HTB- Intuition
by trevor69000 - Saturday April 27, 2024 at 06:46 PM
#1
https://app.hackthebox.com/machines/599
Lets begin guys
All the best!!
Reply
#2
Good luck & have fun everyone
Reply
#3
Open 22
Open 80

comprezzor.htb
Reply
#4
found sub domains
report.comprezzor.htb
auth.comprezzor.htb
Reply
#5
auth [Status: 302, Size: 199, Words: 18, Lines: 6, Duration: 424ms]
report [Status: 200, Size: 3166, Words: 1102, Lines: 109, Duration: 427ms]
dashboard [Status: 302, Size: 251, Words: 18, Lines: 6, Duration: 425ms]

http://report.comprezzor.htb/report_bug
Reply
#6
Probably need to bypass jsDelivr trought report forms
Reply
#7
Anyone tried to get a backdoor using the LZMA algorithm?
https://thehackernews.com/2024/03/urgent...in-xz.html

https://github.com/karcherm/xz-malware
Reply
#8
I feel like that exploit is too recent for a box this early in the season but thats just a hunch.
Reply
#9
Found:
http://dashboard.comprezzor.htb/
http://dashboard.comprezzor.htb/backup
http://dashboard.comprezzor.htb/resolve
But with cookie tamper to admin: 500 INTERNAL SERVER ERROR
Reply
#10
(Apr 27, 2024, 08:31 PM)3kyy Wrote: I think we have a XSS on http://report.comprezzor.htb/report_bug?

i thougt that but there is jsdelivr

This forum account is currently banned. Ban Length: Permanent (N/A Remaining)
Ban Reason: Asking for rep is not allowed
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [FREE] HackTheBox Dante - complete writeup written by Tamarisk Tamarisk 602 91,843 Yesterday, 06:48 PM
Last Post: sabero_exe
  [FREE] CPTS 12 FLAGS pulsebreaker 68 1,971 Yesterday, 09:54 AM
Last Post: VictorPipeau
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 371 93,018 Yesterday, 08:48 AM
Last Post: phannguyenbaouy1
  [FREE] HackTheBox Academy - CBBH CDSA CPTS All Modules Flags Techtom 21 2,629 Yesterday, 05:08 AM
Last Post: popoler
  Hack the box Pro Labs, VIP, VIP+ 1 month free Method RedBlock 23 2,277 Apr 30, 2026, 02:10 PM
Last Post: kkkato

Forum Jump:


 Users browsing this forum: 1 Guest(s)