routerspace-writeup


Thx saw this too! - the APK part was the painful bit, rest was easy.


I do it by myself ....It takes 3 hours only to start anbox  without error :(
Reply
(March 22, 2022, 09:04 PM)DvDr_SF Wrote: This can help:
https://0xdedinfosec.vercel.app/posts/hackthebox-routerspace-writeup


thanks
Reply


 Users viewing this thread: HTB RouterSpace: No users currently viewing.