command-line-murders/i-001720b74ff74b467
by SadServersMore by SadServers
SF:HTTPStatus\.BAD_REQUEST\x20-\x20Bad\x20request\x20syntax\x20or\x20unsup SF:ported\x20method\.</p>\n\x20\x20\x20\x20</body>\n</html>\n"); Service detection performed. Please report any incorrect results at https://nmapNmap done: 1 IP address (1 host up) scanned in 92.67 seconds admin@i-0be8092b5097881f7:~$ shoutdown --help bash: shoutdown: command not found admin@i-0be8092b5097881f7:~$ sudo -l Matching Defaults entries for admin on i-0be8092b5097881f7: env_reset, mail_badpass, secure_path=/usr/local/sbin\:/usr/local/bin\:/usr/s User admin may run the following commands on i-0be8092b5097881f7: (ALL : ALL) ALL (ALL) NOPASSWD: /sbin/shutdown admin@i-0be8092b5097881f7:~$ /s
paris/i-0be8092b5097881f7 02:26
by SadServersadmin@i-01938499a23dd6d8b:~$ curl http://localhost:5000 Unauthorizedadmin@i-01938499a23dd6d8b:~$ curl https://localhost:5000 curl: (35) error:1408F10B:SSL routines:ssl3_get_record:wrong version number admin@i-01938499a23dd6d8b:~$ strace -p 573 strace: attach: ptrace(PTRACE_SEIZE, 573): Operation not permitted admin@i-01938499a23dd6d8b:~$ sudo strace -p 573 We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin:
paris/i-01938499a23dd6d8b 05:03
by SadServers<link rel="icon" href="icon.svg" type="image/svg+xml"> <link rel="stylesheet" href="./css/index.css" /> <link rel="stylesheet" href="./css/xterm.css" /> <link rel="stylesheet" href="./css/xterm_customize.css" /> <meta name="viewport" content="width=device-width, initial-scale=1"> </head> <body> <div id="terminal"></div> <script src="./auth_token.js"></script> <script src="./config.js"></script> <script src="./js/gotty.js"></script> </body> </html>admin@i-0ce5f6e0b7a5e573c:~$ curl localhost:5000/