Basic pentesting 1

תאריך

Validations

4965 Compromissions 31%

Note  Notation

163 votes

Description

This is a small boot2root VM I created for my university’s cyber security group. It contains multiple remote vulnerabilities and multiple privilege escalation vectors. I did all of my testing for this VM on VirtualBox, so that’s the recommended platform. I have been informed that it also works with VMware, but I haven’t tested this personally.

This VM is specifically intended for newcomers to penetration testing. If you’re a beginner, you should hopefully find the difficulty of the VM to be just right.

Your goal is to remotely attack the VM and gain root privileges. Once you’ve finished, try to find other vectors you might have missed!

Temps de compromission

2 heures

Système d'exploitation

 linux

démarrer cet environnement virtuel

Résultats du CTF alltheday Résultats du CTF alltheday pour Basic pentesting 1

Pseudonyme Environnement Virtuel Nombre d'attaquant Date de début Environnement compromis en
- Basic pentesting 1 0 11 בינואר 2019 to 15:07 -
- Basic pentesting 1 0 29 בנובמבר 2018 to 17:20 -
- Basic pentesting 1 0 14 בנובמבר 2018 to 14:59 -

 178 Environnements Virtuels

Résultats שם Validations Difficulté  Difficulté כותב Note   Notation
pas_valide OpenClassrooms - Juice Shop 1% 9 Sh1n, EtienneC
pas_valide SSH Agent Hijacking 25% 2499 mayfly
pas_valide Ubuntu 8.04 weak 5% 209 g0uZ
pas_valide root-me-spip 10% 125 real
pas_valide BreakingRootme2020 15% 552 Laluka
pas_valide Acid: Server 11% 220
pas_valide AppArmorJail1 0% 0 nivram
pas_valide I’m a Bl4ck H4t 6% 56
pas_valide Docker - Talk through me 42% 750 Ech0
pas_valide ARP Spoofing EcouteActive 0% 0 voydstack
pas_valide OpenClassrooms - P7 - Analyste SOC 0% 0
pas_valide Mr. Robot 1 21% 1671
pas_valide SAP Pentest 7% 300 iggy
pas_valide Metasploitable 2 39% 8829
pas_valide Bash considered harmful 8% 138 sbrk
pas_valide Rootkit Cold Case 15% 496 franb
pas_valide Billu-b0x2 9% 128
pas_valide Docker - I am groot 50% 3480 Ech0
pas_valide Bluebox - Microsoft Pentest 4% 431
pas_valide LAMP security CTF7 39% 899
pas_valide SSRF Box 18% 1900 sambecks
pas_valide DC-4 17% 163
pas_valide OpenClassrooms - Sécurité Active Directory 9% 201
pas_valide /dev/random : Pipe 4% 240
pas_valide LAMP security CTF4 35% 2767
pas_valide Basilic 4% 19
pas_valide k8s 10% 168 sambecks
pas_valide Imagick 22% 1080 sambecks
pas_valide CsharpVulnJson 5% 14 notfound404
pas_valide Challenge SecuriTech 1% 13
pas_valide DeRPnStiNK 28% 44
pas_valide LAMP security CTF6 18% 610
pas_valide Basic pentesting 1 31% 4965
pas_valide Metasploitable 12% 1766
pas_valide Kioptrix level 2 24% 976
pas_valide OpenClassrooms - DVWA 2% 98 Sh1n, EtienneC
pas_valide Docker - Sys-Admin’s Docker 38% 1071 Ech0
pas_valide SamBox v2 13% 1014 sambecks
pas_valide CTFair 0% 0
pas_valide A bittersweet shellfony 12% 248 mayfly
pas_valide BBQ Factory 6% 132 sm0k, dvor4x
pas_valide Gemini-Pentest-v1 7% 29
pas_valide Bulldog 27% 198
pas_valide Kevgir-VM 15% 31
pas_valide SkyTower 24% 217
pas_valide Lazysysadmin 16% 58
pas_valide DC-6 30% 116
pas_valide Texode 15% 172 Mhd_Root
pas_valide zico2 21% 138 rafaveira3
pas_valide Windows - krbtgt reuse 11% 199