Nebula level06

来源:互联网 发布:大数据分析是什么 编辑:程序博客网 时间:2024/05/18 02:11

“(…) account credentials came from a legacy unix system” mhm:

$ cat /etc/passwd

(...)

flag06:ueqwOCnSGdsuM:993:993::/home/flag06:/bin/sh

(...)

Ah, good old DES:

$ echo ueqwOCnSGdsuM > flag06.des
$ ./john flag06.des

Loaded 1 password hash (Traditional DES [128/128 BS AVX-16])
hello            (?)

?:hello

thus:

$ su flag06
sh-4.2$ getflag
You have successfully executed getflag on a target account

Nice one.


原创粉丝点击