HTB Caption - Linux - Hard
by mhsoraa - Saturday September 14, 2024 at 06:31 PM
#21
For root: check the second git repo
Ban reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect. (Permanent)
Reply
#22
for USER - i can get code execution but my reverse shells seems not to be working
Ban reason: Leeching. (Permanent)
Reply
#23
(09-14-2024, 09:52 PM)local Wrote: for USER - i can get code execution but my reverse shells seems not to be working

Why do you need a shell when you can just cat the ssh private key? Smile
Ban reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect. (Permanent)
Reply
#24
(09-14-2024, 09:55 PM)osamy7593 Wrote:
(09-14-2024, 09:54 PM)nomx1337 Wrote:
(09-14-2024, 09:52 PM)local Wrote: for USER - i can get code execution but my reverse shells seems not to be working

Why do you need a shell when you can just cat the ssh private key? Smile

where did u find it ? /home/margo/.ssh/id_rsa ??

ls -la /home/margo/.ssh/
Ban reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect. (Permanent)
Reply
#25
(09-14-2024, 09:54 PM)nomx1337 Wrote:
(09-14-2024, 09:52 PM)local Wrote: for USER - i can get code execution but my reverse shells seems not to be working

Why do you need a shell when you can just cat the ssh private key? Smile

└─$ ssh -i id_rsa margo@10.129.20.140
Load key "id_rsa": error in libcrypto
Ban reason: Leeching. (Permanent)
Reply
#26
any hints for root?
Reply
#27
(09-14-2024, 10:00 PM)local Wrote:
(09-14-2024, 09:54 PM)nomx1337 Wrote:
(09-14-2024, 09:52 PM)local Wrote: for USER - i can get code execution but my reverse shells seems not to be working

Why do you need a shell when you can just cat the ssh private key? Smile

└─$ ssh -i id_rsa margo@10.129.20.140
Load key "id_rsa": error in libcrypto


help me to get initial shell because  h2-rce failed to access. may be there is a way to get it , i am in caption.htb:8080 dashboard
Reply
#28
server.go is running on port 9090 as root, so i think we need to use:

logs := fmt.Sprintf("echo 'IP Address: %s, User-Agent: %s, Timestamp: %s' >> output.log", ip, userAgent, timestamp)
exec.Command{"/bin/sh", "-c", logs}
from that server code
Reply
#29
(09-14-2024, 10:12 PM)carbanak0 Wrote:
(09-14-2024, 10:00 PM)local Wrote:
(09-14-2024, 09:54 PM)nomx1337 Wrote:
(09-14-2024, 09:52 PM)local Wrote: for USER - i can get code execution but my reverse shells seems not to be working

Why do you need a shell when you can just cat the ssh private key? Smile

└─$ ssh -i id_rsa margo@10.129.20.140
Load key "id_rsa": error in libcrypto


help me to get initial shell because  h2-rce failed to access. may be there is a way to get it , i am in caption.htb:8080 dashboard

https://medium.com/r3d-buck3t/chaining-h...535a9621a2
Ban reason: Leeching. (Permanent)
Reply
#30
for the slow guy can someone help with the command that cats the ssh key
Ban reason: Leeching | http://breachddyfwvcp4kzccos5oxtdbssmfbp...an-Appeals if you feel this is incorrect. (Permanent)
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 360 88,710 03-28-2026, 09:28 AM
Last Post: catsweet
  [FREE] HTB-ProLabs APTLABS Just Flags kewlsunny 23 2,348 03-28-2026, 03:30 AM
Last Post: lulaladrow
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 87 7,490 03-27-2026, 07:22 PM
Last Post: stn
  HTB Eloquia User and Root Flags - Insane Box 69646B 13 350 03-27-2026, 06:14 PM
Last Post: vlxw
  HTB - ALL Challenges you Stuck in osamy7593 2 646 03-27-2026, 04:24 PM
Last Post: catsweet



 Users browsing this thread: 1 Guest(s)