command-line-murders/i-03ebd347a9253a962
by SadServersMore by SadServers
a.out agent webserver.py $ admin@i-072b43453825ba99a:~$ find / -perm -u=s -type f 2>/dev/null /usr/lib/openssh/ssh-keysign /usr/lib/dbus-1.0/dbus-daemon-launch-helper /usr/bin/chsh /usr/bin/umount /usr/bin/mount /usr/bin/passwd /usr/bin/newgrp /usr/bin/sudo /usr/bin/chfn /usr/bin/su /usr/bin/gpasswd admin@i-072b43453825ba99a:~$ ./a.out /usr/bin/su
paris/i-072b43453825ba99a 03:20
by SadServersnvme0n1p14 259:4 0 3M 0 part nvme0n1p15 259:5 0 124M 0 part /boot/efi admin@i-0c90bbae859c0f897:~$ lvcreate -n lv -l 100%FREE vg WARNING: Running as a non-root user. Functionality may be unavailable. /dev/mapper/control: open failed: Permission denied Failure to communicate with kernel device-mapper driver. Incompatible libdevmapper 1.02.175 (2021-01-08) and kernel driver (unknown ver striped: Required device-mapper target(s) not detected in your kernel. Run `lvcreate --help' for more information. admin@i-0c90bbae859c0f897:~$ sudo lvcreate -n lv -l 100%FREE vg Logical volume "lv" created. admin@i-0c90bbae859c0f897:~$ mkfs.ext4 /dev/vg/lv mke2fs 1.46.2 (28-Feb-2021) Could not open /dev/vg/lv: Permission denied admin@i-0c90bbae859c0f897:~$
kihei/i-0c90bbae859c0f897 02:14
by SadServersadmin@i-0796b0b18597b116d:~$ lsblk NAME MAJ:MIN RM SIZE RO TYPE MOUNTPOINT nvme0n1 259:0 0 8G 0 disk ├─nvme0n1p1 259:1 0 7.9G 0 part / ├─nvme0n1p14 259:2 0 3M 0 part └─nvme0n1p15 259:3 0 124M 0 part /boot/efi nvme1n1 259:4 0 1G 0 disk nvme2n1 259:5 0 1G 0 disk admin@i-0796b0b18597b116d:~$ sfdisk -l sfdisk: cannot open /dev/nvme0n1: Permission denied sfdisk: cannot open /dev/nvme1n1: Permission denied sfdisk: cannot open /dev/nvme2n1: Permission denied admin@i-0796b0b18597b116d:~$
kihei/i-0796b0b18597b116d 02:22
by SadServers.itab.*reflect.rtype,reflect.Typego.itab.*flag.durationValue,flag.Valuego.itab.*lue,flag.Valuego.itab.*flag.intValue,flag.Valuego.itab.*flag.int64Value,flag.Valg.stringValue,flag.Valuego.itab.*flag.uintValue,flag.Valuego.itab.*flag.uint64Vago.itab.*strings.Builder,io.Writergo.itab.*errors.errorString,errorgo.itab.*fmt.rgo.itab.*fmt.pp,fmt.Statego.itab.*os.File,io.Readergo.itab.syscall.Signal,os.Sio/fs.PathError,errorgo.itab.*os.SyscallError,errorgo.itab.syscall.Errno,errorgo.iter,io.Writergo.itab.*os.fileStat,io/fs.FileInfogo.itab.*io.LimitedReader,io.Res.File,io.Closergo.itab.*os/exec.ExitError,errorgo.itab.*os/exec.Error,errorgo.ider,io.Readergo.itab.os/user.UnknownUserIdError,errorgo.itab.*internal/reflectlinal/reflectlite.Typego.itab.time.fileSizeError,errorgo.itab.*internal/fmtsort.Sonterfacego.itab.runtime.errorString,error_cgo_init_cgo_thread_start_cgo_notify_rne_cgo_callers_cgo_yield_cgo_mmap_cgo_munmap_cgo_sigactionruntime.mainPCgo.itab..DeadlineExceededError,errorgo.itab.internal/poll.errNetClosing,errorruntime.defruntime.buildVersion.strruntime.modinfo.strtype.*runtime.textsectionmaproot@i-0b3:/home/admin#