Sep 18, 2024, 10:38 PM
How did you guys figured out the root
|
HTB Caption - Linux - Hard
by mhsoraa - Saturday September 14, 2024 at 06:31 PM
|
|
Sep 18, 2024, 10:38 PM
How did you guys figured out the root
Sep 21, 2024, 03:42 PM
(This post was last modified: Sep 21, 2024, 03:42 PM by mrtyry3132123.)
(Sep 15, 2024, 07:42 PM)upl04d3r Wrote:(Sep 15, 2024, 05:52 PM)terk12 Wrote: why am i getting an error dos2unix id_rsa vim --clean id_rsa in vim: :wq
Sep 27, 2024, 01:12 PM
i cant login with root:root in http://caption.htb:8080/signin
2 days ago i could login with root:root successfully but now i cant i tried to change vpn and reset the machine but nothing help
Oct 02, 2024, 12:50 PM
(Sep 27, 2024, 01:12 PM)khairy24 Wrote: i cant login with root:root in http://caption.htb:8080/signin They patched this machine. That was unintended solutions. This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching | http://c66go4clkqodr7tdjfu76jztjs7w7d3fajdeypxn73v4ju3dt7g5yyyd.onion/Forum-Ban-Appeals if you feel this is incorrect.
Oct 02, 2024, 05:44 PM
Hello, could you please advise how to access http://10.10.11.33:8080/ after the patch? (root
no longer works)
Oct 06, 2024, 08:37 AM
Who can help with the user part?
Oct 27, 2024, 04:32 AM
This will help with getting a foothold as margo the intended way: https://github.com/BishopFox/h2csmuggler
Oct 27, 2024, 04:43 PM
(Oct 27, 2024, 04:32 AM)miserey Wrote: This will help with getting a foothold as margo the intended way: https://github.com/BishopFox/h2csmuggler hhhmmm... i'm chasing after intended solution for the moment & still failing to make it right. They seemingly patched everything. Even previous ACL HAproxy bypass with `//` doesn't work anymore. I've found XSS via Varsnish cache poisoning to steal admin's cookie & get inside (although, there's no difference between user or admin in the interface. Kind off lazy copy-pasta shitty machine). Tried different fuzzing & methods to bypass HAproxy, or poison Varnish cache or HTTP/2 req smuggling via manual & automated approach... still nothing. Used different tools (including the one you've mentioned). https://github.com/intrudir/BypassFuzzer https://github.com/BishopFox/h2csmuggler https://github.com/defparam/smuggler.git Varnish is also vulnerable to different HTTP/2 req smuggling attacks (lookup some CVEs).. however.. There's a tricky part here... HTTP/2 is a binary proto & it only works via TLS/SSL connection.. i also tried to modify some of these tools .... and i got nothing yet. Any tricks here ?
Oct 27, 2024, 07:49 PM
(Sep 14, 2024, 06:31 PM)mhsoraa Wrote: https://www.hackthebox.com/machines/caption It got patched, someone has the complete writeup? This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Leeching.
Oct 29, 2024, 12:07 PM
(Oct 27, 2024, 04:43 PM)mazafaka555 Wrote:(Oct 27, 2024, 04:32 AM)miserey Wrote: This will help with getting a foothold as margo the intended way: https://github.com/BishopFox/h2csmuggler Same here, bro. I tried to XSS on the firewall page, but even the admin can't get past this proxy. Do you have any ideas? |
|
« Next Oldest | Next Newest »
|
| Possibly Related Threads… | |||||
| Thread | Author | Replies | Views | Last Post | |
| [FREE] CPTS 12 FLAGS | 68 | 1,899 |
2 hours ago Last Post: VictorPipeau |
||
| [FREE] HackTheBox Dante - complete writeup written by Tamarisk | 601 | 91,509 |
2 hours ago Last Post: VictorPipeau |
||
| [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired | 371 | 92,785 |
3 hours ago Last Post: phannguyenbaouy1 |
||
| [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags | 21 | 2,599 |
7 hours ago Last Post: popoler |
||
| Hack the box Pro Labs, VIP, VIP+ 1 month free Method | 23 | 2,241 |
Yesterday, 02:10 PM Last Post: kkkato |
||