Hacker's Sandbox
Would you like to react to this message? Create an account in a few clicks or log in to continue.
Hacker's Sandbox

Support and conversations related to playing "The Hacker's Sandbox" as found on Flying Monkey Army.


You are not connected. Please login or register

Stumped (thread may contain spoilers)

3 posters

Go down  Message [Page 1 of 1]

1Stumped (thread may contain spoilers) Empty Stumped (thread may contain spoilers) Wed Aug 13, 2014 6:01 am

Nakana



I'm at the zion step. Mail suggests using setuid on executable. Pretty sure the executable to use is the welcome program for the games.

My unix skills are not that strong, (kinda why I'm playing the game) so I'm not sure exactly what to do here.

BTW, if the developer reads this I'm the guy who emailed you about having problems running the game in Snow Leopard.

unix-ninja


Admin

Hey Nakana, the trick here is to abuse poor programming. Sometimes programmers won't properly sanitize code when trying to perform certain actions. If you can force a program to hit a condition it isn't expecting, bad code can sometimes do unexpected things.

The setuid here suggests that the program /etc/welcome is being run as root. If you can find a way to break that program, it might do something interesting.
Smile

Good luck!

https://hackersandbox.board-directory.net

Nakana



I got it! Thanks for hinting at it and not giving it away. Glad to know that I was somewhat on the right track. Plus, I know a little more about setUID and how it works. Smile

I know this is a little off topics, but are there any more mission packs in the works? Timeframe?

This is exactly the type of hacking game I've been looking for.

4Stumped (thread may contain spoilers) Empty Re: Stumped (thread may contain spoilers) Mon Aug 18, 2014 11:22 am

unix-ninja


Admin

Well, right now I am actually expanding the default Mission pack from 4 tasks to somewhere around 8-10.
After that I do have plans for a larger, more "free-range" mission pack to simulate a corporate system. I don't actually have a timeline for it though, since this is mixed in with other projects I am currently working on.

If anyone wants to submit their own mission packs, I am always interested in seeing the work of others as well. I could even make a section of the site for community mission packs if people where interested in such a thing.

https://hackersandbox.board-directory.net

5Stumped (thread may contain spoilers) Empty Re: Stumped (thread may contain spoilers) Fri Nov 28, 2014 11:01 am

rootaccess



im also stuck at this part of the challenge :S
i've already tryed reading a bit about setuid. and tryed some various things. but that didnt helped.
if anyone could give me some pointers that would be helpfull Smile

6Stumped (thread may contain spoilers) Empty Re: Stumped (thread may contain spoilers) Sun Dec 07, 2014 10:20 pm

unix-ninja


Admin

@rootaccess, Apparently there was a regression in the newer 1.10 version that broken this mission (I'm sorry for that). This was just fixed and version 1.11 is now live. Download that and you should be able to beat this mission.

https://hackersandbox.board-directory.net

Sponsored content



Back to top  Message [Page 1 of 1]

Permissions in this forum:
You cannot reply to topics in this forum