Tag: chisel
-
Ambassador | Hack The Box
Straight off the bat we get a username from the web server. We see from the website source it’s running Hugo 0.94.2, “a static HTML and CSS website generator written in Go”. There’s no immediately obvious CVE so will carry on. There’s not a lot else obvious here, so next we look at port 3000 […]
-
Open Source | Hack The Box
We’ll be starting with the web server then… Immediately we’re given an option to “Download the Source Code” which appears to be a docker image, and to test the upload functionality. There’s a .git so git branch shows us dev and public. Looking thorugh git log dev we can see the commits and when comparing […]
-
Overpass 3 | TryHackMe
After Overpass’s rocky start in infosec, and the commercial failure of their password manager and subsequent hack, they’ve decided to try a new business venture. Overpass has become a web hosting company!Unfortunately, they haven’t learned from their past mistakes. Rumour has it, their main web server is extremely vulnerable. Medium difficulty. Initial nmap results, an […]