Skip to content
This repository has been archived by the owner on Feb 11, 2024. It is now read-only.

bandit: recks #2

Open
wants to merge 4 commits into
base: main
Choose a base branch
from
Open
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
177 changes: 177 additions & 0 deletions recks bandit
Original file line number Diff line number Diff line change
@@ -0,0 +1,177 @@

1.NH2SXQwcBdpmTEzi3bvBHMM9H66vVXjL

2.rRGizSaX8Mk1RTb1CNQoXTcYZWU6lgzi

3.aBZ0W5EmUfAf7kHTQeOwd8bauFJ2lAiG

4.2EW7BBsr6aMMoJ2HjW067dm8EgX26xNe

5.lrIWWI6bB37kxfiCQZqUdOIYfr6eEeqR

6.P4L4vucdmLnm8I7Vl7jG1ApGSfjYKqJU

7.z7WtoNQU2XfjmMtWA8u5rN4vzqu4v99S

8.TESKZC0XvTetK0S9xNwm25STk5iWrBvP

9.EN632PlfYiZbn3PhVK3XOGSlNInNE00t

10.G7w8LIi6J3kTb8A7j9LgrywtEUlyyp6s

11.6zPeziLdR2RKNdNYFNb6nVCKzphlXHBM

12.JVNBBFSmZwKKOP0XbFXOoW8chDz5yVRv
bandit12@bandit:~$ mkdir /tmp/rcks
bandit12@bandit:~$ cp ./data.txt /tmp/rcks
bandit12@bandit:~$ cd /tmp/rcks
bandit12@bandit:/tmp/rcks$ xxd -r data.txt ndata
bandit12@bandit:/tmp/rcks$ ls
data.txt ndata
bandit12@bandit:/tmp/rcks$ file ndata
ndata: gzip compressed data, was "data2.bin", last modified: Tue Feb 21 22:02:52 2023, max compression, from Unix, original size modulo 2^32 564
bandit12@bandit:/tmp/rcks$ mv ndata ndata.gz
bandit12@bandit:/tmp/rcks$ ls
data.txt ndata.gz
bandit12@bandit:/tmp/rcks$ gzip -d ndata.gz
bandit12@bandit:/tmp/rcks$ file ndata
ndata: bzip2 compressed data, block size = 900k
bandit12@bandit:/tmp/rcks$ ls
data.txt ndata
bandit12@bandit:/tmp/rcks$ mv ndata ndata.bz2
bandit12@bandit:/tmp/rcks$ ls
data.txt ndata.bz2
bandit12@bandit:/tmp/rcks$ bzip2 -d ndata.bz2
bandit12@bandit:/tmp/rcks$ ls
data.txt ndata
bandit12@bandit:/tmp/rcks$ file ndata
ndata: gzip compressed data, was "data4.bin", last modified: Tue Feb 21 22:02:52 2023, max compression, from Unix, original size modulo 2^32 20480
bandit12@bandit:/tmp/rcks$ mv ndata ndata.gz
bandit12@bandit:/tmp/rcks$ gzip -d ndata.gz
bandit12@bandit:/tmp/rcks$ ls
data.txt ndata
bandit12@bandit:/tmp/rcks$ file ndata
ndata: POSIX tar archive (GNU)
bandit12@bandit:/tmp/rcks$ tar xvf ndata
data5.bin
bandit12@bandit:/tmp/rcks$ ls
data5.bin data.txt ndata
bandit12@bandit:/tmp/rcks$ cat data5.bin
data6.bin0000644000000000000000000000033014375237614011255 0ustar rootrootBZh91AY&SY sڿ \ @ o |!
{ bԷ 7 } @- @bp^Z } 搪 sI 1 / a_ Y W A# 83 a r 
7 ` i M ?QG\ Hj":₀ . p ! ~bandit12@bandit:/tmp/rcks$ file data5.bin
data5.bin: POSIX tar archive (GNU)
bandit12@bandit:/tmp/rcks$ tar xvf data5.bin
data6.bin
bandit12@bandit:/tmp/rcks$ cat data6.bin
BZh91AY&SY sڿ \ @ o |!
{ bԷ 7 } @- @bp^Z } 搪 sI 1 / a_ Y W A# 83 a
7 ` i M ?QG\ Hj":₀ . p ! ~bandit12@bandit:/tmp/rcks$ file data6.bin
data6.bin: bzip2 compressed data, block size = 900k
bandit12@bandit:/tmp/rcks$ mv data6.bin data6.bz2
bandit12@bandit:/tmp/rcks$ bzip2 -d data6.bz2
bandit12@bandit:/tmp/rcks$ ls
data5.bin data6 data.txt ndata
bandit12@bandit:/tmp/rcks$ cat data6
data8.bin0000644000000000000000000000011714375237614011262 0ustar rootroot ? cdata9.bin
HU(H,.. /JQ ,V(O
O q p ,2qNt I
H,- 7+( -r)  uG1bandit12@bandit:/tmp/rcks$ file data6
data6: POSIX tar archive (GNU)
bandit12@bandit:/tmp/rcks$ tar xvf data6
data8.bin
bandit12@bandit:/tmp/rcks$ cat data8.bin
? cdata9.bin
HU(H,.. /JQ ,V(O
O q p ,2qNt I
H,- 7+( -r)  uG1bandit12@bandit:/tmp/rcks$ file data8.bin
data8.bin: gzip compressed data, was "data9.bin", last modified: Tue Feb 21 22:02:52 2023, max compression, from Unix, original size modulo 2^32 49
bandit12@bandit:/tmp/rcks$ mv data8.bin data8.gz
bandit12@bandit:/tmp/rcks$ gzip -d data8.gz
bandit12@bandit:/tmp/rcks$ cat data8
The password is wbWdlBxEir4CaE8LaPhauuOo6pwRmrDw
bandit12@bandit:/tmp/rcks$
********************************************************************************************************************************
********************************************************************************************************************************
13.wbWdlBxEir4CaE8LaPhauuOo6pwRmrDw
bandit13@bandit:~$ ls
bandit13@bandit:~$ ssh -i sshkey.private [email protected] -p 2220
********************************************************************************************************************************
********************************************************************************************************************************
14.fGrHPx402xGC7U7rXKDaxiWFTOiF0ENq
bandit14@bandit:~$ nc 127.0.0.1 30000
********************************************************************************************************************************
********************************************************************************************************************************
15.jN2kgmIXJ6fShzhT2avhotn4Zcka6tnt
openssl s_client -connect localhost:30001
********************************************************************************************************************************
********************************************************************************************************************************
16.JQttfApK4SeyHwDlI9SXGR50qclOAil1
nmap localhost -p 31000-32000
openssl s_client -connect localhost:31046
openssl s_client -connect localhost:31518
openssl s_client -connect localhost:31691
openssl s_client -connect localhost:31790
JQttfApK4SeyHwDlI9SXGR50qclOAil1
cd /tmp
vim key.key
chmod 600 key.key
ssh -i key.key [email protected] -p 2220
********************************************************************************************************************************
********************************************************************************************************************************
17.VwOSWtCA7lRKkTfbr2IDh6awj9RNZM5e
ls
diff passwords.new passwords.old
********************************************************************************************************************************
********************************************************************************************************************************
18.hga5tuuCLF6fFzUpnagiMN8ssu9LFrdg
ssh [email protected] -p 2220 cat readme
********************************************************************************************************************************
********************************************************************************************************************************
19.awhqfNnAbc1naukrpqDYcF95h7HoMTrC
./bandit20-do
./bandit20-do cat /etc/bandit_pass/bandit20
********************************************************************************************************************************
********************************************************************************************************************************
20.VxCazJaVykI6W36BkBU0mJTCM8rR95XT
echo 'VxCazJaVykI6W36BkBU0mJTCM8rR95XT'|nc -l -p 3000 &
./suconnect 3000
********************************************************************************************************************************
********************************************************************************************************************************
21.NvEJF7oVjkddltPSrdKEFOllh9V1IBcq
cd /etc/cron.d/
ls
cat cronjob_bandit22
cat /usr/bin/cronjob_bandit22.sh
cat /tmp/t7O6lds9S0RqQh9aMcz6ShpAoZKF7fgv
********************************************************************************************************************************
********************************************************************************************************************************
22.WdDozAdTM2z9DiFEQ2mGlwngMfj4EZff
cd /etc/cron.d/
ls
cat cronjob_bandit23
cat /usr/bin/cronjob_bandit23.sh
cd ~
echo I am user bandit23| md5sum | cut -d ' ' -f 1
cat /tmp/8ca319486bfbbc3663ea0fbe81326349
********************************************************************************************************************************
********************************************************************************************************************************
23.QYw0Y2aiA672PsMmh9puTQuhoz8SyR2G
cd /etc/cron.d/
cat cronjob_bandit24
cat /usr/bin/cronjob_bandit24.sh
mkdir /tmp/xqc
chmod 777 /tmp/xqc
touch nbandit
ls
chmod 777 nbandit
vim scr.sh
---Text Editor----
#! /bin/bash
cat /etc/bandit_pass/bandit24 > /tmp/xqc/nbandit
cp ./scr.sh /var/spool/bandit24/foo
cat nbandit
********************************************************************************************************************************
********************************************************************************************************************************
24.VAfGXJ1PBSsPSnvsjI8p759leLZ9GGar