Тёмный

Umbrella TryHackMe Walkthrough | Medium 

h00dy
Подписаться 188
Просмотров 483
50% 1

In this video we are solving tryhackme's new ctf challenge - umbrella by - [ tryhackme.com/p/brunofight ]. We will see how to enumerate docker registry running on default port 5000, and pulling the docker image locally and enumerating that and later saw some realization moments that one should sleep well to do well, and eventually rooted the box using mounted logs directory b/w the main box docker container and claire-r user and setting up SUID bit on sh shell to gain privesc to root. Hope you'll learn something new.
[ tryhackme - tryhackme.com/room/umbrella ]
⭐️ Video Contents ⭐
⌨️ 0:00 ⏩ Hindi Intro {{ Lol }}
⌨️ 0:47 ⏩ Starting Ctf
⌨️ 3:48 ⏩ Initial Enumeration (Docker Registry)
⌨️ 7:10 ⏩ Got DB_PASS
⌨️ 13:35 ⏩ Initial Foothold on the box
⌨️ 16:45 ⏩ Gaining shell on main box via Node js webserver on 8080
⌨️ 23:20 ⏩ PrivEsc To Root (Setting up SUID on sh shell)
⌨️ 27:00 ⏩ Final POVs
P.S - i love yall sm 🙏🚀❤️
Follow me on social media:
● / hoodietramp
● / inimitablekunal
● / hoodietramp
Github:
● github.com/hoodietramp
Mastodon:
● mastodon.social/@h00dy
● defcon.social/@h00dy
Join 345y🛸:
● / discord
#redteam #ctf #tryhackme #hacking #thm

Наука

Опубликовано:

 

29 июн 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 10   
@hoodietramp
@hoodietramp 5 месяцев назад
Search for Privilege Escalation with 2 shells and host mount in this article, you can find the way i got privesc on this box - book.hacktricks.xyz/linux-hardening/privilege-escalation/docker-security/docker-breakout-privilege-escalation
@iqlip7
@iqlip7 5 месяцев назад
kudos
@cr0wdedroom
@cr0wdedroom 5 месяцев назад
☂️
@sahilsehgal8630
@sahilsehgal8630 5 месяцев назад
💟🔒
@ghufranashiq19
@ghufranashiq19 5 месяцев назад
Thankyou it great some concept can't understand i think i miss basic ... How i connect you... Linkedin please
@hoodietramp
@hoodietramp 5 месяцев назад
linkedin.com/in/h00dy 🙂
@zymh2433
@zymh2433 5 месяцев назад
i have a question i don't have /etc/docker/daemon.json config file by default. Should i create new one?
@hoodietramp
@hoodietramp 5 месяцев назад
yeah you’d have to create one
@prateek3927
@prateek3927 5 месяцев назад
🔫🔫🫡
@Vishwassoch
@Vishwassoch 5 месяцев назад
🪲🔥
Далее
The Linux Experience
31:00
Просмотров 346 тыс.
Как выжить на 1000 рублей?
13:01
Просмотров 541 тыс.
TryHackMe! PickleRick - BYPASSING Denylists
17:23
Просмотров 290 тыс.
3 Key Version Control Mistakes (HUGE STEP BACKWARDS)
15:08
mKingdom TryHackMe Walkthrough | Easy
27:59
Просмотров 1,4 тыс.
Patton's Third Army Is Prepared
1:55
Просмотров 1,1 млн
Best operating system for Servers in 2024
11:41
Просмотров 22 тыс.
Learning Docker // Getting started!
35:56
Просмотров 102 тыс.
I made my own Programming Language
9:10
Просмотров 401 тыс.
Hijack TryHackMe Walkthrough  | Easy
32:24
Просмотров 454
iPhone 16 - КРУТЕЙШИЕ ИННОВАЦИИ
4:50
Кто производит iPhone?
0:59
Просмотров 408 тыс.