HTB CozyHosting - Some really obvious hints
by damnberoo - Monday September 4, 2023 at 02:24 PM
#1
Foothold
- Identified what is running bts?, now all you're missing is the right wordlist. Since it's an easy machine you know where to look for  Wink
- Does the cookie value reminds you of something?
- Logged in ?, there is a vulnerable parameter which is really obvious, burp and google is plenty.
- You can enter a command without spaces, also for shell, you can actually download the payload somewhere and execute it Wink

User
- Use Pspy and the large file given to you contains exactly what you need in plaintext.
- Which file in linux system gives you a list of all usernames?
- SSH

Root
- What is the first thing you do normally when you do ssh with a pass.
- GTFOBINS.
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  [MEGALEAK] HackTheBox ProLabs, Fortress, Endgame - Alchemy, 250 Flags, leak htb-bot htb-bot 90 7,523 10 hours ago
Last Post: dingaghost
  [FREE] 300+ Writeups PDF HackTheBox/HTB premium retired Tamarisk 363 88,767 10 hours ago
Last Post: dingaghost
  [FREE] HTB-ProLabs APTLABS Just Flags kewlsunny 23 2,352 03-28-2026, 03:30 AM
Last Post: lulaladrow
  HTB Eloquia User and Root Flags - Insane Box 69646B 13 351 03-27-2026, 06:14 PM
Last Post: vlxw
  HTB - ALL Challenges you Stuck in osamy7593 2 649 03-27-2026, 04:24 PM
Last Post: catsweet



 Users browsing this thread: 1 Guest(s)