MoneyBox
Last updated
Was this helpful?
Last updated
Was this helpful?
192.168.84.230
Results :
ftp anonymous@192.168.84.230
Found that FTP does allow anonymous login. One file listed.
Banner grab.
Landing page.
Dirbuster results.
Found at /blogs/index.html source code.
Found at /S3cr3t-T3xt/index.html source code.
HAD TO GET HINT HERE
Started brute forcing SSH with Hydra.
Found that there is another user named lily.
After a while had to get another hint. But did notice port 22 open internally. After going back and reviewing a video. If I had checked lily's authorized keys I would of found that renu's was authorized to be used by lily.
Tried connecting with lily and the id_rsa found in renu's file but it did not work.
Was able to use SSH to get from renu to lily with id_rsa in renu/.ssh/
Checked the user's sudo permissions
Using a privilege escalation from GTFO bins.
Got hint that there may be information hidden in the trytofind.jpg. Used Use stenography decoder along with the secret key .
Source: