sagishahar-zz / challenges

Hacking challenges

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Hacking Challenges

Challenges that I authored/co-authored over the years for education and training purposes.

Scream

  _________                                    
 /   _____/ ___________   ____ _____    _____  
 \_____  \_/ ___\_  __ \_/ __ \\__  \  /     \ 
 /        \  \___|  | \/\  ___/ / __ \|  Y Y  \
/_______  /\___  >__|    \___  >____  /__|_|  / .VM.
        \/     \/            \/     \/      \/ 
----------------------------------------------------------------------------
|  cReaTeD....: sagi-                |  DaTe......: 12-11-10               |
|  oS.........: Windows XP Home/Pro  |  oBJecTiVe.: Get the local user's   |
|               SP2/3 x86            |              password               |
|  iNSTaLLeR..: g0tmi1k              |  GReeTZ....: #vulnhub               |
----------------------------------------------------------------------------

Download

NOTE: Creation of the VM requires VulnInjector.

Solution

Watch Solution

Relativity

     __________       .__          __  .__      .__  __
     \______   \ ____ |  | _____ _/  |_|__|__  _|__|/  |_ ___.__.
      |       _// __ \|  | \__  \\   __\  \  \/ /  \   __<   |  |
      |    |   \  ___/|  |__/ __ \|  | |  |\   /|  ||  |  \___  |
      |____|_  /\___  >____(____  /__| |__| \_/ |__||__|  / ____| ·VM·
             \/     \/          \/                        \/  -v1.0.1-
 +-----------------------------------------------------------------------+
 |  cReaTeD....: sagi-               |  DaTe......: 2013-11-29           |
 |  oS.........: Linux               |  oBJecTiVe.: Read /root/flag.txt  |
 |                                   |  GReeTZ....: g0tmi1k & l0ca1hoSt  |
 +-----------------------------------------------------------------------+
 |  VM HiSToRY:                                                          |
 |  v1.0.1 - 2013-11-29 Fixed a few bugs when using VirtualBox (thanks   |
 |           to Bas van den Berg - @barrebas)                            |
 |  v1.0   - 2013-11-16 Public release                                   |
 |  v0.0   - 2013-11-01 Private release - Zacon                          |
 |  v0.0   - 2013-06-29 Private release - HackFu                         |
 +-----------------------------------------------------------------------+

Download

Solution

Watch Solution

Persistence

██████╗█████████████╗███████ ██ █████████████████████████╗   ██╗█████████████╗
██╔══████╔════██╔══████╔════    ██╔════╚══██╔══██╔════████╗  ████╔════██╔════╝
██████╔█████╗ ██████╔███████ ██ ███████╗  ██║  █████╗ ██╔██╗ ████║    █████╗  
██╔═══╝██╔══╝ ██╔══██╚════██ ██ ╚════██║  ██║  ██╔══╝ ██║╚██╗████║    ██╔══╝  
██║    █████████║  █████████ ██ ███████║  ██║  █████████║ ╚████╚█████████████╗
╚═╝    ╚══════╚═╝  ╚═╚══════ ╚═ ╚══════╝  ╚═╝  ╚══════╚═╝  ╚═══╝╚═════╚══════╝

   "the fact of continuing in an opinion or course of action in spite of 
    difficulty or opposition"

                                                by sagi- & superkojiman


DISCLAIMER
----------
By using this virtual machine, you agree that in no event will we be liable 
for any loss or damage including without limitation, indirect or 
consequential loss or damage, or any loss or damage whatsoever arising 
from loss of data or profits arising out of or in connection with the use
of this software.

TL;DR - You are about to load up a virtual machine with vulnerabilities 
created by hackers. If something bad happens, it's not our fault.


ABOUT
-----
Persistence aims to provide you with challenging obstacles that block your
path to victory. It is perhaps best described by quotes made by some famous
people: 

"A little more persistence, a little more effort, and what seemed 
hopeless failure may turn to glorious success." - Calvin Coolidge

"Energy and persistence conquer all things." - Benjamin Franklin

"Persistence and resilience only come from having been given the chance
to work though difficult problems." - Gever Tulley


GOAL
----
Get a root shell and read the contents of /root/flag.txt to complete 
the challenge!


SETUP
-----
The virtual machine will get an IP address via DHCP, and it has been 
tested on the following hypervisors:

VMware Fusion 6
VMware Player 6
VMware Workstation 10
VirtualBox 4.3


SHOUT OUTS
----------
Thanks @VulnHub for kindly hosting this challenge, and thanks to 
@recrudesce for testing it and providing valuable feedback

Download

Solution

Watch Solution

Pipe

__________.__               
\______   \__|_____   ____  
 |     ___/  \____ \_/ __ \ 
 |    |   |  |  |_> >  ___/ 
 |____|   |__|   __/ \___  >
             |__|        \/  ·VM· (MiNi CHaLLeNGe BuiLT FoR ZaCoN Vi)

+-----------------------------------------------------------------------+
|  cReaTeD....: sagi- (@s4gi_)      |  DaTe......: 2015-10-02           |
|  oS.........: Linux               |  oBJecTiVe.: Get /root/flag.txt   |
|                                   |  GReeTZ....: @zac0n               |
|                                   |  TeSTeRs...: @leonjza             |
|                                   |              @barrebas            |
+-----------------------------------------------------------------------+

Download

Solution

Watch Solution

Sleepy

  _________.__                              
 /   _____/|  |   ____   ____ ______ ___.__.
 \_____  \ |  | _/ __ \_/ __ \\____ <   |  |
 /        \|  |_\  ___/\  ___/|  |_> >___  |
/_______  /|____/\___  >\___  >   __// ____| ·VM·
        \/           \/     \/|__|   \/

+-----------------------------------------------------------------------+
|  cReaTeD....: sagi- (@s4gi_)      |  DaTe......: 2015-10-02           |
|  oS.........: Linux               |  oBJecTiVe.: Get /root/flag.txt   |
|                                   |  GReeTZ....: @nanomebia           |
|                                   |  TeSTeRs...: @barrebas            |
|                                   |              Christopher Panayi   |
+-----------------------------------------------------------------------+
|  VM HiSToRY:                                                          |
|  v1.0 - Public release @ ZaCon VI "Capture the Flag (and in between)" |
|  V0.1 - Private release @ SecTalks Perth                              |
+-----------------------------------------------------------------------+

Download

Solution

Watch Solution

K2

 ____  __.________
|    |/ _|\_____  \
|      <   /  ____/
|    |  \ /       \
|____|__ \\_______ \ ·VM·
        \/        \/

+----------------------------------------------------------------------------+
|  cReaTeD....: sagi- (@s4gi_)      |  DaTe......: 2017-07-26                |
|  oS.........: Linux               |  oBJecTiVe.: Get /root/flag.txt        |
|                                   |  TeSTeR....: @leonjza                  |
+----------------------------------------------------------------------------+
|  VM DesCriPtiOn:                                                           |
|  This challenge was built to promote the Windows / Linux Local Privilege   |
|  Escalation workshop. A free of charge 3-day workshop that was created as  |
|  a give back to the community initiative.                                  |
|                                                                            |
|  <3 sagi-                                                                  |
+----------------------------------------------------------------------------+
| SSH AccEsS DeTaiLs:                                                        |
| Username: user                                                             |
| Password: password                                                         |
+----------------------------------------------------------------------------+

Download

Solution

Watch Solution

About

Hacking challenges