CMSpit

A box rated medium, but given the needed CVE leaps off the google search pages there isn’t a huge challenge to this one. Probably better rated as easy but still a good, well-put-together room

September 25, 2021 · 8 min · allFun

Fortress

Recon to foothold First off we’ll take the information given and add the hostnames fortress and temple.fortress to our /etc/hosts file Now let’s scan to find what we’re dealing with. A masscan to start rob:Fortress/ $ sudo masscan -p1-65535,U:1-65535 10.10.6.73 --rate=1000 -e tun0 [sudo] password for rob: Starting masscan 1.3.2 (http://bit.ly/14GZzcT) at 2021-09-25 15:23:25 GMT Initiating SYN Stealth Scan Scanning 1 hosts [131070 ports/host] Discovered open port 5581/tcp on 10.10.6.73 Discovered open port 22/tcp on 10....

September 25, 2021 · 27 min · allFun

Sweettooth Inc.

The container escape can be tricky if you take the harder route :smile: justifying the ‘medium’ difficulty tag

July 28, 2021 · 11 min · allFun

Metamorphosis

Part of Incognito CTF. A clever box, rated medium, with a simple but effective route to root. Probably about the right level

July 21, 2021 · 15 min · allFun

RazorBlack

A windows machine, rated medium, this box is pretty hard at times if your Windows skills are not fantastic (like me!). A lot of fun though and excellently made

July 21, 2021 · 22 min · allFun

Armageddon

A linux box, user rated Easy/Medium, Armageddon is a bit of a black & white situation, if you find the user exploit fast then pretty easy, otherwise you could be looking for a while. Root on the other hand is a pretty simple privesc

May 24, 2021 · 9 min · allFun