OverPass2
Last updated
Was this helpful?
Last updated
Was this helpful?
IP: 10.10.145.49
Download pcap file
Open with wireshark
Follow TCP streams, you'll find all the answers to the questions
Download wordlist
Dump users from shadow file while analyzing packets in shadow_dump.txt
file
User Shadow File Passwords using John
user hashes are stored in
shadow_dump.txt
file
bee
secret12
szymex
abcd123
muirland
1qaz2wsx
paradox
secuirty3
Get hash from packet file and hard coded salt from ssh-backdoor
GitHub repo
Store them in hash.txt
file in hash:salt
format
Crack using John
james
november16
Login using Backdoor SSH, since we already know the password
Get User Flag
On listing hidden files, we get .suid_bash
which can be run as root
We've rooted the machine
Get root flag