Synced (Tier 0)
Last updated
Was this helpful?
Last updated
Was this helpful?
Tier -> 0
Difficult -> Very Easy
OS -> Linux
Tags -> Rsync / Protocols / Reconnaissance / Anonymous/Guest Access
With a little research, I started answering the first question
Answer: 873
With this, I answered the next question
Answer: 1
Then I did an exhaustive scan of the ports we found to get information about the running service
With this and a little research, I answered some questions
Answer: 31
Answer: rsync
Answer: None
Answer: list-only
I found a public folder so I listed its content where I found a flag.txt file, so I transferred it from the server to my machine and read its content finally finding the root flag
With this, I got the root flag and pwned the machine
Answer: 72eaf5344ebb84908ae543a719830519
Then I continued doing an initial port scan of the machine using
I found there was a port a service named rsync that with a little research, I found it was a file synchronization application. Also, I found that it was possible to interact with it using the command-line utility. So I tried using it to list the files being shared under this application specifying it was using a daemon to run this service and I saw it was successful