Cyber Apocalypse 2024
by Bendelladj1 - Saturday March 9, 2024 at 02:05 PM
anyone here can drop some hint about Testimonial? been stuck for days.
Reply
(Mar 13, 2024, 01:37 PM)Spearfish5172 Wrote: I'm stuck in solving the Tutorial, under Pwn Section. Does anyone know the answer?

Q7: What's the number you can add to INT_MAX to get the number -2147482312?

Even ChatGPT can't solve it.


try this >>>>    1337
Reply
I tried any payload i could made up in Were pickle phreaks. Does anyone have an advice?
Reply
(Mar 13, 2024, 01:37 PM)Spearfish5172 Wrote: I'm stuck in solving the Tutorial, under Pwn Section. Does anyone know the answer?

Q7: What's the number you can add to INT_MAX to get the number -2147482312?

Even ChatGPT can't solve it.

It was something like 1337 (133X) X was either 4,5,6,7 dont remember correctly
Reply
(Mar 13, 2024, 07:43 PM)yoshihtb2 Wrote:
(Mar 13, 2024, 07:42 PM)kenadamsiu Wrote: Please help with Data Siege, I am struggling for 5 hr I found only 3rd part

Did you use XSS attack in Labyrinth Linguist?

Take a look at the exe, you'll find what you need to derive a key and IV which you can use to decrypt the TCP stream.

I found this in the .EXE program

private static string _encryptKey = "VYAemVeO3zUDTL6N62kVA";

Is this the correct information to get? Where can we use it?
Reply
Can I get a hint on Testimonial
Reply
if anyone wants to trade for the given flags message me ,

Unbreakable, STOP DROP ROLL, Character
FakeBoost , Pursue the Tracks , Urgent , an unusual sight , It has Begun
Commander Flag , KORP Terminal , TimeKORP , Labyrinth Linguist, Locktalk
Followthepath, LootStash, PackedAway , BoxCutter
Iced TEA, Primary Knowledge , Dynastic, MakeShift
Writiing on the wall, Tutorial
Lucky Faucet
Rids, BunnyPass, maze
Reply
(Mar 12, 2024, 03:24 PM)Drym Wrote: Yo, anyone can tell me why this payload :
Phreaks(Phreaks.__init__.__globals__.__getitem__("__builtins__").eval("__import__(\\"subprocess\\").getoutput(\\"ls\\")"), "", 1)

Does not pass the checks in Were Pickle Phreaks ? I can't seem to wrap my head around why this does not work, even locally.

How do you appropach passing the data to the server, do you pickle this locally and then pass to the server the base64 encoded data or how do you approach this? Because i first run it locally first and the script runs on my machine, and when i call it on the htb server, it prints out my dir..
Reply
What to do with Testimonial? I've successfully run the Docker instance running in port 1337.
Reply
Guys, how correctly insert code? Python is working fine, but perl fuck me off. How I need to do it correctly? Here is example: 
Enter the program of many languages: IyBQeXRob24zDQp3aXRoIG9wZW4oJ2ZsYWcudHh0JywgJ3InKSBhcyBmOg0KICAgIGZsYWdfY29udGVudCA9IGYucmVhZCgpDQpwcmludChmbGFnX2NvbnRlbnQpDQo=IyBQZXJsDQpvcGVuKG15ICRmaCwgJzwnLCAnZmxhZy50eHQnKSBvciBkaWUgIkNvdWxkIG5vdCBvcGVuIGZpbGUgJ2ZsYWcudHh0JyAkISI7DQp3aGlsZSAobXkgJGxpbmUgPSA8JGZoPikgew0KICBwcmludCAkbGluZTsNCn0NCmNsb3NlKCRmaCk7DQo= 
[*] Executing Python3 using command python    [+] Completed. Checking output    [+] Passed the check 
[*]Executing Perl using command perl    [+] Completed. Checking output    [-] Failed to pass test. You are not worthy enough...
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Hack the box Pro Labs, VIP, VIP+ 1 month free Method RedBlock 23 2,158 11 minutes ago
Last Post: kkkato
  [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags Techtom 20 2,489 Yesterday, 11:06 PM
Last Post: op334
Heart [FREE] HackTheBox All Cheatsheets Tamarisk 3 394 Yesterday, 10:36 PM
Last Post: op334
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 369 91,957 Yesterday, 04:10 PM
Last Post: sabbyahmed
  CBBH Write Ups hiddenhacker 22 6,224 Yesterday, 06:39 AM
Last Post: Usercomplex

Forum Jump:


 Users browsing this forum: 1 Guest(s)