Spectra - HackTheBox Writeup (10.10.10.229)

Posted on Mon, Jul 5, 2021 Easy Linux WordPress Password Reuse SUID Binary
Easy-difficulty ChromeOS box with a focus on password reuse on WordPress. Privilege escalation by leveraging sudo rights on initctl to create a new malicious service and gain root access.

Recon

Enumeration

MySQL Enumeration

HTTP Enumeration

Exploitation

Privilege Escalation

Persistence

Resources

  1. http://manpages.ubuntu.com/manpages/trusty/man8/initctl.8.html
  2. https://blog.joshsoftware.com/2012/02/14/upstart-scripts-in-ubuntu/