Public recordings
Sort by
/run/lock/lvm/P_global:aux: open failed: Permission denied admin@i-05ae3ce6cf2760c95:~$ sudo vgdisplay admin@i-05ae3ce6cf2760c95:~$ sudo pvdisplay admin@i-05ae3ce6cf2760c95:~$ sudo lvdisplay admin@i-05ae3ce6cf2760c95:~$ ls /dev/nv nvme0 nvme0n1p1 nvme0n1p15 nvme1n1 nvme2n1 nvme0n1 nvme0n1p14 nvme1 nvme2 nvram admin@i-05ae3ce6cf2760c95:~$ cfdisk /dev/nvme1 cfdisk: cannot open /dev/nvme1: Permission denied admin@i-05ae3ce6cf2760c95:~$ sudocfdisk /dev/nvme1 admin@i-05ae3ce6cf2760c95:~$ cfdisk /dev/nvme /dev/nvme0n1 /dev/nvme0n1p1 /dev/nvme0n1p14 /dev/nvme0n1p15 /dev/nvme1n1admin@i-05ae3ce6cf2760c95:~$ cfdisk /dev/nvme2n1 cfdisk: cannot open /dev/nvme2n1: Permission denied admin@i-05ae3ce6cf2760c95:~$ sudo cfdisk /dev/nvme2n1
kihei/i-05ae3ce6cf2760c95 08:59
by SadServers/dev/nvme0n1p1 7.7G 6.1G 1.2G 84% / tmpfs 228M 12K 228M 1% /dev/shm tmpfs 5.0M 0 5.0M 0% /run/lock /dev/nvme0n1p15 124M 5.9M 118M 5% /boot/efi admin@i-028b46998ca7b18c9:~$ du ./ 11140 ./agent 4 ./.ansible/tmp 8 ./.ansible 4 ./data 4 ./.config/procps 8 ./.config/asciinema 16 ./.config 8 ./.ssh 5256232 ./ admin@i-028b46998ca7b18c9:~$ df -ht
kihei/i-028b46998ca7b18c9 01:56
by SadServersDisk /dev/nvme0n1: 8 GiB, 8589934592 bytes, 16777216 sectors Disk model: Amazon Elastic Block Store Units: sectors of 1 * 512 = 512 bytes Sector size (logical/physical): 512 bytes / 512 bytes I/O size (minimum/optimal): 4096 bytes / 4096 bytes Disklabel type: gpt Disk identifier: 411E8940-1FEF-5347-B8D7-BE9578B62DC7 Device Start End Sectors Size Type /dev/nvme0n1p1 262144 16777182 16515039 7.9G Linux filesystem /dev/nvme0n1p14 2048 8191 6144 3M BIOS boot /dev/nvme0n1p15 8192 262143 253952 124M EFI System Partition table entries are not in disk order. root@i-06e0efaa114330701:~# m
kihei/i-06e0efaa114330701 09:18
by SadServersadmin@i-032b14b686448662d:/etc$ ping 127.0.1.1 PING 127.0.1.1 (127.0.1.1) 56(84) bytes of data. 64 bytes from 127.0.1.1: icmp_seq=1 ttl=64 time=0.022 ms 64 bytes from 127.0.1.1: icmp_seq=2 ttl=64 time=0.033 ms ^C --- 127.0.1.1 ping statistics --- 2 packets transmitted, 2 received, 0% packet loss, time 1025ms rtt min/avg/max/mdev = 0.022/0.027/0.033/0.005 ms admin@i-032b14b686448662d:/etc$ curl 127.0.1.1 curl: (7) Failed to connect to 127.0.1.1 port 80: Connection refused admin@i-032b14b686448662d:/etc$ ssh 127.0.1.1 The authenticity of host '127.0.1.1 (127.0.1.1)' can't be established. ECDSA key fingerprint is SHA256:hMf6KbwaoxjGUmKFdpvRsbq4Vv1XDQTAlST34YIiPA8. Are you sure you want to continue connecting (yes/no/[fingerprint])?
paris/i-032b14b686448662d 05:49
by SadServers83714-0000000000000001-00060590bd3fe579.journal (8.0M). Deleted archived journal /var/log/journal/ec26942be8219bc22967aa0256120fca/user-ff2e79d2-00000000000006c2-000605912b0e0381.journal (8.0M). Vacuuming done, freed 16.0M of archived journals from /var/log/journal/ec26942beadmin@i-0ef717ab6ee2a91b3:~$ dh -f bash: dh: command not found admin@i-0ef717ab6ee2a91b3:~$ df -h Filesystem Size Used Avail Use% Mounted on udev 217M 0 217M 0% /dev tmpfs 46M 368K 46M 1% /run /dev/nvme0n1p1 7.7G 6.0G 1.3G 83% / tmpfs 228M 12K 228M 1% /dev/shm tmpfs 5.0M 0 5.0M 0% /run/lock /dev/nvme0n1p15 124M 5.9M 118M 5% /boot/efi admin@i-0ef717ab6ee2a91b3:~$ df -h
kihei/i-0ef717ab6ee2a91b3 02:02
by SadServersConnection to host.example.com 25 port [tcp/smtp] succeeded! The port range was specified to limit the search to ports 20 - 30, and is s der (unless the -r flag is set). You can also specify a list of ports to scan, for example: $ nc -zv host.example.com http 20 22-23 nc: connect to host.example.com 80 (tcp) failed: Connection refused nc: connect to host.example.com 20 (tcp) failed: Connection refused Connection to host.example.com port [tcp/ssh] succeeded! nc: connect to host.example.com 23 (tcp) failed: Connection refused The ports are scanned by the order you given (unless the -r flag is set). Manual page nc(1) line 219/313 84% (press h for help or q to quit)
paris/i-09a83dc73ef187df9 05:35
by SadServersudev 217M 0 217M 0% /dev tmpfs 46M 368K 46M 1% /run /dev/nvme0n1p1 7.7G 6.1G 1.2G 84% / tmpfs 228M 12K 228M 1% /dev/shm tmpfs 5.0M 0 5.0M 0% /run/lock /dev/nvme0n1p15 124M 5.9M 118M 5% /boot/efi admin@i-06f14f1acdd48bc0a:~$ df -ih Filesystem Inodes IUsed IFree IUse% Mounted on udev 55K 307 54K 1% /dev tmpfs 57K 442 57K 1% /run /dev/nvme0n1p1 504K 33K 472K 7% / tmpfs 57K 4 57K 1% /dev/shm tmpfs 57K 3 57K 1% /run/lock /dev/nvme0n1p15 0 0 0 - /boot/efi admin@i-06f14f1acdd48bc0a:~$
kihei/i-06f14f1acdd48bc0a 03:49
by SadServersed find: ‘./var/log/private’: Permission denied find: ‘./var/log/chrony’: Permission denied find: ‘./var/lib/private’: Permission denied find: ‘./var/lib/apt/lists/partial’: Permission denied find: ‘./var/lib/chrony’: Permission denied admin@i-0454b5c96348909f7:/$ ^C admin@i-0454b5c96348909f7:/$ ^C admin@i-0454b5c96348909f7:/$ find . -type f -iname "webserver.py" 2>/dev/null ./home/admin/webserver.py admin@i-0454b5c96348909f7:/$ pwd / admin@i-0454b5c96348909f7:/$ less a9da3e83a611 a9da3e83a611: No such file or directory admin@i-0454b5c96348909f7:/$ less /h
paris/i-0454b5c96348909f7 05:15
by SadServersudev 217M 0 217M 0% /dev tmpfs 46M 368K 46M 1% /run /dev/nvme0n1p1 7.7G 6.1G 1.2G 84% / tmpfs 228M 12K 228M 1% /dev/shm tmpfs 5.0M 0 5.0M 0% /run/lock /dev/nvme0n1p15 124M 5.9M 118M 5% /boot/efi admin@i-00ef44706a7b8e10a:~$ bzip2 bash: bzip2: command not found admin@i-00ef44706a7b8e10a:~$ gzip gzip: compressed data not written to a terminal. Use -f to force compression. For help, type: gzip -h admin@i-00ef44706a7b8e10a:~$ gzip -9 datafile admin@i-00ef44706a7b8e10a:~$ ls agent data datafile.gz kihei admin@i-00ef44706a7b8e10a:~$
kihei/i-00ef44706a7b8e10a 01:29
by SadServers-r--r--r-- 1 root root 0 Dec 8 12:39 schedstat -r--r--r-- 1 root root 0 Dec 8 12:38 sessionid -rw-r--r-- 1 root root 0 Dec 8 12:39 setgroups -r--r--r-- 1 root root 0 Dec 8 12:39 smaps -r--r--r-- 1 root root 0 Dec 8 12:39 smaps_rollup -r-------- 1 root root 0 Dec 8 12:39 stack -r--r--r-- 1 root root 0 Dec 8 12:38 stat -r--r--r-- 1 root root 0 Dec 8 12:39 statm -r--r--r-- 1 root root 0 Dec 8 12:38 status -r-------- 1 root root 0 Dec 8 12:39 syscall -rw-r--r-- 1 root root 0 Dec 8 12:39 timens_offsets -r--r--r-- 1 root root 0 Dec 8 12:39 timers -rw-r--r-- 1 root root 0 Dec 8 12:39 uid_map -r--r--r-- 1 root root 0 Dec 8 12:39 wchan admin@i-062de8de4cd2094c4:~$
paris/i-062de8de4cd2094c4 04:09
by SadServers})" admin@i-032f08c56ca9f458a:~$ echo "${HTTP_REQUEST}" >&"${NFD}" admin@i-032f08c56ca9f458a:~$ while read -u "${NFD}" lz ; do echo "${lz}" done admin@i-032f08c56ca9f458a:~$ exec {NFD}>&- admin@i-032f08c56ca9f458a:~$ lynx bash: lynx: command not found admin@i-032f08c56ca9f458a:~$ nc usage: nc [-46CDdFhklNnrStUuvZz] [-I length] [-i interval] [-M ttl] [-m minttl] [-O length] [-P proxy_username] [-p source_port] [-q seconds] [-s sourceaddr] [-T keyword] [-V rtable] [-W recvlimit] [-w timeout] [-X proxy_protocol] [-x proxy_address[:port]] [destination] [port] admin@i-032f08c56ca9f458a:~$ /usr/bin/printf 'GET / \n' | nc localhost 8
paris/i-032f08c56ca9f458a 05:20
by SadServers114 root 0 -20 0 0 0 I 0.0 0.0 0:00.00 ena admin@i-0aba8159a1a1cc7e9:~$ ps PID TTY TIME CMD 695 pts/1 00:00:00 sh 696 pts/1 00:00:00 bash 881 pts/1 00:00:00 ps admin@i-0aba8159a1a1cc7e9:~$ lsof -Ua COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME gotty 563 admin 1u unix 0x000000000e846a83 0t0 10471 type=STREAM gotty 563 admin 2u unix 0x000000000e846a83 0t0 10471 type=STREAM sadagent 564 admin 1u unix 0x00000000cc53c95b 0t0 10477 type=STREAM sadagent 564 admin 2u unix 0x00000000cc53c95b 0t0 10477 type=STREAM admin@i-0aba8159a1a1cc7e9:~$
paris/i-0aba8159a1a1cc7e9 05:20
by SadServerswrite(2, "main.main", 9main.main) = 9 write(2, "(", 1() = 1 write(2, ")\n", 2) ) = 2 write(2, "\t", 1 ) = 1 write(2, "./main.go", 9./main.go) = 9 write(2, ":", 1:) = 1 write(2, "64", 264) = 2 write(2, " +", 2 +) = 2 write(2, "0x47d", 50x47d) = 5 write(2, "\n", 1 ) = 1 exit_group(2) = ? +++ exited with 2 +++ admin@i-0bc9ddb32a1c704bb:~$ ./kihei -
kihei/i-0bc9ddb32a1c704bb 03:13
by SadServers5.1G . admin@i-04ba647eafae86351:~$ ls agent data datafile kihei admin@i-04ba647eafae86351:~$ cd .. admin@i-04ba647eafae86351:/home$ du -h . 11M ./admin/agent 4.0K ./admin/.ansible/tmp 8.0K ./admin/.ansible 4.0K ./admin/data 8.0K ./admin/.config/asciinema 12K ./admin/.config 8.0K ./admin/.ssh 5.1G ./admin 5.1G . admin@i-04ba647eafae86351:/home$ cd