command-line-murders/i-075e4b18a4b332391
by SadServersMore by SadServers
ls: cannot access '/pid/579': No such file or directory admin@i-02fded2ca795f43ce:~$ ls /proc/579 ls: cannot read symbolic link '/proc/579/cwd': Permission denied ls: cannot read symbolic link '/proc/579/root': Permission denied ls: cannot read symbolic link '/proc/579/exe': Permission denied arch_status cgroup coredump_filter environ gid_map map_files mountattr clear_refs cpu_resctrl_groups exe io maps mountautogroup cmdline cpuset fd limits mem net auxv comm cwd fdinfo loginuid mountinfo ns admin@i-02fded2ca795f43ce:~$ ls /proc/579^C admin@i-02fded2ca795f43ce:~$ ^C admin@i-02fded2ca795f43ce:~$ ^C admin@i-02fded2ca795f43ce:~$ /proc/579/root curl localhost:5000 bash: /proc/579/root: Permission denied admin@i-02fded2ca795f43ce:~$
paris/i-02fded2ca795f43ce 03:41
by SadServerstcp 0 0 127.0.0.1:33060 127.0.0.1:5000 TIME_WAIT tcp 0 0 127.0.0.1:53540 127.0.0.1:5000 TIME_WAIT admin@i-033468d33a03be844:~$ sudo netstat -natup | grep 5000 We trust you have received the usual lecture from the local System Administrator. It usually boils down to these three things: #1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: sudo: a password is required admin@i-033468d33a03be844:~$ sudo
paris/i-033468d33a03be844 01:03
by SadServers988 pts/1 R<+ 0:00 ps ax admin@i-0748faed17a21b9f5:~/agent$ ls check.sh sadagent sadagent.txt admin@i-0748faed17a21b9f5:~/agent$ cd .. admin@i-0748faed17a21b9f5:~$ ls agent webserver.py admin@i-0748faed17a21b9f5:~$ ls -l total 8 drwxr-xr-x 2 admin root 4096 Sep 24 2023 agent -rwxrwx--- 1 root root 360 Sep 24 2023 webserver.py admin@i-0748faed17a21b9f5:~$ cd /var/lib/ admin@i-0748faed17a21b9f5:/var/lib$ ls apt cloud dhcp grub man-db pam private sgml-base systemd uchrony dbus dpkg logrotate misc polkit-1 python sudo ucf vadmin@i-0748faed17a21b9f5:/var/lib$ cd