Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 63 guests online
 
Advertisement

You are here: Home arrow Resourcesarrow Tutorialsarrow Basic Priv Esculation for newbi
EH-Net
May 23, 2013, 03:43:37 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: 1 [2]   Go Down
  Print  
Author Topic: Basic Priv Esculation for newbi  (Read 10818 times)
0 Members and 1 Guest are viewing this topic.
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #15 on: September 02, 2012, 06:48:41 AM »

Linux is not a service. It's an OS.
Logged

Try harder....hmpf!!
ajohnson
Recruiters
Hero Member
*
Offline Offline

Posts: 1057


aka dynamik


View Profile WWW
« Reply #16 on: September 02, 2012, 10:07:16 AM »

Shadowzero, i ran a brute force attack against admin account and i hacked it. So i can read, write, del files but i cant logon using that account to other services as i mentioned the server is Linux

And that may be the best you'll be able to do in this situation. It's not always possible to compromise a system or escalate privileges.

A couple points to keep in mind:
  • If a service has a vulnerability that can only be exploited from an authenticated session, obtaining credentials may help you exploit the service. Otherwise, you'll just have standard access to the service.
  • Obtaining access to information is often sufficient. If a service you compromise contains sensitive information, that in itself is enough to sound the alarms. You don't need to root the box on top of that.
  • You may be able to leverage that access in other attacks. For example, you may be able to upload a file that could be accessed by a web server. Don't assume each service on a system exists in isolation.
Logged

WIP: GCFA | www.infosiege.net | @infosiege

The day you stop learning is the day you start becoming obsolete.
Jamie.R
Sr. Member
****
Offline Offline

Posts: 429


View Profile
« Reply #17 on: September 02, 2012, 02:26:57 PM »

It may not always be possible but I say there really high chance as if there no script or anything else running on the machine that you can use to gain high privs. There good chance there might be exploit for the version of OS. It does really depend on a lot of factors.
Logged

OSWP | Hackingdojo Nidan | eCPPT
Cyber.spirit
Sr. Member
****
Offline Offline

Posts: 351


The World is sick, Save your mind...


View Profile
« Reply #18 on: September 02, 2012, 02:45:18 PM »

the server is ubuntu i think ok im going to find some vuln but i dont think so its not possible
Logged

ICS Academy Network Security Certified
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #19 on: September 03, 2012, 05:27:38 AM »

the server is ubuntu i think ok im going to find some vuln but i dont think so its not possible

The differences between something which you see and the truth is so much
Logged

Try harder....hmpf!!
Cyber.spirit
Sr. Member
****
Offline Offline

Posts: 351


The World is sick, Save your mind...


View Profile
« Reply #20 on: September 03, 2012, 12:53:57 PM »

Linux is not a service. It's an OS.
I have ubuntu, backtrack, fedora, and kubuntu and i can work with all of the so i think i know what is linux! Grin and the difference is so much but not in this case coz i know 100% that the server is ubuntu coz as i mentioned im helping 1 of my friends and he told me before the pentest but im sure i cant find any useable exploit
Logged

ICS Academy Network Security Certified
sternone
Full Member
***
Offline Offline

Posts: 129


View Profile
« Reply #21 on: September 03, 2012, 02:20:44 PM »

Linux is not a service. It's an OS.
I have ubuntu, backtrack, fedora, and kubuntu and i can work with all of the so i think i know what is linux! Grin and the difference is so much but not in this case coz i know 100% that the server is ubuntu coz as i mentioned im helping 1 of my friends and he told me before the pentest but im sure i cant find any useable exploit

Sounds like your living in a prison !! A prison which you can see Ubuntu, touch Ubuntu, taste Ubuntu, or smell Ubuntu. A prison for your Ubuntu mind. The differences between something which you see and the truth is so much in this Ubuntu prison.
Logged

Try harder....hmpf!!
Cyber.spirit
Sr. Member
****
Offline Offline

Posts: 351


The World is sick, Save your mind...


View Profile
« Reply #22 on: September 03, 2012, 03:01:11 PM »

Linux is not a service. It's an OS.
I have ubuntu, backtrack, fedora, and kubuntu and i can work with all of the so i think i know what is linux! Grin and the difference is so much but not in this case coz i know 100% that the server is ubuntu coz as i mentioned im helping 1 of my friends and he told me before the pentest but im sure i cant find any useable exploit

Sounds like your living in a prison !! A prison which you can see Ubuntu, touch Ubuntu, taste Ubuntu, or smell Ubuntu. A prison for your Ubuntu mind. The differences between something which you see and the truth is so much in this Ubuntu prison.

Man ubuntu isn't a prison is an os like what u've said. But windows is a world and world is prison so windows is going to be a prison for us coz we can't move on from it to ubuntu!!! LoL COZ our habits! And seriously this world (not windows! Real world!) is sick and is a prison too. So save ur mind and make it free good luck
Logged

ICS Academy Network Security Certified
shadowzero
Full Member
***
Offline Offline

Posts: 120


It's a UNIX system, I know this!


View Profile
« Reply #23 on: September 03, 2012, 06:58:04 PM »

Right. I take it you missed the Matrix reference.
Logged
Cyber.spirit
Sr. Member
****
Offline Offline

Posts: 351


The World is sick, Save your mind...


View Profile
« Reply #24 on: September 04, 2012, 12:24:46 AM »

Right. I take it you missed the Matrix reference.

The matrix just said the truth
Logged

ICS Academy Network Security Certified
SecurityMonkey
Jr. Member
**
Offline Offline

Posts: 89



View Profile WWW
« Reply #25 on: September 04, 2012, 12:44:03 AM »

Sounds like your living in a prison !! A prison which you can see Ubuntu, touch Ubuntu, taste Ubuntu, or smell Ubuntu. A prison for your Ubuntu mind. The differences between something which you see and the truth is so much in this Ubuntu prison.

I'll pay that one....
Logged

Cyber.spirit
Sr. Member
****
Offline Offline

Posts: 351


The World is sick, Save your mind...


View Profile
« Reply #26 on: September 04, 2012, 03:08:59 AM »

who thinks the matrix movie was not real?
Logged

ICS Academy Network Security Certified
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 74


View Profile
« Reply #27 on: November 09, 2012, 09:50:06 AM »

Thanks for posting this, Jamie.R! This was just what I needed.
Logged

CISSP, IAM, working on OSCP
petCT
Newbie
*
Offline Offline

Posts: 3


View Profile
« Reply #28 on: April 22, 2013, 09:21:15 AM »

Thanks u very much , this article can help me .
Logged
Jamie.R
Sr. Member
****
Offline Offline

Posts: 429


View Profile
« Reply #29 on: April 23, 2013, 02:36:09 AM »

Glad you find it useful since this been so popular I plan on doing another tutorial soon not sure what on tho.
Logged

OSWP | Hackingdojo Nidan | eCPPT
Pages: 1 [2]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.089 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.