Linux

20 January 2023 · HackTheBox, Easy Machine

Bounty Hunter - Hack The Box

Esta es una máquina un poco más dificil que las anteriores, siendo que para poder entrar a la máquina por el servicio SSH usaremos BurpSuite para obtener las credenciales desde la página web aplicando …

LinuxPHPBurpSuiteXXE InjectionPython VulnerabilityAbusing Sudoers PrivilegesPrivesc - Abusing Sudoers PrivilegesOSCP Style
Bounty Hunter - Hack The Box
11 January 2023 · HackTheBox, Easy Machine

Lame - Hack The Box

La máquina lame es una de las primeras maquinas que hice, justo después del **Starting Point**, obviamente necesité mucha ayuda porque había cosas que aún no comprendía del todo. Es una maquina super …

LinuxSambaFTP EnumerationSamba EnumerationUsername Map Script Command Execution (UMSCE)CVE-2007-2447Command InjectionPrivesc - UMSCE (CVE-2007-2447)OSCP StyleMetasploit Framework
Lame - Hack The Box