ARP Spoofing Man In The Middle

Date

Validations

0 Compromissions 0%

Note  Notation

0 Vote

Description

Warning : This CTF ATD is linked to the challenge "ARP Spoofing - The man in the middle"

Your friend wasn’t at all pleased that you’d managed to take control of his network and retrieve his confidential information. So this time he made the task much harder by making the database password much more complex.

You still have access to your friend’s LAN with an attacking machine that you control.

The flag is in the database located on one of the network hosts.

  • Start the CTF-ATD "ARP Spoofing HommeDuMilieu"
  • Log in with SSH on the machine port 22222 (root:root)
  • There is no validation of the virtual environment with a /passwd

Do not hesitate to change the password of the root user in order to be alone on the machine to perform your manipulations.

Compromission time

4 hours

Operating system

 linux

start this virtual environnement

 178 Virtual Environnements

Results Name Validations Difficulty  Difficulty Author Note   Notation
pas_valide SSH Agent Hijacking 25% 2479 mayfly
pas_valide OpenClassrooms - Juice Shop 1% 9 Sh1n, EtienneC
pas_valide Ubuntu 8.04 weak 5% 207 g0uZ
pas_valide root-me-spip 10% 120 real
pas_valide Docker - Sys-Admin’s Docker 39% 1055 Ech0
pas_valide Acid: Server 11% 220
pas_valide BreakingRootme2020 15% 544 Laluka
pas_valide AppArmorJail1 0% 0 nivram
pas_valide Docker - Talk through me 42% 733 Ech0
pas_valide I’m a Bl4ck H4t 6% 53
pas_valide ARP Spoofing EcouteActive 0% 0 voydstack
pas_valide OpenClassrooms - P7 - Analyste SOC 0% 0
pas_valide Mr. Robot 1 21% 1669
pas_valide Billu-b0x2 9% 128
pas_valide Metasploitable 2 39% 8802
pas_valide Rootkit Cold Case 15% 489 franb
pas_valide Bash considered harmful 8% 138 sbrk
pas_valide SAP Pentest 7% 294 iggy
pas_valide Docker - I am groot 50% 3411 Ech0
pas_valide LAMP security CTF7 39% 898
pas_valide Bluebox - Microsoft Pentest 4% 426
pas_valide SSRF Box 18% 1888 sambecks
pas_valide DC-4 17% 163
pas_valide OpenClassrooms - Sécurité Active Directory 9% 195
pas_valide /dev/random : Pipe 4% 238
pas_valide LAMP security CTF4 34% 2756
pas_valide Imagick 22% 1071 sambecks
pas_valide Basilic 4% 19
pas_valide k8s 10% 168 sambecks
pas_valide CsharpVulnJson 5% 14 notfound404
pas_valide Challenge SecuriTech 1% 13
pas_valide DeRPnStiNK 28% 44
pas_valide LAMP security CTF6 18% 610
pas_valide Basic pentesting 1 32% 4941
pas_valide Metasploitable 12% 1746
pas_valide Kioptrix level 2 24% 976
pas_valide OpenClassrooms - DVWA 2% 95 Sh1n, EtienneC
pas_valide SamBox v2 13% 1009 sambecks
pas_valide A bittersweet shellfony 12% 243 mayfly
pas_valide CTFair 0% 0
pas_valide BBQ Factory 6% 129 sm0k, dvor4x
pas_valide Command Injection OS 18% 59
pas_valide zico2 21% 138 rafaveira3
pas_valide Windows - krbtgt reuse 11% 187
pas_valide Holynix v1 23% 292
pas_valide Texode_Back 8% 76
pas_valide Texode 15% 169 Mhd_Root
pas_valide Bulldog 26% 197
pas_valide DC-6 30% 116
pas_valide Kevgir-VM 15% 31