Skip to main content

Systemctl Abuse

loading · loading ·

2023

HTB Sau: Formal Write-up

·1212 words·6 mins· loading · loading
Synopsis: # Sau is a Linux machine that focused on some recently exposed CVEs and security misconfigurations. The first step was to exploit a vulnerable REST API through SSRF to access an internal malicious traffic detection system running a web service. The login page of that web service was vulnerable to OS command injection. RCE was gained by exploiting this vulnerability, and privileges were escalated by abusing the puma user’s permissions.