Home
VulnHub - Sunset Midnight 1
0. Preface
This is a very straightforward machine. There is a small rabbithole right at the start with the Simply Poll plugin, though.
In this box, we will be tackling:
- Weird Hydra results.
- Resetting WordPress passwords through the database.
- Getting a reverse shell using a WordPress βpluginβ.
- Exploiting an SUID binary
Continue Reading...
VulnHub - So Simple 1
0. Preface
If you are still using Social Warfare 3.5.0 on WordPress, please update that plugin. Also, donβt leave users hanging around in the LXD group. Both of those are bad for health.
In this box, we will be tackling:
- RCE through Social Warfare 3.5.0
- Two different methods of privilege escalation
- Using LXD (unintended)
- Using GTFOBins and some scripts and binaries
Continue Reading...
VulnHub - Photographer 1
0. Preface
This box is a pretty straightforward one. Just gotta sift through the LinPEAS output and youβre pretty much golden for privilege escalation.
In this box, we will be tackling:
- Koken CMS exploit
- Careful reading through LinPEAS output
Continue Reading...