Baby
A very basic AD domain machine, the use of Exploit SeBackupPrivilege for privilege escalation is also very common.
Comprehensive writeups for HackTheBox machines across Easy, Medium, Hard, and Insane difficulties
Total 150 reports , currently page 2 of 15 (10 per page)
A very basic AD domain machine, the use of Exploit SeBackupPrivilege for privilege escalation is also very common.
Very simple and typical LimeSurveyexploit path and the root path is simple and easy to find out.
Overall, this machine is quite interesting. The exploits for the SSTI and XSS vulnerabilities are quite clever, but the lack of hardcode is particularly disturbing.
Overall it's a pretty boring machine that uses a lot of CTF techniques and is a bit too hard coded.
This machine is mainly used to examine the configuration and use of Erlang Shell and ssh. Generally speaking, it is a very novel ctf technique.
Very interesting and professional exploitation of XSS and cross-site attacks
The user part mainly examines the enumeration of APIs, and the use of environment variables in the permission escalation part
Very easy machine.
Regarding the foothold, our team discovered an XSS vulnerability and an unused user named "John." Perhaps SQL injection isn't the intended exploit? After all, this is an insane machine, so simply usin...
Very easy linux machine in this period.