HTB - Axlle
by Sqweez - Saturday June 22, 2024 at 06:57 PM
#1
Lets go pwn together Smile

GL for all
https://app.hackthebox.com/machines/611
Reply
#2
It's a Windows machine with SMTP... bit weird (has SAML authentication)

not much on the HTTP yet..
Reply
#3
Our website is currently down for maintenance.

We apologise for the inconvenience and appreciate your patience as we work to improve our online presence.

If you have any outstanding invoices or requests, please email them to accounts@axlle.htb in Excel format. Please note that all macros are disabled due to our security posture.

We will be back as soon as possible. Thank you for your understanding.

prob phishing
Reply
#4
(Jun 22, 2024, 07:44 PM)eunaosei Wrote:
Our website is currently down for maintenance.

We apologise for the inconvenience and appreciate your patience as we work to improve our online presence.

If you have any outstanding invoices or requests, please email them to accounts@axlle.htb in Excel format. Please note that all macros are disabled due to our security posture.

We will be back as soon as possible. Thank you for your understanding.

prob phishing

Probably, to the accounts account
Reply
#5
(Jun 22, 2024, 07:45 PM)a44857437 Wrote:
(Jun 22, 2024, 07:44 PM)eunaosei Wrote:
Our website is currently down for maintenance.

We apologise for the inconvenience and appreciate your patience as we work to improve our online presence.

If you have any outstanding invoices or requests, please email them to accounts@axlle.htb in Excel format. Please note that all macros are disabled due to our security posture.

We will be back as soon as possible. Thank you for your understanding.

prob phishing

Probably, to the account account

yeah lmao

so far i've tried to use metasploit exploit/windows/fileformat/office_excel_slk since macros are disabled, but no luck yet
Reply
#6
Probably XLL phish (also matching with a box name)
Reply
#7
(Jun 22, 2024, 08:22 PM)SomeBody1338 Wrote: Probably XLL phish (also matching with a box name)

ah... making an XLL, meh
Reply
#8
(Jun 22, 2024, 08:22 PM)SomeBody1338 Wrote: Probably XLL phish (also matching with a box name)

Can you please tell me how to send the generated xll file?
Reply
#9
i maked XLL with
https://github.com/zimnyaa/xyrella
and
swaks --to accounts@axlle.htb --from test@test.com --header "Subject: test" --body "test" --attach @addin.xll
is not worked ...
Reply
#10
How did they create the .xll file?
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 87 7,975 1 hour ago
Last Post: char0n1507
Heart [FREE] HackTheBox All Cheatsheets Tamarisk 9 564 1 hour ago
Last Post: char0n1507
  CBBH Write Ups hiddenhacker 23 6,343 2 hours ago
Last Post: somecrazykid
  [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags Techtom 26 2,798 3 hours ago
Last Post: Neuromanc3r
  [FREE] CPTS 12 FLAGS pulsebreaker 72 2,219 4 hours ago
Last Post: coolguyaroundyou

Forum Jump:


 Users browsing this forum: 1 Guest(s)