You’ll find this vm here : https://www.vulnhub.com/entry/hacksudo-aliens,676/
Hacksudo - Aliens
Port Scan
Directory Scan
- Focus to
/backup
Download the mysql.bak
- Find credentials
PHPmyAdmin
- Go to port
9000
and login usingvishal:hacksudo
Upload the backdoor using MySQL
query
Reverse console
Curl
Listener
SUID Permissions
GTFOBins - SUID - date
- read
/etc/shadow
Crack the hash | John
- crack
hacksudo
password hash
SSH Credentials
hacksudo
:aliens
User
SUID Permissions
- This time ur target is
/home/hacksudo/Downloads/cpulimit