https://grokdesigns.com/vulnhub-walkthrough-lazysysadmin-1
Walkthru:
-scan shows ssh, http, smb, sql and irc ports.
-tried to access smb share and copy files to target but looks like share is accessible but not writable.
-couldnt find any interesting in http
-ran hydra on ssh and found the pwd for togie
-restricted shell but full su access. so copied shadow and passwd file to kali to crack it using john. but not completed for an hr atleast.
root@localhost:~/freshly# unshadow passwd shadow > cracked.txt
root@localhost:~/freshly# john cracked.txt
Created directory: /root/.john
so changed the root passwd hash in shadow file similar to togie. Su as root and entered the same pwd and I m root
Notes:
Walkthru:
-scan shows ssh, http, smb, sql and irc ports.
-tried to access smb share and copy files to target but looks like share is accessible but not writable.
-couldnt find any interesting in http
-ran hydra on ssh and found the pwd for togie
-restricted shell but full su access. so copied shadow and passwd file to kali to crack it using john. but not completed for an hr atleast.
root@localhost:~/freshly# unshadow passwd shadow > cracked.txt
root@localhost:~/freshly# john cracked.txt
Created directory: /root/.john
so changed the root passwd hash in shadow file similar to togie. Su as root and entered the same pwd and I m root
Notes:
Comments
Post a Comment