command-line-murders/i-0b62efeb411c11c44
by SadServersMore by SadServers
if [[ "$actual_checksum" == "$expected_checksum" ]]; then echo -n "OK" else echo -n "NO" fiadmin@i-053e95096bbd62d08:~/agent$ file sadagent sadagent: ELF 64-bit LSB executable, x86-64, version 1 (SYSV), dynamically linke-linux-x86-64.so.2, Go BuildID=H6A8cVluPFUvaNojVwMi/C5t-5rNiA5GJLWeSm5Qz/KXfivG_EPr4lPEnoe, not stripped admin@i-053e95096bbd62d08:~/agent$ cd .. admin@i-053e95096bbd62d08:~$ ls agent webserver.py admin@i-053e95096bbd62d08:~$ cat webserver.py cat: webserver.py: Permission denied admin@i-053e95096bbd62d08:~$ ls
paris/i-053e95096bbd62d08 02:03
by SadServers> Host: 127.0.0.1:5000 > User-Agent: curl/7.74.0 > Accept: */* > * Mark bundle as not supporting multiuse < HTTP/1.1 200 OK < Server: Werkzeug/2.3.7 Python/3.9.2 < Date: Tue, 14 Jan 2025 19:29:25 GMT < Content-Type: text/html; charset=utf-8 < Content-Length: 12 < Connection: close < * Closing connection 0 Unauthorizedadmin@i-0ec82287eecb31de5:~$ admin@i-0ec82287eecb31de5:~$ find / -newer t 2
paris/i-0ec82287eecb31de5 06:56
by SadServersagent webserver.py admin@i-04dca6e1ae246a837:~$ curl localhost:5000 Unauthorizedadmin@i-04dca6e1ae246a837:~$ history | grep sudo 5 2025-03-28T01:12:44 sudo cat webserver.py 8 2025-03-28T01:14:06 history | grep sudo admin@i-04dca6e1ae246a837:~$ sudo udo grep -r "password" /etc/ We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: