paris/i-0e0901153058fcbfd
by SadServersMore by SadServers
<body> <div id="terminal"></div> <script src="./auth_token.js"></script> <script src="./config.js"></script> <script src="./js/gotty.js"></script> </body> </html>admin@i-059abcaabcac3684a:~$ curl localhost:8080/auth_token.js var gotty_auth_token = '';admin@i-059abcaabcac3684a:~$ admin@i-059abcaabcac3684a:~$ curl localhost:8080/config.js var gotty_term = 'xterm';admin@i-059abcaabcac3684a:~$ admin@i-059abcaabcac3684a:~$ admin@i-059abcaabcac3684a:~$ #bah that's asciinema admin@i-059abcaabcac3684a:~$
paris/i-059abcaabcac3684a 05:39
by SadServersif [[ "$actual_checksum" == "$expected_checksum" ]]; then echo -n "OK" else echo -n "NO" fiadmin@i-053e95096bbd62d08:~/agent$ file sadagent sadagent: ELF 64-bit LSB executable, x86-64, version 1 (SYSV), dynamically linke-linux-x86-64.so.2, Go BuildID=H6A8cVluPFUvaNojVwMi/C5t-5rNiA5GJLWeSm5Qz/KXfivG_EPr4lPEnoe, not stripped admin@i-053e95096bbd62d08:~/agent$ cd .. admin@i-053e95096bbd62d08:~$ ls agent webserver.py admin@i-053e95096bbd62d08:~$ cat webserver.py cat: webserver.py: Permission denied admin@i-053e95096bbd62d08:~$ ls
paris/i-053e95096bbd62d08 02:03
by SadServersJan 02 08:42:39 i-06e56fbb61602f300 python3[580]: 127.0.0.1 - - [02/Jan/2025 08:admin@i-06e56fbb61602f300:~$ curl http://127.0.0.1:5000 Unauthorizedadmin@i-06e56fbb61602f300:~$ sudo su We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: [2]+ Stopped sudo su admin@i-06e56fbb61602f300:~$